B2B Marshal Policy

Privacy Policy

B2B Marshal privacy policy covering Shopify B2B company and order data, financial metrics, account policy, retention, deletion, and subprocessors.

As of August 19, 2026. This Privacy Policy applies only to B2B Marshal by HansonCore, LLC DBA Five Acre Code ("Five Acre Code," "we," "us," or "our").

Scope

B2B Marshal is an embedded Shopify admin app for B2B account operations. It synchronizes selected Shopify company, company-location, order, draft-order, payment-term, and store facts; calculates operational exposure and account metrics; stores merchant-created account policy, including tiered order and item discounts; and publishes compact decision inputs used by Shopify Functions at checkout.

This policy describes data handled by B2B Marshal. Shopify's own platform, billing, checkout, merchant, and customer-account services are governed by Shopify's policies and agreements. Merchants remain responsible for their own notices, instructions, lawful basis, customer relationships, and use of app output.

Information received from Shopify and stored

B2B Marshal stores information needed to provide and secure the service, including:

  • Shop domain, store name, country, currency, Shopify plan/B2B capability, app installation and connection state, granted access-scope status, and B2B Marshal subscription state.
  • Shopify online and offline session records, encrypted access and refresh tokens, and authorized Shopify admin user identity such as user ID, name, email, locale, account-owner/collaborator status, and email-verification state.
  • Shopify company and company-location identifiers, names, external IDs, lifecycle timestamps, customer-since date, location/contact/order counts, currency and locale, Shopify-reported lifetime order/spend facts, payment-term/deposit summaries, buyer-experience summaries, and tax-setting summaries.
  • B2B order identifiers and names; company/location association; order, update, cancellation, fulfillment, return, and reconciliation timestamps; financial and fulfillment statuses; currency and presentment currency; current, refunded, outstanding, fulfilled/unfulfilled, and overdue amounts; payment-term name; payment-issued, due, and paid timestamps; transaction timing/status needed to resolve payment state; and reconciliation/source-integrity metadata.
  • App-attributed review-draft identifiers and names, company/location association, status, currency, estimated exposure, limit comparison, tag/note/metafield application status, conversion state, and timestamps.
  • Derived company/location exposure snapshots, receivables-aging amounts and counts, credit utilization, tracked spend, order cadence, payment reliability, and related operational metrics. Unlike currencies remain separate.
  • Merchant-configured credit limits, location sublimits, thresholds, holds and reasons, company/location order limits, company/location quantity-rule bundles and override state, shipping restrictions, free-shipping settings, and discount policy. Discount policy includes company/location inheritance or override state, order-subtotal tiers, product/variant-quantity tiers, percentage or fixed benefit values, product-versus-variant scope, and the markdown-exclusion choice.
  • Merchant-configured payment-method selections, customer-facing messages, notes, discount-stacking settings, and other store or account settings.
  • App-owned Shopify resource identifiers and health state for payment, delivery, validation, and discount resources; compact company/location/product checkout projections; synchronization jobs, cursors, coverage status, retry state, and operational timestamps.
  • Settings, billing, company/location policy, hold, draft-review, reconciliation, and audit events, including the authorized actor identity supplied by Shopify and merchant-entered audit content.
  • Limited Shopify privacy-request and webhook-delivery metadata, such as topic, delivery/request identifiers, Shopify customer ID when included in a privacy request, requested-order count, status, retry/error code, and timestamps. Raw signed webhook bodies are not stored as application records.
  • Support messages and attachments you choose to send, along with security, request, error, and operational logs designed to exclude secrets and raw customer payloads.

Information used but not stored as customer profiles

Shopify Functions receive checkout input inside Shopify's runtime. Depending on the enabled control, that input can include the purchasing company and location, the compact B2B Marshal projection, cart totals and currency, cart line identifiers, product/variant identifiers, quantities, current and compare-at unit amounts, delivery options, and payment options. B2B Marshal Functions use this input to return the configured validation, payment, delivery, order-discount, or product-discount operation. Current and compare-at unit amounts are used to determine markdown eligibility when the merchant enables that option.

Five Acre Code does not copy Function input into its database as a checkout or customer profile. The app requires an explicit active tracked projection; missing or inactive projections fail open for B2B Marshal controls.

Information B2B Marshal does not store

B2B Marshal does not store customer contact profiles, company-contact names or contact details, customer email addresses, customer phone numbers, customer billing or shipping addresses, product line-item descriptions, checkout cart snapshots, checkout line prices or compare-at prices, full order payloads, raw webhook bodies, card numbers, card security codes, saved payment credentials, browsing history, advertising profiles, or cross-store behavior profiles.

Company/location names, external IDs, order names, authorized admin identities, merchant-entered text, or support messages can still identify a person in some circumstances. Do not place credentials, payment card data, or unnecessary personal information in policy notes, hold reasons, customer messages, audit content, or support requests.

Shopify permissions and protected customer data

B2B Marshal's company, order, draft-order, refund, transaction, and payment-schedule access can include Shopify protected customer data even though the app deliberately avoids customer contact fields. Public Shopify apps must receive the applicable Shopify approval, and each installation must grant the configured scopes.

The exact production scope list and explanations are published at App Permissions and Scopes. Full historical order coverage additionally depends on Shopify approval and the installation grant for read_all_orders.

How we use information

We use information to:

  • Authenticate authorized Shopify users and maintain the app connection.
  • Discover and synchronize B2B companies and locations selected or eligible for tracking.
  • Reconcile Shopify B2B orders, refunds, transactions, payment schedules, and app-attributed review drafts.
  • Calculate currency-partitioned exposure, aging, utilization, tracked activity, and payment-reliability views.
  • Let merchants configure company and location account policy, including tiered order-subtotal and product/variant-quantity discounts, and audit changes.
  • Publish compact app-owned Shopify metafields and maintain the checkout resources needed for eligible controls.
  • Evaluate configured checkout behavior through Shopify Functions.
  • Confirm subscription and Shopify capability state, enforce plan capacity, and support upgrades or downgrades.
  • Operate durable background jobs, troubleshoot data or checkout state, monitor reliability, prevent abuse, and protect the service.
  • Respond to support, privacy, and security requests and comply with Shopify requirements and applicable legal obligations.

We do not sell personal information. We do not use merchant customer data for advertising, cross-store marketing, lending, underwriting, or credit scoring.

Legal bases where applicable

Where law requires a legal basis, we process personal data as needed to perform our contract with the merchant, follow the merchant's documented use of the app, comply with legal obligations, and pursue legitimate interests such as service security, reliability, support, and fraud prevention. We rely on consent where consent is required and applicable.

Retention and deletion

We retain active merchant account, company/location, order-state, policy, financial-metric, synchronization, and audit records while needed to provide B2B Marshal and maintain accurate account state. Financial ledger entries and merchant/system audit history are not included in routine operational purges because they preserve financial provenance and prior account or policy activity that cannot always be reconstructed from current state. While a shop remains installed, those records are retained until a documented product, legal, archival, or deletion schedule applies. Completed webhook delivery claims are normally retained for seven days. Expired online sessions have a short operational grace period, and resolved reconciliation runs are normally retained for 30 days while a bounded recent history remains visible. Active failures, security evidence, support records, and records subject to a legal obligation may follow different reasonable retention periods.

When a merchant uninstalls B2B Marshal, the app deletes its Shopify sessions, marks the shop uninstalled, cancels pending reconciliation and projection work, and stops authenticated Shopify access. When Shopify later sends the mandatory shop/redact request, B2B Marshal purges the shop's remaining app database records, including store/settings data, company/location profiles, order and draft state, exposure snapshots, policies, audit records, queues, caches, and per-shop webhook/privacy metadata.

Support email, security logs, backups, billing references, legal records, and abuse-prevention records may be retained for a reasonable period when needed for security, audit, dispute resolution, provider recovery, or law. Backups age out under provider retention processes and are not restored for ordinary application use after deletion.

Shopify privacy requests

B2B Marshal implements Shopify's mandatory customers/data_request, customers/redact, and shop/redact handlers. The app does not store customer contact profiles or a customer-ID-to-order index. Customer-level requests therefore normally return no stored customer record and require no customer profile deletion. Shop redaction removes per-shop app data as described above.

Merchants and individuals can contact support@fiveacrecode.com with a privacy request. Include the shop domain and request type, but do not include unnecessary customer personal data in the initial email. We may need to verify authority and coordinate with the Shopify merchant before disclosing or deleting information.

More detail is available at GDPR and CCPA Request Handling.

Sharing and subprocessors

We share information only as needed to provide, secure, host, store, monitor, bill, and support B2B Marshal; comply with law or Shopify requirements; investigate abuse or security incidents; protect rights and safety; or complete a business transaction subject to appropriate safeguards.

Current service providers are listed at Data Processing and Subprocessors.

International processing

Five Acre Code is based in the United States. Information may be processed in the United States and other locations where Shopify and our service providers operate. Where required, the parties are responsible for appropriate transfer safeguards.

Security

We use administrative, technical, and organizational safeguards designed for the data B2B Marshal handles, including HTTPS/TLS, Shopify authentication, encrypted Shopify tokens at rest, restricted production credentials, verified webhooks, data minimization, separated production and development data, bounded retention for operational records, redacted structured logging, durable reconciliation, and incident response.

No internet service can be guaranteed perfectly secure. See the B2B Marshal Security Policy.

Children

B2B Marshal is intended for authorized users of Shopify merchant businesses and is not directed to children. We do not knowingly collect children's personal data through the app.

Changes

We may update this policy as the app, providers, law, or Shopify requirements change. We will update the as-of date and provide additional notice when appropriate for a material change.

Contact

Five Acre Code
HansonCore, LLC
127 Cochran Poole Rd
Lucedale, MS 39452
support@fiveacrecode.com