Shomer Shabbat
Privacy Policy
Last updated: 4 September 2026
This page describes how Kalanit (“we”) handles data when a merchant installs the Shomer Shabbat Shopify app. It is written for the Shopify App Store listing. It is not legal advice.
Who this applies to
Merchants who install the app. Storefront visitors are not asked to create an account, submit a form, or give us personal details.
What we collect through Shopify APIs
The app uses the read_themes access scope. After a merchant installs, Shopify gives us an offline session for that shop. We store:
- The shop domain (for example, example.myshopify.com)
- The access token and related session fields Shopify provides
- Whether the Shomer Shabbat theme embed is on, by reading the published theme’s settings (theme name and embed on/off)
We do not read orders, customers, products, checkout, or payment data.
What the merchant enters
In the app settings we store only:
- Closure mode: Shabbat only, or Shabbat and Jewish holidays
- The Israeli city chosen for candle-lighting and Havdalah times
Closed-page text, colors, logo, and background images are saved in the merchant’s Shopify theme, not in our database.
Storefront visitors
The storefront script asks our app whether the shop is closed, then shows the closed page if it is. That request includes the shop domain. We do not ask visitors for names, emails, or payment details. We do not drop advertising or analytics cookies for this purpose.
How we use the data
We use this data only to run the app:
- Keep the merchant signed in to the embedded admin
- Apply the chosen city and closure mode
- Load Shabbat and holiday times from Hebcal
- Show whether the theme embed is enabled
- Show the closed page on the storefront when the shop is closed
We do not sell this data or use it for advertising.
Third parties
- Shopify — install, sessions, webhooks, and theme files
- Hebcal — calendar and candle-lighting times for the selected city (we send the city geoname id, not merchant or customer names)
- Vercel — hosts the app
- Turso — hosts the app database
Data may be processed outside the merchant’s country, depending on those providers.
How long we keep it
Shop session and settings stay while the app is installed. When the merchant uninstalls, or when Shopify sends a shop/redact webhook, we delete that shop’s session and settings from our database.
We do not store customer personal data outside Shopify. Customer data-request and customer-redact webhooks therefore have nothing extra to return or erase.
Contact
Questions about this policy: loopcake@gmail.com (Kalanit).
7406501