PayDesign
Privacy Policy
Effective August 22, 2026
Overview
PayDesign (“we”, “us”, or “our”) is a Shopify app that lets merchants move Cash on Delivery to the top of the payment method list at checkout. This policy describes what information we collect, how we use it, and the choices merchants have when they install or use the app.
Information we collect
When a merchant installs PayDesign, we receive and store information needed to operate the app on their store:
- Shop domain and shop identifier supplied by Shopify during installation.
- OAuth credentials issued by Shopify so the app can authenticate with the store.
- Basic installation metadata maintained by our application (for example, install time and billing plan state).
When a merchant uses App Home inside the Shopify admin, payment customization settings are read and updated through Shopify’s Admin API using the merchant’s own admin session. Those requests go directly from the merchant’s browser to Shopify; our servers do not receive checkout or payment method details from those calls.
The checkout function deployed with this app runs entirely on Shopify’s infrastructure. It inspects payment method display names at checkout to identify Cash on Delivery and reorder methods. It does not read merchant configuration, metafields, or customer personal information.
Information we do not collect
PayDesign is designed to minimize data collection. We do not collect or store:
- Customer names, email addresses, phone numbers, or shipping addresses.
- Order contents, order history, or payment card data.
- Product catalog data.
If our practices change and we begin storing Shopify customer or order data, we will update this policy before doing so.
How we use information
We use the information described above only to:
- Provide, secure, and maintain the app for installed merchants.
- Authenticate the app with Shopify and honor uninstall or compliance requests from Shopify.
- Respond to support requests and operational issues.
- Meet legal and regulatory obligations.
We do not sell merchant or customer personal information.
Shopify API access
PayDesign requests access to the following Shopify Admin API scopes: read_payment_customizations and write_payment_customizations. These scopes are used solely to show whether the Cash on Delivery customization is active and to create or update the payment customization record that enables the checkout function.
Data retention and deletion
We retain shop installation data for as long as the app remains installed on a store. When a merchant uninstalls PayDesign, we process Shopify’s uninstall notification and remove associated shop data from our systems, subject to limited backup retention described below.
Shopify may also send mandatory data subject or shop redaction requests. We honor those requests in accordance with Shopify’s requirements.
Service providers
The app is hosted on Laravel Cloud. Infrastructure providers may process technical log data (such as IP addresses and request timestamps) needed to deliver and secure the service. Those providers process data on our behalf and only as necessary to operate the app.
Security
We use industry-standard measures to protect stored credentials and limit access to production systems. No method of transmission or storage is completely secure; please contact us if you believe your store’s app data has been compromised.
Children’s privacy
PayDesign is a business application for Shopify merchants and is not directed to children.
Changes to this policy
We may update this privacy policy from time to time. When we do, we will revise the effective date at the top of this page. Material changes may also be communicated through the app listing or other reasonable notice to merchants.
Contact us
Questions about this privacy policy or our data practices can be sent to miraj.net.xp@gmail.com.