Privacy Policy

Last Updated: May 2026

Our Privacy Commitment

Agentic Commerce Platform, operated by Five Dollar Workday, enables merchants to list products and buyers to transact through AI agents. We collect only what is necessary to provide the catalog, transaction, and fulfillment service, and we never sell data to third parties.

Scope of this Policy

This policy applies to data collected through:

  • useao.ai — the Hub: marketing site, documentation, merchant dashboard, and buyer account portal.
  • The Shopify embedded app — installed in Shopify Admin via the Shopify App Store.
  • The merchant MCP endpoint (/mcp) — used by AI agents (Claude, ChatGPT) to query and manage merchant catalog, orders, team, and fulfillment data.
  • The buyer MCP endpoint (/mcp/buyer) — used by AI agents to search products, generate quotes, and complete purchases on behalf of authenticated buyers.
  • The BDM MCP endpoint (/mcp/bdm) — used by authorised business development managers to provision and manage merchant accounts.
  • The Theme App Extension — injects JSON-LD into merchant storefronts; collects no data itself.

What We Collect

Merchant account data

  • Shopify shop domain (e.g. yourstore.myshopify.com) — required for app authentication.
  • Shopify access token — stored encrypted in Firebase Firestore, scoped to read/write products and metafields only.
  • Merchant profile — trading name, brand, and ship-from address used for Shippo label generation.
  • Stripe Connect account ID — stored to enable payment processing for AGC-native orders. No card data is stored by AGC.
  • Shippo OAuth token — stored to enable shipping label generation and rate fetching.
  • App installation and uninstallation timestamps.
  • Team member data — display name, email address (masked in MCP responses), and role for invited team members.

Product catalog data

  • Product titles, descriptions, handles, images, prices, and variant data — fetched from Shopify or ingested directly for AGC-native merchants.
  • Audit scores and gap analysis results — stored in Firestore under your shop domain.
  • AI-enriched attributes — suggested by Gemini, reviewed by the merchant before being written to Shopify metafields or the AGC catalog.
  • GTIN / barcode data — read from Shopify, written back to variant.barcode and standard facts metafields.

Buyer account data

  • Email address — used for account authentication and order notifications.
  • Shipping address — collected at checkout and stored in Firestore for order fulfillment.
  • Stripe customer ID — created by Stripe when a buyer saves a payment method. AGC stores only the customer ID reference, not card details.
  • Order history — purchase records including line items, amounts, fulfillment status, and tracking numbers, stored in Firestore.
  • Wholesale relationship data — payment terms, discount entitlements, and tax-exempt status granted by specific merchants.

Order and transaction data

  • Order records — line items, shipping address, payment status, fulfillment status, tracking numbers, and Stripe charge IDs.
  • Shippo shipment and transaction records — carrier, rate, label URL, and tracking data for fulfilled orders.
  • Refund and cancellation records — Stripe refund IDs and status for cancelled orders.

MCP telemetry

  • Tool call logs — tool name, sanitised arguments, response shape, duration, and session ID, stored in the mcp_telemetry Firestore collection.
  • AI agent identity — user-agent string (e.g. Claude-User, ChatGPT) logged per request for platform analytics.
  • Telemetry is used to improve tool reliability, detect errors, and inform model fine-tuning. It is not shared with third parties.

Usage and analytics

  • Audit run counts per month — used to enforce usage limits on free and paid plans.
  • Aggregated, anonymised performance metrics (audit duration, enrichment latency) — used to improve the service.

What we do NOT collect

AGC does not store payment card details. All card data is handled directly by Stripe under their PCI-DSS certified infrastructure. AGC stores only Stripe customer and charge ID references.
  • Payment card numbers, CVVs, or expiry dates — handled entirely by Stripe.
  • Shopper browsing data or cookies for advertising or cross-site tracking.
  • Data from stores or buyers where AGC is not installed or authenticated.
  • Biometric or sensitive personal data of any kind.

How We Use Your Data

  • To run catalog audits and generate AI Readiness scores for merchant products.
  • To send product attributes to the Gemini API for enrichment — see Third Parties section for Gemini data handling.
  • To process buyer purchases — generating quotes, charging payment methods via Stripe, creating shipping labels via Shippo, and recording order data.
  • To provide merchant order management — fulfillment status, packing slips, tracking, and refund processing.
  • To inject and maintain JSON-LD structured data via the Shopify theme extension.
  • To enforce plan limits and manage billing via Shopify Billing API.
  • To log MCP tool calls for reliability monitoring and service improvement.
  • To respond to support requests submitted via email.

We do not use your data for advertising, do not share it with third-party marketers, and do not use it to train AI models without your explicit consent.

Third-Party Services

Shopify

Commerce platform — OAuth, Admin GraphQL API, Billing API, Storefront API.

Shopify Privacy Policy →

Stripe

Payment processing. Buyer card data is collected and stored directly by Stripe under their PCI-DSS certified infrastructure. AGC stores only Stripe customer IDs and charge ID references. Stripe Connect is used to route payments to merchant accounts.

Stripe Privacy Policy →

Shippo

Shipping label generation and carrier rate fetching. Merchant ship-from address and buyer shipping address are transmitted to Shippo to generate labels. Shippo OAuth tokens are stored in Firestore.

Shippo Privacy Policy →

Google Firebase / Firestore

Database and Cloud Functions infrastructure. Merchant catalog, buyer accounts, order records, and MCP telemetry are stored in Firestore. Hosted on Google Cloud Platform (GCP) in the United States.

Google Firebase / Firestore Privacy Policy →

Google Gemini API

AI enrichment. Product titles and descriptions are sent to Gemini to infer missing vertical attributes. No buyer personal data or payment data is ever sent. Google's data use policies for the Gemini API apply.

Google Gemini API Privacy Policy →

Google Analytics

Anonymised web traffic analytics on useao.ai only. Not used inside the embedded Shopify app or MCP endpoints.

Google Analytics Privacy Policy →

Anthropic / OpenAI (AI Platforms)

AI agents built on Anthropic (Claude) and OpenAI (ChatGPT) connect to AGC via MCP endpoints to perform product discovery, quoting, and purchase execution on behalf of authenticated buyers and merchants. Tool call arguments — including sanitised product queries, quote parameters, and order references — are logged to AGC's mcp_telemetry collection per the Data Retention section above. No payment card data or raw personal data is transmitted to these platforms via MCP. AGC's use of these platforms is governed by Anthropic's and OpenAI's respective usage policies.

Anthropic / OpenAI (AI Platforms) Privacy Policy →

Data Security & Storage

  • All data in transit is encrypted using TLS 1.3.
  • Firestore data is encrypted at rest using AES-256 (Google Cloud default).
  • Shopify access tokens are stored encrypted and scoped to the minimum required API permissions.
  • Stripe Connect account IDs and Shippo OAuth tokens are stored in Firestore with role-based access control.
  • MCP Bearer tokens are single-use or time-limited (24-hour expiry) and stored in Firestore.
  • Access to Firestore is restricted to Firebase service accounts with role-based access control.
  • The Shopify app complies with Shopify's mandatory compliance webhooks: customers/data_request, customers/redact, shop/redact.
  • MCP tool arguments containing email addresses are sanitised (masked) before being written to telemetry logs.

Data Retention & Deletion

Active merchant accounts

Product catalog data and audit results are retained for as long as the app is installed. Audit results older than 90 days may be purged automatically to manage storage costs.

Active buyer accounts

Buyer account data, order history, and wholesale relationship data are retained for as long as the account is active. Buyers may request deletion of their account and associated data at any time by contacting us.

MCP telemetry

Tool call logs are retained for up to 12 months for reliability monitoring and model improvement purposes, then purged automatically.

App uninstallation

When the Shopify app is uninstalled, a app/uninstalled webhook fires. The shop's access token is immediately invalidated and deleted from Firestore. Catalog data and audit results are deleted within 30 days.

Shopify compliance webhooks

  • customers/data_request — we return no personal shopper data collected via Shopify (none is stored via the Shopify channel).
  • customers/redact — acknowledged; no Shopify-sourced shopper data to redact.
  • shop/redact — all shop data deleted within 30 days of receiving this webhook.

Your Rights

As a merchant or buyer using this service, you have the following rights:

  • Access: Request a copy of the data we hold for your account or shop.
  • Correction: Request corrections to inaccurate data.
  • Deletion: Request deletion of all data associated with your account. Merchants: uninstalling the app triggers automatic deletion per the schedule above. Buyers and merchants may contact us for immediate deletion.
  • Portability: Request your order history, audit results, and enriched attributes in machine-readable format (JSON).
  • Objection: Object to any processing beyond what is strictly necessary to provide the service.

To exercise any of these rights, contact us at hello@fivedollarworkday.com. We will respond within 30 days.

Changes to this Policy

We may update this policy as the platform evolves. Material changes will be communicated via the app dashboard. Continued use of the service after the effective date constitutes acceptance of the revised policy.

Privacy Questions?

If you have questions about this policy or our data practices, reach out directly. We don't use support ticketing software — you'll get a real response.

Email Us