Data controls
Data Controls
How Shopify brands and ecommerce teams can manage access, store context, AI processing, exports, deletion, and privacy rights in Conqur AI.
Last updated: May 2026
01
Overview
This Data Controls page explains the choices available to Shopify brands, agencies, workspace administrators, and users who connect stores or business systems to Conqur.
Conqur is designed to help teams make store changes with clear permissions, human review, and retrievable records. The exact controls available to you depend on your plan, role, Shopify permissions, connected integrations, and applicable law.
02
Workspace and access controls
Workspace owners and authorized administrators can invite or remove users, manage roles, review connected stores, adjust integration access, and decide which team members may request, preview, approve, or publish work through Conqur.
Your organization is responsible for configuring access in Conqur, Shopify, and connected apps so that each user has appropriate permissions for their role. We recommend limiting production publishing access to users who are authorized to act for the store.
03
Shopify store data
When you connect a Shopify store, Conqur may process store metadata, theme files, templates, sections, product and collection context, app configuration signals, storefront screenshots, performance information, analytics context, prompts, approvals, and change history as needed to provide the service.
Conqur does not need every category of Shopify data for every workflow. Access should be scoped to the permissions required for the features you use, and you can disconnect integrations or request deletion of retained store context as described below.
04
Buyer and customer data
Conqur is built primarily for store operations, merchandising, theme work, QA, and growth workflows. We aim to minimize processing of buyer personal data unless it is needed for a feature you enable, a connected system you authorize, support, security, or a legal requirement.
If a Shopify customer submits a privacy request to your brand, you remain responsible for handling that customer request through Shopify and your own privacy program. Where Conqur receives a valid Shopify compliance webhook or verified instruction related to customer data, we will process it according to our obligations and technical retention practices.
05
AI processing controls
Conqur may process prompts, store context, screenshots, theme code, content, diagnostics, and workflow feedback to generate suggestions, previews, edits, explanations, and monitoring results.
Customers can choose what context to provide, avoid placing unnecessary personal data in prompts, review proposed changes before production use, and contact us about available options for data retention, product-improvement use, or workspace-specific restrictions.
We do not sell personal data. Where we use third-party AI or cloud providers, they act as service providers or processors for the service unless a separate agreement says otherwise.
06
Preview, approval, and publishing controls
Conqur is intended to support human-reviewed ecommerce workflows. Teams should preview, test, and approve AI-generated code, content, configuration changes, and operational recommendations before applying them to a live store.
Depending on the workflow, Conqur may preserve prompts, generated output, reviewer actions, timestamps, connected store identifiers, and implementation status so administrators can review how a change was created and approved.
07
Access and export requests
You may request access to personal data associated with your account or available workspace records by contacting support@conqur.ai. Workspace-level exports may require approval from the workspace owner or another authorized administrator.
We may need to verify your identity, confirm your authority to act for a workspace or store, and exclude information that we cannot disclose because of another person's privacy, security, confidentiality, or legal obligations.
08
Correction and updates
You can update certain account, profile, and workspace information in the product where those controls are available. You can also ask us to correct inaccurate personal data we maintain about you.
Store data that originates from Shopify or a connected app should usually be corrected in the source system first. Conqur may then refresh or resync that information based on the integration behavior and available product controls.
09
Deletion and disconnecting stores
Authorized administrators may disconnect a store or integration. You may also request deletion of account data, retained store context, workflow history, or other personal data by contacting us.
Deletion may be limited by active contracts, billing records, tax and accounting requirements, legal obligations, dispute records, security logs, abuse-prevention needs, backup cycles, and information needed to preserve an accurate change history for your organization.
If you uninstall a Shopify app or Shopify sends Conqur a valid shop or customer data erasure request, we will handle applicable retained data according to Shopify platform requirements, our retention practices, and applicable law.
11
Regional privacy rights
Depending on where you are located, laws such as the GDPR, UK GDPR, Swiss privacy law, CCPA/CPRA, and similar privacy laws may provide rights to access, correct, delete, restrict, object to processing, receive a portable copy of personal data, withdraw consent, opt out of certain sharing, or limit certain uses of sensitive data.
These rights are not absolute and may depend on your role, location, relationship to Conqur, whether Conqur acts as a controller or processor for the data, and whether the request concerns your account, your organization's workspace, or a Shopify buyer request directed to a merchant.
12
How requests are verified
To protect stores and personal data, we may ask for information needed to verify your identity, confirm your email address, authenticate your account, validate workspace authority, or coordinate with the relevant Shopify merchant or workspace administrator.
We will use the information provided for verification to process the request, protect the service, prevent fraud or unauthorized access, and maintain records required by law.
13
Response timing
We aim to respond to privacy and data-control requests within the time required by applicable law. Some requests may take longer if they are complex, involve multiple systems, require administrator confirmation, or concern data held by a connected third-party platform.
If we cannot fulfill all or part of a request, we will explain the reason where required and permitted by law.
14
Relationship to other policies
This page supplements our Privacy Policy and Terms of Service. If a written agreement, data processing addendum, order form, or enterprise contract applies to your organization, that agreement may provide additional controls or procedures.
15
Contact
To request access, correction, deletion, export, restriction, objection, or another privacy-related control, contact support@conqur.ai. Include the email associated with your Conqur account, your workspace or store name if relevant, and enough detail for us to understand the request.