What SKUForge stores, why, and how to get it deleted.
SKUForge does not collect your customers’ personal information. The app reads and writes product catalog data — SKUs, barcodes, product and variant identifiers. It never requests access to orders, customers, or payment data, and its Shopify permissions (read_products, write_products) do not grant it.
SKUForge operates SKUForge, a Shopify app that generates and validates SKUs and barcodes. For anything in this policy, contact support@skuforge.app.
Solely to operate the app for your store: generating and validating SKUs and barcodes, scanning your catalog for duplicates, producing label PDFs, importing and exporting CSVs, and enforcing your plan’s limits. We do not sell your data, share it with advertisers, or use it to train machine-learning models.
Catalog, job, and scan data is retained while the app is installed, so your history and uniqueness guarantees stay intact between sessions.
When you uninstall, the app immediately deletes your access token and session, releases any running job locks, cancels in-flight jobs, and deactivates your rules. Remaining records are retained briefly so that reinstalling restores your configuration.
On a data-erasure request — either the shop/redact webhook Shopify sends 48 hours after uninstall, or a direct request to us — every record associated with your store is permanently deleted: rules, counters, jobs and job items, scans and findings, label templates, webhook receipts, sessions, and the store record itself.
SKUForge implements Shopify’s three mandatory privacy webhooks. Because the app stores no customer personal information, a customers/data_request returns no customer data and a customers/redact has no customer records to erase — both are recorded so the response is auditable. shop/redact performs the full deletion described above.
To request access to, correction of, or erasure of your store’s data at any time, email support@skuforge.app. We respond within 30 days.
All traffic is served over HTTPS. Shopify access tokens are stored in a database that is not publicly reachable, and every webhook is verified against Shopify’s HMAC signature before it is processed. Access to production systems is limited to the app’s operators.
If this policy changes materially, we will update the date at the top of this page and notify installed merchants.