Privacy Policy — EveryAlt
Last updated: October 9, 2026
EveryAlt ("we", "the app") generates alternative text (alt text) for images in your Shopify store, and SEO titles and meta descriptions for your products, collections, pages and blog posts. This policy explains exactly what we access, what we send to third parties, what we keep, and for how long.
What we access
EveryAlt requests the minimum Shopify permissions needed to find images and write alt text and SEO fields back:
| Permission | Why we need it |
|---|---|
write_products | Read product and collection images and details; write their alt text, SEO titles and descriptions |
write_files | Read images in your Files library used by theme sections, and write their alt text |
read_themes | Find which images your theme's sections reference |
write_content | Read blog posts and pages; write alt text into them and set their SEO titles and descriptions |
We do not request, read, or store order data, customer data, or payment data.
What we send to third parties
To generate alt text, we send the following to our AI provider:
- The image itself (downloaded from your storefront CDN, resized to at most 512px wide)
- The image's file name
- Your brand profile document (the text you review and confirm in the app)
- For product images only: the stored feature description of that product, and of at
most two visually similar products in your catalogue
To generate SEO titles and descriptions, we send:
- The item's name (product, collection, page or blog post title)
- A short excerpt of its description or summary (at most 300 characters); for products,
also the vendor and product type
- Its current SEO title and description, if it has them
- Your brand profile document
Our AI provider is SiliconFlow. Images are sent for processing and are not retained by us. We do not send your shop domain, customer data, or order data to the AI provider.
What we store
| Data | Purpose | Retention |
|---|---|---|
Your .myshopify.com domain | Identify your store | Until you uninstall |
| Generated alt text and SEO suggestions, with the value each would replace | The review queue | Batches you have fully handled are kept for the last 4 batches; unreviewed batches are kept indefinitely |
| Change history (previous and new value for every alt text or SEO field we write) | So every batch can be rolled back | Kept for as long as the app is installed — this is what makes rollback possible |
| Your settings (coverage strategy, language, schedule, notification webhook) | Run the app as you configured it | Until you uninstall |
| Credit balance and usage counts | Billing and quota | Until you uninstall |
| A compliance log (shop domain, request type, outcome) | Prove we honoured data deletion requests | Retained after deletion, as a legal-obligation record. It contains no personal data |
We do not store your images. They are read to generate text and discarded.
Data deletion
We implement Shopify's three mandatory privacy webhooks:
customers/data_request— we hold no customer data, so there is nothing to returncustomers/redact— we hold no customer data, so there is nothing to deleteshop/redact— sent by Shopify 48 hours after you uninstall; we delete all data for
your store (suggestions, change history, settings, credits, product library, session)
You can also uninstall at any time; billing stops immediately and Shopify triggers the deletion flow above.
Cookies and tracking
EveryAlt runs inside the Shopify admin. We set no advertising or analytics cookies and do not track you across sites. Your browser may store your interface language preference locally.
Sub-processors
| Provider | Purpose | Location |
|---|---|---|
| SiliconFlow | Generating alt text and SEO text | China (Mainland) — api.siliconflow.cn |
| Neon | Database hosting | US East |
| Render | Application hosting | US East (Ohio) |
| Shopify | Platform, billing, hosted plan selection | Global |
Your rights
If you are in a jurisdiction that grants rights over personal data (GDPR, CCPA and similar), note that EveryAlt processes store content, not personal data: we hold no customer names, emails, addresses, orders or payment information. For any request regarding data we do hold, contact us at support@everyalt.store and we will respond within 30 days.
Changes
We will update this page when our data practices change, and update the "Last updated" date above. Material changes will also be announced inside the app.
Contact
support@everyalt.store