Last updated: August 20, 2026
Overview
ChronoBase Supplier ("the App") is a business-to-business (B2B) tool that lets a Shopify merchant connect their own wholesale supplier account, browse live wholesale catalog data, import selected products into their own Shopify store, and automatically or manually forward paid orders to their dropshipping supplier (dropshippingb2b.com) with tracking sync back to Shopify. For the order-forwarding feature, the App reads and temporarily stores limited customer shipping information solely to route the order and write tracking updates back; this is described in detail below.
Data we store
When you install the App and connect a supplier account, we store the following, scoped to your store:
| Data | Purpose | Protection |
|---|---|---|
Your .myshopify.com domain and installation status |
Identify your store and know whether the App is installed | Stored as-is |
| Shopify Admin API access token and granted scopes | Create and update products/inventory in your store on your behalf | Encrypted at rest (AES-256-GCM) |
| Your supplier account credentials | Fetch your live wholesale catalog, pricing, and stock | Encrypted at rest (AES-256-GCM) |
| Plan and subscription status | Apply the correct plan entitlements and billing state | Stored as-is |
| Supplier connectivity status (last check result and timestamp) and operational logs | Show whether your supplier connection is working and to troubleshoot the service | Business data — not personal data |
| Enriched product image URLs (paid image-enrichment add-on) | Preserve the product photos you spent a credit to find across reloads and include them when you import a product to Shopify | Business data (public image URLs) — not personal data |
| Image-enrichment credit balance, monthly allowance usage, and credit-transaction history | Track your remaining credits and provide an audit trail of grants, uses, and refunds for the paid add-on | Business data — not personal data |
| Order ID / order name and matched line items (order-forwarding feature) | Forward the order to your dropshipping supplier and reconcile the supplier's confirmation back to the Shopify order | Business data — not personal data |
| Customer ID (Shopify numeric ID), Shopify order ID/name, recipient (shipping contact) name, delivery/postal address, email address, and phone number (order-forwarding feature) | Provide the supplier (dropshippingb2b.com) with the recipient's name, delivery address, email, and phone so the order can be fulfilled, shipment can be coordinated, and tracking/support can be handled; write tracking information back to the Shopify fulfillment | Customer personal data (protected customer data). Stored only for active forwarded orders; the contact and shipping details (name, address, email, phone) and customer ID are automatically cleared 30 days after the order is marked shipped, preserving non-PII operational data (totals, tracking). Erased immediately on uninstall or customer erasure request. |
Your wholesale catalog data (product names, brands, EANs, stock levels, wholesale/retail prices, and image references) is read live from your own supplier account each time you use the App. The embedded App does not keep a stored, per-store copy of your catalog; it is fetched on demand to display inventory and to let you import selected products into your Shopify store. The one exception is the paid image-enrichment add-on: when you enrich a product, the resulting public image URLs are saved (keyed to your store and the supplier product) so the images you paid a credit for persist across reloads and can be included when you import that product.
Customer personal data
When the order-forwarding feature is active, the App reads and temporarily stores limited customer data from orders whose products are matched to your supplier catalog:
- Customer ID and Shopify order ID/name — the Shopify numeric customer identifier and order identifiers, used to link a fulfillment/tracking update back to the correct order.
- Recipient (shipping contact) name and delivery/postal address — forwarded to dropshippingb2b.com so the supplier can ship the order to your customer.
- Email address — read from the order and forwarded to dropshippingb2b.com; it is required by the supplier's order API and is used for order fulfillment, shipment coordination, and support.
- Phone number — when present on the order's shipping address, read and forwarded to dropshippingb2b.com for shipment/delivery coordination.
We do read and store your customers' email addresses and phone numbers for the order-forwarding feature, and we transmit them to dropshippingb2b.com when an order is placed or auto-placed. The purposes are order fulfillment, shipment coordination and tracking, and customer support.
This data is stored only for the duration of the active forwarded order plus a
30-day post-fulfillment support window. Once the order is marked shipped, the
recipient name, delivery/postal address, email address, phone number,
and customer ID are automatically cleared 30 days after fulfillment (measured
from the updatedAt / shipped-at timestamp). Non-PII operational data
(order totals, line items, tracking numbers) is retained for billing and support
records.
If a merchant's store is uninstalled or deleted, all forwarded-order records
(including any remaining recipient contact data — name, address, email, and phone)
are purged immediately.
If a customer submits an erasure request (customers/redact),
the matching forwarded-order records are anonymized immediately: the recipient
name, delivery/postal address, email address, phone number, and the Shopify
customer ID are cleared. Non-PII operational data (order reference, totals, line
items, tracking numbers) may be retained for billing and support records.
If you use the App only for product catalog browsing and Shopify product imports (no order forwarding), no customer personal data is stored.
How we use data
- To fetch your wholesale catalog and keep stock/price information current.
- To create and update products and inventory in your Shopify store when you choose to import a product.
- To forward paid orders to your dropshipping supplier and sync fulfillment/tracking information back to Shopify (order-forwarding feature).
- To apply your plan's entitlements and reflect your subscription status.
- To operate, secure, and troubleshoot the service (operational logs).
We do not sell your data or use it for advertising.
Third parties we share data with
To provide its features, the App exchanges data with the following services, only as needed:
| Service | What is sent | Why |
|---|---|---|
| Your wholesale supplier (dropshippingb2b.com) | Your supplier credentials and catalog requests; for order forwarding: order line items, recipient (shipping contact) name, delivery/postal address, email address, and phone number | Retrieve your wholesale catalog, pricing, and stock; fulfill forwarded orders on behalf of your customers and coordinate shipment/tracking and support |
| Shopify | Product and inventory data, billing status; for order forwarding: fulfillment records and tracking numbers written back to Shopify orders | Create/update products in your store, manage your subscription, and update order fulfillment/tracking |
| Brave Search (optional image enrichment) | Product identifiers (brand, model, EAN) — no personal data | Find product photography for imported products |
| OpenAI (optional description generation) | Product attributes (brand, model, specs) — no personal data | Generate storefront-ready product descriptions |
Data retention and deletion
- When you uninstall the App, we immediately deactivate your store, blank the stored Shopify access token, delete your supplier credentials, delete all image-enrichment data for your store (saved image URLs, credit balances, and the credit-transaction ledger), and purge all forwarded-order records including any stored recipient contact data (name, address, email, and phone).
- Shop data erasure (Shopify's
shop/redact, sent about 48 hours after uninstall) permanently deletes your store's remaining installation record and any remaining enrichment and order-forwarding data. - Forwarded-order records: recipient (shipping contact) name, delivery/postal address, email address, phone number, and customer ID are automatically cleared 30 days after fulfillment is confirmed (order marked shipped). Non-PII data (order totals, tracking, line items) is retained for operational records.
- Customer erasure requests (Shopify's
customers/redact) anonymize the matching forwarded-order records: the recipient contact data (name, address, email, and phone) and the Shopify customer ID are cleared, while non-PII operational data (order reference, totals, line items, tracking) may be retained. - You can also disconnect or replace your supplier credentials at any time from the App's settings.
Security
All traffic is served over HTTPS. Sensitive credentials (your Shopify access token and supplier credentials) are encrypted at rest using AES-256-GCM. Inbound Shopify webhooks are verified by HMAC-SHA256 signature. Access to your store's data requires a valid, Shopify-issued session for your store. Customer shipping data stored for order forwarding is subject to the same access controls and is not exposed to any party other than the supplier and Shopify.
Contact
Questions about this policy or your data? Contact us at help@tempuskronos.com.