Skip to content
RewardKit

Sections

OverviewWhat we collectHow we use itRequired informationEmail & marketingBrowser storageSharing & providersRetentionUninstalling & deletionYour rightsSecurity & safeguardsChanges & contact
PrivacyTerms

Privacy policy

Last updated: September 10, 2026

Who this policy covers

This policy covers the RewardKit website, Shopify app, and storefront games, quizzes, and rewards. “We,” “us,” and “our” mean the operator of RewardKit. A “merchant” is a business using RewardKit on its Shopify store. A “shopper” is a person who uses a RewardKit feature on that store.

For merchant account information, website operation, and communications sent directly to us, RewardKit decides why and how information is used. Where data protection law uses the term, we are the controller of that information.

For shopper information used to run a merchant’s campaigns, the merchant decides the purpose and RewardKit processes information on its behalf. The merchant is the controller and RewardKit is its processor. The store’s privacy policy explains the merchant’s own uses, including purchases and marketing. This policy does not replace that notice or Shopify’s privacy policy.

Information we collect and where it comes from

  • Store and staff information. Shopify provides the store domain, currency, time zone, permissions, and authorization records. App sessions can include the signed-in staff member’s Shopify identifier, name, email, role, and language. Merchants provide campaign settings, offer terms, quiz content, and selected products.
  • Game participation. We receive a browser credential scoped to the store, game actions, progress, results, participation times, and the campaign and offer associated with a play. We store a protected fingerprint of the credential to recognize participation and prevent duplicate rewards. A Shopify customer identifier or email fingerprint can be associated with a play when the shopper signs in, verifies an address, or requests an email.
  • Quiz matches. Answers are processed in the shopper’s browser to select products. RewardKit does not send the answer selections to its server or save them to the shopper’s customer profile. If the shopper asks to email their matches, we receive the selected product identifiers and store the message needed to deliver those matches and any eligible reward.
  • Rewards. We process eligibility, claims, delivery status, discount codes, reward amounts and currencies, and related Shopify reward records. Store-credit and gift-card claims use the signed-in customer’s identifier. Gift-card codes stored for recovery are encrypted.
  • Email and consent. We receive an address when a shopper requests verification, saved matches, or a marketing signup. Records can include the customer identifier, an email fingerprint, request and delivery times, consent wording, language, and subscription status. Email fingerprints remain personal data when they can be linked to a person; they are not anonymous.
  • Orders and reward interactions. Shopify provides order identifiers and order reference names, dates, customer identifiers when present, currency, order amounts, payment and refund status, and reward-code information for reporting. With the store’s analytics permission, we also record the first time a shopper opens an earned-reward reminder, starts a reward shopping action, or successfully adds a gift for a qualifying play.
  • Support and technical information. We receive information you include in support or privacy requests. Requests to our website and service expose connection information, such as IP address, browser information, request time, and requested resource, to our hosting provider. Operational records include processing times, delivery attempts, and error categories.

Product features also read the merchant’s selected catalog, prices, and availability. Gift redemption checks cart items, quantities, prices, currency, and applied discounts in the browser. RewardKit does not collect payment-card numbers or Shopify account passwords.

Why we use information

We use store and staff information to authenticate access, connect Shopify, save settings, and run campaigns. We use participation and reward information to resume games, apply the published rules, prevent duplicate or fraudulent claims, issue rewards, and recover eligible rewards. Product and cart information helps show matches and check the conditions for adding a gift.

We use email information to send a message the shopper requested and, only when separately chosen, pass a marketing subscription to the merchant. Order information connects reward codes to orders and refunds. Optional interaction records help merchants understand whether shoppers open and use earned rewards. These reports do not prove that RewardKit caused a purchase or increased sales.

We use support, security, and privacy records to answer requests, investigate failures or misuse, protect access, and meet legal obligations. The app does not send shopper information to advertising networks or build advertising profiles across stores.

Required information and choices

The merchant is responsible for choosing and explaining the legal grounds for its shopper processing and for collecting any required consent. Installing RewardKit or accepting its terms is not a shopper’s consent to marketing or optional analytics.

You can browse the website without opening a merchant account. Shopify authorization and store details are needed to run the app. Browser participation data is needed to run and recover a game; refusing it can prevent those features from working. Emailing matches and joining a marketing list are optional. Account-based rewards require sign-in so we can identify the person receiving the reward.

Requested emails and marketing choices

Asking to email matches creates or finds a customer profile in the merchant’s Shopify store and requests one message. It does not sign you into an account or subscribe you to marketing. The message can contain selected products, an eligible reward and its terms, and links back to the store. Gift-card codes and browser access credentials are not included in these emails.

Marketing signup is a separate, optional choice. It is not required to play or receive a reward. When you choose it, RewardKit records the choice and updates the merchant’s Shopify marketing preference. The merchant sends and controls its marketing emails.

Use the unsubscribe link in the merchant’s marketing emails or contact the store to withdraw marketing consent. Withdrawing consent does not make earlier lawful processing unlawful. A requested verification or saved-match message is separate from a marketing subscription.

Browser storage and analytics choices

RewardKit uses browser storage on the merchant’s store to make the features you open work:

  • Participation and recovery: local storage keeps a store-scoped visitor credential with a 30-day validity period. Email-verified participation sessions last 24 hours after verification; verification codes last 10 minutes. The app can also read existing session-storage credentials. If storage is blocked, some features work only on the current page.
  • Quiz progress: session storage remembers the current quiz, answer selections, and step for 30 minutes after the last answer or step change. It is limited to that tab and store. The record contains no customer identifier or reward code.
  • Reward reminders: local storage remembers a dismissed reward reminder for the remaining participation session.
  • Gift-cart recovery: local storage records an unresolved gift-add attempt so a retry does not add another gift accidentally. The marker is removed when the gift is confirmed in the cart or you clear the store’s site data; it has no fixed expiry.

A credential’s expiry stops it being accepted; it does not mean every stored browser record or associated server record is deleted at that moment. Clearing the store’s site data removes browser records and can remove access to anonymous progress and rewards. Signed-in customers can recover supported account-based rewards through their account.

The optional reward-interaction measurements described above are sent only when Shopify’s Customer Privacy API allows analytics. If that permission is unavailable or denied, RewardKit does not send those measurements. Use the store’s privacy controls to change that choice. Core game, reward, and order processing is separate from these optional measurements.

The RewardKit landing website does not add advertising pixels or a marketing analytics service. Fonts are served locally or through Shopify’s content delivery network, which receives the connection information needed to serve them. Shopify and individual stores manage their own cookies and other tracking technologies.

Who receives information and where it is processed

The merchant receives campaign results, reward activity, customer subscription records, and reward-order reports for its store. Shopify handles store authorization, customer profiles, products, discounts, credit, gift cards, checkout, and orders. Information written to Shopify becomes part of the merchant’s Shopify records.

RewardKit uses Railway to host its application and database in the United States. When the email feature is enabled, Resend receives the destination address and message contents to deliver requested matches and verification messages. These providers process information for the services they supply; their own legal obligations can also apply.

Information may therefore be processed outside your country. Local privacy protections may differ. You can request information about the locations and transfer arrangements relevant to your data through our contact details below. The app’s hosting location alone does not establish that a particular international transfer safeguard applies.

How long information is kept

Different records serve different purposes. The following periods describe RewardKit’s application records, not the merchant’s independent Shopify records or a provider’s own records.

  • Store, campaign, play, reward, and consent records: retained while the store remains installed unless removed through an applicable privacy request. A campaign ending or a visitor credential expiring does not automatically delete these records. They support reward recovery, activity history, and evidence of offers and consent.
  • Order reports: scheduled cleanup removes order snapshots when the order placement date is more than 30 days old. This does not delete the associated game, reward, or consent record.
  • Data-access records: we record the staff or operator identifier, store, time, and area accessed for security review. These records contain no customer exports, email contents, or reward codes. Scheduled cleanup removes them after 180 days; store-specific entries are removed with the store’s records.
  • Saved-match emails: message contents are removed after the email provider accepts the message, delivery fails permanently, or the delivery window ends. That window is at most 23 hours from the request and can end sooner when an included reward expires. Scheduled cleanup removes request records without marketing consent after 30 days. For consent-linked requests, product lists and browser/request fingerprints are cleared after 30 days; subscription evidence remains with the consent record.
  • Verification: expired verification challenges, expired verified sessions, and expired request-limit records are removed by scheduled cleanup.
  • Database backups: daily encrypted copies are held in private storage. Scheduled cleanup keeps up to seven daily copies within a seven-day window. Backups are restricted to recovery; completed erasure requests must be reapplied before restored data returns to service.
  • Deletion evidence: minimal customer and order identifiers and deletion times remain while the store is retained to prevent erased order information from being imported again. Completed privacy-request records can retain request status and dates after customer identifiers are removed.
  • Support correspondence, downloaded exports, and provider records: these are outside the application’s automatic cleanup. These copies are managed separately from the RewardKit database. The application does not set or enforce a deletion period for them.

Scheduled deletion runs in the background and can be delayed by a service failure. Deleting live application data is not a promise of immediate deletion from separately retained provider logs or any backup copies. Contact us about a specific request so those copies can be considered too.

Uninstalling and deleting data

Uninstalling ends the app’s access to the store. It does not itself erase every record immediately. Shopify sends a separate store-deletion request, which starts removal of the store’s RewardKit records. Customer deletion requests remove the matched participation, rewards, verification, email, and consent records, subject to the limited deletion evidence described above.

Deletion can require identity checks or resolution of a pending gift-card or credit issuance before its local evidence can safely be removed. A technical delay does not remove our obligation to handle the request within the applicable deadline.

Deleting RewardKit data does not automatically revoke an issued Shopify discount, gift card, or credit balance, delete the merchant’s Shopify customer profile, or erase information the merchant has exported. It can remove RewardKit’s ability to recover an anonymous reward or display a stored gift-card code. Contact the merchant about outstanding rewards and its own records.

Your choices and privacy rights

Depending on the law that applies, you may request access to or a copy of your personal information, correction, deletion, restriction of use, or transfer of information in a portable format. Where processing depends on consent, you may withdraw it.

You may object to processing based on legitimate interests, and you may object to direct marketing at any time.

Shoppers should contact the store where they used RewardKit. The merchant can request access or deletion through Shopify and use RewardKit’s Customer privacy page to handle the response. If you contact us directly about shopper data, identify the store so we can route the request to the responsible merchant. For merchant account information or communications you provided directly to RewardKit, contact us below.

We may ask for information proportionate to verifying your identity or an authorized representative’s authority. Do not send passwords, complete gift-card codes, or unrelated identification documents. We respond within the deadline required by applicable law and explain any lawful refusal, limitation, or extension. Where applicable law provides an appeal, you may appeal a refused request.

You may complain to your local data protection authority without contacting us first. UK residents can contact the Information Commissioner’s Office; EEA residents can contact their national supervisory authority. Exercising privacy rights does not result in a penalty, although deleting information necessary for a feature can make that feature unavailable.

Security, children, and automated results

RewardKit uses store-scoped access checks, verification of Shopify requests, protected browser and email fingerprints, and encryption of stored gift-card recovery codes. No online service can guarantee that every transmission or stored record will remain secure. Report a suspected disclosure through our support contact and avoid including the exposed secret in the report.

The merchant controls the audience for its campaigns and must apply any age restrictions and parental-consent requirements relevant to its store and promotions. Contact the store or us if a child’s information has been submitted improperly so it can be investigated and removed where required.

Quiz matches follow the products and matching rules chosen by the merchant. Game results and published eligibility rules automatically determine whether a reward can be claimed; duplicate-play and availability checks can prevent a claim. RewardKit does not use these results to make lending, employment, or similarly significant decisions about people. Contact the merchant if you believe a reward decision is wrong.

Changes and contact

We update this policy when our practices or obligations change and show the revision date above. For a material change affecting existing users, we will provide notice through the app or an available merchant contact before the change takes effect, unless an earlier change is required by law. Where a new use requires consent, we will obtain that consent before beginning it.

Privacy and support: rewardkit@storesonlive.com.

For help with a request, see Support. Include the store address and the type of request. Questions about purchases, marketing emails, and honoring rewards belong with the merchant.

SupportSetup guidePrivacyTerms
© 2026 RewardKit