Legal

Privacy Policy

Last updated August 2, 2026

This policy explains what Axeible collects, why, and what we do with it. In short: we scan your store's themes, products, and pages — not your customers' personal data.

1. Who this applies to

Axeible is operated by Grenz ("we", "us"). This policy covers our public website and the Axeible application for Shopify. Your use of the app is also governed by our Terms of Service and, where we process data on your behalf, our Data Processing Addendum.

2. What we collect

  • Account & store information — your store's myshopify domain and the name and email of the staff who use the app, provided by Shopify when you install and sign in.
  • Store content we scan — your themes, product content, and pages, so we can find and help fix accessibility issues.
  • Usage & diagnostic data — logs and metrics about how the app and scanner perform, so we can keep the service reliable.
  • Messages you send us — the name, email, and content you submit through our contact form or by emailing us.
  • Cookies — see our Cookie Policy.

3. What we deliberately do not collect

Axeible is designed around a minimal-data stance. We request the minimum Shopify scopes needed to do our job and do not collect your customers' personal data — no shopper names, emails, addresses, or order details. Our server-side audits are scoped to your public storefront pages.

4. How we use data

  • To provide the service: scan, classify, and help remediate accessibility issues, and generate reports.
  • To operate, secure, and improve the app and scanner.
  • To respond to your messages and provide support.
  • To send service-related communications (for example, alerts you configure).

5. Legal bases (where GDPR/UK GDPR applies)

We rely on the performance of our contract with you (to provide the service), our legitimate interests (to secure and improve it), your consent (where required, such as certain cookies), and compliance with legal obligations.

6. Sharing & subprocessors

We do not sell your data. We share it only with service providers who help us run Axeible — such as our hosting/infrastructure provider, our email provider, and our AI provider for features like alt-text drafting — each bound to protect it. A current description is available in our Data Processing Addendum. We may also disclose data where required by law.

7. AI features

Some features send accessibility context — such as an element's markup, a product image URL, and the relevant WCAG criterion — to an AI provider to draft alt text or fixes. We do not send your customers' personal data or your access tokens to the AI provider.

8. Retention

We keep data for as long as needed to provide the service and meet legal obligations, and then delete or anonymise it. When your store uninstalls the app, we honour Shopify's shop-redaction process and delete your store's scan data.

9. Your rights

Depending on where you live, you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. The app provides data export and deletion controls, and we honour Shopify's data-request and redaction webhooks. To exercise a right, contact us at hellogrenz@gmail.com.

10. International transfers

We may process data in countries other than yours. Where we do, we use appropriate safeguards (such as standard contractual clauses) as required by applicable law.

11. Security

We use technical and organisational measures to protect data, including encryption of access tokens, strict per-store data isolation, and least-privilege access. No system is perfectly secure, but security is central to how Axeible is built and operated.

12. Children

Axeible is a business tool and is not directed to children.

13. Changes

We may update this policy. Material changes will be reflected by the "last updated" date above, and where appropriate we'll provide additional notice.

Contact

Questions about this document can be sent to hellogrenz@gmail.com.