Privacy Policy
Effective Date: November 6, 2025
Last Updated: November 6, 2025
1. Introduction
Welcome to Laintern (“we,” “our,” “us”), a product developed by AstonicLabs, based in Rotterdam, the Netherlands.
Laintern is an AI agent for Shopify stores designed to assist customers and store owners with automated product recommendations and customer support.
This Privacy Policy explains how we collect, use, and protect your personal information when you use our Shopify app, our website (Laintern.com), or interact with our AI-powered chat features.
We comply with the Shopify App Store requirements, the General Data Protection Regulation (GDPR), and applicable privacy laws.
2. Information We Collect
We collect and process the following types of information:
a. Chat Data
- Messages, questions, and other content that users input into the AI chat.
- Chat context, such as timestamps, message flow, and conversation IDs.
- We do not train our AI models on customer data or use chat content to improve third-party models.
b. Store & Merchant Data
- Store identifiers such as the Shopify shop domain, merchant name, and contact email.
- App usage data related to the Shopify store (installation status, feature usage, subscription plan).
c. Behavioral & Analytics Data
- Information about how users interact with the app or website (e.g., pages visited, product pages viewed, search terms used).
- Technical data such as browser type, device, and IP address for diagnostic and performance purposes.
3. How We Use Your Information
We use collected information to:
- Operate and improve the Laintern app and website.
- Provide AI-driven chat and support functionality.
- Maintain chat session continuity and improve response accuracy.
- Send operational or support emails when necessary.
- Analyze aggregated usage trends to enhance user experience.
We do not sell, rent, or trade your personal information to any third parties.
4. Data Sharing and Third Parties
We share limited information only with trusted service providers who help us operate and maintain Laintern.
These include:
- OpenAI, which processes chat messages to generate AI responses. In some cases, these requests may be processed outside the EU.
- Fly.io, which hosts our servers and application infrastructure within the EU.
- Resend, which manages transactional email delivery and may handle user-related data.
- Shopify, which provides the authentication and installation framework for our app.
- Pinecone, which stores non-personal, vectorized product data for search and recommendation purposes.
All third-party providers are contractually required to comply with GDPR and may not use your data for any other purpose than to provide their service to us.
5. Data Transfers
We primarily process and store your data within the European Union.
However, in limited cases (for example, when OpenAI processes a chat request), data may be transferred outside the EEA.
In such cases, we ensure that appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) or equivalent protections.
6. Data Retention
We retain chat histories, merchant data, and store configuration data for as long as your Shopify account remains active or as required to provide our services.
Upon uninstallation or termination, data is securely deleted within a reasonable timeframe unless legal obligations require otherwise.
7. Your Rights
If you are located in the European Economic Area (EEA), you have the following rights under the GDPR:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request that we delete your personal data (“right to be forgotten”).
- Restriction: Request limits on how your data is processed.
- Portability: Request a copy of your data in a structured, machine-readable format.
You can exercise these rights by contacting us at hello@astoniclabs.com.
We will respond within the timeframes required by applicable law.
8. Data Security
We use industry-standard security measures to protect your data, including encryption, secure storage, and restricted internal access.
While no system can be completely secure, we continuously monitor and update our security practices to protect your information.
9. Compliance with Shopify and GDPR
Laintern follows the Shopify App Store requirements and adheres to all applicable GDPR obligations.
We act as a data processor on behalf of Shopify merchants and process end-user data only as necessary to provide our app’s functionality.
10. Changes to This Policy
We may update this Privacy Policy from time to time.
Any changes will be posted on Laintern.com with an updated effective date.
We encourage you to review this page periodically.
11. Contact Information
If you have any questions, concerns, or data requests, please contact us at:
📧 hello@astoniclabs.com
🏢 AstonicLabs, based in Rotterdam, Netherlands