Privacy Policy
Last updated: 2026-04-02
This policy describes how FatturaFlow collects, uses, stores, and protects personal data processed through the website, embedded Shopify app, and related services.
1. Controller and contact details
For privacy, security, data access, or deletion requests you can contact supporto@fatturaflow.it.
2. Data we process
- Account data: name, email, login credentials, and essential profile history.
- Store data: Shopify domain, technical tokens, integration settings, connection logs, and installation status.
- Operational data: orders, customers, exports, tax settings, and documents processed through the service.
- Support data: messages sent through the contact form or support email.
- Technical data: security logs, IP address, user agent, timestamps, app events, and webhooks.
3. Purposes of processing
- to provide access to FatturaFlow and authenticate the user;
- to connect and maintain the Shopify integration;
- to generate, validate, export, and manage the merchant’s documents;
- to provide support and respond to requests;
- to prevent abuse, unauthorized access, and security issues;
- to comply with legal obligations and applicable compliance requests.
4. Legal basis
We process data when necessary to perform the service requested by the merchant, comply with legal obligations, protect platform security, and, where required, based on consent or the merchant’s instructions.
5. Data sharing
Data may be shared only with technical providers strictly necessary to operate the service, with Shopify for app integration, and with competent authorities when required by law. We do not sell personal data to third parties.
6. Retention
We retain data for as long as needed to provide the service and handle tax, security, audit, and compliance obligations. When an integration is uninstalled or an account is closed, data that is no longer needed is deleted or anonymized according to applicable technical and legal retention periods.
7. Security
We apply reasonable technical and organizational measures to protect data, including access controls, credential management, security logging, webhook signature verification, and connection protection.
8. Privacy and deletion requests
For requests concerning access, rectification, deletion, or restriction you can use the dedicated page or contact Data requests or email supporto@fatturaflow.it.
9. Shopify merchants
When FatturaFlow is installed on Shopify, the merchant remains responsible for store data under their obligations toward customers and end users. FatturaFlow handles required Shopify privacy compliance requests through Shopify privacy webhooks.
10. Changes to this policy
We may update this policy for regulatory, technical, or product reasons. The version published on this page applies from the last updated date shown above.