Returni by Adease LTD

Legal

Privacy Policy

How Returni, the returns and exchanges app for Shopify, handles personal data belonging to merchants and their customers.

Last updated 30 August 2026

Adease LTD ("we", "our", "us"), a company registered in England and Wales (company number 14743980), registered office 124 City Road, London, EC1V 2NX, United Kingdom, publishes Returni and is the data controller for the limited personal data described below. Where Returni processes data on a merchant's behalf, the merchant is the controller and we act as their processor.

Contact for privacy matters: support@adease.io

1. Summary

Returni is built to hold as little personal data as possible. The important points, in plain terms:

2. What Returni processes, and why

What Why we process it
Shopify return ID, order ID and customer ID; the RMA number and order number To mirror the return into the merchant's Shopify admin and to link the return to the right order and shopper
Return status, requested resolution, returned line items, quantities, reasons and amounts To run the return workflow the merchant has configured, and to show the merchant and the customer where a return has got to
A timeline of events on each return, including which rule decided an outcome and the facts it used So a merchant can audit why any decision was reached. Event records do not contain customer personal data
Shipping and tracking details for a return, and a return label where the merchant uploads one To let the merchant and customer follow the parcel. See the note below, as an uploaded label can contain a postal address
Merchant staff details from Shopify: name, email address, locale, and the Shopify access token for the store To sign merchant staff into the app and make Shopify API calls on the store's behalf. This is standard Shopify session storage

One exception worth stating plainly. Returni does not generate shipping labels itself, and connects to no carrier. If a merchant uploads a return label, that file is held in object storage and served only through short-lived signed links. A label of that kind may show the customer's postal address. It is erased when we receive a customer erasure request, and when the shop is deleted.

3. What Returni never stores

The following are read from Shopify when a page needs them and are never written to our database:

Returni does not build customer profiles, does not track behaviour across shops, and does not use any data for advertising or for training machine-learning models.

4. Automated decisions, and how to ask for a person

Returni includes a rule engine that a merchant can configure to handle returns without someone reviewing each one. It is switched off when the app is installed and stays off until the merchant deliberately turns it on:

Where a merchant has switched both on, a rule may approve a return, hold it for review, or decline it without a person looking at it first. A declined return always carries a written reason, and that reason is shown to the customer. Merchants may also set a refund ceiling, above which any refund goes to a person regardless of what the rules say. Every automated decision is recorded together with the facts it was based on, so the merchant can see exactly why an outcome was reached.

Asking for a human review. If an automated decision affected your return and you would like a person to look at it, contact the merchant you bought from. They can reopen and change any outcome the rules produced. You may also write to us at support@adease.io and we will pass your request to the merchant. Merchants who would rather not use automation at all can leave Returni on Manual, which is how it arrives.

5. How long data is kept

Returni holds identifiers and return records for as long as the merchant has the app installed, because a return can be reopened, disputed or refunded long after it was raised. Because customer names, addresses and contact details are never stored, there is no store of customer personal data ageing in the background.

We implement all three of Shopify's mandatory privacy webhooks:

6. Who else sees the data

Returni sends no personal data to any third party. There are no analytics services, no advertising networks, no customer-support tools and no AI or machine-learning services in the path of your data. The only external service Returni communicates with is Shopify itself.

The customer-facing return portal is a Shopify customer account extension. It reads everything through Shopify's own Customer Account and Storefront APIs and makes no calls to any host outside Shopify — which is why it does not request the network access permission.

The infrastructure providers that host the application and its database process data on our instructions in order to run the service, and do not use it for their own purposes.

7. Your rights

Under the UK GDPR and equivalent laws you may ask for access to your personal data, correction of it, erasure of it, restriction of processing, portability, and you may object to processing including automated decision-making.

If you are a shopper, the merchant you bought from is the controller of your data and is the fastest route — they can act on your return directly. Requests made to us are passed to the relevant merchant and actioned on our side. If you are a merchant, write to us directly.

If you are in the UK and believe your data has been mishandled, you may complain to the Information Commissioner's Office at ico.org.uk.

8. Security

Shopify access tokens are held in the app's session store and are used only to make API calls for the store they belong to. Return labels are never stored in the database and are served only through short-lived signed links. Access to production data is limited to those who need it to operate the service.

9. Changes to this policy

If we change how Returni handles personal data we will update this page and change the date at the top. Material changes affecting merchants will also be communicated through the app listing.

10. Contact

Adease LTD

124 City Road, London, EC1V 2NX, United Kingdom

Company number 14743980

support@adease.io