Sidekick app extensions: retention and training policy for data returned by admin.app.tools.data tools?

We are building a Sidekick app data extension (admin.app.tools.data). Our tools return our app’s own analysis of the merchant’s storefront, no order or customer data. Before we ship, we want our privacy policy to describe accurately what happens to the data our tools return to Sidekick.

We asked Partner Support and they confirmed there is currently no published documentation on this and pointed us here. Two questions for the Sidekick team:

  1. Retention. Is data returned by an app tool at runtime retained beyond the merchant’s conversation and Sidekick memory? If yes, for how long, and can the merchant clear it?
  2. Training. Is tool-returned data used to train, fine-tune or evaluate any Shopify model or any third-party model? The Shopify Magic privacy page says one merchant’s store-level data is not used to power Magic for other merchants, and the API Terms prohibit training on Merchant or Customer Data without consent. Does either statement cover data an app extension returns to Sidekick at runtime?

A link to a policy page we can cite would be ideal. If nothing is published yet, a written answer here from Shopify staff is what we would reference.

Thanks.

3 Likes