Privacy policy — SalesAI
Effective date: 26 August 2026.
Who we are
FL1 s.r.o., IČO 04626664, registered at Moskevská 1464/61, Vršovice, 101 00 Praha 10, Czech Republic, trading as Pixarts ("we"). We operate the SalesAI Shopify app, an AI shopping assistant that merchants embed in their storefront.
For anything concerning privacy, write to daniel@pixarts.eu.
What the app does
The assistant answers shoppers' questions in the storefront chat. It can search the merchant's catalogue, add a product to the cart, take the shopper to checkout, and — once the shopper has proved the order is theirs — tell them its status.
What we process, and why
What the shopper writes in the chat. Needed to answer them at all. The text is sent to Anthropic, which generates the reply.
The shopper's email address, for order verification only. When a shopper asks about an order, we email a six-digit code to the address they give and disclose nothing until they return it. Without that step, anyone could ask about anyone's order.
Order status from the merchant's shop. Order number, dates, fulfilment and payment status, and tracking information — read from Shopify at the moment of the question and relayed into the conversation.
What we do not do
We do not sell personal data, and never have. We do not use it for advertising, profiling, or building shopper profiles across shops.
We do not read a customer's name, phone number or postal address from Shopify: the app does not request access to those fields at all. We hold no write access to any shop — the app can read products, inventory and orders, and nothing else.
Product recommendations come from searching the merchant's catalogue and from what the shopper says in that conversation, never from their purchase history or from data about them.
What we store, and for how long
| What | Stored as | Kept for |
|---|---|---|
| WhatThe conversation | Stored asPlain text | Kept forAt most 25 hours, then deleted automatically |
| WhatThe shopper's email, for order verification | Stored asA one-way HMAC digest — never the address itself | Kept for24 hours |
| WhatThe verification code | Stored asA one-way digest | Kept for24 hours |
| WhatTechnical log of assistant actions | Stored asNo personal data: action name, outcome, duration | Kept for90 days |
| WhatOrder status data | Stored asNot stored at all — read live and discarded | Kept for— |
Every window above is enforced by a scheduled deletion process, not by policy alone.
Where the data is
The application and its database run on servers provided by OVH in the Czech Republic. The assistant platform's database is hosted by Supabase in Ireland (AWS eu-west-1). Both are inside the European Union.
The one exception is Anthropic, which generates the assistant's replies and processes in the United States. That transfer is covered by Anthropic's Data Processing Addendum, which incorporates the European Commission's Standard Contractual Clauses.
Who else processes the data
| Who | What for | Where |
|---|---|---|
| WhoAnthropic | What forGenerates the assistant's replies; receives the conversation text | WhereUnited States, under Standard Contractual Clauses |
| WhoSupabase | What forHosts the assistant platform's database | WhereIreland |
| WhoOVH.CZ | What forHosts the application and its database | WhereCzech Republic |
Email verification codes are sent from our own mail server, running on the same infrastructure.
Security
Everything travels over HTTPS. At rest, access tokens and per-shop secrets are encrypted with AES-256-GCM. Email addresses and verification codes are never stored in a reversible form: they are one-way digests computed with a separate secret, so even full access to the encryption key does not reveal them.
Access to production systems is limited to Pixarts partners, with personal credentials and two-factor authentication, and is revoked when the relationship ends. Everyone with access is bound by confidentiality.
Your rights
You can ask what we hold about you, ask for it to be corrected or deleted, object to the processing, or complain to a supervisory authority — in the Czech Republic, the Úřad pro ochranu osobních údajů. Write to daniel@pixarts.eu.
In practice most of these resolve quickly, because we hold very little and not for long: within about a day of a conversation ending, both the conversation and the verification record are gone.
If you shop with a merchant who uses this app, that merchant is the controller of their own customer data and we act on their instructions. Requests sent through Shopify's customer data request and erasure channels reach us automatically and are acted on.
Changes
We will publish any change to this policy at this address, with a new effective date. Merchants are notified of material changes at least 30 days in advance.