Privacy policy
Heading — last updated 11 September 2026
Heading assigns customs data to a Shopify catalogue: commodity codes, country of origin and EU product identifiers. This page describes exactly what it reads, what it writes and what it keeps.
What Heading reads
With the permissions you grant at install, it reads from your store:
- Product titles, descriptions, types and vendors
- Variants, including SKUs, barcodes and option values
- Inventory items, including any existing harmonised system code and country of origin
- Product identifier metafields that Heading itself has written
It does not read orders, customers, addresses, payment details or anything else. No customer personal data reaches this app at any point.
What Heading writes
Only when you press a button, and only into fields that are empty:
- Harmonised system codes, where classification is confident
- Country of origin, from the answer you choose
- Generated SKUs, never replacing one that already exists
- Product identifier metafields in the
headingnamespace
What Heading stores
One record: your shop domain and the access token that lets the app call Shopify on your behalf. That is the whole database.
Your product data is not stored. Each scan reads your catalogue, works in memory, and discards it when the request ends. Nothing about your products is retained after the page renders, and no product data is used to train anything or shared with anyone.
Retention and deletion
Uninstalling deletes the stored session immediately. Shopify also sends a shop redaction request about 48 hours after uninstall, which deletes it again in case the first message was missed. Nothing of yours remains after that.
Sub-processors
- Fly.io — application hosting. The session record lives here.
- Shopify — the source of the data and the destination of every write.
No analytics, advertising or tracking services are used.
Your rights
Because the app holds no customer personal data, a customer data request or customer redaction request returns nothing to disclose or erase. Requests of either kind are answered automatically through Shopify's privacy webhooks. For anything else, including a copy or deletion of your shop record, write to ashishchauhan1313@gmail.com.
A note on tariff classification
Heading suggests classifications and shows its reasoning. It flags anything it is not confident about rather than writing it. Responsibility for what is declared to customs remains with the merchant, and this app is not a substitute for advice from a customs broker.
Changes
This policy ships with the app, so it is updated in the same release as any change to what the app reads or writes. The date at the top reflects the last such change.