Marlee Recover

Privacy policy

Last updated October 7, 2026.

1. About this policy

Marlee Recover, offered by Marlee Labs, is a Shopify app that helps merchants identify and prioritize abandoned-checkout opportunities and observe when previously open checkouts later complete.

2. Information we process

To operate the embedded app, we process the Shopify shop domain and the authentication/session information needed to authorize the app, including OAuth state, granted scope, access credentials, and token-expiration information when supplied.

For the recovery workflow, Marlee Recover stores the abandoned-checkout identifier, amount, currency, relevant timestamps, derived status and priority, tracking/conversion state, merchant recovery settings, and non-customer sync/run status used for reliability.

3. Checkout customer data the current MVP does not query or persist

  • Customer name, email address, or phone number.
  • Billing or shipping address.
  • Checkout line-item details.
  • Checkout notes or message content.
  • Checkout recovery URL.

Marlee Recover also does not persist Shopify merchant/admin profile fields such as the authenticated user's name, email, locale, or account-owner status.

4. How we use information

We use the information described above to authenticate authorized Shopify users, operate the app, calculate and prioritize recovery opportunities, observe checkout-completion changes, maintain merchant settings, keep the service reliable and secure, and comply with applicable platform and legal obligations.

A “conversion observed after tracking” means only that Marlee first observed a checkout as open and later observed Shopify report it as completed. It is not a claim that Marlee caused the sale.

5. Service providers

Marlee Recover currently uses Railway to host the application and its PostgreSQL database in the United States. Railway provides the underlying infrastructure controls for encrypted storage and protected network transport, while Marlee Recover limits application access to what is operationally necessary.

Marlee Recover also uses a restricted Google Drive integration for encrypted logical database backups. Backup files are encrypted by Marlee Recover before upload, and the integration requests only the narrow Drive access needed to manage files created by the backup application.

We do not sell personal information to advertisers.

6. Retention and deletion

Checkout-derived recovery opportunities and sync-run history are kept on a rolling 90-day window. A production retention job runs when the app starts and every six hours to remove records older than that window.

Merchant recovery settings and the minimum Shopify authentication/session information needed to operate the app are retained while the app remains installed and are not part of the 90-day checkout-history window.

App-owned data is scoped by Shopify shop. When Shopify sends the app/uninstalled webhook, Marlee Recover deletes its shop settings, recovery opportunities, sync history, and stored Shopify sessions. Shopify's shop/redact privacy webhook performs the same shop-level deletion.

Because the current MVP does not maintain customer-specific checkout identity records, the customers/data_request and customers/redact handlers have no buyer/customer identity record in the recovery dataset to return or redact.

Encrypted logical backups are capped at seven complete backup sets. Restore procedures require an isolated target and include deletion reconciliation before restored data can be considered eligible to return to service.

7. Security

Production controls include HTTPS for public application traffic, encrypted provider storage, encrypted private service-to-service transport, least-privilege credentials, environment/secret-manager credential handling, dependency and build checks, restricted production access, and application-level AES-256-GCM encryption for logical database backups before they leave the application environment.

No security measure can guarantee absolute security.

8. Merchant choices and requests

Depending on applicable law and location, merchants or authorized users may have rights to request access, correction, deletion, or other handling of personal information associated with them.

Privacy and support requests can be sent to support@marleelabs.store.

9. Changes to this policy

We may update this policy when the app, legal requirements, Shopify requirements, or service providers change. The published policy will show its latest update date.