Shoplix merchant agreement
Between Rastova Logic, Room 4, Apt 11, Floor 5, Building 1, Al Thamania Emarat Project, Nasr City, Cairo, Egypt ("Shoplix") and the merchant who installs the Shoplix app on a Shopify store ("the merchant"). Effective when the merchant installs the app. Contact: support@shoplix.ai. Last change: 2026-10-11.
This agreement covers the use of Shoplix and the processing of the merchant's data. It includes the data processing terms in section 5, which apply to the personal data of the merchant's shoppers. The privacy policy is part of this agreement.
1. The service
Shoplix builds a native mobile shopping app for the merchant's Shopify store from the store's catalog, lets the merchant design it in the Shoplix dashboard, and sends push notifications to shoppers who installed the app and allowed notifications. In this version the notifications are: an order confirmation, shipping updates (shipped, out for delivery, delivered) and one or more reminders for a checkout started in the app and not completed. The merchant switches each flow on or off, sets the delay and text of each step, and can send a test to their own device.
Shopify's catalog, orders, fulfillments and checkouts remain in Shopify; Shoplix reads them through the Shopify API and webhooks with the merchant's authorization, given at install.
2. The merchant's responsibilities
The merchant is responsible for their store, their shoppers, the content they publish in the app, the text of every notification, and the legal basis for sending it in the countries they sell to. The merchant confirms that their own privacy policy tells shoppers that the store's mobile app sends push notifications about their orders and checkouts, and names Shoplix or "our app provider" as a processor.
The merchant keeps their Shoplix and Shopify staff accounts secure and tells Shoplix at once if an account may be compromised.
3. Notifications are a channel the shopper grants on the device
A push notification is delivered only to a device on which the shopper has allowed notifications for the merchant's app, in the device's operating system. That permission is the shopper's grant of the channel, and Shoplix sends on that channel only on the merchant's behalf and only the notifications the merchant switched on. Shoplix never contacts a shopper by email, phone, post or any other route, and never uses order data to reach a shopper through anything but that device. Revoking the permission stops every notification and Shoplix erases the device's token.
The merchant instructs Shoplix to send these notifications as part of the service. The merchant does not use the notifications for anything a shopper would not expect from their own order, and does not use them for a third party's messages.
4. Fees, term and ending
Fees, plans and quotas are shown in the app and billed through Shopify. Either party may end this agreement at any time: the merchant by uninstalling the app, Shoplix by notice of thirty days or at once for a breach that is not cured within seven days of notice. On uninstall, Shopify sends Shoplix an erasure demand 48 hours later and Shoplix erases the store's data as set out in section 5.6. Sections 5.6, 6 and 7 survive.
5. Data processing terms
5.1 Roles and instructions
For the personal data of the merchant's shoppers and staff processed to provide the service, the merchant is the controller and Shoplix the processor. Shoplix processes only on the merchant's documented instructions: this agreement, the settings in the dashboard, and the privacy webhooks Shopify sends on the merchant's behalf. Shoplix tells the merchant if an instruction appears to break the law.
5.2 What is processed
The categories of data, the purposes and the retention periods are those in the privacy policy, sections 2 and 4. In summary: order, fulfillment and checkout facts limited to the fields listed there; the shopper's first name from an order placed in the app, used only inside the text of that shopper's own order and shipping notifications; device registrations and notification records; the merchant staff's account data.
Shoplix has requested access from Shopify to four protected customer fields (name, email, phone, address). Only the first name is used in this version. Email, phone and address are not received, read or stored until a feature that needs them exists, the privacy policy names it, and the merchant has been told thirty days in advance.
5.3 Confidentiality and staff
Only Shoplix team members who need access to provide or secure the service have it. They are bound to confidentiality, use two-factor authentication, and their access to the production database is logged.
5.4 Security
Shoplix applies the technical and organizational measures in its data protection documentation: encryption in transit and at rest, application-level encryption of credentials, minimization of the data requested from Shopify, no public database endpoint, separation of test and production data, automatic deletion on the retention periods, an access log, and a written incident response policy. Shoplix may improve these measures and does not lower them.
5.5 Sub-processors
The merchant authorizes the sub-processors named in the privacy policy, section 5: Railway (hosting, EU West), Apple (push delivery), Google (push delivery), Cloudflare (media storage), Resend (email to merchant staff). Shoplix announces a new sub-processor thirty days before it processes personal data. The merchant may object on reasonable grounds within that period; if no solution is found, the merchant may end the agreement without penalty. Shoplix is responsible for its sub-processors' performance.
5.6 Deletion and return
Shoplix deletes personal data when its retention period ends, on a customer erasure demand from Shopify, and, for a whole store, within 48 hours of the store erasure demand Shopify sends after uninstall, and in every case within thirty days of uninstall or of an enforceable deletion request from the merchant. On a customer data request passed on by Shopify, Shoplix gives the merchant a structured, machine-readable copy of the rows it holds for that customer. Deleted data may remain in encrypted platform backups for up to three months; a restore from backup is followed by the same deletion.
5.7 Assistance
Shoplix helps the merchant answer shoppers' requests about their rights, with the facts Shoplix holds, and helps the merchant with data protection impact assessments and consultations with authorities where the merchant needs Shoplix's information.
5.8 Breach notification
Shoplix tells the merchant without undue delay, and in any case within seventy-two hours of becoming aware, of a personal data breach affecting the merchant's data: what happened, which data and how many shoppers as far as known, what Shoplix did, and a contact. Shoplix also notifies Shopify within twenty-four hours, as Shopify's API terms require.
5.9 Audit
The merchant may ask for the documentation and evidence of the measures in 5.4 once a year and after a breach. Shopify may audit Shoplix under its API License and Terms of Use, and Shoplix gives Shopify the proof it asks for.
5.10 Transfers
Data is stored in the European Union (Railway, EU West region, Amsterdam). Railway is a US company and operates its platform partly from the United States under the EU-US Data Privacy Framework and its Data Processing Addendum with Shoplix. Push delivery through Apple and Google, and email through Resend, may involve processing outside the EU under those providers' standard contractual clauses. On request Shoplix provides the transfer documentation.
6. Liability
Each party is liable for its own breach of this agreement. Shoplix's total liability under this agreement in any twelve months is limited to the fees the merchant paid in those twelve months, except for liability that the law does not allow to be limited. Neither party is liable for indirect or consequential loss.
7. General
Governing law and courts: the laws of the Arab Republic of Egypt; the courts of Cairo. Changes to this agreement are posted with a date and announced to merchants; a change that widens the processing takes effect no sooner than thirty days after the announcement. Notices to Shoplix go to the contact in the privacy policy; notices to the merchant go to the email of the store's account owner in Shoplix.