1. Introduction
Welcome to Rainline AI Translate. We are committed to protecting the privacy of merchants and their customers. This Privacy Policy describes how we collect, use, and share information when you install and use our App on your Shopify store.
2. Information We Collect
Our App acts as an AI translation helper for your storefront. To provide these services, we process the following data:
- Translation Source Content: The text elements of your theme storefront that you or your customers request to translate.
- App Configurations: Your default translation language, tone preference, and glossary rules stored in our secure database.
- Audit Logs: For billing transparency and troubleshooting, we store the source text, the translated text, the translation duration, and the token usage of each request. These logs are keyed only by your shop domain and are automatically deleted after 90 days.
We Do Not Collect Customer Identity Data: We never collect, access, or store customer names, email addresses, phone numbers, shipping addresses, or payment information. We do not use cookies and do not track individual visitors.
Important note on storefront text: Because the widget can translate any visible text on a page, the audit log described above may incidentally contain text that a merchant or a visitor has published on the storefront — for example a product review or a user-submitted comment. Such text is stored solely as the translation record for the request, is never linked to a customer identity, and is purged on the 90-day schedule. Merchants who wish to avoid this entirely should not enable page translation on pages containing user-generated content.
3. How We Process Data and AI Translation Security
When a translation request is initiated:
- Secure Transmission: The text is securely sent over HTTPS to our backend server, which forwards it to the state-of-the-art Large Language Models (LLMs) via encrypted API channels (powered by DeepSeek and OpenCode).
- No Model Training: Our AI provider covenants that the translation texts sent through the API are processed in real-time and will NOT be used to train, retrain, or improve machine learning models.
- Data Minimization: Translation inputs are processed strictly in-memory and are not stored in any external third-party servers once the translation is complete.
4. Data Retention and Deletion
We retain configuration settings and billing/token history as long as the merchant keeps our App installed. Audit logs are retained for a maximum of 90 days and are then deleted automatically by a scheduled job.
GDPR Compliance / Right to Erasure: When a merchant uninstalls the App, Shopify triggers an app/uninstalled webhook and our server immediately deletes all active sessions, which revokes our access to the store. Shopify then sends a shop/redact request (typically 48 hours after uninstall); on receipt we delete the merchant configuration record, which cascades to remove all audit logs and billing records for that shop from our PostgreSQL database.
5. Customer and Merchant GDPR Rights
We fully support Shopify's mandatory GDPR compliance framework. We have implemented and registered three secure endpoints to process automated privacy requests:
customers/data_request: Used to retrieve stored data for verification. (Since we collect no customer PII, this request returns zero personal records).customers/redact: Used to delete customer data. (Since we collect no PII, no records require redaction).shop/redact: Automatically deletes all database rows related to your shop when Shopify requests a store data wipeout.
6. Contact Us
If you have any questions about this Privacy Policy or our compliance practices, please contact us at:zhang.rainlam@gmail.com.