Legal
Privacy Policy
Last updated July 23, 2026
This Privacy Policy explains what data the Haven: Retreat Booking app accesses, why, and how we protect it when you install and use it on your Shopify store.
1. Who we are
Haven: Retreat Booking (“Haven,” “we,” “us”) is a Shopify app operated by PT ANDARA TEMPLE UNITY, a limited liability company (Perseroan Terbatas) incorporated in Indonesia. If you have any questions about this policy or your data, contact us at support@havenretreat.com.
2. Scope of this policy
This policy covers the data we process when a Shopify merchant installs and uses Haven. Haven is a tool for merchants; it is not a consumer service. Your retreat guests interact with your Shopify storefront and checkout, which are governed by your store’s own privacy policy and by Shopify’s privacy terms, not by this document.
3. What data we access
With your permission (the access scopes you approve at install), Haven accesses the following through the Shopify Admin API, solely to provide the app’s features:
- Store and catalog data — products and variants, inventory levels, locations, files, publications, and metaobjects used to compose and publish your retreats.
- Order data, including a limited amount of customer personal information on retreat orders — the guest’s name and email address — used to display your bookings dashboard and to compile booking-confirmation email content. Accessing this information requires Shopify’s Protected Customer Data approval.
- Order actions you initiate — cancellations, refunds, and seat changes you make from the bookings dashboard.
We access this data only to operate the app. We do not sell it and we do not use it for advertising or profiling.
4. What data we store
Haven stores very little data of its own. We persist session records — your store’s domain, an access token, and session metadata — so the app can authenticate securely to your store.
Your retreat content and booking state are stored inside your own Shopify store (as Shopify-owned metaobjects and order/product metafields), not in a separate Haven database. We do not maintain our own database of your guests’ personal information.
5. AI drafting (optional)
If you use the “draft with AI” feature, the retreat description you type is sent to our AI provider (OpenRouter and the underlying model provider) to generate a draft for you to review. Only the text you enter is sent — no guest personal data is included. If you do not use this feature, nothing is sent to the AI provider.
6. Service providers (sub-processors)
We rely on a small set of providers to deliver the service:
- Shopify — the platform your store runs on, which also processes payments and app billing and hosts your store data.
- Our cloud hosting provider — runs the Haven application.
- OpenRouter — used only when you use the AI drafting feature.
7. How we use data
We use the data described above to operate and secure the app’s features, authenticate to your store, provide support you request, and maintain and improve reliability. Where the GDPR applies, our legal bases are performance of our contract with you and our legitimate interest in operating and securing the service.
8. How we share data
We do not sell your data. We share data only with the service providers listed above, to the extent needed to run the app, and where required by law or to protect our legal rights.
9. Data retention and deletion
We retain session records while the app is installed and delete them when you uninstall the app. We also respond to Shopify’s shop-redaction request by deleting the session records we hold for your store. Because your retreat and booking data live inside your Shopify store, that data is managed and removed through Shopify.
10. Data-subject requests (GDPR, CCPA and similar)
Haven honors Shopify’s mandatory compliance webhooks: customer data requests, customer redaction, and shop redaction. Because guest personal data resides in your Shopify store rather than in a Haven database, we fulfill these requests through Shopify. If you or one of your guests wishes to make a request, contact us at support@havenretreat.com or use Shopify’s privacy tools.
11. Security
Data is transmitted over encrypted connections (HTTPS). The embedded app authenticates using signed Shopify session tokens, we request only the access scopes the app actually needs, and access tokens are stored securely. No method of transmission or storage is perfectly secure, but we work to protect your data using industry-standard measures.
12. International data transfers
Your data may be processed in the regions where Shopify and our hosting and AI providers operate, which may be outside your country. Where required, transfers are made under appropriate safeguards.
13. Children
Haven is a business tool intended for merchants and is not directed to children.
14. Changes to this policy
We may update this policy from time to time. The “Last updated” date at the top reflects the current version; material changes will be reflected there.
15. Contact
Questions about this policy or your data? Reach us at support@havenretreat.com.
Haven is operated by PT ANDARA TEMPLE UNITY:
PT ANDARA TEMPLE UNITY
Alan Munduk Tengah Nomor 6
Pererenan, Kec. Mengwi, Kab. Badung
Canggu, Bali 80351
Indonesia