Privacy Policy — Trenoxa - Class Booking
Last updated: 27 July 2026
Trenoxa - Class Booking ("Trenoxa", "we", "us") is a Shopify app that lets merchants sell seats in scheduled classes, workshops, and sessions through their Shopify store. This policy explains what data the app accesses, why, how we store it, and how it is deleted. It applies to the app only; it does not govern the merchant's own store or Shopify's platform.
Who we are
Trenoxa is operated by TrenoxaHQ. Questions about this policy or your data can be sent to trenoxahq@gmail.com.
What data we access and store
When a merchant installs the app and customers book sessions, we access and store the minimum data needed to run bookings:
- Order and booking data — Shopify order ID, order name (e.g. "#1001"), line item ID, the session booked, and the number of seats. Received from Shopify order webhooks when a customer completes checkout.
- Customer identity for the roster — the customer's name and email address, so the merchant can see who booked each session.
- Store information — the merchant's store domain and timezone, used to run sessions and display times correctly.
We do not collect or store customer phone numbers, shipping/billing addresses, payment card details, or any customer data beyond what is listed above. Payment is handled entirely by Shopify's checkout; the app never sees or stores card data.
Why we use it
We use this data solely to provide the app's functionality:
- confirming bookings when an order is paid,
- showing the merchant a per-session roster of who booked,
- releasing seats when an order is refunded or cancelled,
- displaying session times and seat availability.
We do not sell, rent, or share customer or merchant data with third parties. We do not use it for advertising, and we do not use it to build profiles beyond the booking roster the merchant needs to run their classes.
How and where it is stored
App data is stored in a managed PostgreSQL database hosted on Railway (United States region). Data is transmitted over encrypted connections (HTTPS/TLS) between the customer's browser, Shopify, and the app.
Data retention and deletion
We retain booking data for as long as the app is installed and the data is needed to run the merchant's sessions. We honor Shopify's mandatory privacy webhooks:
- Customer data erasure (
customers/redact) — when Shopify sends a customer redaction request, we remove that customer's name and email from our records. - Shop data erasure (
shop/redact) — when a merchant uninstalls and Shopify sends a shop redaction request, we remove the shop's associated customer identity data. - Customer data requests (
customers/data_request) — we log and fulfill requests for a copy of a customer's data.
A merchant can also request deletion of their data at any time by contacting trenoxahq@gmail.com.
Data ownership
The merchant is the owner and controller of their customers' data. Trenoxa acts as a processor on the merchant's behalf, handling that data only to provide the app's booking functionality.
Changes to this policy
We may update this policy as the app evolves. The "last updated" date at the top reflects the current version. Material changes will be reflected here.
Contact
For any questions about this policy or your data, contact trenoxahq@gmail.com.