Last updated September 28, 2026
Adres Doğrulama Privacy Policy
This policy covers the Adres Doğrulama app only, listed on the Shopify App Store as MZ: Adres Doğrulama. The rules common to every app we publish are on the Privacy Policy page.
What the app does
Once an order exists, it validates and corrects the delivery address in the background. To do that it reads the order’s address fields, writes the result back to the order and tags the order. It does not touch checkout or the payment flow.
What we collect
| Data | Why |
|---|---|
| Your store domain, your contact email and the Shopify scopes you grant | Installing the app and recognising your store |
| Order number and Shopify order ID | Matching a validation record to an order |
| The delivery address: address lines, the province and district as typed, postcode | The data being validated and corrected |
| The customer’s email address and phone number | To be able to send a verification message if the address cannot be resolved. Held with every validation record; a message goes only when the address is unresolved and you have turned notifications on. |
| The IP address and browser of whoever opens the verification form | Preventing abuse of the link |
This is held in the app’s own database, which is why the validation history is there to read in the app’s admin.
Install notification
The moment the app is installed, your store name, your store domain and the store’s Shopify admin email are sent to Meze Apps’ own install counter, so that we know how many stores run which version. No order, address or customer data is part of that call.
What we never collect
Payment details and card data never reach our servers. They stay in Shopify, and the app does not request a scope that would expose them. Order contents, products and amounts are not read either; the app’s job is the address.
Who it is shared with
Google Gemini
If an address does not match the province, district and neighbourhood data, it is sent to Google’s Gemini model to be parsed again. What is sent is the address and nothing else: the address lines, the province and district as typed, and the postcode. The customer’s name, email, phone and order number, and your store’s identity, are not sent. The model works on the text without knowing whose it is.
Email, SMS and WhatsApp providers
When the customer is sent a verification message because the address could not be resolved, the email address or phone number it goes to is passed to the relevant provider:
- SMS: through your own NetGSM account if you have connected one; otherwise through Verimor, the SMS provider we use.
- WhatsApp: through Meta’s WhatsApp Business platform. Meta receives the customer’s phone number and the order number and link the message carries.
- Email: from our own mail server, sent in your store’s name.
Beyond these, no data is sold, rented or shared with third parties for advertising.
How long it is kept
Records are not kept indefinitely. Every day the app deletes the ones past these limits on its own:
| Record | Deleted |
|---|---|
| Validation record (address, email, phone, order number) | after 180 days |
| Notification log (who a message went to, on which channel) | after 180 days |
| Verification link, with the IP address and browser of whoever opened it | after 30 days |
Six months was chosen so a season’s validation history stays readable in the admin. Beyond that, deletion happens in these ways:
- When you uninstall. Every record belonging to your store is deleted: validations, notification logs, verification links, settings and usage records. It happens on the shop redaction request Shopify sends within 48 hours, or, if that request never arrives, no later than 30 days after uninstalling.
- When a customer asks to be erased. On Shopify’s customer redaction request, that customer’s personal fields are cleared: email, phone, address lines and postcode. The notification log and the verification link are deleted outright. The impersonal skeleton of the validation record, meaning the date and which step resolved it, stays so the counts in your admin do not break.
- When you ask us. As the store owner you can request deletion at any time.
Customer data requests
All three of Shopify’s privacy requests are honoured: customer data request, customer redaction and shop redaction. If one of your customers wants their data or wants it erased, forwarding the request from your Shopify admin is enough.
Where it is processed
The app and its database run on a server hosted in Turkey. The service providers named above (Google and the email, SMS and WhatsApp providers) use their own infrastructure.
For any privacy question or deletion request, write from the store owner’s address to [email protected]. We reply within one business day and complete deletion requests within 30 days.