AgentFit — Privacy Policy
Last updated: 15 June 2026
This Privacy Policy explains how Passionfruit ("we", "us", "AgentFit", the "App") collects, uses, stores, and protects information when a Shopify merchant installs and uses the AgentFit application on their Shopify store. By installing or using AgentFit, you agree to the practices described in this policy.
1. Who we are
AgentFit is a Shopify app that audits a merchant's product catalog for "AI agent readiness" — scoring products against agentic-commerce standards (such as ACP and UCP) and producing a prioritized list of recommended fixes.
- App name: AgentFit
- Developer/Operator: Passionfruit
- Contact: growth@getpassionfruit.com
2. Information we collect
Through the Shopify Admin API, using only the permissions you grant at installation, we access:
- Store and product data: store domain; product titles, descriptions, types, categories, tags, images/media references, variants, pricing, barcodes/GTINs, metafields, and related catalog metadata; store policy info relevant to the audit (e.g. return/refund policy) where permitted.
- Authentication data: Shopify-issued OAuth access tokens and session identifiers.
- App-generated data: audit results and scores (catalog scores; per-product Discovery, Evaluation, and Transaction sub-scores; recommended fixes).
We do NOT collect, store, or process your customers' personal information. AgentFit operates on product/catalog data and store configuration only.
3. How we use information
Solely to provide and improve the App: connect to your store, run audits, generate scores and recommended fixes, display results to you, and maintain/secure/troubleshoot the App. We do not sell your data and do not use it for advertising.
4. Third-party processing (subprocessors)
To generate the "Evaluation" (AI-judged) portion of the audit, AgentFit sends product catalog data (such as titles and descriptions) to:
- OpenAI — to evaluate how well a product's content answers buyer-intent questions. We use OpenAI's API on terms under which submitted data is not used to train OpenAI's models. See https://openai.com/policies/privacy-policy.
Infrastructure providers:
- Railway — application hosting
- Railway (PostgreSQL database) — database storage
We share only the minimum data necessary for these services to function.
5. Data storage and security
Audit results and session data are stored in a secured PostgreSQL database hosted by our infrastructure provider. Data is transmitted over encrypted (HTTPS/TLS) connections. Access is restricted to the App's operation and authorized personnel. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
6. Data retention and deletion
We retain your store and audit data while the App is installed. When you uninstall, we delete the data associated with your store (audit results, product audit records, scores, session data) in response to Shopify's mandatory shop/redact request (sent ~48 hours after uninstallation).
AgentFit honors Shopify's mandatory privacy/compliance webhooks: customers/data_request, customers/redact, and shop/redact. Because the App stores no customer personal data, customer data requests are acknowledged with no customer data to return or erase. You may request deletion anytime at growth@getpassionfruit.com.
7. Your rights
Depending on your jurisdiction (e.g. GDPR, CCPA), you may have rights to access, correct, or delete the data we hold about your store, or to object to or restrict its processing. Contact growth@getpassionfruit.com and we will respond in accordance with applicable law.
8. International data transfers
Your data may be processed and stored in countries other than your own (e.g. where our hosting and AI providers operate). Where required, we take steps to ensure appropriate safeguards.
9. Children's privacy
AgentFit is a business tool for Shopify merchants. It is not directed to individuals under 16, and we do not knowingly collect personal information from children.
10. Changes to this policy
We may update this policy from time to time and will revise the "Last updated" date. Continued use after changes take effect constitutes acceptance.
11. Contact us
Passionfruit — Email: growth@getpassionfruit.com