CartGuard
Last updated: September 10, 2026
CartGuard collects only the minimum data required to function as a Shopify app:
When you enable the optional exemption and country rules, the checkout validation reads the following about the shopper at the moment of checkout, purely to decide whether to block the order:
This evaluation runs entirely inside Shopify's checkout infrastructure. None of it is transmitted to us, logged, or stored anywhere. We never see it.
We do not store or process customer personal data on our own systems. We do not use cookies, tracking pixels, or analytics on your storefront, and we do not build customer profiles.
Session data is stored in a PostgreSQL database hosted on Railway with encrypted connections. Configuration settings (blocked tags, product types, error messages) are stored in Shopify metafields on your store — we do not maintain a separate copy.
Session data is automatically deleted when you uninstall the app. Metafield configuration data remains on your Shopify store and can be managed through the Shopify admin.
CartGuard is free. We do not collect payment information and there is no paid plan.
We do not sell, share, or transfer any data to third parties.
If you have questions about this privacy policy or want to request data deletion, please contact us at kevin@kwat.me.