JV PRO LABS

Privacy notice

Effective September 10, 2026

Who we are

JV Pro Labs is operated by Justin Verley, a sole proprietor doing business as JV Professional Marketing in Florida, United States. Contact jvprofessionalmarketing@gmail.com about privacy or support.

This notice covers our website, support and ten independent Shopify apps: Accord, Echo, Ahead, Duet, Ladder, Perk, Parcel, Keeps, Nudge and Meter. It does not replace a merchant’s or Shopify’s notice. We process store customer information on the merchant’s instructions under our data processing terms.

Information used by each app

Each installed app uses its store’s Shopify domain, authorized connection credentials, product and campaign settings, activity and plan information. Relevant order, line and refund references support app-attributed reporting and any approved usage billing. Information comes from the authorized Shopify connection, shopper actions and support messages.

Payment-card entry takes place through Shopify checkout and the merchant’s payment provider. Our apps do not ask shoppers to send us card details. Do not include credentials, card details or unrelated customer records in support messages or gift notes.

Purposes and providers

We use information to provide the selected app, deliver requested messages, show campaign results, enforce allowances, calculate approved app charges, secure and maintain the service, and handle support/privacy requests. We do not sell customer data, share it for advertising, or use it outside these app and service purposes.

Shopify processes installation, commerce and app billing information. Cloudflare provides app hosting, storage and network security. Resend delivers Accord and Echo transactional messages through its configured United States region. Google’s Gmail handles support correspondence. OpenAI Sites with Cloudflare infrastructure hosts this publisher website. Providers receive information needed for those services. We may disclose information when applicable law requires it.

Provider notices: Shopify, Cloudflare, Resend, Google, and OpenAI.

Browser storage and email choices

Keeps uses first-party browser storage for saved products and its visitor identifier. Items expire after 90 days without an explicit save or wishlist-cart action; expired local data is removed when the widget next runs. Clearing browser storage removes the visible list but does not itself erase server records.

Echo requests consent for one product’s stock notification, for up to 90 days. Its cancellation link opens a confirmation page; choosing “Cancel my notification” stops that request and queued messages. Opening the page alone does not cancel it. Sent emails cannot be recalled. Accord uses the submitted email to follow up on the offer.

Retention and deletion

Active campaign settings remain while needed for the installed service. Automated cleanup generally retires identifying closed interaction records 90 days after the latest applicable completion, sale or refund. Preorders also remain through 90 days after their release date. Restock requests expire after 90 days. Inactive server wishlist saves expire after 90 days, then follow the closed-record retention period.

Notification recipients/content are removed with the retired interaction or 90 days after sending or creation. Completed privacy-request identifiers and access-audit entries become eligible for removal after 90 days. Daily cleanup and checks before active use enforce these periods.

Pending verified privacy requests, unresolved billing/refund operations or documented legal obligations can require limited evidence to be held longer. Nonidentifying aggregate results and necessary billing receipts can remain after customer/order links are removed.

Cloudflare’s storage recovery history can retain earlier states for up to 30 days. Provider delivery/security logs and support correspondence have separate retention rules and request-handling needs. A verified deletion request includes checking relevant provider records and exports. Active-database deletion does not immediately erase every provider backup; applicable deletions must be reapplied to restored data before service resumes.

Uninstall revokes the connection and stops queued future work. It does not cancel merchant orders or erase records independently held by Shopify or the merchant. Verified redaction and the retention schedule govern remaining app records.

Security and international processing

Business access to merchant data is limited to the owner. Administrative accounts use unique passwords and two-factor authentication. Apps use authenticated Shopify requests, encrypted access tokens and protected transport. Restricted audit records contain time, app/store, operator or system actor, operation and outcome; they exclude message bodies, customer contact details and credentials. Infrastructure providers also process network and security information.

Cloudflare hosts app data; our configuration does not promise a particular country of storage. Information may be processed in the United States and other countries where providers operate. No service can guarantee absolute security.

Privacy requests and changes

For a purchase or information submitted to a store, contact that merchant first. You may also email us with the app name, store domain and the request. We verify identity or authority before disclosure and assist merchants within applicable legal and Shopify deadlines.

Depending on your location, applicable rights can include access, correction, deletion, portability, restriction, objection, withdrawal of consent and complaint to a privacy regulator. We do not discriminate for exercising applicable privacy rights.

Changes appear here with a revised effective date. Material changes affecting installed services will be communicated through the app or merchant contact channel where required.