Privacy Policy
Last updated: July 15, 2026 · GLMK Services LLC
GLMK Services LLC (“GLMK,” “we,” “us,” or “Service Provider”) builds applications for the Shopify platform that help merchants with promotions, profitability insights, and related store operations. This Privacy Policy describes how we collect, use, disclose, and protect information relating to our apps (including Catalog Sale, listed on the Shopify App Store as GLMK Catalog Sale, and future apps) and glmkapps.com.
We process the minimum personal data required to provide value to merchants, tell merchants what we process and why, and limit use to those purposes. We do not sell personal data.
Who we are
GLMK Services LLC is a limited liability company organized in the United States. Contact for privacy and support: support@glmkapps.com.
Principal office:
9234 Kingston Pike # 370
Knoxville, TN 37922
Knox County, USA
What information we obtain and how it is used
Information you or your store provide
When you install and use an app from GLMK Services LLC, we may obtain information you supply or that Shopify makes available through authorized APIs, including:
- Shop domain and installation / session information
- Staff and store-owner details needed for authentication and support (as provided by Shopify—such as name, email, phone, or address when Shopify surfaces them for the installing merchant)
- App configuration you create (for example campaign titles, percentages, tags, and settings)
- Product and collection data needed to create and manage discounts
- Order and discount-application identifiers needed to meter usage and enforce plan limits (for Catalog Sale: typically recent order history within Shopify’s protected-customer-data window, such as the last 60 days—not buyer name, email, phone, or shipping address)
- Discount codes and promotion records we create or edit on your behalf through Shopify’s discount APIs
- For future finance and analytics apps: store performance data you authorize (for example product, inventory, or order metrics) solely to deliver those features
Registration with GLMK beyond Shopify install is not always required. Some features may not work unless the app remains installed and authorized.
We may contact you using merchant contact details available through Shopify or that you send us, to provide important notices, support, and service-related messages. Catalog Sale does not collect or store customer (buyer) name, email, phone, or physical address.
Automatically collected information
We and our infrastructure providers may automatically collect limited technical information, such as IP address, browser or device type, operating system, and how the app or website is used (for security, reliability, and product improvement). This matches the device and activity data Shopify may show in the App Store data-access summary.
Location
Our apps do not collect precise real-time GPS location of a device. Approximate location may be inferred from IP address for security, fraud prevention, and aggregate analytics.
Protected customer data
Where an app requires access to Shopify protected customer data (for example order-related identifiers for usage metering), we request only what is necessary for app functionality described in the app listing and this policy. Catalog Sale’s purpose for order access is app functionality (counting discounted orders against plan limits). We do not use protected customer data for marketing to buyers.
Catalog Sale access scopes (summary)
Catalog Sale requests Shopify scopes to read products, read recent orders for metering, and read/write discounts. Exact scopes are shown at install time and in the App Store listing data-access section.
Why we process information
- Operate and improve our apps
- Create and manage promotions or other features you configure
- Meter usage and enforce Free, Growth, Pro, and Scale plan limits
- Bill merchants through Shopify Billing when paid plans are enabled
- Provide support and security
- Understand aggregate product usage
- Comply with law and Shopify platform requirements (including mandatory privacy webhooks)
Do third parties see or access information?
We may share information with trusted service providers who process data on our behalf (for example cloud hosting and databases—Catalog Sale production currently runs on Fly.io infrastructure—and email delivery). They are not permitted to use the information for their own independent purposes and must protect it appropriately.
We may also disclose information:
- As required by law, regulation, or legal process
- When we believe in good faith disclosure is necessary to protect rights, safety, investigate fraud, or respond to a government request
- In connection with a merger, acquisition, or asset sale, with notice where required
Shopify processes store and customer data under Shopify’s own terms and policies when you use the Shopify platform. App subscription charges are processed by Shopify Billing.
Opt-out and uninstall
You can stop collection of app data by uninstalling the application from your Shopify admin using Shopify’s standard uninstall process. You may also contact support@glmkapps.com to request deletion of merchant-provided data we hold, subject to legal retention requirements. Some data is required for the app to function while installed.
Data retention
We retain user-provided and app data for as long as you use the application and for a reasonable period afterward as needed for support, billing disputes, security, and legal obligations. Automatically collected technical logs are typically retained for up to 24 months and may thereafter be stored only in aggregate form.
When a merchant uninstalls an app, we delete that shop’s app data
(including campaigns, sessions, and usage records) from active systems,
subject to short-term backups and legal requirements. Shopify compliance
webhooks (customers/data_request,
customers/redact, shop/redact) are honored.
For Catalog Sale, customers/data_request typically has no
buyer PII to return; customers/redact removes matching
metered order identifiers when provided; shop/redact
deletes shop data after uninstall as required by Shopify.
Security
We use physical, electronic, and procedural safeguards appropriate to the data we process, including HTTPS / TLS in transit and encryption at rest for production systems. Access is limited to authorized personnel and contractors who need it to operate or improve the service. No method of transmission or storage is completely secure.
International privacy laws
We serve merchants worldwide and design our practices to respect applicable privacy laws, including the frameworks below. Where laws differ, we apply the protections required for the relevant individuals and merchants.
European Economic Area and United Kingdom (GDPR / UK GDPR)
Where the EU General Data Protection Regulation (GDPR) or UK GDPR applies, we process personal data on lawful bases such as performance of a contract (providing the app), legitimate interests (security, product improvement, limited analytics), and legal obligation. You may have rights to access, rectify, erase, restrict, or object to processing, and to data portability. You may lodge a complaint with a supervisory authority. Contact support@glmkapps.com to exercise rights. We do not use personal data for automated decision-making that produces legal or similarly significant effects.
United States (including CCPA / CPRA where applicable)
We do not sell personal information. We do not share personal information for cross-context behavioral advertising. California residents and residents of other U.S. states with similar laws may have rights to know, delete, correct, or opt out of certain processing. Submit requests to support@glmkapps.com. We will not discriminate against you for exercising privacy rights.
Australia (Privacy Act and Australian Privacy Principles)
We handle personal information in accordance with the Australian Privacy Principles where they apply, including taking reasonable steps to protect information and allowing access and correction requests via support@glmkapps.com.
New Zealand (Privacy Act 2020)
Where New Zealand’s Privacy Act applies, we collect and use personal information for lawful purposes connected with our functions, keep it secure, and respond to access and correction requests.
India (Digital Personal Data Protection Act, 2023)
Where India’s DPDP Act applies, we process digital personal data for lawful purposes related to providing our apps and support, implement reasonable security safeguards, and honor applicable rights requests through support@glmkapps.com.
Other jurisdictions
Merchants and individuals in other countries may have additional rights under local law. Contact us and we will respond in accordance with applicable requirements.
Children
Our apps and website are directed at businesses, not children. We do not knowingly solicit or collect personal information from children under 13 (or under 16 where a higher age applies). If you believe a child has provided personal information, contact support@glmkapps.com and we will delete it promptly.
Website visitors
glmkapps.com is a marketing and support site. We do not run advertising trackers for selling personal data. Hosting providers may process standard server logs (such as IP address) for security and reliability.
Your consent
By installing or using an app from GLMK Services LLC or using glmkapps.com, you consent to processing of information as described in this Privacy Policy, as updated from time to time. “Processing” includes collecting, storing, using, deleting, and disclosing information as described here.
Changes
We may update this Privacy Policy from time to time. We will post the revised policy on this page and update the “Last updated” date. Continued use after changes constitutes acceptance of the updated policy where permitted by law.
Contact us
Questions about privacy or data practices:
support@glmkapps.com
GLMK Services LLC
9234 Kingston Pike # 370
Knoxville, TN 37922
Knox County, USA