Order Desk privacy policy
Last updated 30 August 2026
Order Desk reads purchase orders a merchant gives it and turns them into
Shopify draft orders. This page says exactly what it holds to do that, for
how long, and what it never does.
What Order Desk stores
- Your product catalog. Titles, variants, SKUs, barcodes,
prices, image URLs, stock levels, and a numeric representation of each
product name used for matching. Synced from your store.
- The documents you give it. The text of every order you
paste or upload, and the lines it read out of them, so you can check a
match against what the document actually said.
- Corrections you make. When you fix a match, the phrase
and the product you chose are kept. This is what makes the app more
accurate the longer you use it.
- A customer reference, when you pick one. The Shopify ID
of the customer or company an order is billed to, and its name as shown on
screen, so the draft order can be attached to them.
- Your shop's access token, which is what lets the app
talk to Shopify on your behalf.
What it does not store
- No payment details, ever. Billing is handled entirely by Shopify; Order
Desk is told only whether a subscription is active.
- No customer addresses, phone numbers or order history. The customer
picker reads them from Shopify while you search and keeps only the ID of
the one you choose.
- No prices of its own. Draft orders are sent with the product and the
quantity only, so your own catalog prices apply.
Who else sees it
Reading a messy order needs a language model, so the text of the order
document and candidate product names from your catalog are sent
to the model provider Order Desk uses (currently Google Gemini, with Groq as
a fallback). Nothing else is sent: not your access token, not customer
records, not prices. Providers are used through their API, and their terms
govern that processing.
Order Desk sells nothing to anybody, and shares data with no advertiser,
broker or analytics network.
How long it is kept
- Orders and their documents: ninety days, then they are
deleted automatically. Discarding one deletes it and its lines
immediately, without waiting.
- Corrections: kept while the app is installed, because
they are what the app has learned about your buyers' wording.
- Everything: deleted within 30 days of uninstalling,
when Shopify sends the
shop/redact request. Order Desk
handles the three mandatory requests - customer data request, customer
redaction, and shop redaction - and clears your access token the moment
it is told the app was uninstalled.
Your requests
If a customer of yours asks what Order Desk holds about them, or asks for it
to be erased, Shopify forwards that to us and it is handled automatically.
You can also ask us directly at
support@fulfillmate.co, and we will
answer within 30 days.
Where it runs
Order Desk runs on infrastructure in the United States. Data is encrypted
in transit. If you are in the EEA or the UK and need a data processing
agreement, write to us and we will provide one.
Changes
If this policy changes in a way that affects what is collected or who sees
it, the date at the top changes and merchants with the app installed are
told before it takes effect.