NudgePilot

NudgePilot privacy policy

Last updated September 29, 2026

NudgePilot, a Shopify app and a plugin for WooCommerce, shows shoppers who seem unsure one short message with a store’s own shipping or returns terms, and measures whether that helps. It is operated by Strenvo Trading (KvK 96110910), Burgemeester Hogguerstraat 309, Amsterdam, the Netherlands. This policy explains what NudgePilot collects when a merchant installs or connects it and when shoppers visit that merchant’s store.

What we never store

NudgePilot never stores or logs shoppers’ names, email addresses, phone numbers, postal addresses, IP addresses, customer IDs, order IDs, cart contents, or payment details. It cannot link anything it stores to a person.

Information about shoppers

On a Shopify store, only when a shopper allows both analytics and preferences through the store’s cookie banner (Shopify’s Customer Privacy settings); on a WooCommerce store, only when a shopper allows statistics cookies in a cookie banner that uses the WP Consent API, or, if the store says it doesn’t ask for consent, unless a banner records a refusal, NudgePilot processes:

The shopper’s browser keeps the session ID and counts in session storage until the tab closes, and remembers a dismissed message for 7 days (a timestamp only). If a shopper declines or withdraws consent, NudgePilot stops, removes what it stored in session storage, and sends nothing.

On a WooCommerce store, the session ID is also kept in a first-party cookie, for the visit or for 24 hours once checkout starts, so the store can link a paid order to the visit. The store keeps the session ID on that order, on its own site, until it reports the sale to NudgePilot, and at most 48 hours.

Information about merchants

Through Shopify’s APIs, NudgePilot stores the store’s domain and the access token Shopify issues so the app can work, and counts the store’s sessions each month to apply its plan. The shipping and returns facts, message settings, and monthly result totals that a merchant enters or that NudgePilot calculates are saved in the merchant’s own Shopify store, not on our server. NudgePilot does not store staff names or email addresses.

For a WooCommerce store, NudgePilot stores the site’s address, a site ID, the plugin version, and the few settings its server needs (whether it’s on, the store’s currency, returns terms, and whether product comparison is on); shipping facts and other settings stay on the merchant’s own site. Its monthly result totals are kept on our server. Paid plans for WooCommerce stores are sold by Paddle, our reseller, which collects the merchant’s contact and payment details under its own privacy policy; NudgePilot receives only the plan, its status and dates, and Paddle’s customer and subscription IDs.

How we use it

Only to decide when to show the merchant’s message, to compare shoppers who see it with shoppers who don’t, and to report store-wide results to the merchant. We don’t sell data, use it for advertising, or combine it across stores.

Who processes it

ProviderPurposeData
Fly.ioHosting in Amsterdam, the NetherlandsEverything NudgePilot’s server stores
TypeSafeJev, the model that decides when to show a message (called Smart timing in the app). Hosted in the United States, under the EU Standard Contractual ClausesAction counts only, with no session ID, store name, web address, or amount
ShopifyDelivers storefront requests and stores settings and results for Shopify storesAs described above
PaddleOur reseller for WooCommerce paid plans: payment, tax, and invoices, under Paddle’s privacy policyThe merchant’s billing details, which Paddle collects itself; from NudgePilot, only the store’s ID and plan

How long we keep it

Your rights

Because NudgePilot can’t link its data to a person, it has nothing to return or erase for an individual shopper; it still answers every request Shopify forwards. Shoppers can prevent all processing by declining analytics or preferences (on WooCommerce, statistics) in the store’s cookie banner. On WooCommerce, the store’s WordPress export and erasure tools include the session ID kept on orders. Merchants can remove all of their store’s data from NudgePilot’s server by uninstalling the app or deleting the plugin.

Contact

Questions or requests: hamet.gh@gmail.com. Shoppers can also contact the store they visited.

Changes

We’ll update this page and its date when these practices change.