Privacy policy
We collect almost nothing, and this page says exactly what and why.
Last updated 27 September 2026.
The short version
We collect almost nothing. There is no analytics script, no advertising pixel and no tracking cookie on this website. If you email us or book a demo, we keep what you send so we can reply to you — and nothing else.
What this website loads
Three things reach outside our own server, and each one sees your IP address because that is how the web works:
- Google Fonts — our two typefaces load from fonts.googleapis.com and fonts.gstatic.com.
- Calendly — only if you open the demo booking. Nothing from Calendly loads until you press a button that opens it.
- Nothing else. No analytics, no advertising, no session recording, no A/B testing.
We set no cookies of our own. Calendly may set its own once you open a booking; their privacy policy governs that.
What we collect, and why
| When | What | Why |
|---|---|---|
| You email us | Your address and whatever you write | To reply |
| You use the contact form | Name, email, optional store domain, your message | To reply |
| You book a demo | Whatever Calendly collects — usually name, email, timezone | To hold the meeting |
| You become a customer | Company details, billing details, the Shopify credentials needed to run your app | To deliver the service |
We do not buy contact data about you, and we do not sell, rent or share yours with anyone for their own marketing.
If you become a customer
Running your app means holding credentials for your Shopify store and data about your customers. Two things are worth stating plainly:
- We never see card numbers. Checkout runs on Shopify’s own checkout sheet. Payment data goes from your customer to Shopify and their payment provider, not through us.
- Your customers’ data is yours. We process it to run the app you asked us to run. We do not use it for our own purposes, and we do not use it to build anything for another merchant.
Each customer gets a separate database. Credentials are encrypted at rest, and our systems refuse to start rather than run with a credential missing.
How long we keep things
Enquiries that do not become customers: up to two years, then deleted. Customer data: for as long as you are a customer, and for a reasonable period afterwards for accounting and legal obligations. Ask us to delete something earlier and we will, unless we are legally required to keep it.
Your rights
Wherever you are, you can ask us what we hold about you, ask for a copy, ask us to correct it, or ask us to delete it. Email hello@bantri.co and we will answer within 30 days. We will not make you jump through a process to exercise a right.
If you are in the EU or the UK, that is your GDPR rights; in California, your CCPA rights; in Saudi Arabia, your PDPL rights. We apply the same standard to everyone rather than sorting people by where they live.
Changes
If we change this materially we will update the date above, and tell customers directly rather than relying on you to re-read the page.
Contact
hello@bantri.co — for anything on this page, including a complaint.