Privacy Policy
Last updated 3 September 2026
Who this covers
RevenueRadar (“the app”) is a Shopify application operated by Rank Fast LLC, 1209 Mountain Road Pl NE, Ste R, Albuquerque, NM 87110, United States. This policy explains what data the app accesses, why, how long it is kept, and who it is shared with. It applies to merchants who install the app and to the Google accounts they choose to connect.
Questions or requests: hello@rajimulislamjoy.com.
Shopify data the app accesses
On install the merchant grants read access to the parts of their store the checks actually inspect. The app requests no scope it does not use:
- Products, collections and inventory — catalogue quality checks and availability monitoring.
- Orders — reduced to daily revenue totals at the moment of ingest. Individual orders, line items and customer records are never written to the app’s database.
- Themes — detecting theme changes and comparing before and after.
- Pages, blog posts, markets, discounts and translations — link crawling and configuration checks.
- Content write access — used solely to create URL redirects, and only when a merchant explicitly approves that fix.
Customer personal data
The app does not store customer personal data. Order data is aggregated into daily revenue figures at ingest, so no name, email address, shipping address or payment detail is persisted. Shopify’s mandatory customers/data_request and customers/redact webhooks are implemented and answer truthfully that no such data is held.
Google data the app accesses
Connecting Google is optional and the app functions without it. When a merchant connects an account, the app requests these scopes and uses them only as described:
analytics.readonly— reads session counts, conversion rate and per-page traffic from the one Google Analytics 4 property the merchant selects. Shopify’s Admin API does not expose storefront sessions, so this is the only way the app can report conversion. Read-only; the app never writes to, modifies or deletes anything in Google Analytics.webmasters.readonly— reads clicks and impressions per URL from the one Search Console property the merchant selects, so broken pages can be ranked by the organic traffic they were receiving. Read-only.
Before syncing, the app checks that the selected property actually covers the store’s domain and refuses to sync if it does not, so one merchant’s data cannot be attributed to another store.
Google user data is used only to produce that merchant’s own monitoring and reporting inside the app. It is never sold, never used for advertising, never used to train machine-learning models, and never transferred to any third party except the infrastructure providers listed below.
How data is stored and secured
Data is held in a PostgreSQL database hosted by Railway in its US West (San Francisco) region. Access tokens for Shopify and Google are encrypted at rest with AES-256-GCM and are never written to logs. Traffic is served over TLS.
Sub-processors
Data is processed by the following providers on the app’s behalf:
- Railway — application hosting, database and job queue.
- Google — Analytics, Search Console and PageSpeed APIs, when connected.
- Shopify — the merchant’s own platform and Admin API.
- [email provider used for alerts, if any]
- [AI provider, if the written brief is enabled]
Retention and deletion
Store data is retained while the app is installed. Uninstalling triggers Shopify’s shop/redact webhook, which deletes the store record and every row that cascades from it, along with all stored sessions.
A merchant can disconnect Google at any time from the app’s Integrations page, which deletes the stored Google tokens. Access can also be revoked directly at myaccount.google.com/permissions.
To request deletion of data outside of uninstall, contact hello@rajimulislamjoy.com.
Your rights
Depending on where the merchant is established, they may have rights to access, correct, export or erase their data, and to object to processing. Requests should go to hello@rajimulislamjoy.com and will be answered within 30 days. Governing law and jurisdiction: the State of New Mexico, United States.
Changes
Material changes to this policy will be posted here with an updated date, and where the change affects how Google or Shopify data is used, merchants will be notified in the app before it takes effect.