Last updated: 30 July 2026
This Privacy Policy explains how Avada ("we", "us", "our") collects, uses, stores, and protects information when you use the Avada Pixel & Conversion Tracking Shopify app (the "App"). The App sends your store's conversion events to Meta and Google Analytics 4 from the shopper's browser and from our server, and reconciles the tracked results against your real Shopify orders. By connecting your Google account and using the App, you agree to this Policy.
When you sign in with Google, we receive your basic Google profile: your name, email address, and profile picture (the openid, email and profile scopes). We use this only to show which Google account is connected in the App.
With your authorization (the https://www.googleapis.com/auth/analytics.readonly scope), the App reads your Google Analytics configuration on your behalf to:
This permission is read-only. The App cannot and does not modify anything in your Google Analytics account. It does not read your Analytics reports, metrics, audiences or user data — only the account, property and data-stream names and IDs needed to build the picker described above.
To perform the actions above, we store the OAuth access token and refresh token that Google issues after you grant access. These let the App re-list your GA4 properties and data streams on your behalf until you disconnect.
To track and verify conversions, the App reads data from your Shopify store, including your store domain and shop profile, your orders (order ID, total value, currency, timestamp) used to reconcile tracked purchases against reality, and product details attached to the events it tracks.
When a shopper visits your storefront, the App captures the events you enabled and forwards them to the pixels you configured. That includes:
_fbp browser ID and _fbc click ID (derived from the fbclid URL parameter), the GA4 _ga client ID and session ID, and a first-party visitor ID;We act as a data processor for this shopper data: you decide which pixels fire and are responsible for your store's own privacy notice, cookie banner and consent collection. The App respects the consent signal available on your storefront.
We use the information above solely to provide and operate the App's features that you requested: sending your conversion events to the Meta and Google Analytics destinations you selected, deduplicating them, reporting the results in the App, reconciling them against your Shopify orders, and alerting you when your tracking breaks. We do not use this information to build our own advertising audiences or user profiles.
Avada Pixel & Conversion Tracking's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We only use Google user data to provide or improve user-facing features that are prominent in the App, and we do not sell this data, use it for advertising, or transfer it to others except as needed to provide those features, for security or legal reasons, or as part of a merger or acquisition disclosed to you.
We do not sell or rent your information. We transmit your conversion event data to Meta (Conversions API) and Google (Google Analytics 4 Measurement Protocol) only to the pixels and properties you configured, because that is the function of the App. We rely on Google Cloud Platform as our infrastructure and sub-processor. We may disclose information if required by law or to protect our rights and users.
We retain your Google account information and tokens for as long as your Google account is connected to the App. When you disconnect Google in the App, we delete the stored Google authorization record for your store, including the access and refresh tokens.
When you uninstall the App, we automatically purge the records holding your credentials and configuration — platform connections, pixels and diagnostic events. Aggregate counts with no personal data are kept briefly so that a reinstall can still show your history, and are removed in full when Shopify sends the shop/redact request that follows an uninstall. We also honour Shopify's customers/redact and customers/data_request requests.
Diagnostic event records, which exist only for your own test traffic, expire automatically after a short retention window.
You can revoke the App's access to your Google account at any time at myaccount.google.com/permissions.
To attribute conversions, the App reads and, where missing, writes first-party cookies in the shopper's browser: Meta's _fbp and _fbc, and a first-party visitor identifier. It also reads the _ga cookies set by Google Analytics. These are used only for conversion attribution for your store.
We may update this Policy from time to time. Material changes will be reflected by updating the "Last updated" date above and, where appropriate, notifying you in the App.
If you have questions about this Privacy Policy or your data, contact us at support@avada.io.