Pixozygetpixozy.com

Privacy Policy

How Pixozy handles customization data

Pixozy helps Shopify merchants collect buyer personalization inputs and prepare direct-fulfillment data for made-to-order products. This policy explains what we process, why we process it, and how retention, deletion, and export requests are handled. Effective July 19, 2026.

Policy owner and contact

Pixozy is operated by Winter Snow Universe LLC. Privacy questions and requests can be sent to [email protected]. This policy is effective July 19, 2026.

Data we process

  • Shop domain and Shopify installation session data.
  • Merchant artwork templates, design models, campaign configuration, and additional product settings.
  • Buyer uploads, text inputs, color choices, preview data, and production file references.
  • Shopify order and line references used to associate customization, production, and fulfillment status.
  • Recipient name and shipping address required for the recipient and shipping label; optional phone for a delivery exception; and optional email for a carrier notification.

Shipping field purposes

  • Orders link the Shopify order and line item to the locked buyer inputs, preview file, production file, and fulfillment status.
  • Recipient name identifies the shipment recipient and populates shipping label data.
  • Shipping address provides the destination for direct fulfillment by the merchant's chosen provider.
  • Phone, when supplied, supports carrier contact for a delivery exception or address issue.
  • Email, when supplied, supports a carrier notification or shipping exception message and is not used for marketing.

Buyer uploads

Buyer-uploaded files are stored only for customization and order production. Pixozy is designed so large buyer file bytes go to object storage instead of being streamed through public app routes.

Data retention

Initiated uploads, orphan uploads, and customization sessions that are not linked to an order are deleted after 30 days. Protected shipping data is deleted 90 days after an order becomes fulfilled, cancelled, or refunded. A non-terminal order is retained for no more than 365 days. Privacy deletion requests take priority; remaining production and billing evidence is anonymized.

Production CSV v2 and manual factory handoff

The signed-in merchant manually downloads production CSV v2 for selected orders and decides whether and how to deliver it to a chosen factory or fulfillment partner. The CSV can include buyer inputs, production-file references, recipient name, shipping address, phone, and email for the purposes above. Pixozy does not automatically send or transmit the CSV or protected customer data to a factory, and a merchant-chosen factory is not a Pixozy service provider in this manual workflow.

Security and service providers

Pixozy minimizes stored order data, encrypts protected shipping fields at rest with AES-256-GCM, and transmits data over TLS. Pixozy shares data only with service providers needed to operate the app, including Shopify and hosting or object-storage providers, and does not sell buyer personalization data.

Shopify privacy webhooks

Pixozy implements Shopify privacy topics including customers/data_request, customers/redact, and shop/redact. Data request exports are scoped to Shopify order IDs supplied by the webhook. Redaction requests remove or anonymize matching order-linked customization data and related assets.