ArabiSEO Pro · Intalaq
Privacy Policy
Last updated: 13 September 2026
At ArabiSEO Pro (by Intalaq), we are committed to protecting the privacy of your Shopify store data. This Privacy Policy explains how we collect, use, and handle information when you install and use our application.
This policy covers the ArabiSEO Pro Shopify app only. It does not cover Intalaq’s other products.
1. Information we access through the Shopify Admin API
To provide SEO services, ArabiSEO Pro requests only the access scopes listed below. We use them to read store content and write SEO improvements back to your Shopify admin.
Products and collections
Scopes: read_products, write_products
- Product titles, descriptions, URL handles (slugs), and SEO metadata (meta title and meta description).
- Product image records: image identifiers, current alt text, and gallery position, so we can write alt text back to Shopify. We do not download or scan the image files themselves.
- Collection titles, descriptions, handles, and SEO metadata.
URL redirects
Scope: write_online_store_navigation
- Create and manage 301 redirects when a product URL handle is changed or a broken URL is fixed.
Online Store pages
Scopes: read_online_store_pages, write_online_store_pages
- Page titles, body content, handles, and SEO metadata.
- We do not access blog posts or articles.
Languages and translations
Scopes: read_locales, read_translations, write_translations
- The store’s published languages.
- Localized SEO fields for products, collections, pages, and the shop, written to the SEO language you select in the app.
What we do not access
We do not request customer, order, checkout, or theme scopes. We do not collect, store, or share personal information of your customers, such as names, email addresses, phone numbers, addresses, or payment details. We do not add pixels, cookies, or tracking scripts to your storefront.
2. Information we store on our servers
Most SEO work is written straight back to your Shopify store. We do not keep a copy of your catalog, page bodies, product images, or generated SEO copy after a request finishes.
We do store the minimum needed to run the app while it is installed:
- Shop domain and shop name.
- Shopify API access token and granted scopes, so the app can call the Admin API on your behalf.
- If you open the app while signed in to Shopify admin, Shopify may include the staff user’s ID, name, email, locale, and account-owner flag in the session. We store that only as part of the session record. We do not use it to contact your customers.
- App preferences: interface language and the SEO target locale you choose.
- Billing status only: plan name, Shopify subscription ID, and subscription status. Payment cards and invoices are handled entirely by Shopify. We never see or store card numbers.
- Install time, last-seen time, and uninstall time.
3. How we use this information
We use the information only to provide ArabiSEO Pro:
- Generate meta titles and descriptions.
- Generate image alt text from the product title, store name, and whether the image is the featured image or another gallery image. We do not upload product images to an AI model.
- Convert Arabic URL slugs into English SEO-friendly handles and create 301 redirects.
- Write localized SEO fields for the language you select.
- Optimize Online Store pages and collections.
- Check your Shopify subscription so paid features can be unlocked.
- Send a one-time welcome email to the merchant email Shopify provides, only if that email feature is turned on.
- Respond to Shopify’s mandatory privacy webhooks.
We do not sell store data, use it to advertise to your customers, or use your content to train our own AI models.
4. AI processing
SEO copy is generated by Google’s Gemini API (models such as Gemini Flash). We send text only: titles, existing descriptions or metadata when you ask us to improve them, store name, and language instructions.
We do not send customer personal data or product image files to Google. Google processes these prompts to return SEO text. Google’s handling of Gemini API inputs is governed by Google’s Gemini API terms. We do not use your content to train Intalaq models.
5. Service providers
- Shopify — platform, Admin API, and billing.
- Google — Gemini API, text generation only.
- Fly.io — hosts the app and the database that stores sessions and shop settings.
- Resend — may deliver the one-time merchant welcome email, only if that feature is enabled and a merchant email is available. We do not email your customers.
These providers process data only to perform the services above.
6. Retention and deletion
- When you uninstall ArabiSEO Pro, Shopify revokes our API access immediately. We delete the stored access token when we receive Shopify’s uninstall webhook.
- Shop settings, shop name, merchant email, and related app records are deleted when Shopify sends the
shop/redactwebhook, which Shopify sends about 48 hours after uninstall. - We do not keep customer records. Shopify’s
customers/data_requestandcustomers/redactwebhooks therefore have no customer data to return or delete. We acknowledge those requests as required.
7. Where data is processed
The app is hosted on Fly.io, and AI requests are sent to Google. Processing may occur outside your country, including outside the European Economic Area and the United Kingdom. We use these providers only to operate the app.
8. Security
Access tokens and shop records are stored on our application server, transmitted over HTTPS, and used only to operate ArabiSEO Pro.
9. Changes to this policy
We may update this policy to reflect changes in our practices or for legal reasons. The “Last updated” date at the top will change. We will notify merchants of significant changes through the Shopify admin or by email where we have a merchant contact email.
10. Contact us
If you have questions about your store’s data privacy, contact us:
- Email: support@intalaq.com
- Website: https://intalaq.com/
- This policy: https://intalaq.com/privacy/arabiseo-pro/