SDI — Search Insights Install Free
Legal

Privacy Policy

Last updated: May 3, 2025 · Effective: May 3, 2025

This Privacy Policy describes how SDI — Search Insights ("we", "our", or "us") collects, uses, and handles information when you install and use the SDI Shopify application. By installing SDI, you agree to the practices described in this policy.

1. Information we collect

When you install SDI, we access the following information:

  • Store information: Your Shopify store domain and plan type, used to identify your account
  • Product catalog data: Product titles, handles, tags, and variants — synced via the Shopify API to match against search queries
  • Search event data: Search queries entered by shoppers on your storefront, along with anonymised session identifiers, device type, and country. We do not collect names, emails, or any personally identifiable information about your customers.
  • Click and cart events: Which products are clicked from search results and added to cart, linked to the originating search query via an anonymous session token
  • Billing information: Processed entirely through Shopify's billing API. We do not store payment card details.

2. How we use your information

We use store data solely to provide the SDI service:

  • To track search queries and calculate hit rate, miss rate, and cart conversion per query
  • To identify inventory gaps — categories with high search demand and no matching products
  • To generate AI-powered tag suggestions for your products based on real search patterns
  • To display analytics and insights in your app dashboard
  • To track your plan usage against your monthly search limit
  • To provide support when you contact us

3. Customer data

SDI does not store any personal customer data. Search queries are captured as plain text strings with no link to individual customer identities. Session tokens used to connect search, click, and cart events are anonymous and ephemeral — they are not tied to Shopify customer accounts or any personal identifiers.

4. Third-party services

SDI uses the following third-party services to operate:

  • Shopify: We operate as a Shopify app and access your store through the Shopify Partner API
  • Cloudflare: Search event data is stored and processed on Cloudflare's edge infrastructure (D1 database and Workers)
  • OpenAI: Search query embeddings are generated using OpenAI's API to power our ML clustering pipeline. Raw queries are sent for embedding but not used to train models.
  • Fly.io: Application servers and PostgreSQL database are hosted on Fly.io infrastructure with encryption at rest and in transit

We do not sell, rent, or share your store data with any third parties for marketing or advertising purposes.

5. Data security

We implement appropriate technical measures to protect your data, including:

  • Encrypted data transmission via HTTPS/TLS
  • Encrypted storage for access tokens and credentials
  • Access controls limiting who can access production systems

6. Data retention and deletion

Search event data is retained according to your plan tier (7 days on Starter, 90 days on Growth, 365 days on Scale and Enterprise). When you uninstall SDI, all store-level data — including products, pipeline results, tag suggestions, and billing records — is permanently deleted within 30 days, in compliance with Shopify's mandatory data deletion requirements. You may also request immediate deletion by contacting us.

7. Your rights

Depending on your location, you may have rights under applicable data protection law (including GDPR and CCPA) to access, correct, or delete data we hold. To exercise any of these rights, contact us at the address below.

8. Changes to this policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date above. Continued use of SDI after changes constitutes acceptance of the updated policy.

9. Contact

Questions about this policy or how we handle your data? Contact us at:
team@searchdiscoveryinsights.in

© 2025 SDI — Search Insights. All rights reserved.
Home Privacy Terms