Privacy Policy
Effective August 11, 2026
Who we are
Scaler Profit Analytics (“Scaler”) is a profit-analytics application for Shopify merchants, operated by Loomity Inc, doing business as Scaler Apps. It calculates true net profit by combining a merchant's Shopify order data with their costs (cost of goods, shipping, fees, expenses) and, for merchants who choose to connect one, their advertising spend from Meta (Facebook and Instagram).
This policy explains what data Scaler collects, why, and how a merchant can have it deleted. It applies to the Scaler Shopify app and to the Meta integration described below.
Data we collect
Shopify store data. When a merchant installs Scaler, it reads from their store, via Shopify's Admin API:
- Orders — totals, subtotals, taxes, discounts, shipping charged, refunds, transaction fees, currency, destination country, payment gateway, sales channel, and the date the order was processed
- Order line items — product/variant reference, title, quantity, price
- Products and variants — title, status, SKU, price, image, and unit cost where the merchant records it in Shopify
Meta advertising data. Connecting a Meta account is optional and merchant-initiated. If a merchant connects one, Scaler reads, via Meta's Marketing API using the read-only ads_read permission:
- The ad accounts the merchant grants access to — ID, name, currency
- Campaigns within those accounts — ID, name, status
- Advertising spend totals per campaign per day, for the campaigns the merchant selects
- The Meta user ID of the person who authorized the connection, and the access token issued to Scaler for that merchant
ads_read permission cannot create, edit, pause, or spend money on advertising, and Scaler does not request any permission that can. Scaler does not access Facebook or Instagram profiles, friends, posts, messages, audiences, or customer lists.Connection data. The Shopify store domain, the app session and access token issued by Shopify, and the settings a merchant configures in Scaler (cost schedules, custom expenses, selected ad accounts and campaigns).
How we use it
Solely to provide the service to the merchant it belongs to: computing that merchant's revenue, costs, ad spend, and net profit, and displaying it in their dashboard. We do not use merchant data for advertising, do not build profiles of shoppers, and do not use it to train machine-learning models.
How we store and protect it
- Data is stored in a hosted PostgreSQL database and served from application infrastructure located in the United States.
- Every record is scoped to the store that owns it. Requests are authenticated through Shopify's session, and a merchant can only ever read records belonging to their own store.
- Meta access tokens are encrypted before they are written to the database (AES-256-GCM), using a key held only in the application environment and never stored alongside the data.
- All traffic is served over HTTPS.
Who we share it with
We do not sell merchant data, and we do not share it with advertisers or data brokers. Data is processed by the infrastructure providers Scaler runs on — a cloud application host and a managed database provider — and is exchanged with Shopify and Meta only as needed to retrieve the merchant's own data. We disclose data otherwise only where legally required.
How long we keep it
Store data is retained while the app is installed, so historical profit figures remain accurate. Uninstalling the app immediately ends Scaler's access to the store and deletes the stored Shopify session. Previously synced records are retained until deletion is requested — see below — so that reinstalling does not lose a merchant's cost history.
Deleting your data
A merchant may request deletion of all data Scaler holds for their store, including any stored Meta access token, at any time. Instructions are on the data deletion page. Requests are completed within 30 days.
Meta access specifically can also be revoked by the merchant directly in their Facebook settings, under Settings & Privacy → Settings → Business Integrations, which immediately invalidates the token Scaler holds.
Changes to this policy
If what Scaler collects or how it is used changes materially, this page is updated and the effective date above is revised.
Contact
Questions about this policy or about data handling: aujlaharper@gmail.com