ChronoBase Supplier

Privacy Policy

How the ChronoBase Supplier Shopify app collects, uses, and protects data.

Last updated: August 20, 2026

Overview

ChronoBase Supplier ("the App") is a business-to-business (B2B) tool that lets a Shopify merchant connect their own wholesale supplier account, browse live wholesale catalog data, import selected products into their own Shopify store, and automatically or manually forward paid orders to their dropshipping supplier (dropshippingb2b.com) with tracking sync back to Shopify. For the order-forwarding feature, the App reads and temporarily stores limited customer shipping information solely to route the order and write tracking updates back; this is described in detail below.

Data we store

When you install the App and connect a supplier account, we store the following, scoped to your store:

DataPurposeProtection
Your .myshopify.com domain and installation status Identify your store and know whether the App is installed Stored as-is
Shopify Admin API access token and granted scopes Create and update products/inventory in your store on your behalf Encrypted at rest (AES-256-GCM)
Your supplier account credentials Fetch your live wholesale catalog, pricing, and stock Encrypted at rest (AES-256-GCM)
Plan and subscription status Apply the correct plan entitlements and billing state Stored as-is
Supplier connectivity status (last check result and timestamp) and operational logs Show whether your supplier connection is working and to troubleshoot the service Business data — not personal data
Enriched product image URLs (paid image-enrichment add-on) Preserve the product photos you spent a credit to find across reloads and include them when you import a product to Shopify Business data (public image URLs) — not personal data
Image-enrichment credit balance, monthly allowance usage, and credit-transaction history Track your remaining credits and provide an audit trail of grants, uses, and refunds for the paid add-on Business data — not personal data
Order ID / order name and matched line items (order-forwarding feature) Forward the order to your dropshipping supplier and reconcile the supplier's confirmation back to the Shopify order Business data — not personal data
Customer ID (Shopify numeric ID), Shopify order ID/name, recipient (shipping contact) name, delivery/postal address, email address, and phone number (order-forwarding feature) Provide the supplier (dropshippingb2b.com) with the recipient's name, delivery address, email, and phone so the order can be fulfilled, shipment can be coordinated, and tracking/support can be handled; write tracking information back to the Shopify fulfillment Customer personal data (protected customer data). Stored only for active forwarded orders; the contact and shipping details (name, address, email, phone) and customer ID are automatically cleared 30 days after the order is marked shipped, preserving non-PII operational data (totals, tracking). Erased immediately on uninstall or customer erasure request.

Your wholesale catalog data (product names, brands, EANs, stock levels, wholesale/retail prices, and image references) is read live from your own supplier account each time you use the App. The embedded App does not keep a stored, per-store copy of your catalog; it is fetched on demand to display inventory and to let you import selected products into your Shopify store. The one exception is the paid image-enrichment add-on: when you enrich a product, the resulting public image URLs are saved (keyed to your store and the supplier product) so the images you paid a credit for persist across reloads and can be included when you import that product.

Customer personal data

When the order-forwarding feature is active, the App reads and temporarily stores limited customer data from orders whose products are matched to your supplier catalog:

We do read and store your customers' email addresses and phone numbers for the order-forwarding feature, and we transmit them to dropshippingb2b.com when an order is placed or auto-placed. The purposes are order fulfillment, shipment coordination and tracking, and customer support.

This data is stored only for the duration of the active forwarded order plus a 30-day post-fulfillment support window. Once the order is marked shipped, the recipient name, delivery/postal address, email address, phone number, and customer ID are automatically cleared 30 days after fulfillment (measured from the updatedAt / shipped-at timestamp). Non-PII operational data (order totals, line items, tracking numbers) is retained for billing and support records. If a merchant's store is uninstalled or deleted, all forwarded-order records (including any remaining recipient contact data — name, address, email, and phone) are purged immediately. If a customer submits an erasure request (customers/redact), the matching forwarded-order records are anonymized immediately: the recipient name, delivery/postal address, email address, phone number, and the Shopify customer ID are cleared. Non-PII operational data (order reference, totals, line items, tracking numbers) may be retained for billing and support records.

If you use the App only for product catalog browsing and Shopify product imports (no order forwarding), no customer personal data is stored.

How we use data

We do not sell your data or use it for advertising.

Third parties we share data with

To provide its features, the App exchanges data with the following services, only as needed:

ServiceWhat is sentWhy
Your wholesale supplier (dropshippingb2b.com)Your supplier credentials and catalog requests; for order forwarding: order line items, recipient (shipping contact) name, delivery/postal address, email address, and phone numberRetrieve your wholesale catalog, pricing, and stock; fulfill forwarded orders on behalf of your customers and coordinate shipment/tracking and support
ShopifyProduct and inventory data, billing status; for order forwarding: fulfillment records and tracking numbers written back to Shopify ordersCreate/update products in your store, manage your subscription, and update order fulfillment/tracking
Brave Search (optional image enrichment)Product identifiers (brand, model, EAN) — no personal dataFind product photography for imported products
OpenAI (optional description generation)Product attributes (brand, model, specs) — no personal dataGenerate storefront-ready product descriptions

Data retention and deletion

Security

All traffic is served over HTTPS. Sensitive credentials (your Shopify access token and supplier credentials) are encrypted at rest using AES-256-GCM. Inbound Shopify webhooks are verified by HMAC-SHA256 signature. Access to your store's data requires a valid, Shopify-issued session for your store. Customer shipping data stored for order forwarding is subject to the same access controls and is not exposed to any party other than the supplier and Shopify.

Contact

Questions about this policy or your data? Contact us at help@tempuskronos.com.