当社が処理する情報
ストア、パートナー、または投資家としてお申し込みいただく際、ご提供いただいた連絡先と事業情報を、申し込みの確認と返信に使用します。申し込みはBrevoを通じて担当チームに届き、アカウントは作成されません。
直接販売者アカウントの場合、当社はアカウント所有者の名前と email の住所、会社名または店舗名、店頭 URL、選択された e コマース プラットフォーム、販売通貨、月間総売上高、平均売上高、現在のカード支払い紛争比率、請求書記録、ビジネス設定、および店頭活性テスト記録を処理します。売上およびカード支払いに関する紛争の数値は、個々の顧客の取引記録ではなく、販売業者によって提供される店舗レベルの集計です。
For the Shopify App, we process Shopify installation identifiers, store configuration, operational order references, timestamps, amounts, currencies, payment and transaction identifiers, risk assessments, merchant decisions, dispute status, reasons, amounts, currencies and deadlines, provider alerts and connection configuration, audit records, billing status, and verified merchant notification recipients.
証拠へのアクセスには、Shopify 権限と保護された顧客データの承認が必要です。有効にすると、顧客名、電子メール、請求先住所と配送先住所が Shopify から読み取られ、紛争の検討と販売者が確認した証拠の提出が行われます。顧客の電話番号や IP アドレスは要求されません。 Lower Chargeback はお客様への連絡や返信の収集を行いません。
ストアオーナーは、暗号化された事業情報と異議申し立ての情報をLower Chargeback内にローカル保存できます。Shopifyの値が優先され、手動入力した情報を保存してもShopifyの記録は変更されません。
通知の受信者
Entered and verified by the merchant; never imported from Shopify customer records.
支払いと意思決定の境界線
Direct account invoice records contain the invoice amount and status, but Lower Chargeback does not store card numbers. Provider credentials are encrypted before storage and are never returned after they are saved. The Shopify App does not create Shopify refunds, automatically accept or decline network cases, automatically report provider outcomes, send customer messages, or submit dispute evidence without explicit merchant confirmation.
情報の使用方法
Direct account information is used to create and secure the merchant account, issue and display the registration invoice, send account and invoice messages, maintain business settings, run storefront liveness tests, and record their results. Shopify App information is used to synchronize operational order data, present risk signals, record merchant decisions, monitor disputes, match provider alerts to eligible order references, notify verified merchant recipients, maintain billing entitlements and provider connection state, and record merchant-confirmed provider actions.
証拠草案と販売者がアップロードした PDF、PNG、および JPEG 文書は、紛争の準備をサポートします。文書は非公開で保管され、販売者の確認後にのみ Shopify に送信されます。アップロードされたファイルは、送信が確認された後、削除のキューに入れられます。残りの証拠記録は、事件終了後 30 日以内に削除されます。
サービスプロバイダー
Lower Chargeback uses Cloudflare for Worker execution and storage. Brevo sends transactional account, invoice, and operational merchant notifications. For the Shopify App, Lower Chargeback also uses Shopify for operational commerce data and embedded application services, together with only the merchant providers explicitly connected and verified through Provider Hub.
These providers may process information in countries outside the merchant’s country. Where a cross-border transfer requires safeguards, Lower Chargeback relies on the contractual and transfer mechanisms made available by the applicable provider and required by data-protection law.
保存と削除
Direct-account data is retained while needed to provide that account and meet its audit obligations. For the Shopify App, operational order, transaction, risk, dispute, and operational aggregate records are retained for no more than 180 days after their last relevant activity. Active provider cases and their source records remain available while action is required; terminal provider cases and their source identifiers, actions, and events are deleted 30 days after closure. Shopify App audit records, observed Shopify users, notification deliveries, and terminal provider-webhook metadata are retained for no more than 180 days.
プロバイダーの Webhook ペイロード オブジェクトと Shopify App Webhook 受信レコードは、30 日以内に保持されます。
インストール構成、暗号化された資格情報、検証された受信者、合計請求資格、およびデータ削除要件に準拠するために必要な最小限の記録は、アプリがインストールされている間、または有効なサービスで必要とされている間のみ保持されます。アンインストールすると、アクティブな Shopify 資格情報が取り消され、インストールの Shopify データの削除が開始されます。 Shopify コンプライアンス Webhook が優先され、顧客データとショップ データの削除が開始されます。サブプロセッサのバックアップ ライフサイクルは、引き続き該当するプロバイダーのサービス規約に準拠します。
セキュリティとアクセス
Production secrets are held in Cloudflare secret configuration. Stored provider credentials and Shopify authorization tokens use authenticated encryption. Administrative access is restricted, operational changes are audited without customer identity values, production data is not copied into demo or test datasets, and security incidents are investigated and contained through the documented response procedure.
お問い合わせ
販売者およびデータ主体は、email によって、それらに関連する情報のアクセス、修正、削除、制限、またはコピーを要求したり、適格な処理に反対したりすることができます。 marian@agilemedia.com. The request should identify the relevant shop and relationship to the data so Lower Chargeback can verify authority before responding. Shopify privacy requests may also be initiated through the merchant, which delivers the required Shopify compliance webhook.
連絡先住所: Intrarea Gheorghe Simionescu 19、アパートメント B26、ブカレスト 031779、ルーマニア。