Privacy Policy
Aedify by F12 Labs. Last updated October 9, 2026.
1. Introduction
Aedify ("we", "our", "the app") is a Shopify application for building the store's pages and blog posts with a drag-and-drop editor. This policy explains what data the app collects, how it is used, where it is stored and how it is protected.
2. Data We Collect
Aedify keeps very little in its own database:
- Store session: the store's Shopify domain, the access token Shopify issues to the app and the scopes granted.
- Change records: when a page or blog post is created or saved in Aedify, a record of the store, the page or blog post's ID and type, whether it was created or saved, its version number and size in bytes, the Shopify user ID of the staff member and the time. The content itself is not recorded.
To show the editor, the app reads the store's pages, blog posts, products, collections, files and Aedify templates from Shopify. These are displayed in the admin and not stored by the app.
3. Data We Do Not Collect
The app does not collect any data about the store's customers or shoppers: no names, email addresses, orders, payment details, browsing history or analytics. It does not store staff names or email addresses.
4. How We Use Data
- To load, edit and save the store's pages and blog posts.
- To create and update Aedify templates and the pages that use them.
- To show products and collections in the Products element and in the link picker.
- To upload images to the store's Files.
- To check whether the app's theme embed and block are set up in the live theme.
- To troubleshoot problems with saving, using the change records.
Data is never used for advertising, profiling or any purpose unrelated to the app.
5. Where Data Is Stored
- In Shopify: everything built with Aedify. Page and blog post content is saved in their own content field, with metafields in the
aedifynamespace (a content hash, a version number, and the products and templates used). Templates are Shopify metaobjects of typeaedify_template. Uploaded images go to the store's Files. All of these belong to the merchant and stay in Shopify. - In our database: only the store session and change records described above, in a PostgreSQL database hosted by F12 Labs.
6. Access Scopes and Why We Need Them
- write_online_store_pages: to create, read and save pages, blogs and blog posts.
- write_metaobjects and write_metaobject_definitions: to store templates as metaobjects and to set up the metafield and metaobject definitions Aedify uses.
- write_files: to upload images and to browse the store's Files in the media picker.
- write_products: to look up products and collections for the Products element and the link picker. Aedify does not change products.
7. On the Storefront
When the merchant turns on the Aedify styles app embed, the storefront loads one stylesheet from Shopify's servers. The Aedify content block shows the page and renders product lists with the theme's Liquid. Aedify adds no scripts, sets no cookies, uses no browser storage and is not contacted by the storefront.
If the merchant adds a YouTube or Vimeo video or a Google map to a page, the shopper's browser loads it from that service, whose own privacy policy applies.
8. Data Sharing
We do not sell, rent or share data with third parties. Data moves only between the merchant's admin, Shopify and the app.
9. Data Retention
- When the app is uninstalled, the store session is deleted from our database straight away. Pages, blog posts, templates and images stay in Shopify, where the merchant can keep or delete them.
- When Shopify sends the
shop/redactrequest, 48 hours after uninstall, the store's change records are deleted from our database.
10. GDPR and Data Requests
Aedify responds to Shopify's mandatory privacy webhooks. Because the app keeps no customer data, there is nothing to return for a customer data request or to delete for a customer redaction request. Store data is deleted on shop/redact as described above.
Merchants and customers can also contact us about any data request at the address below.
11. Security
All traffic uses HTTPS. Admin pages require an authenticated Shopify session, and saves check the page's version so one person's changes can't silently overwrite another's.
12. Changes
If we change what the app collects or how it is used, we will update this page and the date at the top.
13. Contact
For privacy questions or data requests, email support@ftwelvelabs.com.
This policy applies to the Aedify Shopify app by F12 Labs.