Privacy Policy
SmartShip Zone · Last updated September 30, 2026
SmartShip Zone ("the App") is a Shopify app operated by Nova Commercekit("we", "us"). The App returns shipping rates at checkout based on the destination zip or postal code. This policy explains what data the App collects when a merchant installs it, how that data is used, and how it is deleted.
Data we collect
- Store information: the shop domain and the access token Shopify provides at install, so the App can register its carrier service and read shipping settings.
- Merchant settings: the zip/postal code list, enabled shipping sources and services, flat fee rates, markup, backup price, box size and the app on/off state.
- Carrier credentials: API keys and account numbers the merchant enters for FedEx, UPS, USPS or DHL Express. These are encrypted before they are stored and are never shown again.
- Rate request logs: for each checkout rate request we store the destination zip/postal code, which sources answered, the response time and any error message. Logs are used for troubleshooting and are shown to the merchant in the App.
- Billing status: the name and status of the merchant's App subscription, provided by Shopify.
The App does not store customer names, email addresses, phone numbers, street addresses or payment information. It does not request access to Shopify customer or order data.
How we use the data
- To calculate and return shipping rates at checkout.
- To request rates from the carriers the merchant has turned on. For each request we send the carrier the origin and destination zip/postal code, city and country, the package weight and box size. This is done with the merchant's own carrier account.
- To show setup status, test results and recent activity in the App.
- To check whether the merchant has an active App plan.
We do not sell data and do not use it for advertising.
Sharing
Data is shared only with Shopify, with the carriers the merchant enables (FedEx, UPS, USPS, DHL Express) to obtain rates, and with our hosting provider that runs the App servers and database.
Retention and deletion
When a merchant uninstalls the App, all data for that store (settings, zip list, flat rates, carrier credentials, logs and sessions) is deleted. We also delete store data when Shopify sends a shop redact request, and we respond to customer data and redact requests as required by Shopify.
Security
Data is sent over HTTPS. Carrier credentials are encrypted at rest. Access to servers and the database is limited to our team.
Your rights
Merchants can ask to access, correct or delete their data at any time by contacting us. If you are in the EEA, the UK or California, you may have additional rights under local law, and we will honor them.
Changes
We may update this policy. The date at the top shows the latest version.
Contact
Nova Commercekit · info@novacommercekit.com