Last updated: 22 July 2026
COD Confirm is a Shopify app that sends WhatsApp order-confirmation messages for Cash-on-Delivery (COD) orders and records the customer's reply against the order. This policy explains what data the app processes, why, and how long it is kept.
COD Confirm acts as a data processor on behalf of the merchant (the Shopify store owner), who is the data controller for their customers' personal data.
| Data | Purpose | Source |
|---|---|---|
| Store domain, access token, app settings | Operate the app for the store and call the Shopify API on the merchant's behalf | Shopify OAuth / token exchange |
| Order metadata (order number, total, currency, payment gateway, order ID) | Detect COD orders and reference the correct order in the message | Shopify orders/create webhook |
| Customer phone number | Deliver the WhatsApp confirmation message and map the reply back to the order | Shopify order data |
| WhatsApp message log (message IDs, delivery status, button replies) | Prevent duplicate sends, map replies to orders, show status to the merchant | Meta WhatsApp Cloud API webhooks |
We do not collect customer email addresses, payment details, or shipping addresses, and we never use customer data for marketing.
We do not sell personal data or share it with any other third party.
shop/redact request (48 hours after uninstall),
all data for that store is permanently deleted.customers/redact request, that customer's phone
number and message payloads are erased.Customers should contact the merchant they ordered from. Shopify forwards data requests
to us via the customers/data_request webhook, and we provide the merchant with
the order metadata, phone number, and message log we hold for that customer.
Shopify access tokens are encrypted at rest. All webhook traffic is verified with HMAC signatures (Shopify) and SHA-256 signatures (Meta) before processing, and all API calls use HTTPS.
Our Terms of Service set out the data-processing terms between the merchant (controller) and COD Confirm (processor), including our security, subprocessor, deletion, and breach-notification commitments.
Questions about this policy: support@getcodconfirm.com