Privacy Policy

Last Updated: July 9, 2025

Overview

Lumero ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Shopify application ("Lumero AI Recommendations") that provides an AI-powered product discovery platform with guided exploration and intelligent product recommendations for Shopify stores.

Information We Collect

1. Store Information

When you install Lumero, we collect:

  • Shop domain and basic store details

  • Access tokens for API communication with your Shopify store

  • App installation and configuration data

  • Subscription and billing information

2. Product Data

To provide our AI-powered discovery functionality, we process:

  • Product information (titles, descriptions, images, variants, pricing)

  • Product metadata and custom fields

  • Inventory status and availability

  • Product categories and tags

3. Discovery and Usage Analytics

We collect aggregated, anonymized usage data including:

  • Discovery queries and interactions with discovery chips

  • Product discovery patterns and guided exploration paths

  • App performance metrics and error logs

  • Feature usage statistics for product improvement

4. Technical Information

For app functionality and security:

  • IP addresses for rate limiting and security

  • Session data for authentication

  • Browser and device information for compatibility

  • Error logs for troubleshooting

How We Use Your Information

Primary Purposes

  • Product Discovery: Process your product catalog to enable AI-powered discovery and intelligent recommendations

  • Service Delivery: Provide discovery functionality, guided exploration chips, and quick-view modals

  • Usage Tracking: Monitor API requests and feature usage for billing and plan limits

  • Performance Optimization: Improve discovery accuracy and response times

Secondary Purposes

  • Analytics: Generate anonymized insights about customer discovery patterns

  • Support: Troubleshoot issues and provide customer assistance

  • Compliance: Meet legal obligations and security requirements

  • Service Improvement: Enhance features and develop new functionality

Data Processing and Storage

We use industry-standard security measures and trusted cloud infrastructure to process and store your data:

  • Secure Processing: Product information is processed using advanced AI technology to enable intelligent discovery and product matching

  • No Personal Data: Customer personal information is never included in our AI processing systems

  • Shopify Integration: All data access follows Shopify's security standards and API guidelines

Data Sharing and Disclosure

We Do NOT Share

  • Customer personal information (names, emails, addresses)

  • Individual purchase data or order details

  • Store-specific analytics with other merchants

  • Proprietary business information

Limited Sharing

We may share aggregated, anonymized data for:

  • Industry research and benchmarking (no store identification)

  • Service providers necessary for app functionality

  • Legal compliance when required by law

Security Measures

  • Encryption: All data transmission uses TLS/SSL encryption

  • Access Controls: Strict authentication and authorization

  • Data Minimization: We only collect necessary information

  • Regular Security Audits: Ongoing security assessments

Your Rights and Choices

Access and Control

  • View your data: Contact us to request information about data we've collected

  • Update settings: Modify app configuration through the admin interface

  • Export data: Contact support for data export assistance

  • Delete data: Contact us to request deletion of your information

Data Retention

  • Active installations: Data retained while app is installed

  • Post-uninstall: Shop data deleted within 48 hours (as per Shopify requirements)

  • Analytics: Anonymized usage data may be retained longer for service improvement

  • Legal requirements: Some data retained as required by law

Shopify Integration and Compliance

Mandatory Webhooks

We implement all required Shopify privacy webhooks:

  • Customer Data Requests: Handle customer data export requests

  • Customer Data Deletion: Process customer data deletion requests

  • Shop Data Deletion: Remove all shop data upon uninstallation

Cookies and Tracking

Essential Cookies

  • Authentication: Secure login and session management

  • App functionality: Necessary for core features

  • Security: Protection against unauthorized access

Analytics Cookies

  • Usage tracking: Anonymized app performance data

  • Feature analytics: Understanding of feature adoption

  • No third-party tracking: We do not use external analytics platforms

International Data Transfers

  • Data residency: Data stored in secure, compliant data centers

  • Transfer safeguards: Appropriate protections for international transfers

  • Regional compliance: Adherence to local data protection laws

Children's Privacy

Lumero AI Recommendations is intended for business use and not directed at individuals under 13. We do not knowingly collect personal information from children under 13.

Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will:

  • Notify merchants of material changes via app notifications

  • Update the "Last Updated" date at the top of this policy

Contact Information

For privacy-related questions or requests:

Email: privacy@lumero.dev Support: support@lumero.dev Website: https://lumero.dev

Data Protection Officer

For GDPR-related inquiries, email "support@lumero.dev" and include "GDPR" in the subject.

Shopify App Store Compliance

This privacy policy complies with Shopify's App Store requirements and guidelines. For additional information about Shopify's privacy practices, please review the Shopify Privacy Policy.


This privacy policy demonstrates our commitment to transparency and data protection. We continuously review and improve our privacy practices to ensure the highest standards of data security and user trust.

Last updated