Mercantle
PlatformPricingDocsCustomers
Sign inGet started
Legal

Privacy Policy

Last updated July 3, 2026

This policy explains what Mercantle collects, how we use it, and the choices you have. We keep it short and plain. If anything here is unclear, reach us through the contact form.

Information we collect

We collect the account details you provide when you sign up (name, work email, company), and the revenue data we read through the Partner API credential you connect — charges, subscriptions, installs and related metrics. We never collect or store payment card numbers.

Depending on the features you use, we also process:

  • Merchant contact data that studios choose to send us via the SDK or ingest API — merchant emails, contact names, store name and country. We process this on the studio's behalf; the studio is responsible for having the right to share it.
  • Affiliate data — the email and name an affiliate provides when signing up for a program through a public signup page, and any payout details an affiliate chooses to save in their workspace so studios know where to pay them.
  • Referral-click logs — when someone clicks an affiliate's referral link, we log the IP address, browser user agent and timestamp of the click. We use this for attribution and to detect fraudulent or inflated click activity.

Cookies

We use a small number of first-party cookies and no advertising or third-party analytics cookies:

  • Session cookie — essential; it keeps you signed in to your account.
  • insighter_ref attribution cookie — set when you click an affiliate referral link. It stores the referral code so the studio can credit the referring affiliate if you later install their app, and lasts up to the program's cookie window (typically 60 days).

How we use it

We use your data to provide the service: to compute your analytics, recover failed charges, score account health, run affiliate programs, and generate AI insights for your workspace. We use account details to operate your account and to contact you about the service.

Read-only access

Mercantle's Partner connection to your revenue data is read-only. We never write to your account, never move money, and never initiate charges. You can revoke access at any time, which ends our access immediately. Optional features — the SDK/ingest API and the GA4 connection — process only the data you choose to send or connect.

Our role for data studios send us

For merchant and affiliate data that a studio pushes to Mercantle (via the SDK, ingest API, or affiliate programs), the studio is the data controller and Mercantle processes that data on the studio's behalf, only to provide the service. A data-processing addendum is available on request.

Service providers

We share data only with service providers that help us run Mercantle, under contracts that limit them to that purpose:

  • Resend — delivers transactional and digest emails.
  • Google Gemini — generates AI insights from your workspace data. Your data is not used to train models for other customers.
  • Google — if you choose to connect Google Analytics, we access it through Google's OAuth with a read-only analytics scope.
  • Hosting and infrastructure providers — run the servers and database the service lives on.

Data is processed in the United States and the EU, as applicable. We do not sell your data. We may also disclose data where required by law.

AI insights

Your revenue data powers insights for your workspace only. We do not use your data to train models for other customers.

Data retention & deletion

We retain your data for as long as your account is active. When you close your account or disconnect, we delete or anonymize your data within 30 days, except where we must retain it to meet legal obligations.

Your rights

Depending on where you live, you may have rights to access, correct, export or delete your personal data. We honor data-subject requests, contact us and we'll help. If your data was sent to us by a studio, we may refer your request to that studio, since they control it.

Security

We encrypt data in transit and at rest and scope it to your workspace. See our security page for details on how the connection works.

Changes

We may update this policy as the service evolves. Material changes will be reflected here with a new “last updated” date.

Contact

Questions about privacy or a data request? Email hello@mercantle.com or reach us through the contact form. Data controller for account data: Mercantle, 1309 Coffeen Ave, Sheridan, WY 82801, USA.

Mercantle

The revenue operating system for Shopify app makers.

Product
PulseRecoverSignalNetworkBazaarRadarAI InsightsPlatformMarketplace
Company
AboutCustomersSecurityBook a demo
Resources
DocsPricingCompareMigrating from Mantle
Get started
Create accountSign in
© 2026 Mercantle · 1309 Coffeen Ave, Sheridan, WY 82801 · The revenue platform for Shopify app makers
PrivacyTerms