Privacy Policy

Atlas AI Technology Inc. – Privacy Policy. Please review the terms below carefully.

Last updated: August 7, 2026

Atlas AI Technology Inc. ("the App") provides an AI-powered ecommerce store-building solution ("the Service") to merchants who use Shopify to power their stores. This Privacy Policy describes how personal information is collected, used, and shared when you install or use the App in connection with your Shopify-supported store.

Personal Information the App Collects

When you install the App, we are automatically able to access certain types of information from your Shopify account via the following APIs:

  • Store Information API - Store name, domain, and contact details
  • Products API - Product data including titles, descriptions, pricing, and images
  • Orders API - Information about customer orders for performance tracking and optimization
  • ScriptTag API - To embed dynamic functionalities such as product bundling or upsell logic
  • Customers API - Information related to customer activity and browsing behavior (if required for app features)

Additional Data Collected Independently from Shopify APIs:

We may also collect the following types of personal information from you and/or your customers once you have installed the App:

  • Merchant Registration Information: Name, business address, email, phone number, and billing/payment details.
  • End-User Device Data (site visitors): IP address, web browser type, time zone, and information about cookies

installed on the device.

  • Behavioral Data: Interaction logs, page visits, and browsing patterns to improve store-building

recommendations. We collect personal information:

  • Directly from you,
  • Via your Shopify account,
  • Or through the following technologies:

Cookies - Data files placed on your device to identify you uniquely. Log Files - Tracking activity on your store including IP address, browser, ISP, and timestamps. Pixels, Tags, Web Beacons - For analytics and marketing attribution.

Advertising Platform Data (Meta / Facebook)

If you choose to connect a Meta ad account, we access the following through Meta's Marketing API using the ads_read permission you grant:

  • your ad accounts, campaigns and ads
  • ad creative content (images, video, headlines, primary text, descriptions, destination URLs)
  • ad performance metrics (impressions, reach, clicks, spend, conversions)

This access is read-only. Atlas never creates, edits, pauses or spends on ads, and never manages ad accounts. We access this data only after you explicitly connect your account, and only for the ad accounts you authorize.

How Do We Use Your Personal Information?

We use the information we collect to:

  • Provide and maintain the App's core functionalities (store building, image generation, bundling, upsells)
  • Customize store-building recommendations and user interface
  • Improve the App's performance, features, and stability
  • Provide customer service and technical support
  • Communicate service updates, marketing offers, and feature announcements
  • Conduct advertising or retargeting campaigns if opted in
  • Display your connected ad accounts, ads and performance metrics inside Atlas so you can choose an ad to build a page for
  • Generate landing page content that matches the ad you select, using that ad's creative and copy as the input

We may also use this information for analytics to better understand usage trends and user behavior.

Sharing Your Personal Information

We may share your information with third-party service providers strictly necessary to operate the App or fulfill contractual and legal obligations. These include:

  • Cloud infrastructure providers (e.g., AWS, Vercel)
  • Payment processors
  • Analytics platforms (e.g., Google Analytics)
  • Email and communication tools (e.g., SendGrid, Intercom)
  • AI model providers (e.g., Google Gemini), used solely to generate page content from the inputs you provide

Ad content is sent to our AI provider only to generate your page. It is not used to train Atlas models.

We do not sell or rent your personal information. We may also share information to comply with laws or respond to lawful requests (e.g., subpoenas, court orders), or to protect the rights and safety of Atlas, its users, or others.

Behavioral Advertising

We may use your personal information to show you targeted ads or marketing content we believe may interest you. To learn more about how targeted advertising works, visit the NAI's educational page: http://www.networkadvertising.org/understanding-online-advertising/how-does-it-work You can opt out of targeted advertising at:

  • Facebook: https://www.facebook.com/settings/?tab=ads
  • Google: https://www.google.com/settings/ads/anonymous
  • Bing: https://advertise.bingads.microsoft.com/en-us/resources/policies/personalized-ads

Or by visiting the Digital Advertising Alliance: http://optout.aboutads.info/

This does not apply to data obtained from connected advertising platforms. Data accessed through Meta's Marketing API is never used for advertising, retargeting, audience building or measurement, is never sold, and is never shared with data brokers, ad networks or monetization services.

Your Rights (EU and EEA Residents)

If you are a European resident, you have the right to access the personal information we hold about you, and to request that it be corrected, updated, or deleted. To exercise this right, please contact us using the contact details below. We process your data to fulfill contracts (e.g., app usage agreement), or pursue legitimate business interests as outlined in this policy. Please note that your information may be transferred outside of Europe, including to Canada and the United States. We comply with international data protection frameworks, including the EU-U.S. Data Privacy Framework (if applicable).

Data Security

We implement appropriate technical and organizational measures to protect the personal and sensitive information we process — including data obtained through connected advertising platforms (such as Google Ads and Meta) and OAuth access/refresh tokens: Encryption in transit: All data transmitted between your browser, our servers, and third-party APIs is encrypted using industry-standard TLS/HTTPS. Encryption at rest: Sensitive data, including OAuth access and refresh tokens and imported advertising data, is stored on reputable cloud infrastructure that encrypts data at rest. Access controls: Access to personal and sensitive data is restricted to authorized personnel who need it to operate and support the App, enforced through authentication and least-privilege controls. Secure infrastructure: We host our systems with established cloud providers that maintain physical, network, and operational security safeguards. Data minimization & retention: We collect only the data necessary to provide the Service, retain it only as long as needed (see Data Retention), and delete it upon account disconnection or your request. Monitoring & incident response: We monitor our systems for unauthorized access and take reasonable steps to prevent, detect, and respond to security incidents. While we use commercially reasonable measures to protect your information, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.

Data Retention

We retain your personal information only as long as necessary to fulfill the purposes outlined in this policy. Store configuration data, customer analytics, and app activity logs are stored for up to 24 months unless you request deletion. You can request data deletion at any time by contacting us below. Advertising data imported from a connected ad account is deleted when you disconnect that account.

Data Deletion

You can disconnect a connected ad account at any time from the Ads section of Atlas. When you disconnect, the campaigns, ads and creatives imported from that account are deleted from our systems.

To request deletion of any other personal information we hold, email support@helloatlas.io. We will respond within 30 days.

Changes to This Policy

We may update this Privacy Policy from time to time to reflect operational, legal, or regulatory changes. Updated versions will be posted on our website with the "Last Updated" date.

Age Requirement

Atlas is a business tool intended for merchants aged 18 or over. We do not knowingly collect personal information from children.

Contact Us

For more information about our privacy practices or to file a complaint or data request, contact us: Email: support@helloatlas.io