Relay Sentry

Privacy Policy

Last reviewed: 2026-09-28

What Relay Sentry is

Relay Sentry is a Shopify app that connects a merchant's Shopify store to the Fruugo marketplace: it sends the merchant's product catalogue to Fruugo, brings Fruugo marketplace orders into Shopify, and sends shipment tracking back out. This policy covers the data Relay Sentry itself accesses and stores while doing that. It does not cover Shopify's or Fruugo's own handling of your data, which is governed by their respective privacy policies.

Relay Sentry is operated by Dotarus LLC, based in Oklahoma, USA, which is the data controller for the personal data described below.

Data we access from Shopify

Relay Sentry requests the following Shopify access scopes, each for a specific purpose:

  • read_products, read_inventory, read_locations — to build the product feed sent to Fruugo.
  • read_orders, write_orders — to detect cancellations and refunds that need to be reported to Fruugo, and to create a Shopify order when a Fruugo marketplace order arrives.
  • read_fulfillments, read_merchant_managed_fulfillment_orders, read_third_party_fulfillment_orders — to send shipment tracking numbers to Fruugo once an order ships.

Relay Sentry does not request a scope for direct access to your customer list. It only reads order and fulfillment data, and only when an order or shipment event fires.

Data we access from Fruugo

When Fruugo sends a marketplace order, its payload includes the customer's name, shipping address, and contact details — this is what lets Relay Sentry create the matching Shopify order. That data is used only to build the one-time Shopify order-creation request; it is not written to Relay Sentry's own database (see below).

What we store — and what we deliberately don't

Relay Sentry's database keeps operational sync records: order status, line-item quantities, SKU and product identifiers, shipment tracking numbers, and the timestamps and error states needed to keep Shopify and Fruugo in sync and to alert on stuck orders.

It does not store customer names, email addresses, phone numbers, or shipping addresses. Those fields are read from Fruugo's order payload only long enough to create the Shopify order, and from Fruugo's asynchronous callbacks only a summary — which fields were present and how many orders — is kept, never the callback body itself.

To improve the app, it also counts how each store uses it: which pages are opened, which buttons are pressed (by name, never what was typed), and how the AI features are used. These counts are tied to the store, not to a staff member, and are used only by the Relay Sentry team.

Launch sign-ups on relaysentry.app

Before Relay Sentry opens on the Shopify App Store, the website lets you ask to be told when it launches. That form stores the email address you enter and, if you add one, your Shopify store's domain. We use them only to email you: a welcome, a short note every two weeks about selling on Fruugo (a fixed series of 22 that carries on after launch until it ends), and the launch announcement. Our operators are notified of each new sign-up.

These emails are sent through Resend, our email provider. We record which emails we sent you and when, and whether an address bounced or was reported as spam, which stops all further emails to it. We also record whether each email was delivered, opened and clicked: the emails contain a small tracking image from Resend that reports when they are opened (if your mail app loads images), and their links pass through Resend, which reports when one is clicked. Links to our own site also carry a tag naming the email.

Every email has an unsubscribe link that works in one click, with no login. To have your sign-up deleted altogether, email support@relaysentry.app.

Website analytics

The public pages of relaysentry.app (this policy, the homepage, the setup guide and the articles) use Rybbit, a web analytics service, to count visits: which pages are read, roughly where visitors come from and what device they use. It is not loaded inside the Relay Sentry app in Shopify or on unsubscribe links.

How we protect data

  • All traffic to and from Relay Sentry is encrypted in transit (HTTPS/TLS).
  • Fruugo account credentials are encrypted at rest (AES-256-GCM) before storage and are never logged or returned in any API response.
  • Every database query is scoped to the requesting store; one merchant's data is never visible to another.
  • Webhook endpoints that can mutate data verify a cryptographic signature (Shopify HMAC, or the equivalent for Fruugo/Slack/Resend) before processing anything, and reject the request outright if that check can't run.

Who we share data with

Relay Sentry shares data with the following parties, only as needed to provide the service:

  • Fruugo — your product catalogue and order-confirmation/shipment updates, as the marketplace you've chosen to sell on.
  • Shopify — the platform this app runs on and creates orders in.
  • Infrastructure providers (application hosting and database hosting) — process data on our behalf to run the service and do not use it for any other purpose.
  • Support notification providers (used to notify our own operators of merchant support requests and operational alerts) — receive the store domain and the subject/category of a support request, not end-customer data.
  • AI provider (Anthropic, which runs the in-app assistant and store reports) — receives what a merchant types into the assistant and, for questions about their own store or a store report, that store's order statuses, product titles, sales totals, listing errors and report tasks. Never end-customer names, addresses or contact details. Relay Sentry does not keep assistant conversations; store reports and their tasks are kept for the merchant until the app is uninstalled.

Data retention and deletion

We keep operational sync records — order status, error states, audit trails, and support tickets — for as long as your store has Relay Sentry installed, so that history remains useful for support and troubleshooting. When you uninstall Relay Sentry, Shopify notifies us and — after the 48-hour window Shopify itself defines for this — all of your store's data is permanently deleted from Relay Sentry's database.

Relay Sentry also implements Shopify's mandatory privacy webhooks: a customer data request produces an export of the order records Relay Sentry holds for that customer (available for 30 days), and a customer redaction request permanently deletes those records.

Your rights

If you are a merchant using Relay Sentry, you can request a copy of or deletion of your store's data at any time by contacting us (see below) or by uninstalling the app. If you are a customer of a store that uses Relay Sentry, requests about your personal data should go through that store — Shopify's standard customer data request and redaction process reaches every app installed on the store, including this one.

Depending on where you live, you may have the right to access, correct, delete, or export your personal data, and to object to or restrict certain processing — for example, under the EU/UK General Data Protection Regulation or the California Consumer Privacy Act. Since Relay Sentry does not store end-customer personal data on its own servers (see above), most such requests are fulfilled by the store you ordered from, or by Fruugo directly; contact us at the address below if you believe Relay Sentry specifically holds data about you.

Governing law

This policy is governed by the laws of Oklahoma, USA, without regard to its conflict-of-law principles, except where another jurisdiction's data protection law (such as GDPR) applies to your personal data by its own terms.

Changes to this policy

We'll update the "last reviewed" date above whenever this policy changes to reflect a real change in what Relay Sentry does with data.

Contact

Questions about this policy or a data request can be sent through the in-app Support page, or to support@relaysentry.app.

← Back to Relay Sentry