Privacy Policy

Privacy Policy

Last updated: 2025-06-09

This Privacy Policy explains how MB “Fourbolts” (“we”, “our”, or “us”) collects, uses, and protects your personal data when you use our services, including the OrderKrab Shopify App and the OrderKrab Web App (accessible at https://admin.orderkrab.com).

We are committed to protecting your privacy and complying with the General Data Protection Regulation (GDPR) and other applicable EU data laws.

 

1. Who We Are

MB “Fourbolts”

Perkūnkiemio g. 19, LT-12120 Vilnius

Company code: 307064364

Email: info@orderkrab.com

Website: https://orderkrab.com/

 

2. Scope of this Policy

This policy applies to your use of:

  • The OrderKrab Shopify App, installed in your Shopify store

  • The OrderKrab Web App, used to manage fulfillment, shipping, and organization settings

Both apps are part of a single platform and share data where necessary to operate core features.

 

3. What Data We Collect

We collect the following types of personal and business-related data:

A) Shopify Store Integration:

  • Shop info: store name, domain, Shopify ID

  • Orders: order IDs, products, quantities, prices, customer shipping data

  • Fulfillments: delivery status, tracking codes

  • Access tokens: secure credentials for Shopify API access

B) Organization & User Management:

  • Users: full name, email, roles within organization

  • Organizations: organization name, contact details, organization members

  • Invitations: invited user emails, invitation status

C) Shipping & Fulfillment Settings:

  • Shipping methods: delivery method names, carriers, cost rules

  • Shipping providers: available logistics providers

  • Shipping points: locations and addresses of shipping/return points

  • Shipping options per organization: preferences and configurations

D) Other Administrative Data:

  • Shop invitations: who invited whom, organization access permissions

  • User settings: platform-specific preferences

  • App usage logs: IP addresses, login time, platform interactions

 

4. Why We Collect Your Data

We use your data to:

  • Provide and operate the OrderKrab system

  • Authenticate users and manage access

  • Process and sync order data from Shopify

  • Configure fulfillment workflows

  • Generate and manage shipment data

  • Improve app stability and usability

  • Comply with legal and tax obligations

Legal bases under GDPR:

  • Contract performance (Art. 6(1)(b))

  • Legal obligation (Art. 6(1)(c))

  • Legitimate interest (Art. 6(1)(f))

 

5. Integration with shipping API

To fulfill shipments, we integrate with multiparcels.com. We send them order shipping details and they return shipment labels. Data is shared solely to generate labels and fulfill delivery. Multiparcels.com is a separate processor under GDPR.

 

6. Data Storage and Security

All data is stored in secure databases hosted in the EU or with providers offering GDPR-equivalent protections. Access is controlled via secure authentication and audit logging. We use encryption at rest and in transit.

 

7. Data Sharing

We may share limited data with:

  • Shopify (platform integration)

  • Multiparcels.com (logistics API)

  • Auth0 (user authentication)

  • Cloud infrastructure providers (PostgreSQL, hosting)

  • Our internal support and monitoring tools

We do not sell or rent your personal data.

 

8. International Transfers

Where data is processed outside the EU, we ensure safeguards such as:

  • Standard Contractual Clauses (SCCs)

  • Processors with GDPR adequacy status

 

9. Retention

We retain data only:

  • For the duration of your active use of the app

  • As legally required for billing or tax records

  • As reasonably necessary to maintain service logs and security

You may request deletion at any time.

 

10. Your Rights Under GDPR

You have the right to:

  • Access your data

  • Correct inaccurate information

  • Request deletion (right to be forgotten)

  • Restrict or object to processing

  • Receive your data in portable form

  • Withdraw consent (if processing is based on consent)

To exercise your rights, contact: info@orderkrab.com

 

11. Complaints

If you believe your data is misused or mishandled, you may contact your local Data Protection Authority.

In Lithuania:

Valstybinė duomenų apsaugos inspekcija (VDAI)

Website: https://vdai.lrv.lt

 

12. Cookies

We use cookies and secure session tokens for:

  • Authentication

  • Platform security

  • Basic usage tracking

We do not use tracking cookies for advertising.

 

13. Changes to This Policy

We may revise this policy when needed. Material changes will be communicated through the app or email.

 

14. Contact

If you have any questions:

MB “Fourbolts”

Perkūnkiemio g. 19, LT-12120 Vilnius

Email: info@orderkrab.com

Website: https://orderkrab.com/