Privacy policy
Last updated: September 28, 2026
Zoho CRM Sync ("the app") is provided by Digital Executive Partner (digitalexecutivepartner.app). This policy explains what data the app processes when a merchant installs it on a Shopify store.
What the app accesses
With the merchant's permission, the app reads customers, products, inventory levels and orders from the Shopify store and writes them to the merchant's own Zoho CRM account. Customer personal data (name, email, phone, addresses, marketing consent) is sent directly to that Zoho CRM account.
What the app stores
- Encrypted access tokens for Shopify and for the merchant's Zoho CRM.
- Identifier mappings (Shopify record ID ↔ Zoho CRM record ID) so later changes update the same record.
- A short activity log (event type, record ID, result) and sync settings.
The app does not keep copies of customer names, emails, addresses or order contents after a sync, does not sell data and does not use it for advertising.
Where data is processed
The app runs on Cloudflare Workers and stores its data in an encrypted Postgres database (Neon). Data sent to Zoho CRM is governed by the merchant's agreement with Zoho.
Sub-processors
- Cloudflare, Inc. — application hosting and network (encryption in transit).
- Neon, Inc. — encrypted database and backups.
- Zoho Corporation — the merchant's own CRM account, chosen and controlled by the merchant.
Customer choices
Email marketing consent from Shopify is passed to Zoho CRM as "Email Opt Out" on every sync. The app does not sell personal data, does not use it for advertising or profiling, and makes no automated decisions about customers.
Security
Access tokens are encrypted with AES-256-GCM, all traffic uses HTTPS, staff access is limited to the app owner and every access to shop data is recorded in an audit log. See our security & incident response policy.
Retention and deletion
When the app is uninstalled, syncing stops immediately and all data stored by the app for that store is deleted within 48 hours (Shopify shop/redact). Customer deletion requests from Shopify (customers/redact) remove the related mappings. Records already written to Zoho CRM belong to the merchant and can be deleted in Zoho.
Contact
Questions, data requests or a data processing agreement: digitalexecutivepartner@gmail.com. Use of the app is also governed by our Terms of Service.