Privacy Policy
Last updated: March 1, 2025
PHnix ("we", "us", or "our") operates a multi-platform e-commerce management system that connects to Shopify, Coupang, and Shopee via their respective APIs. This Privacy Policy explains how we collect, use, and protect information obtained through these integrations.
1. Information We Collect
When you authorize our application to connect to your store on a supported platform, we may collect:
- Store information: store name, store ID, region, and currency settings
- Order data: order IDs, order statuses, item quantities, and shipping information
- Product data: product listings, SKUs, inventory levels, and pricing
- OAuth access tokens and refresh tokens required for API authentication
2. How We Use Your Information
We use the collected information solely for the following purposes:
- To display your store's orders, products, and analytics within our dashboard
- To synchronize inventory and product listings across connected platforms
- To generate performance reports and business insights for your stores
- To maintain active API connections on your behalf
We do not sell, rent, or share your data with third parties for marketing or advertising purposes.
3. Platform API Data Usage
Our application integrates with the following platforms and their respective APIs:
- Shopify — We access order, product, and store data via the Shopify Partner API. Data is used only to populate our management dashboard.
- Coupang — We access seller order and product data via the Coupang Wing API.
- Shopee — We are currently in the process of completing integration with the Shopee Open Platform API. Once approved, we will access shop, order, and product data under the permissions granted during OAuth authorization.
All API access is scoped to the minimum permissions required: read:shop,
read:orders, read:products. We do not request write permissions beyond what is
strictly necessary for the service.
4. Data Security
We implement industry-standard security measures to protect your data:
- OAuth tokens are encrypted at rest and transmitted only over HTTPS
- Access to token data is restricted to authorized personnel only
- Tokens are automatically refreshed and expired tokens are purged
- We do not store payment card information or sensitive buyer personal data
5. Data Retention
We retain your store data for as long as your account remains active. Upon account termination or authorization revocation, all associated data including OAuth tokens will be deleted within 30 days. You may request immediate deletion by contacting us at Privacy support.
6. Your Rights
You have the right to:
- Access the data we hold about your stores
- Request correction of inaccurate data
- Request deletion of your data
- Revoke our API access at any time through the respective platform's authorization settings
7. Compliance
We comply with applicable data protection regulations including Taiwan's Personal Data Protection Act (PDPA) and the data usage policies of all integrated platforms, including the Shopee Open Platform Terms of Service.
8. Contact Us
For privacy-related inquiries, please contact us at: Privacy support