Privacy Policy

PDF Product Vouchers, operated by add-ons.org · Last updated 10 August 2026

PDF Product Vouchers is a Shopify app that issues gift vouchers and renders each one as a branded PDF. This policy explains exactly what the app reads, what it keeps, and for how long.

What the app reads from a store

The app requests three access scopes and no others:

ScopeWhat it is used for
write_discounts A voucher is redeemed with a Shopify discount code. This scope creates that code when a voucher is issued and deactivates it when one is cancelled. It is not used for anything else.
read_orders To read paid orders: whether a line item is a product the merchant has listed as a voucher, the recipient details entered at checkout, and whether a voucher’s code was spent on an order.
read_products Product titles and images in the picker where a merchant chooses which products are vouchers.

The app does not request read_customers, and it holds no gift card scopes. It cannot place an order, change a price, or alter anything in a store other than the discount codes it creates itself.

The app receives personal data about people who may not be customers of the store at all. A gift voucher is usually bought for someone else, so the name, email address and message the buyer supplies belong to a third party. That data is stored only to produce and deliver the voucher, and it is never used to market anything to that person.

What the app stores

DataWhyRetained
Shopify session and access tokenTo call the Shopify API on the store’s behalfUntil uninstall
Shop settings — shop name, business address, contact details, tax number, currency, locale, logo URL, brand colour, planTo render documents and apply the correct planUntil uninstall
The merchant’s SMTP password, encrypted with AES-256-GCMTo send a voucher from the merchant’s own mail serverUntil changed, cleared or uninstall
Voucher designs created in the appThey are the merchant’s own workUntil deleted or uninstall
Issued vouchers — the discount code, its value, currency, expiry and status, plus the recipient name and email address, the sender name and the gift message supplied when it was bought, and the order it came fromThe voucher has to be reprintable, re-sendable and accountable: it is money the store owes until it is spentUntil the customer is redacted, or uninstall
Usage events — a timestamp, what happened, and which design was usedMonthly usage counting and the in-app dashboardUntil uninstall

An issued voucher is a snapshot, taken once. The app never re-reads the order it came from afterwards, and it holds no payment details of any kind. The discount code itself is stored so the voucher can be reprinted; it is never written to a log, put in a URL, or included in a data-request export.

Requests the app makes to other services

The app sends no data to analytics providers, advertising networks or data brokers.

Billing

Paid plans are handled entirely by Shopify’s Billing API. Payment details are never seen, handled or stored by this app. The app records only which plan a store is on and how many vouchers it has issued in the current calendar month.

Deletion

Uninstalling the app stops all access immediately. On Shopify’s shop/redact request, the app permanently deletes everything it holds for that store — settings, designs, issued vouchers, usage events and sessions.

On Shopify’s customers/data_request, the app collects every voucher issued to that email address and makes it available to the merchant to pass on. The discount code is deliberately left out of that export: it is a bearer credential, and a data request is not a safe place to copy one.

On customers/redact, the recipient name, email address, sender name and gift message are erased and the voucher’s download link is revoked. The row itself is kept, because a voucher is money the store still owes until it is spent or expires — deleting it would erase a liability from the merchant’s books. Nothing identifying the person remains in it.

A merchant may also request deletion at any time through https://add-ons.org/contact/.

Security

Changes

If this policy changes materially, the date at the top of this page is updated and merchants are notified in the app before the change takes effect.

Contact

add-ons.org — https://add-ons.org/contact/