Legal
Privacy Policy
Last updated: April 10, 2026
ChargeShield is operated by Ferreira Leal Tecnologia. We are committed to protecting the privacy of merchants who use our Shopify app. This policy explains what data we collect, how we use it, and your rights.
1. Who We Are
ChargeShield ("we", "us", "our") is a Shopify application developed and operated by Ferreira Leal Tecnologia. Our app helps Shopify merchants automate chargeback dispute responses using artificial intelligence.
Contact: tibeal@gmail.com
2. Data We Collect
When you install and use ChargeShield, we collect the following categories of data:
Merchant Data
- Shopify store domain and access token (required to interact with your store via the Shopify API)
- Store owner name, email address, phone number, and business address (fetched from your Shopify store settings)
- Billing plan and subscription status
- App configuration preferences (automation mode, review period)
Order and Customer Data
- Order details associated with disputed transactions: order ID, items purchased, amounts, currency
- Customer information linked to disputed orders: name, email address, billing address, shipping address, IP address at time of purchase
- Fulfillment and shipping records: tracking numbers, carrier information, delivery status
Dispute Data
- Chargeback dispute details received via Shopify webhooks: dispute ID, amount, reason code, evidence deadline
- AI-generated dispute responses, analysis, and rebuttal letters
- Submission history and status
Waitlist Data
- Email addresses submitted via our website waitlist form
3. How We Use Your Data
- To provide the service: We use order and customer data to generate accurate, fact-based chargeback dispute responses on your behalf.
- To submit evidence: We submit dispute evidence to Shopify Payments via the Shopify API using the data collected.
- To personalize responses: Merchant details (name, address, contact) are used to sign and personalize rebuttal letters.
- To manage billing: We use Shopify's Billing API to process subscription payments.
- To improve the service: Aggregated, anonymized usage data may be used to improve our AI models and features.
- To communicate: We may send transactional emails related to your account and disputes.
4. Data Sharing and Third Parties
We do not sell your data. We share data only with the following third parties, strictly as needed to provide the service:
- Shopify: We interact with Shopify's APIs to read order data, receive dispute webhooks, and submit evidence. Shopify's privacy policy applies to data processed through their platform.
- Anthropic: Order and dispute data is sent to Anthropic's Claude AI API to generate dispute responses. Anthropic processes this data in accordance with their privacy policy and API data usage terms.
- Railway: Our application and database are hosted on Railway (US West region). Data is stored on Railway's infrastructure.
5. Data Retention
- Dispute data and AI-generated responses are retained for as long as your account is active.
- After app uninstallation, we retain your data for 30 days before permanent deletion, unless you request earlier deletion.
- Waitlist emails are retained until you unsubscribe or request deletion.
6. Data Security
We implement industry-standard security measures to protect your data:
- All data is transmitted over HTTPS/TLS
- Shopify webhook signatures are validated using HMAC-SHA256
- OAuth tokens are stored securely in our database
- Access to merchant data is authenticated via Shopify session tokens
- Our infrastructure is hosted in the United States
7. Your Rights
Depending on your location, you may have the following rights regarding your data:
- Access: Request a copy of the data we hold about you
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your data
- Portability: Request your data in a portable format
- Objection: Object to certain uses of your data
To exercise any of these rights, contact us at tibeal@gmail.com.
8. Shopify App Store Compliance
ChargeShield complies with Shopify's Partner Program Agreement and App Store requirements. We access only the data scopes necessary to provide our service:
read_customers — to access customer data linked to disputed orders
read_orders — to access order details for dispute evidence
read_shopify_payments_disputes — to receive dispute information
write_shopify_payments_disputes — to submit dispute evidence on your behalf
9. Cookies
Our website (chargeshield.io) does not use tracking cookies. Our app does not set cookies in your Shopify admin.
10. Children's Privacy
ChargeShield is a business-to-business service intended for Shopify merchants. We do not knowingly collect data from individuals under 18 years of age.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by updating the "Last updated" date at the top of this page. Continued use of ChargeShield after changes constitutes acceptance of the updated policy.
12. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us: