Privacy policy
Your commerce data stays your commerce data.
This policy explains how Metrico handles information when merchants use the website, install the Shopify app, connect commerce or advertising platforms, enable first-party behavior measurement, or contact support.
Last updated: October 7, 2026
Information we receive
Account information can include your name, email address, authentication and session information, workspace membership, and support communications. When a merchant authorizes an integration, Metrico can receive the data required by the enabled feature, including products, variants, inventory, locations, orders, refunds, advertising accounts, campaigns, groups, ads, creatives, attributed performance metrics, and synchronization status.
First-party behavior data
When Metrico Pixel is intentionally enabled for a store, Metrico can receive first-party storefront events needed to provide session, funnel, and journey analysis. Those observations remain distinguishable from provider-attributed advertising results and are not presented as causal proof.
How we use information
- Authenticate merchants and provide account and workspace features.
- Synchronize and reconcile authorized commerce and advertising data.
- Generate analytics, mappings, historical findings, and recommendation support.
- Operate first-party behavior and attribution features when a merchant enables them.
- Secure sessions, prevent abuse, diagnose failures, and maintain reliability.
- Provide support and service notices.
- Measure public-site conversion events when measurement is intentionally configured.
- Improve product quality without silently changing merchant budgets or provider settings.
Why processing occurs
Depending on the relationship and applicable law, processing can be necessary to provide the service requested by a merchant, protect the service and users, comply with legal obligations, or pursue legitimate operational interests such as security and product reliability. Where consent is the required basis for an optional activity, that activity should not begin before the required consent is obtained.
Shopify app authentication and billing
Merchant authentication uses short-lived Shopify session tokens. Metrico does not require a separate password account or third-party authentication cookies. Shopify approves and bills subscriptions; Metrico stores the plan and billing dates needed to enforce access and does not collect card details.
Customer requests and app removal
Metrico processes Shopify customer data-request and redaction notifications. Store owners can retrieve completed request exports from the Shopify privacy requests panel in Connections. Uninstalling stops Metrico access, revokes stored Shopify credentials and disables purchase sharing. A subsequent Shopify shop-redaction notification removes the store data held by Metrico. Requests concerning backups or legal retention can be made through support.
Cookies and browser storage
Metrico uses session technology necessary to keep merchants signed in securely. Optional measurement technology is treated separately from essential authentication. See the Cookie Policy for details.
Advertising purchase sharing
When a merchant configures server-side conversions, Metrico can send a Shopify purchase amount, currency, time and consented advertising click identifier to the selected Meta, TikTok or Google Ads destination. Analytics consent alone does not permit this sharing: the updated Shopify pixel also requires marketing and sale-of-data permission. Missing permission prevents delivery, and historical events are not assumed to authorize advertising disclosure. A queued conversion is checked again before sending. For data already received by an advertising platform, its own privacy and deletion process also applies.
Google account and advertising data
When you connect Google Ads, Metrico accesses the advertising accounts you authorize, their campaigns, ads, performance reports, and eligible conversion destinations to provide the reporting and purchase-sharing features shown in the app. OAuth credentials are encrypted before storage. Purchase sharing sends permitted Shopify conversion data to your selected Google Ads destination through the Google Data Manager API. Disconnect Google Ads in Connections to stop future access; use Data Deletion to request removal of stored data.
Metrico’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. We do not sell Google user data, use it to serve personalized advertising, or use it to train general-purpose AI models. Access and transfers are limited to the user-facing features you authorize, necessary service providers, security purposes, and applicable legal obligations. Human access is restricted to consented support, security, or legally required purposes.
Sharing and subprocessors
Metrico does not sell merchant commerce data. Information can be processed by infrastructure and service providers needed to host, secure, monitor, communicate, or operate the service, and by a connected platform when the merchant instructs Metrico to exchange data with that platform. See Subprocessors and Data Processing Terms.
Retention
Metrico retains information for as long as reasonably needed to provide the service, secure accounts, resolve disputes, meet contractual or legal obligations, and maintain appropriate backups. Retention differs by data category and enabled feature. Raw first-party event retention can be separately bounded by the service configuration.
Deletion and disconnection
Merchants can disconnect supported integrations and can request verified account deletion. Disconnecting stops future synchronization but does not necessarily erase records already stored by Metrico or independently held by the provider. See Data Deletion for the request process.
Your privacy choices and rights
Depending on where you live, privacy law may provide rights to access, correct, delete, restrict, object to, or obtain a portable copy of certain personal information. Merchants can submit account-related requests through Metrico support. Shoppers whose information is controlled by a merchant should generally contact that merchant first so Metrico can assist the merchant where applicable.
Security
Metrico uses access controls, provider authorization boundaries, protected credentials, tenant-aware application logic, and operational safeguards intended to protect data. No internet service can guarantee absolute security. Product-level controls and reporting guidance are described on the Security and Responsible Disclosure pages.
International processing
Metrico and its service providers can process data from more than one country. Where an applicable privacy law requires a transfer mechanism, the relevant processing should rely on an appropriate contractual or legal mechanism.
Children
Metrico is a business service for merchants and is not directed to children. Merchants are responsible for operating their storefronts and connected customer-data practices in accordance with laws that apply to them.
Changes and contact
We update this policy when our data practices materially change. The date above identifies the current version. Privacy questions or verified requests can be submitted through the contact page.