This Privacy Policy describes how Geo: Redirect & Country Block (the “App”) collects, uses, and discloses information when you install or use the App with your Shopify-supported store.
Information we collect
When you install the App, we can access limited information required to provide its features:
- Shop domain and configuration settings.
- Customer IP addresses, strictly for geolocation and protection purposes.
- Storefront browsing activity used to trigger redirects or blocks.
- When anti-fraud protection is enabled: normalized IP reputation score, risk level, provider, and detected risk signals such as recent abuse, automation, VPN, proxy, Tor, or hosting usage.
- When Order Risk is enabled: order ID, order number, timestamps, amount, currency, fulfillment and financial status, checkout IP address, and Shopify risk assessment.
How we use your information
We process collected information to:
- Provide geolocation redirection and blocking services.
- Report analytics on redirection and blocking events.
- Improve and monitor App performance.
- Check for VPN, proxy, hosting, or similar anonymizing services when anti-fraud protection is enabled.
- Associate checkout IP activity with an order and surface advisory risk signals when Order Risk is enabled.
The App does not automatically cancel, refund, hold, or reject orders. Final order decisions remain with the merchant.
Data retention
Storefront visitor logs, including raw IP addresses, are retained for up to 7 days. Order Risk records are retained for up to 60 days. Operational billing-event records may be retained for up to 35 days. IP reputation cache entries use keyed IP hashes rather than raw IP addresses and expire automatically based on their short cache lifetime. Data is automatically deleted after the applicable period unless a shorter period is required by a verified deletion request.
Security
The App uses HTTPS to protect data in transit. Checkout IP addresses, IP-derived location data, order display metadata, and risk-signal details retained in Order Risk are encrypted before database storage. Deterministic keyed hashes support order linkage, deletion requests, and repeated-IP comparisons without querying encrypted values.
Third-party processors
Geolocation lookups are primarily performed with local IP geolocation data. When region-level data is unavailable, IP addresses may be processed by a third-party IP geolocation provider to improve accuracy. When a merchant enables and configures VPN or proxy checking, IP addresses may also be sent to that provider for fraud and security checks.
Merchant instructions and privacy requests
We process data only to provide the functions described above and on the merchant’s instructions. We do not sell protected customer data or use it for advertising. We process Shopify’s mandatory customer data request, customer redaction, and shop redaction webhooks and delete linked Order Risk records when requested.
Changes
We may update this policy to reflect changes to our practices or for operational, legal, or regulatory reasons. The latest revision date will always appear at the top of this page.
Contact us
Questions about our privacy practices, requests, or complaints can be sent to our support team.
support@bluepeaks.top↗