Privacy policy
Last updated: 11 October 2026
Recovery Lens ("the app") is a Shopify app made by Elektraset, s.r.o. ("we", "us"). This policy explains which data the app processes when a merchant installs it, why, and for how long. Contact: help@elektraset.com · elektraset.com.
Roles
For the personal data of a store's shoppers, the merchant is the controller and we are the processor that acts on the merchant's instructions. For the merchant's own account data (store domain, staff session), we are the controller.
Data we process
- Store data: the store domain, the access token that Shopify issues to the app, and the app settings (rules, playbooks, holdout share, reassurance texts).
- Checkout data: for abandoned checkouts of the store: the checkout token, creation and update time, email address, phone number, first name, Shopify customer ID, number of earlier orders, email marketing consent state, cart value and currency, product titles and quantities, discount codes, cart attributes and the recovery link.
- Order data: order ID, time, email address, total and whether a discount was used, to measure conversions and to suppress recent buyers.
- Storefront signals: when the merchant has the app's web pixel active and the shopper allows analytics tracking: checkout step events, checkout error messages, product view events, the browser's anonymous client ID and the checkout token. When the merchant turns on the theme embed: the email address that a shopper enters in "Save your cart", the shopper's marketing opt-in choice, the cart contents, and the answer to "what is holding you back?".
- Destination credentials: the Klaviyo or Omnisend API key and the webhook URL that the merchant enters. Keys and the webhook secret are encrypted at rest (AES-256-GCM).
We do not collect payment card data. We do not sell personal data, and we do not use it for advertising or to train AI models.
Why we process it
- To classify each abandoned checkout (bot-like, friction, timing, intent, unreachable) with transparent rules.
- To decide whether and when a shopper gets a recovery message, and to send that decision as an event to the destinations that the merchant connected (Klaviyo, Omnisend, Shopify Flow or the merchant's webhook). The merchant's messaging tool sends the actual messages.
- To keep a random holdout group and report incremental conversions and revenue.
- To answer support requests and keep the service secure.
By default the app only routes shoppers who have given email marketing consent. Shoppers without consent are not sent to marketing tools.
Sharing
We share checkout data only with the destinations that the merchant connects, and with the hosting provider that runs our servers and stores the data for us. Shopify receives Flow trigger events when the merchant turns on Shopify Flow.
Retention and deletion
- Checkout, order and signal data are kept while the app is installed, so the incrementality report can cover up to 365 days.
- When Shopify sends the customers/redact webhook, we delete that shopper's checkouts, signals and event logs.
- When the app is uninstalled, Shopify sends shop/redact 48 hours later, and we delete all data of the store.
- customers/data_request requests are answered through the merchant; the merchant can export all stored checkouts as CSV in the app.
Security
Data travels over HTTPS. API keys are encrypted at rest. Access to the servers is limited to our staff who run the service.
Your rights
Shoppers can exercise their rights (access, correction, deletion, objection) through the store where they shopped; the merchant forwards the request to us through Shopify or by email. Merchants can contact us at help@elektraset.com. You can also complain to your data protection authority (in Slovakia: the Office for Personal Data Protection).
Changes
We post changes on this page and update the date above.