Privacy Policy
This policy describes the personal data AppFly processes, which is much smaller than you may expect: AppFly is a developer tool, it never reads your store's customers, and most of what it holds belongs to your company rather than to a person.
Please read this firstAppFly is a developer tool. These documents describe what the software does and what it does not do with data, and they are written to match the code in this repository. They are not a substitute for review by a qualified lawyer in your jurisdiction before you rely on them in a commercial agreement.
Who is responsible
For a store owner using AppFly to build their own app, you are the controller of your app's data and we are your processor; the Data Processing Agreement covers that relationship.
For your own account data — your email address, your sign-in, your billing record — we are the controller and you are the person whose data it is.
What we collect about you
Account: your email address, a scrypt hash of your password if you chose one, your connected sign-in identities, your session records, and the date you signed up. We store a hash, never the password, and sessions are revocable server-side — signing out invalidates the cookie rather than merely deleting it.
Billing: your customer identifier at our payment processor, the plan you are on, and its status. Card numbers go to the processor and never reach us. We keep what the processor gives us back, which is enough to restore your plan and to show you an invoice.
Technical: the IP address and user agent on each request, kept for security and abuse handling rather than for advertising. There are no third-party trackers on this site and no advertising cookies.
What we store about your work
Your apps and their content. The description you give, every follow-up message, the files an agent writes, the database schema and the data your own app accumulates. This is the product working, not surveillance: without it there is no app.
Build logs. Command output from the container while a build runs, kept to make a failed build diagnosable and to let you read what happened. Logs are not used to train anything.
Secrets you attach. Provider keys, tokens and environment values are encrypted at rest with AES-256-GCM under a key this deployment holds, and only the last four characters of any secret are ever returned to a page. They are written into your app's own environment file, which is the only place that can use them.
What we do not collect
Your store's customers. AppFly never reads the customers, orders or PII in your Shopify store. Its access scopes do not include them. When Shopify sends us a customer data request or a customer redaction — which we are required to handle — there is nothing held to hand back or to erase, and we reply saying exactly that.
Your customers' data inside your app. Data your generated app collects belongs to you and stays in that app's own database, which only that app's login role can reach.
How long we keep it
Account and app data is kept while your account exists. When you delete an app, its container, database, files, deployment and DNS record are deleted with it, and the row is removed last so that a failure anywhere in the teardown is retried rather than leaving an orphan.
When you uninstall AppFly from Shopify, everything belonging to your shop is erased within 48 hours, and a scheduled sweep runs alongside the uninstall handler so a missed event does not leave data behind.
Security logs are kept for up to 12 months. Backups roll off over 30 days. Billing records are kept for as long as tax law requires.
Who else sees it
Your payment processor, for the charge and the invoice.
Shopify, for the embedded app's installation, its scopes and its uninstall and compliance webhooks.
The AI provider you connected, because the agent's prompts are sent to it to produce code. If you connect OpenCode with an OpenRouter key, your prompt goes to OpenRouter and then to whichever model it routes to. That is the account you chose, under its terms.
Our infrastructure providers, the host and the container runtime that run your builds. They process data only on our instructions.
We do not sell personal data, and we do not share it for anyone else's advertising.
Your rights
You can see and change your account data from the account page in the app, export an app's files and database at any time, and close your account outright. To request a copy of the personal data we hold about you, or its deletion where you are not entitled to self-serve, email hello@appfly.si and we will answer within 30 days.
If you are in the EEA or the UK you also have the rights to portability, rectification, erasure, restriction and objection, and to complain to your supervisory authority. Exercising any of them is free. We do not discriminate against you for exercising one.
This site sets no advertising or analytics cookies. It sets one strictly necessary cookie to keep you signed in, and the Terms of Service govern what that account is for.
Security
The short version is on the security page. The long version, including our retention and deletion schedule, is in the Data Processing Agreement.
Changes and contact
We will post any change to this policy here and change the date at the top. Questions, requests and complaints go to hello@appfly.si.