Product Groups
Privacy

Privacy Policy

This policy explains what the Product Groups Shopify app accesses, what it stores, and how that data is handled.

Last updated 27 June 2026

Who we are

Product Groups is built and operated by Less Liquid, a trading name of New North Digital B.V., registered in the Netherlands (KVK 96506792), Van Heemskerckstraat 8, 9726 GK Groningen. We are the data controller for the information described here, and you can reach us any time at hello@lessliquid.com.

What the app can access

When you install Product Groups, Shopify grants it permission to read and write the following parts of your store, used solely to build and display product groups:

  • Products and their details — titles, tags, SKUs, product type, vendor, metafields, images, inventory and price — so the app can group them by your rules.
  • Metaobjects and metaobject definitions — the app creates one per group to hold the list of related products.
  • Files — when you upload a colour swatch image, it is stored as a Shopify file on your store.

What we don't collect

The app does not request access to customer or order data. It has no permission to read your customers, their personal information, or your orders, and it never receives them. Product Groups works entirely from catalogue data.

What we store

To run syncs and show the in-app dashboard without re-reading your whole catalogue each time, we store the following on our own infrastructure:

  • Your store domain and install details (e.g. when the app was installed).
  • Your grouping configuration — the rules and settings you create.
  • A cached snapshot of each group — group names, handles, product identifiers (GIDs), preview image URLs and swatch values.
  • Sync history — timestamps and counts of what each sync created, updated or removed.
  • A Shopify session token, used to authenticate the app's requests to your store.

This is store and catalogue data — it contains no shopper personal information.

Service providers

We use a small number of trusted providers to run the app. They process data only on our instructions:

  • Vercelhosts the application and runs its server code.
  • Neonprovides the PostgreSQL database where the data above is stored.
  • Inngestruns background sync jobs; it receives your store domain and job metadata.
  • Shopifythe platform the app runs on and reads from.

Each provider processes data under its own data-processing terms and applies appropriate safeguards (such as Standard Contractual Clauses) for any transfer outside the EEA.

How long we keep it

We keep your data only while the app is installed. When you uninstall Product Groups, the app removes the data associated with your store, and Shopify’s mandatory shop/redact request — sent 48 hours after uninstall — confirms that deletion. Sync history is pruned on a rolling basis while installed.

GDPR & data requests

The app implements Shopify’s three mandatory compliance webhooks:

  • customers/data_request We store no customer data, so there is nothing to return.
  • customers/redact We store no customer data, so there is nothing to erase.
  • shop/redact We delete the store's data held by the app.

Under the GDPR you have the right to access, correct, or delete the data we hold, and to lodge a complaint with your supervisory authority. To exercise any of these, email hello@lessliquid.com.

Security

Data is transmitted over encrypted connections (HTTPS) and stored with our database provider under access controls. Session tokens are used only to make authenticated requests to your store on your behalf.

Changes to this policy

If we change how the app handles data, we will update this page and revise the date above. Material changes affecting how your data is processed will be reflected here before they take effect.

Contact

Questions about this policy or your data? Email hello@lessliquid.com — New North Digital B.V., Van Heemskerckstraat 8, 9726 GK Groningen, Netherlands.