Privacy Policy
Effective date: September 16, 2026.
DTCUP LLC operates DTCUP FAQ Studio, a Shopify app for managing and displaying frequently asked questions. This policy covers information processed through our app and support service. It does not replace a merchant’s storefront privacy policy.
Information we process
- Store domain, installation status, permissions and authentication sessions. Shopify sessions may include the authorized staff user’s ID, name, email, language and account-owner status.
- FAQ questions and answers, categories, translations, keywords, question sets, page assignments, appearance settings, custom CSS, uploaded media references, import data and synchronization records. Internal snapshots may be retained for synchronization and recovery.
- Published store resources used to select FAQ placement, including page, product and collection information, and files selected for FAQ answers.
- Subscription status and billing-period information returned by Shopify when paid-plan verification is enabled. Shopify processes payment approval and charges; DTCUP does not collect payment-card details.
- Information provided in support messages and technical request/error information processed by our hosting and security systems.
We do not request Shopify customer, order or payment-card API access. Do not include private customer information in FAQ content. Published FAQs are public. FAQ searches run in the visitor’s browser; the app does not send search terms to a DTCUP analytics service.
How we use information
We use information to authenticate merchants, separate store workspaces, edit and synchronize FAQs, verify subscriptions, provide support, diagnose failures and secure the service. We do not use FAQ content to train AI or run targeted advertising. Depending on applicable law and the processing involved, we rely on providing the requested service, legitimate interests in operating and securing it, legal obligations, or consent where required.
Publishing and service providers
Published content is synchronized to Shopify and rendered by theme app blocks. Authentication tokens, internal notes and unpublished editing data are not included in the public FAQ snapshot. Merchants decide which content to publish.
We use Shopify for platform integration, billing and content delivery, and Amazon Web Services for hosting and database infrastructure in Northern Virginia, United States. Support communications are processed by our email service. Authorized operational personnel may access information to provide the service, including from China. Information may therefore be processed outside your country.
Shopify CDN images and merchant-selected external video providers may receive visitors’ connection information when that media loads. Those providers’ policies and the merchant’s privacy notice also apply. We share information only as needed with service providers, to meet legal obligations, or to protect the service and legal rights. We do not sell personal information or share it for cross-context behavioral advertising.
Retention and deletion
We retain workspace data while it is needed to provide the service. On a verified Shopify uninstall event, the app removes stored sessions, marks the installation inactive and cancels queued sync tasks. Uninstalling does not necessarily erase the workspace instantly. Shopify’s verified shop-redaction notification triggers deletion of that store’s app database records and associated sessions.
Routine daily database backups rotate on an approximately 14-day schedule. Separate recovery archives, support communications and security logs are retained only as needed for their operational purpose or applicable legal obligations. A deletion request may not immediately remove data from a backup; it ages out through backup retention. Information stored in Shopify remains subject to Shopify’s lifecycle and the merchant’s control.
Security and preferences
We use HTTPS, Shopify authentication, verified webhooks, store-scoped access controls and encryption for stored access and refresh tokens. No system is completely secure. The admin interface may store your language preference in local browser storage; it is not an advertising identifier.
Your choices and rights
Merchants can edit FAQs, export supported workspace data and uninstall the app in Shopify. Depending on your location, you may have rights to access, correct, delete, restrict or object to processing, request portability, withdraw consent, or complain to a data-protection authority. Contact us to exercise your rights; we may verify your identity or authority for a store. Store visitors should contact the relevant merchant about that merchant’s information practices.
Contact and updates
Email: admin@dtcup.com
DTCUP LLC
Building 7, Lane 16, Qujiang Road, Jiading District, Shanghai, China
上海市嘉定区曲江路16弄7号
We will update this policy when our practices change, revise the effective date, and provide additional notice when required by applicable law.