sico

Ops Console — privacy notice

Last updated: 2026-04-27. App-specific addendum to the main privacy notice.

Ops Console is a Shopify app for profit reconciliation, inventory management, and purchase-order workflow. The merchant is the data controller; sico is the data processor.

1. Shopify scopes we request

Each scope is requested only because the corresponding feature requires it; we do not pre-request scopes for unimplemented features.

2. What we read from your shop

SourceExamplesWhere it goes
Products and variantstitle, SKU, price, cost, inventory item idlocal mirror for inventory and margin views
Inventory levelsper-location stock countssame; updated incrementally via webhooks
Ordersline items, totals, refunds, fulfillment status, customer journey UTMsorders cache used for velocity and attribution
Customer journeylanding site, referring site, UTM parameters on the orderlast-touch + time-decay attribution writer

We do not pull individual customer profiles or contact information beyond what arrives attached to an order.

3. What we write back

4. Third-party processors used by this app

ProcessorWhyWhat flows out
Meta Marketing APIad-spend sync for margin moduleread-only; nothing written
Google Ads APIad-spend sync for margin moduleread-only; nothing written
Resendpurchase-order emails to your suppliersyour supplier email + PO content
Anthropic"why this reorder" narratives, fired only when you click the buttonformula inputs only — no PII

Billing is via Shopify Billing only — no payment data flows to sico or any non-Shopify processor.

5. Customer-level rights (GDPR Art 15 / 17 / 20)

Shopify forwards customers/data_request, customers/redact, and shop/redact webhooks to us. We honour all three within the statutory window. Customers should normally contact you (the merchant) first; you may forward a request to us at privacy@sico.software and we will execute against our copy of the data.

6. Uninstall

On uninstall, we revoke our Shopify access token, generate a portability pack (JSON + CSV per table) within minutes, and email the link to the shop owner. Your data remains for 48 hours as a recovery window, then is hard-deleted. Audit and compliance evidence rows are retained per the windows in the main retention table.

7. Sub-processors and international transfers

Hosting is in Falkenstein, Germany (Hetzner Cloud). Stripe, Meta, Google, Anthropic, and Resend are EU/EEA-adequate or operate under Standard Contractual Clauses. The full processor list is in the main privacy notice.