LS - PrintFormi — privacy notice
Last updated 2026-08-12.
LS - PrintFormi turns a Shopify order into the paperwork around it: invoices, packing slips, returns forms and similar documents, printed by the merchant or emailed to the shopper. This notice describes what personal data that involves, why, where it is held and for how long.
Who is responsible
| Registered name | Lorin Soft LLC |
|---|---|
| Registered address | Marica Gardens 12/20, 4018 Plovdiv, Bulgaria |
| Company number | VAT ID: BG206285889 |
| [email protected] |
Only one form of direct contact is published. Two are required.
Our role
For the order and customer data flowing through LS - PrintFormi the merchant is the data controller and Lorin Soft LLC is a data processor, acting on the merchant’s instructions. The processor terms below are accepted by installing the app.
What is processed, and why
| Data | Why | Kept |
|---|---|---|
| Order contents, totals, addresses, customer name | Rendering the document that was asked for | Not stored. Read from Shopify at the moment of rendering and discarded with the request |
| Invoice numbers against order IDs | A reprint must carry the number the customer already holds, and the sequence must have no gaps | Until the shop is erased. Contains no personal data |
| Shopper email address, in the invoice-email log | Answering the merchant’s question “did it go out”, and not sending the same invoice twice | Until erased on request or with the shop. Encrypted at rest |
| Bulk export PDFs | A large export is rendered in the background and downloaded afterwards | Until erased on request or with the shop |
| Company name and VAT number, per customer | Printing them on business invoices | Held on the customer record in Shopify, not in our database |
| Shopify access token, installing user’s name and email | Making API calls on the shop’s behalf | Until uninstall plus 48 hours. Encrypted at rest |
| Application logs | Diagnosing failures a merchant reports | 180 days, then deleted automatically |
The design goal is that an app which stores almost nothing has almost nothing to answer for. Documents are generated on request rather than kept, which is why most of the table above says so.
Sub-processors
- Shopify — the source of all order and customer data.
- Our hosting provider — the server and database, located in the European Union.
- Resend — delivery of invoice emails, and only when a merchant switches that feature on. It receives the shopper’s address, the message and the attached document.
Security
Everything is served over TLS. At rest, the values worth stealing are encrypted individually with AES-256-GCM: Shopify access and refresh tokens, the installing user’s name and email, and invoice-email recipient addresses.
What that does not cover. The encryption key lives on the same host as the database. It therefore protects against a stolen disk, a copied backup or a leaked image — and not against an attacker who has gained root on the running machine. We would rather state that plainly than imply a guarantee the code does not make.
Erasure
- A customer erasure request deletes any stored export containing that customer’s orders and any invoice-email record naming them. The whole record goes, not just the address — what would remain is a record that this person was emailed, which is itself about them.
- Uninstalling marks the shop inactive but keeps its templates, so a merchant who reinstalls does not lose their work.
- 48 hours after uninstall Shopify asks us to erase the shop, and everything belonging to it is deleted: templates, settings, invoice numbers, jobs, stored exports, email records and sessions.
- Nothing is kept because a merchant left. There is no record that outlives the shop.
Your rights
Shoppers should raise access, correction and erasure requests with the merchant they bought from — they are the controller, and Shopify’s own tools carry those requests to us automatically. Merchants can contact Lorin Soft LLC directly using the details above.
Processor terms (GDPR Article 28)
By installing LS - PrintFormi, the merchant and Lorin Soft LLC agree that:
- personal data is processed only on the merchant’s documented instructions, which the app’s own settings constitute;
- everyone with access is bound by confidentiality, and access to production data is limited to those who need it to operate the service;
- the security measures described above are maintained, and the merchant is told about a personal data breach without undue delay;
- sub-processors are limited to those listed above, and this notice is updated before any is added;
- we assist the merchant with data subject requests and with the mandatory Shopify privacy webhooks;
- on request we make available the information needed to demonstrate compliance, and allow an audit of it;
- on the merchant’s instruction, or 48 hours after uninstall, the data is deleted.
Changes
Material changes are reflected here with a new date at the top. This notice is versioned with the app’s source, so its history is the repository’s history.