Privacy Policy

Privacy Policy

This Privacy Policy explains how Chancey collects, uses, discloses, and retains information when merchants use our Shopify app, when buyers interact with a merchant’s Chancey-powered reveal flow, and when anyone visits chancey.run.

Last updated: August 8, 2026

1. Scope

Chancey is software for Shopify merchants that helps merchants create and run blind-box or mystery-box sales, disclose odds, manage prize inventory, and power post-purchase reveals. This Privacy Policy applies to:

  • the Chancey landing page at chancey.run;
  • the embedded Shopify admin app used by merchants;
  • storefront and post-purchase reveal experiences powered by the app; and
  • support or waitlist communications sent to Chancey.

2. Information we collect

We collect the following categories of information:

  1. Merchant and store information. This can include a Shopify shop domain, store identifiers, blind-box configuration, product and variant identifiers, product handles, storefront setup status, theme-extension status, inventory and location metadata, billing status, subscription status, and usage-charge records.
  2. Order and reveal records. To run the reveal flow and maintain auditability, we may process order identifiers, line item identifiers, product identifiers, customer identifiers, reveal timestamps, prize results, inventory adjustment state, and fairness-verification data such as commitment hashes and nonces.
  3. Authentication and session data. We process OAuth and app-session data needed to authenticate merchants, maintain app sessions, and securely deliver reveal sessions.
  4. Communications. If you email us or join a waitlist through your email client, we receive the information you choose to send, such as your email address, store name, and message contents.
  5. Technical and usage information. We and our infrastructure and analytics providers may process limited technical data such as IP address, browser type, device information, referrer information, request timestamps, server logs, page or route views, feature interactions, performance measurements, and browser errors. On chancey.run, optional analytics run only after you choose “Allow analytics.” We store that choice locally so we can remember it.
  6. Merchant-admin product analytics. In the authenticated Shopify admin app, we use PostHog to understand onboarding progress, feature usage, reliability, and workflow friction. We identify activity by Shopify shop domain. We may use privacy-masked session replay in the merchant admin: visible text and input values are masked, recorded URLs omit query strings and fragments, and we do not intentionally record network request or response bodies. We do not record sessions on the public landing page.
  7. Cookies and similar technologies. We use essential cookies or local storage when needed for secure operation, sessions, reveal flows, and remembering privacy choices. On chancey.run, PostHog, analytics tags delivered through Google Tag Manager, and the Reddit Pixel may also use cookies or local storage for measurement and advertising-audience creation. In the EEA, the United Kingdom, and Switzerland those run only after you accept the cookie notice; elsewhere they run by default and you can turn them off at any time.

3. Data we do not intentionally store in our app database

As currently designed, Chancey does not intentionally store customer name, email address, phone number, or postal address in its application database to operate the core blind-box and reveal functionality. We use the minimum order-linked data we need to verify ownership, run reveals, support fairness audits, and handle Shopify compliance workflows.

4. How we use information

We use information to:

  • provide, maintain, and secure the Chancey service;
  • authenticate merchants and support app installation;
  • create and manage blind-box products, prize pools, odds displays, inventory controls, and reveal experiences;
  • verify reveal eligibility and prevent duplicate reveals or other misuse;
  • generate and preserve fairness, audit, operational, and billing records;
  • respond to support requests and waitlist inquiries;
  • measure acquisition, understand merchant onboarding and product usage, diagnose errors, and improve usability and reliability;
  • comply with legal obligations and Shopify platform rules; and
  • detect, investigate, and prevent fraud, abuse, or security issues.

5. How we disclose information

We may disclose information:

  • to Shopify, where necessary to operate the app inside the Shopify platform and comply with Shopify requirements;
  • to service providers that help us host, store, secure, support, or operate the service, subject to appropriate confidentiality and data protection obligations;
  • to PostHog for product analytics, error signals, and privacy-masked merchant-admin session replay; to Google for analytics tags delivered through Google Tag Manager; and to Reddit for advertising measurement and audience creation when a landing-page visitor allows analytics;
  • if required by law, regulation, subpoena, court order, or other lawful process;
  • if we believe disclosure is necessary to protect the rights, safety, property, or security of Chancey, merchants, buyers, or others; or
  • in connection with a merger, financing, acquisition, reorganization, sale of assets, or similar transaction.

We do not sell personal information in exchange for money.

6. Data retention

We retain information for as long as reasonably necessary to provide the service, maintain operational and audit records, resolve disputes, enforce agreements, and comply with law. Retention periods vary by data type.

  • Merchant configuration, billing, and operational data may be kept while the merchant uses the service and for a reasonable period after that for support, reconciliation, security, and compliance.
  • Customer-linked draw records are retained only as long as needed for reveal operation, auditability, and compliance. When Shopify sends a verified customer-redaction request, we delete the affected order-linked draw records.
  • When Shopify sends a verified shop-redaction request after uninstall, we delete the shop’s stored app data and associated sessions as required by our compliance workflow.
  • Merchant-admin session recordings are configured for a 30-day retention period. Other analytics events are retained only while reasonably useful for product, reliability, and business analysis, subject to provider settings and deletion requests.

7. Your choices and rights

If you are visiting chancey.run from the EEA, the United Kingdom, or Switzerland, optional analytics stay off until you choose “Accept” on the cookie notice. From other regions, optional analytics load with the page and you can switch them off whenever you like. Choosing “Decline” does not limit access to the site. You can change or withdraw your choice at any time using the “Privacy choices” control shown on the site; withdrawing clears PostHog’s browser persistence and stops future optional analytics capture on that browser.

Merchants who want to access, correct, or request deletion of their information can contact us at hello@chancey.run.

If you are a buyer who purchased from a merchant using Chancey, please contact that merchant first. The merchant is typically the primary controller of the customer relationship. We also support Shopify’s required privacy and redaction webhooks and will act on verified requests routed through Shopify or the merchant as applicable.

8. Security

We use reasonable administrative, technical, and organizational safeguards designed to protect information against unauthorized access, loss, misuse, or alteration. No system is completely secure, and we cannot guarantee absolute security.

9. International data processing

Chancey and its service providers may process information in countries other than the country where the merchant or buyer is located. When we do, we take reasonable steps designed to protect the information in a manner consistent with applicable law.

10. Children’s privacy

Chancey is designed for businesses and is not directed to children. We do not knowingly collect personal information directly from children.

11. Changes to this Privacy Policy

We may update this Privacy Policy from time to time. If we make material changes, we may post an updated version on this page and revise the “Last updated” date above.

12. Contact

Questions about this Privacy Policy can be sent to hello@chancey.run.