1. Overview
Zen Feed is a Shopify application that allows merchants to connect their Instagram Business or Creator accounts and display Instagram content (photos, videos, Reels, carousels) on their Shopify storefronts.
By installing Zen Feed from the Shopify App Store or using our website at https://zenfeed.zensharks.com, you agree to the collection and use of information as described in this Privacy Policy.
We are committed to protecting the privacy of both merchants (Shopify store owners who install Zen Feed) and their store visitors (customers who view Instagram feeds on merchant storefronts).
2. Data We Collect
2.1 Merchant Data
When you install Zen Feed on your Shopify store, we collect:
| Data Type | Examples | Source |
|---|---|---|
| Shop identity | Shop domain, shop name, currency, timezone | Shopify OAuth |
| Authentication tokens | Shopify access token, Instagram access token | OAuth flows |
| Instagram account info | Username, display name, bio, follower count, profile picture URL | Instagram Graph API |
| Instagram media | Post URLs, captions, timestamps, like counts, comment counts | Instagram Graph API |
| App configuration | Feed layouts, styling preferences, sync settings | In-app settings |
| Billing information | Shopify subscription plan, billing dates | Shopify Billing API |
2.2 Storefront Visitor Data
When end-customers visit a Shopify store with a Zen Feed widget, we may collect anonymized analytics:
- Feed views (which feed widget was displayed)
- Post clicks and lightbox opens
- Device type (desktop, mobile, tablet — derived from User-Agent)
- Hashed IP address (one-way hash, cannot be reversed)
- Country (derived from IP, not stored individually)
We do not collect visitor names, email addresses, payment information, or any personally identifiable information from storefront visitors.
2.3 Website Visitors
When you visit https://zenfeed.zensharks.com, we may collect standard web server logs including IP addresses, browser types, and pages visited for security and performance purposes.
3. How We Use Your Data
We use collected data solely to provide and improve the Zen Feed service:
- Authenticate your accounts — Store Shopify and Instagram access tokens to maintain your connected sessions
- Sync Instagram content — Periodically fetch your posts and Reels from Instagram to keep your feeds up to date
- Display feed widgets — Serve your Instagram content to your storefront visitors through embedded feed widgets
- Provide analytics — Show you aggregated data on how your feeds perform (views, clicks, engagement)
- Process billing — Manage your subscription plan via Shopify's billing system
- Send notifications — Notify you of sync failures, token expiry, or important service updates (if email notifications are enabled)
- Improve our service — Use anonymized, aggregated usage data to improve Zen Feed features
We do not sell your data, use it for advertising, or share it with third parties for marketing purposes.
4. Instagram & Meta Data
Zen Feed connects to your Instagram account via the Instagram Graph API, provided by Meta Platforms, Inc. By connecting your Instagram account, you authorize Zen Feed to access the following on your behalf:
instagram_basic— Read your profile information and mediapages_read_engagement— Read engagement data for your linked Facebook Page
We request read-only access. Zen Feed does not publish posts, delete content, send messages, or modify your Instagram account in any way.
4.1 Instagram Token Storage
We store your Instagram long-lived access token (valid for 60 days) in our encrypted database to enable automatic content syncing. Tokens are refreshed automatically before expiry. You can revoke access at any time by disconnecting your account within Zen Feed or through your Instagram account's connected apps settings.
4.2 Cached Media
Instagram post URLs (images and videos) are referenced directly from Instagram's CDN. We store metadata (captions, timestamps, like counts) in our database to enable fast feed rendering. We do not store Instagram media files on our servers.
4.3 Meta Platform Policy
Our use of Instagram data complies with the Meta Platform Terms and Meta Privacy Policy.
5. Shopify Data
Zen Feed is built on the Shopify platform and complies with Shopify's API Terms of Service and Shopify's Privacy Policy.
We access your Shopify store data only to the extent required to operate the app. We store your shop domain and a Shopify access token to authenticate API requests. We do not access your customer orders, payment details, or customer personal information.
6. Data Sharing
We do not sell, trade, or rent your personal information. We may share data with:
| Third Party | Purpose | Data Shared |
|---|---|---|
| Railway (cloud hosting) | Application hosting and database | All app data stored on Railway infrastructure |
| Meta / Instagram | OAuth authentication and content API | Your Instagram authorization code during OAuth |
| Shopify | App platform and billing | Subscription status and app usage |
We may also disclose information if required by law, court order, or to protect the rights and safety of our users or the public.
7. Data Retention
We retain your data for as long as your Zen Feed account is active or as needed to provide our service:
- Shop data and settings — Retained for the duration of your subscription. Deleted 90 days after app uninstallation unless you request earlier deletion.
- Instagram media metadata — Retained while your Instagram account is connected. Removed when you disconnect your Instagram account or delete your shop data.
- Analytics events — Retained for 12 months on a rolling basis.
- Access tokens — Deleted immediately upon account disconnection or app uninstallation.
- Server logs — Retained for 30 days for security and debugging purposes.
8. Data Deletion
You have the right to request deletion of all data Zen Feed holds about you and your store.
8.1 Automatic Deletion on Uninstall
When you uninstall Zen Feed from your Shopify store, we receive a webhook notification and begin the deletion process. All access tokens are revoked immediately. Remaining data (feeds, settings, analytics) is queued for deletion within 90 days.
8.2 Manual Deletion Request
To request immediate deletion of all your data, email us at zensharksofficial@gmail.com with the subject line "Data Deletion Request" and include your Shopify store domain. We will complete the deletion within 30 days and confirm via email.
8.3 Instagram Data Deletion
To remove Zen Feed's access to your Instagram account, go to your Instagram account → Settings → Apps and Websites → find Zen Feed and click Remove. This revokes our access token. You can also disconnect from within the Zen Feed dashboard.
For data deletion requests related to Meta/Instagram data specifically, you may also contact us at zensharksofficial@gmail.com.
9. Security
We implement industry-standard security measures to protect your data:
- All data is transmitted over HTTPS/TLS encryption
- Access tokens are stored encrypted in our database
- Database access is restricted to application servers only (no public access)
- Regular security updates are applied to all infrastructure
- Access to production systems is limited to authorized personnel only
Despite these measures, no method of transmission over the Internet is 100% secure. If you believe your account has been compromised, please contact us immediately at zensharksofficial@gmail.com.
10. Cookies
The Zen Feed app embedded within Shopify admin uses session cookies to maintain your authenticated session. These are strictly necessary cookies and cannot be disabled without affecting app functionality.
Our marketing website (https://zenfeed.zensharks.com) does not use tracking cookies, analytics cookies, or advertising cookies. We do not use Google Analytics or any third-party tracking scripts on our landing page.
11. GDPR & Your Rights
If you are located in the European Economic Area (EEA), United Kingdom, or California (USA), you have specific rights regarding your personal data under GDPR, UK GDPR, and CCPA respectively.
Your Rights Include:
- Right of Access — Request a copy of the data we hold about you
- Right to Rectification — Request correction of inaccurate data
- Right to Erasure — Request deletion of your data (see Section 8)
- Right to Restriction — Request we restrict processing of your data
- Right to Data Portability — Request your data in a machine-readable format
- Right to Object — Object to our processing of your personal data
To exercise any of these rights, contact us at zensharksofficial@gmail.com. We will respond within 30 days.
Legal Basis for Processing
We process merchant data based on contractual necessity (to provide the service you signed up for) and legitimate interests (to improve the service and ensure security). Analytics data from storefront visitors is processed based on the merchant's legitimate interest in understanding their feed performance.
12. Children's Privacy
Zen Feed is not directed at individuals under the age of 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately at zensharksofficial@gmail.com.
13. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify merchants by email (if provided) and update the "Last updated" date at the top of this page.
Your continued use of Zen Feed after changes are posted constitutes your acceptance of the updated policy. We encourage you to review this page periodically.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Zen Feed (Zensharks)
Email: zensharksofficial@gmail.com
Website: https://zenfeed.zensharks.com
We aim to respond to all inquiries within 2 business days.