Revenue Engine Privacy Policy
Last updated October 7, 2026
Revenue Engine is a Shopify admin app made by CHRISPSDesign ("we"), the Canadian company that owns Utilwell. Each store gets its own private installation. This policy explains what Revenue Engine accesses, why, and how it is protected.
Data we access
Revenue Engine has read-only access to your store's orders (including full order history), customers, products, inventory, discounts and reports. It never writes to Shopify: it does not create discounts, change prices, tag customers or send email.
What we store
- Orders, line items, products and abandoned checkouts, to calculate insights and measure campaigns.
- Customers: customer ID, first name, country, email-marketing status and tags. Customer email addresses are not stored in the database.
- Campaign recipient files: when you launch a campaign you approved, the email addresses of the consenting customers in it are fetched from Shopify at that moment and written to that campaign's recipient file, so you can import it into your email tool.
- An audit log of approvals, launches and settings changes.
If you connect Omnisend (optional, with your own Omnisend API key, stored encrypted), launching an approved campaign also tags those contacts in your Omnisend account and sets campaign properties on them, such as their product pick. A weekly summary event is sent to your own address. Revenue Engine never changes anyone's subscription status in Omnisend.
How we use it
- To find and rank opportunities, and draft campaigns for your approval.
- To measure results against a randomly held-back group.
- Campaigns only ever include customers whose email-marketing status in Shopify is "subscribed", checked again at launch, and never anyone on your suppression list.
We never sell data, never use one store's data for another store, and never contact your customers ourselves.
Storage and security
- Each store's installation and data are kept separately on Render (hosting), with HTTPS in transit and encrypted disks at rest.
- Shopify access tokens are additionally encrypted by the app. Every request must carry a valid Shopify session for your store.
- Access to production systems is limited to the developer.
Retention and deletion
- When you uninstall, the access token is removed straight away. When Shopify sends the shop-deletion request, 48 hours after uninstall, we delete your store's orders, customers, checkouts, opportunities, campaign memberships, recipient files and cached exports.
- When Shopify sends a customer deletion request, we delete that customer's records and unlink their orders. A recipient file from a campaign they were already in is deleted with the rest of your data when you uninstall.
- When Shopify sends a customer data request, we record it for you to answer. Revenue Engine holds no personal data beyond the first name, marketing status, tags and order history already in Shopify.
Your rights
Customers should contact the store they bought from to access, correct or delete their data. Merchants can contact us at any time.
Contact
CHRISPSDesign: hello@utilwell.com. See also the terms of service and data processing terms.