CatchSync Privacy Policy

Last updated: October 9, 2026

CatchSync (“we,” “us,” “our”) is a Shopify app built and operated by MoeZee Shop. This policy explains what data CatchSync accesses and stores when a merchant installs it, and what we do and don’t do with it.

What CatchSync does

CatchSync watches a store’s product prices and inventory levels, flags sudden changes from any app, feed sync or staff edit, and, when the merchant clicks Revert, restores the last known-good value.

What data we access

CatchSync requests the write_products and write_inventory access scopes. The write scopes are needed so a revert can restore a price or stock level. Through these we access:

  • Product and product variant IDs, titles, and prices
  • Inventory item IDs, locations, and stock quantities
  • The changes CatchSync flagged (anomaly history), with timestamps and status
  • The shop domain and shop-level app configuration (alert thresholds, protection mode, billing plan), plus the alert-recipient email address used on paid plans

What we don’t access

CatchSync does not request, access, or store customer personal data: no customer names, emails, phone numbers, addresses, or order contents.

How we store and process data

Data is stored only for the shop that installed CatchSync, kept only while the app is installed, and used only to provide CatchSync’s features. We use Railway for hosting and a managed database. The one other third party is Resend, which delivers anomaly-alert emails to merchants on a paid plan. Resend processes only the alert email’s contents (shop name, the flagged product and price change, and the alert-recipient email address), never customer data. We don’t sell data, share it with third parties for advertising or analytics, or use it to train AI or machine-learning models.

Where data is processed

CatchSync is hosted on Railway with a managed Postgres database. Alert emails are sent through Resend from an alerts.moezeeshop.com address.

Security

  • Data is encrypted in transit (HTTPS/TLS).

Data retention and deletion

When a merchant uninstalls CatchSync, we permanently delete all data associated with that shop (configuration, price and inventory snapshots, and anomaly history) within 30 days, automatically, via Shopify’s mandatory shop/redact webhook.

CatchSync also implements Shopify’s customers/data_request and customers/redact compliance webhooks. Because we don’t store customer data, these result in no data to return or erase, but the endpoints are live and respond correctly if triggered.

Your rights

Merchants (data controllers for their own store) and their customers can ask what CatchSync holds, or request deletion, at any time by contacting us.

Changes to this policy

If this policy changes, we’ll update the “Last updated” date above. Material changes to what data we collect or how we use it will also be communicated to installed merchants.

Contact us

Questions about this policy or CatchSync’s data practices: support@moezeeshop.com.