Privacy Policy
Last updated: 23 August 2026
JizaiDev ("we") handles personal information and user data as follows in providing the Shopify app "Shunji Hakko - Receipts, Invoices & Delivery Notes" (the "App").
Information we access
The App requests only the following permissions from Shopify.
Read orders (read_orders): to obtain the order number, line items, amounts, tax and dates printed on your documents.
Read customers (read_customers): to obtain the recipient name, the email address documents are sent to, and the delivery address printed on delivery notes (name, address and phone number).
Read draft orders (read_draft_orders): to issue quotations and purchase orders.
The App requests no permission to write to your store’s data, and it never obtains payment details or card numbers.
Information we store
We store the order information, tax, recipient and line items exactly as they stood when a document was issued, as a snapshot of that document. This includes the buyer’s name and email address and, where a delivery note was issued, the delivery address and phone number.
We do this so that an issued document does not change if the order is edited afterwards, and so that the data is easier to keep in line with the Electronic Books Preservation Act (Japan’s law on retaining accounting records electronically). Access to order data in Shopify is limited to 60 days, whereas tax law requires records to be kept for seven years, so we take our own copy of the contents as they stood at the moment of issue.
The generated PDF file itself is held in object storage. The database holds its location, a SHA-256 hash for tamper detection, the retention deadline, the time of issue and the operation history.
Store settings (company details, registration number, tax settings, bank details and fiscal year-end month) and your document templates are stored as well.
If you enable the staff permissions feature, we store the name, email address and permission level of your store’s staff. If you issue an API key for an external integration, we do not store the key itself, only a hashed value and the leading identifier.
Purpose of use
We use the information we access and store only to issue documents, to deliver them to buyers and store administrators, to allow issued documents to be retrieved again and exported in bulk, to produce data for bookkeeping, ledgers and audits, to investigate incidents and to respond to enquiries.
We do not use the information for advertising, and we do not sell it to third parties.
Disclosure to third parties
We rely on the following providers, to the extent needed to run the service.
Fly.io (Tokyo region) — the runtime environment for the application and the database.
Fly Tigris — storage for the generated PDFs.
Resend — delivery of documents to buyers and store administrators, and delivery of notification emails. We pass on the recipient’s email address and the body of the message, including the document download link.
The National Tax Agency’s public register of qualified invoice issuers (Japan’s official lookup for consumption tax registration numbers) — verification of the registration number entered in your store settings. We send only the registration number and an application identifier, never your company name or address, and we never search the register backwards from a name or an address.
We pass data to these providers only to the extent needed to run the service. We disclose it to no other third party, except where the law requires it. We use no external analytics or advertising services whatsoever.
Retention and deletion
Issued documents and the data belonging to them are kept until a retention deadline of five or seven years, calculated from the type of document, the form of your business (company or sole trader) and your store’s fiscal year-end month. The design assumes the retention obligations imposed by tax law.
When Shopify sends a request to delete customer data (customers/redact), we sever the link between that customer and the documents issued to them. The documents themselves and their snapshots are not deleted. We state this explicitly: our position is that the retention obligation under tax law takes precedence over the erasure request.
When Shopify sends a request to disclose customer data (customers/data_request), we send a list of the documents relating to that customer to the email address in your store settings.
If you uninstall the App, we first delete the authenticated session and send notice of the pending deletion to the email address in your store settings. When Shopify then sends a request to delete the store (shop/redact), we delete the issued documents, their snapshots, the PDF files, the audit log, the download links, your store settings and your templates. If you reinstall within that window, nothing is deleted.
If you need the documents themselves, please run a bulk export (ZIP, merged PDF or CSV) before uninstalling.
If you would like your data deleted, please get in touch using the contact details below.
Buyer information
When a buyer downloads a receipt from their customer account or from the order status page, we first confirm that they are the buyer in question, and then show only that buyer’s documents.
The download links we send by email use an unguessable string and expire 30 days after issue. We do not store the string itself, only a hashed value.
When a buyer asks for the recipient name to be changed, the change does not appear on a document until the store administrator approves it.
Where data is held, and how it is protected
The application and the database run in Fly.io’s Tokyo region. Email delivery and registration number verification may, however, pass through servers outside Japan, depending on how those providers operate.
Traffic is encrypted with SSL/TLS. Each generated PDF carries a SHA-256 hash, so that you can confirm its contents have not been altered afterwards.
Changes to this policy
If we change this policy, we will publish the revised text and the last-updated date on this page.
Contact
For questions about this policy, please get in touch through JizaiDev’s contact page.