Makewright Configurator (“Makewright,” “we,” or “the app”) is operated by Parallel Studio LLC. It helps Shopify merchants sell configurable and made-to-order products. This policy explains the information the app processes, why it is needed, and the choices available to merchants and their customers.
Information we process
We process only information needed to provide and secure the configurator workflow:
- Merchant and store information, including Shopify store identifiers, store name, contact and notification email, installation status, subscription state, and app settings.
- Product and workflow information, including product identifiers, configuration templates, option and pricing rules, theme diagnostics, and draft-order or order references.
- Shopper-submitted quote information, which can include name, email, phone, company, configuration choices, project notes, messages, and uploaded specification files.
- Operational information such as configurator events, quote status, timestamps, delivery results, security events, and audit records. We do not collect payment-card details.
How we use information
We use this information to render and price configurators, route configurations to Shopify checkout or quote review, notify the merchant and shopper, create Shopify draft orders, connect paid orders to their specifications, prevent abuse, troubleshoot the service, and satisfy legal or Shopify platform requirements. We do not sell personal information or use it for behavioral advertising.
Merchant and customer roles
The Shopify merchant determines why shopper information is collected and is generally the controller of that information. Makewright processes it for the merchant to provide the service. Shoppers should contact the merchant first about a quote, correction, access, or deletion request. Merchants can also contact us for assistance.
Service providers
We use a limited set of providers to operate the service:
- Shopify for app authentication, product data, billing, checkout, and order workflows.
- Railway for application hosting, the PostgreSQL database, and operational logs.
- Supabase for private file storage.
- Resend for transactional quote and merchant-notification email.
These providers process information on our behalf under their own security and privacy commitments. Information may be processed in the United States or other locations where these providers operate.
Retention and deletion
Merchants can delete customer details and files from a quote while retaining non-personal operational records. Files attached to rejected or expired quotes are eligible for deletion after the configured retention period, currently 90 days. We process Shopify’s mandatory customer-data, customer-redaction, and shop-redaction webhooks. When Shopify directs us to redact a shop, its templates, configurations, quotes, files, sessions, and subscriptions are deleted; a minimal non-personal audit record may remain to demonstrate completion.
Security
Data is transmitted over encrypted connections. Production data and private uploads are stored with access controls. Daily database backups are additionally encrypted with an app-held key, verified as readable archives before upload, stored in private object storage, and removed after the documented retention window. App requests and Shopify webhooks are verified, uploaded files are validated before use, and merchant data is scoped by Shopify store. No internet service can guarantee absolute security.
Your choices
Merchants can export or delete information from the app and can uninstall it through Shopify. To request access, correction, deletion, or another privacy action, contact the relevant merchant or email us. We may need to verify the request and the Shopify store before acting.
Changes and contact
We may update this policy as the service or applicable requirements change. Material changes will be reflected by a new effective date. Questions and requests can be sent to ggray225@gmail.com.
Parallel Studio LLC, 4532 Washburn Ave S, Minneapolis, MN 55410, United States