Last updated: 2026-10-06
This privacy policy describes how the Complete SEO Shopify app ("the app", "we", "our") handles data when installed on a Shopify store ("the merchant").
Complete SEO is an SEO management app for Shopify stores. It is operated by Enora Labs Ltd, trading as GeekoDev ("we"), 77 Camden Street Lower, Dublin D02 XE80, Ireland, reachable at support@geekodev.com.
The app is distributed exclusively through the Shopify App Store.
To perform SEO analysis and updates we access, via the Shopify Admin API:
global.title_tag,
global.description_tag), images and their alt textWe do not access:
| Data | Purpose | Retention |
|---|---|---|
Shop domain (e.g. acme.myshopify.com) |
Identifying the merchant's store | Deleted 48 h after uninstall |
| Shopify access token | Calling the Admin API on the merchant's behalf | Deleted on uninstall |
| SEO audit results (rule violations per resource) | Showing the audit history in the app | Deleted 48 h after uninstall |
| Broken-link crawl results | Showing the broken-link list in the app | Deleted 48 h after uninstall |
| Meta tag templates created by the merchant | Bulk-apply feature | Deleted 48 h after uninstall |
| Meta tag history (previous and new values of the titles and descriptions the app changed) | Showing what changed and restoring a previous value | Deleted 48 h after uninstall |
| Image alt-text generation runs (counts and status) | Showing the progress of bulk generations | Deleted 48 h after uninstall |
| AI credit ledger (one row per AI call: model name, USD cost, timestamp) | Quota enforcement and billing transparency | Deleted 48 h after uninstall |
| Billing subscription state (plan id, status) | Enforcing per-plan feature access | Deleted 48 h after uninstall |
Our servers are hosted by OVHcloud in France (European Union). The database is not reachable from the internet, and the access token copy kept with the shop record is encrypted with AES-256-GCM, with a key held only on our servers.
| Third party | What we send | Why |
|---|---|---|
OpenAI (api.openai.com) |
Product / collection / page titles and image URLs, when the merchant explicitly clicks an AI generation button | Generating AI-suggested meta tags and image alt text. See OpenAI's data usage policy at https://openai.com/policies/api-data-usage-policies — API inputs are not used to train OpenAI's models. |
Shopify (*.shopify.com) |
OAuth handshake, GraphQL Admin API calls, webhook subscriptions | Operating the app itself |
We do not send merchant or shop data to any analytics, advertising, or profiling third party.
The app's embedded admin UI runs inside the Shopify admin frame. Shopify sets its own session cookies. We do not set or read cookies of our own.
The app does not store data about the merchant's customers. The mandatory Shopify privacy webhooks are implemented as follows:
customers/data_request: returns immediately — no customer data is stored.customers/redact: returns immediately — nothing to redact.shop/redact: triggered by Shopify 48 h after uninstall — all shop data
listed in Section 2 is permanently deleted from our database within 24 h
of the webhook.If you are a merchant and want to access, correct, or delete your shop data before uninstalling, contact us at support@geekodev.com.
No system is 100% secure. If we become aware of a breach affecting your data, we will notify you within 72 hours.
The app is not directed at children under 16 and does not knowingly process their data.
We may update this policy. Material changes will be communicated by email to the merchant contact registered with the app, at least 30 days before they take effect.
Email: support@geekodev.com Postal address: Enora Labs Ltd, 77 Camden Street Lower, Dublin D02 XE80, Ireland