[ Pixovanta ]

Privacy Policy

Last updated: 9 October 2026

Pixovanta is a Shopify app operated by SDLC Limited that compresses product images, generates alt text, and reports the measured effect on page speed. This page explains exactly what the app accesses, what it keeps, who else sees it, and how to have it erased.

Pixovanta never accesses your customers' data

The app requests only the write_products and write_files permissions. It has no technical ability to read customers, orders, checkouts, carts, payments or payouts, and it does not request those permissions.

Store data the app works with

With the permissions above, Pixovanta reads and writes the following in your store:

  • Products — title, handle, status and online-store URL, used to list what can be optimized.
  • Product images and media — downloaded, re-encoded to WebP, uploaded back to your store, and the original image replaced.
  • Image alt text — read, and written when you generate or apply alt text.
  • Product metafields — in the pixovanta_opt namespace only, to record optimization results (see section 3).

What we store on our own servers

DataWhyRetention
Shop domain and Shopify access credentials
Access token, refresh token, granted scopes and expiry. When Shopify issues a per-user token this record also includes the staff member's Shopify user ID, first and last name, email address, locale and account-owner/collaborator flags — Shopify supplies these as part of the session.
To call the Shopify Admin API on your behalf and keep you signed in.Deleted when you uninstall the app.
App settings
A single on/off flag per shop for “auto-optimize new products”.
To remember your preference between visits.Deleted when you uninstall the app.
Monthly usage counter
Your shop domain, the calendar month, and the number of images optimized in it.
To enforce the image quota included in your plan.Deleted when you uninstall the app.
Measured image sizes
A Shopify CDN image URL and the size in bytes we measured for it. No shop identifier is attached.
A size cache. Without it the product list would re-measure every image on every page load.Retained as a cache. Entries are keyed by URL only, and a changed image always gets a new URL, so a stale entry is never read again.

This data lives in a PostgreSQL database on dedicated server infrastructure that SDLC Limited controls, reachable only over HTTPS. We do not sell it, rent it, or use it for advertising, and we do not use it to train machine-learning models.

Results stored inside your own store

Optimization results are written to your products as metafields in the pixovanta_opt namespace: one record per image (status, size before and after, compression percentage, the alt text applied, a timestamp and the Shopify media IDs) plus one optimization_summary per product.

This data belongs to you and stays in your store. It is what lets the savings figures survive a reinstall. Uninstalling the app does not remove these metafields — delete them from your store if you want them gone, or ask us and we will tell you exactly which keys to remove.

How image files are handled

When an image is optimized it is downloaded from Shopify's CDN into the app server's memory, re-encoded, uploaded back to your store, and the original media deleted from the product. The image bytes are not written to our disks and are not kept after the request that processed them finishes.

Third parties that receive data

Pixovanta uses no advertising networks, no analytics trackers and no data brokers. Data leaves our server only in these cases:

  • Shopify — All product, image, file and metafield reads and writes happen through the Shopify Admin API, and optimized images are uploaded back to Shopify's CDN. Throughout normal use.
  • OpenAI — The product title and the image's public Shopify CDN URL are sent to the gpt-4o-mini model, which fetches the image from that URL to describe it. No shop domain, merchant name or customer data is included. Only when alt text is generated — either from the Alt Text Generator, or during optimization for an image that has no usable alt text on a plan that includes the feature.
  • Google PageSpeed Insights — The public URL of the storefront product page you select. Nothing else. Only when you press “Run Live PageSpeed Test”.

The app also contains an optional code path for Anthropic as an alternative alt-text provider. It is inactive unless an Anthropic API key is configured on the deployment; if we ever enable it, this page will be updated before it is used.

Deletion and data requests

  • When you uninstall — Shopify notifies the app and we delete your credentials, your app settings and your usage counters.
  • Shop erasure requests — Shopify sends a shop redaction request 48 hours after an uninstall. We perform the same deletion again so nothing is left behind.
  • Customer data requests — Shopify may forward a customer access or erasure request. Because the app holds no customer data, there is nothing to disclose and nothing to erase, and we respond on that basis.
  • On request, at any time — contact us and we will delete your data without waiting for an uninstall, and confirm when it is done.

Cookies and session handling

Inside the Shopify admin the app authenticates with short-lived Shopify session tokens rather than its own tracking cookies. Cookies are used only where they are strictly necessary to complete the Shopify OAuth installation flow. There are no advertising or cross-site tracking cookies.

Your rights

Depending on where you are based you may have the right to access, correct, export, restrict or erase the data described above, and to object to its processing. Contact the support contact shown on our Shopify App Store listing and we will respond. If you are in the EEA or UK and are not satisfied with our response, you may complain to your local data protection authority.

Changes to this policy

If the app starts collecting something new, or starts sending data somewhere new, we will update this page and change the “last updated” date above before that change goes live.

Contact

Questions about this policy, or about data Pixovanta holds for your store: the support contact shown on our Shopify App Store listing.