Legal

Privacy Policy

Last updated: February 1, 2026

MarginAI ("we", "us", "our") is committed to protecting your privacy. This policy explains how we collect, use, and safeguard your data.

Information We Collect

  • Account information: name, email address, and password when you create an account.
  • Store data: product catalog, order history, inventory levels, and pricing data synced from your connected Shopify store via read-only OAuth access.
  • Usage data: pages visited, features used, and interaction patterns to improve the product.
  • Device data: browser type, operating system, and IP address for security and analytics.

How We Use Your Data

  • To provide margin analysis, pricing optimization, and inventory recommendations for your store.
  • To power AI agents that detect profit leaks and generate actionable insights.
  • To improve MarginAI's algorithms and product experience.
  • To communicate important product updates, security alerts, and support responses.
  • We never sell, rent, or share your store data with third parties for advertising purposes.

Data Storage & Security

  • All data is encrypted at rest (AES-256) and in transit (TLS 1.3).
  • Store data is hosted on Supabase (PostgreSQL) in AWS us-east-1 with automated backups.
  • Access to production systems requires multi-factor authentication and is restricted to authorized personnel.
  • We conduct regular security audits and penetration testing.

Shopify Integration

  • MarginAI connects to your Shopify store via OAuth 2.0 with read-only permissions.
  • We access: products, orders, inventory levels, and basic store information.
  • We do not access: customer personal data, payment information, or checkout details.
  • You can disconnect your store at any time from Dashboard > Settings > Integrations.

AI & Machine Learning

  • Your store data is used to generate personalized margin analysis and recommendations.
  • We do not use your data to train models shared with other customers. Each store's analysis is isolated.
  • AI-generated actions are logged with full audit trails and can be undone at any time.

Data Retention

  • Account data is retained while your account is active.
  • Store data syncs are retained for 12 months for historical analysis and trend detection.
  • Upon account deletion, all associated data is permanently removed within 30 days.
  • Action logs and audit trails are retained for 24 months for compliance purposes.

Your Rights

  • Access: Request a copy of all data we hold about you and your store.
  • Correction: Update or correct inaccurate information.
  • Deletion: Request permanent deletion of your account and all associated data.
  • Portability: Export your data in a standard machine-readable format.
  • Objection: Opt out of non-essential data processing.
  • To exercise any of these rights, contact privacy@marginai.com.

Cookies

  • Essential cookies: Required for authentication and session management.
  • Analytics cookies: Used to understand product usage patterns (can be disabled).
  • We do not use advertising or tracking cookies.

Changes to This Policy

  • We may update this policy to reflect changes in our practices or legal requirements.
  • Material changes will be communicated via email and in-app notification at least 30 days before taking effect.
  • Continued use of MarginAI after changes constitutes acceptance of the updated policy.

Questions?

Contact our privacy team at privacy@marginai.com or visit our contact page.