Privacy Policy
Effective date: 2026-08-04
Operator: Hiroki Yanase (sole proprietor; the "Operator")
Contact: mamorukun7@gmail.com
Address: Disclosed without delay upon request (please contact the address above)
The Operator handles personal information of users of the Shopify app "MYDO - AI Customer Service Assistant" (the "Service") — namely the operators of Shopify stores that install the Service (each a "Merchant") and the Merchant's customers who contact the store via LINE (each an "End User") — in accordance with this policy.
1. Our Role
The Service lets a Merchant handle conversations with its own customers (End Users) through the Merchant's LINE Official Account: AI drafts a reply, and the Merchant reviews and approves it before it is sent.
With respect to End Users' personal information, the Operator acts as a processor entrusted by the Merchant; the data controller — who decides the purposes and scope of collection — is each Merchant. End Users should direct disclosure, deletion, and similar requests first to the Merchant (the operator of the LINE Official Account they contacted). The Operator provides technical assistance based on the Merchant's instructions.
2. Information We Collect
2-1. Information about Merchants (Shopify store operators)
- Shopify account information: store domain, staff name, email address, and language settings (obtained during Shopify OAuth authentication)
- LINE Official Account credentials (channel access token and channel secret), entered by the Merchant to connect the Service to LINE
- Billing information: fees and spending-cap settings via the Shopify Billing API (payment details such as credit card numbers are managed by Shopify and are never held by the Operator)
- Shop-specific knowledge the Merchant registers (size guides, FAQs, product documents, and other files or text, as well as page content fetched from website URLs the Merchant specifies)
- Free-text feature requests submitted through the form at the bottom of the FAQ page
2-2. Information about End Users (the Merchant's customers)
Collected through the Merchant's customer-facing LINE Official Account. In addition, if the Merchant uses the feature for importing past conversations (uploading chat history files exported from LINE), the past message content contained in those files is also collected.
- LINE user ID (an identifier within the LINE platform; not a name or phone number itself)
- LINE display name and profile picture (retrieved from the user's public LINE profile and cached)
- Inquiry messages and the replies sent to them
- Images, PDFs, and other files the customer sends, and files the Merchant attaches to replies
- Information the AI infers and learns from inquiries (height/weight, preferences, patterns in past conversations, etc.; this is stored automatically when a reply is sent, but the Merchant is notified each time something is stored, can disable learning before sending, and can undo (delete) any stored item at any time)
The Service is not linked to Shopify customer records — Shopify customer IDs, email addresses, phone numbers, etc. The only identifier the Service holds for an End User is their LINE user ID.
3. Purposes of Use
Collected information is used only for the following purposes:
- Generating AI reply drafts based on Shopify product information, the Merchant's own knowledge base, and the End User's learned profile
- Presenting drafts to the Merchant and providing the approve / edit / send workflow
- Sending automatic replies using previously approved canned answers (only answers the Merchant has authorized in advance)
- Displaying usage statistics (number of inquiries, number of customers served, etc.) on the Merchant dashboard
- Calculating usage-based billing according to the number of End Users served
- Handling support inquiries from Merchants
The AI never sends messages on its own. Every newly generated reply to an End User requires the Merchant's prior approval (except automatic replies using canned answers the Merchant previously approved and saved).
4. Third Parties / Subprocessors
To provide the Service, information is transmitted to the following external services. These transfers are treated as processing on our behalf (entrustment within the scope necessary to fulfill the purposes above, not sale or third-party provision).
| Recipient | Information transmitted | Purpose |
|---|---|---|
| OpenAI (LLM API provider) | Prompt content needed to generate reply drafts: inquiry text, product information, shop knowledge, the End User's learned profile, etc. | AI generation of reply drafts and summaries |
| Shopify | Merchant store information, product data, billing information | Product lookup; authentication and billing infrastructure |
| LINE (LY Corporation) | Message content sent and received, profile information | Message delivery via LINE Official Accounts |
| Fly.io (hosting provider) | All of the above (database and servers) | Application hosting infrastructure |
| Resend (email delivery) | The text of feature requests a Merchant submits from the form on the FAQ page, error details when a server fault occurs, a daily operator report (aggregate figures per store such as inquiry counts and billing totals), and the Merchant's contact email address (to send important notices; either the contact address registered with Shopify or an address the Merchant specifies in the admin) | Delivery of notification emails to the operator, and delivery of important notices to the Merchant (install completed, LINE connection faults, usage limits, unanswered inquiries) |
OpenAI and Resend are based in the United States, so information may be transferred outside your country. Please also review each provider's privacy policy.
We do not sell or provide information to third parties for any other purpose.
5. Retention and Deletion
- When a Merchant uninstalls the Service, we delete all data tied to that store (inquiry history, AI memories, knowledge documents, usage records, credentials, etc.) upon receiving Shopify's
shop/redactwebhook, which fires 48 hours after uninstall. Attachments exchanged by End Users and Merchants (images, PDFs, etc.) are deleted from server storage as well, along with their database records. - Requests concerning individual End Users (
customers/data_request/customers/redact) are received and logged as required by Shopify. However, as noted above, the Service has no way to automatically link a Shopify customer ID to a LINE user ID, so it cannot automatically identify or delete a specific individual's data. We identify the relevant data manually in consultation with the Merchant and then delete or disclose it as appropriate. - Merchants can delete individual AI memories and knowledge documents at any time from the web admin. (A revoked AI memory is retained internally only as a block-list record so the same content is never re-learned; it is not displayed or used in normal operation.)
6. Security Measures
The following summarizes the measures we take to safeguard personal information. Details whose disclosure could itself compromise that safeguarding are omitted. Merchants who need further detail may contact us using the details in Section 10.
Organizational measures
- Access to personal information is limited to the operator alone; no third party is granted access to production data.
- All changes to the system are version-controlled, and automated tests must pass before a change is released.
- Separation of each store's data is verified both by automated tests and by hands-on checks.
- Server faults trigger an automatic notification to the operator.
Personnel measures
- We currently have no employees; the operator is the only person who handles personal information. Should we hire, training and confidentiality agreements will be put in place beforehand.
Physical measures
- Servers and databases run in cloud providers' data centres; physical security of those facilities rests with the providers concerned (see Section 4).
- Work is performed on a limited set of devices that are not shared with third parties, with full-disk encryption enabled.
Technical measures
- Access to the admin screens requires authentication through Shopify's OAuth infrastructure. Data is separated per merchant store; one store cannot read another store's data.
- LINE Official Account credentials entrusted to us by Merchants are encrypted at rest.
- Inbound webhooks are verified by signature to confirm the sender is genuine; anything that fails verification is rejected.
- All communications are encrypted (HTTPS/TLS).
- We hold no payment card details (see Section 2-1).
- Development and staging environments are separated from production, sharing neither data nor encryption keys.
Understanding the external environment
- Of the subprocessors listed in Section 4, OpenAI, Resend and Fly.io are based in the United States, and Shopify in Canada and the United States (LINE / LY Corporation is in Japan). We selected these providers, and take the measures described above, having reviewed the personal data protection regimes of those countries.
7. Cookies
The Service is provided as an embedded app inside the Shopify admin and uses Shopify's session mechanism for authentication. No third-party advertising or tracking cookies are used.
8. Children's Information
The Service is not directed at children under 13, and we do not knowingly collect personal information from children.
9. Changes to This Policy
This policy may be revised to reflect changes in law or in the Service. Material changes will be announced in the app or by notice to Merchants.
10. Contact
For inquiries about the handling of personal information in the Service, please contact:
Operator: Hiroki Yanase
Contact: mamorukun7@gmail.com