Privacy Policy

Last updated: July 9 2026

This Privacy Policy describes how Pantry Club Pty Ltd (“we”, “us”, “our”) collects, uses, and shares information when a merchant installs and uses the PantryClub Connect Shopify application (the “App”), and when that merchant’s customers interact with storefront features powered by the App.

The App connects a Shopify store to the PantryClub fulfillment network to provide real-time, location-based stock availability, checkout validation, carrier-calculated delivery fees at checkout, product synchronization, and two-way order and fulfillment synchronization (including refunds).


1. Who is responsible for your data

For data processed through the App, Pantry Club Pty Ltd acts as a data processor on behalf of the merchant (the data controller) for their store and customer data. For storefront shoppers, the merchant is the controller; we process shopper data only to deliver the App’s functionality to that merchant.

Contact: support@pantryclub.co.za — 92 Andries Pretorius Rd, Eastleigh, Edenvale, 1609, South Africa — https://pantryclub.co.za


2. Information we collect

The App stores in its own database (PlanetScale MySQL): Shopify session credentials, the store-link record (store domain and the assigned PantryClub site identifier), the merchant’s onboarding submission, product- and order-link records (identifiers and sync status), webhook-receipt and dead-letter records, and the job-queue records that drive synchronization. While a sync is pending or retrying, a job-queue record may contain the related Shopify order payload — including the customer delivery details described in section (c). Customer personal data is read from the Shopify order and transmitted to the PantryClub fulfillment backend; in the App’s own datastore it is held only transiently inside these queued job records (see Section 7), not in a separate long-term customer database.

a. Merchant and store information

b. Order information

c. Customer personal information (Protected Customer Data)

Read from a store’s orders (and, for signed-in shoppers, their saved Shopify address) to resolve delivery availability and fulfill orders, and transmitted to the PantryClub fulfillment backend:

While a corresponding sync is pending or retrying, this data may also be held transiently in the App’s job-queue records (see Section 7).

d. Product information

e. Storefront shopper information

f. Checkout delivery-fee information (carrier-calculated shipping)

When a merchant enables the carrier-calculated delivery fee, Shopify sends the App a shipping-rate request at checkout containing the shopper’s destination address (street address, suburb/city, province, and postal code) and the cart’s line items. To price delivery accurately, the App sends this destination address to the Google Maps Geocoding API to convert it into approximate coordinates (latitude/longitude), and then asks the PantryClub backend to compute the fee for the serving warehouse. The resulting address-to-coordinates mapping is cached on our infrastructure (Upstash Redis) for approximately 7 days; the delivery fee itself is computed live for each request. This feature applies to South African deliveries and ZAR checkouts only.

g. Operational logs

We do not collect payment card numbers or financial credentials; payments are handled entirely by Shopify and its payment providers.


3. How we use information

We use the information above only to operate the App, specifically to:

We do not sell personal information, and we do not use it for advertising or profiling.


Where applicable, we rely on:


5. How we share information

We share information only with the following categories of recipients:

RecipientPurpose
PantryClub fulfillment backendReceives order and customer delivery data to fulfill and ship orders, and computes carrier-calculated delivery fees
ShopifyThe platform on which the merchant’s store and the App operate
VercelApplication hosting infrastructure (serverless functions and edge network) on which the App runs
PlanetScaleMySQL database storing sessions, store-link, onboarding, and synchronization records
UpstashRedis cache of the postcode-to-warehouse mapping and the geocoded address-to-coordinates mapping, and the QStash job queue that briefly carries webhook and order payloads during synchronization
GoogleThe Maps Geocoding API converts a checkout destination address into approximate coordinates so the delivery fee can be calculated

These providers process data on our behalf under contractual confidentiality and security obligations. We do not otherwise disclose personal information except where required by law or to protect our legal rights.


6. International data transfers

Data may be processed in the United Kingdom, South Africa, the United States, and other regions where our infrastructure providers operate. Where data is transferred across borders, we rely on appropriate safeguards such as Standard Contractual Clauses or an equivalent lawful transfer mechanism.


7. Data retention


8. Cookies and storefront storage

To deliver availability and checkout validation, the App stores a shopper’s resolved postcode and warehouse using browser cookies, browser storage (localStorage/ sessionStorage), and Shopify cart attributes — for example the pc_postcode, pc_warehouse_id, and pc_warehouse_code cookies and the pc_postcode cart attribute. These are functional / strictly necessary for the delivery-check feature and are not used for advertising or cross-site tracking. Shoppers can clear them via their browser at any time.


9. Shopify mandatory data requests (GDPR webhooks)

The App implements Shopify’s mandatory compliance webhooks and verifies each request with its HMAC signature:


10. Your rights

Depending on your jurisdiction (e.g., GDPR, UK GDPR, CCPA/CPRA, POPIA), you may have the right to access, correct, delete, restrict, or port your personal data, and to object to certain processing. Shoppers should direct requests to the merchant (the controller). Merchants may contact us at support@pantryclub.co.za, and we will assist within the timeframes required by law.


11. Data security

We protect data in transit using TLS (including gRPC over TLS to the PantryClub backend), restrict access on a need-to-know basis, and store credentials and sensitive records in access-controlled, encrypted storage. No method of transmission or storage is completely secure, but we take commercially reasonable measures to safeguard your information.


12. Children’s privacy

The App is intended for use by businesses and is not directed to children. We do not knowingly collect personal information from children.


13. Changes to this policy

We may update this Privacy Policy from time to time. Material changes will be reflected by updating the “Last updated” date above and, where appropriate, by notifying merchants.


14. Contact us

Questions or requests regarding this Privacy Policy:

Pantry Club Pty Ltd Email: support@pantryclub.co.za Address: 92 Andries Pretorius Rd, Eastleigh, Edenvale, 1609, South Africa