04.3 — LEGAL

Images, data and retention

Where your source photographs live, what happens to the photographs a session generates, who processes them, and exactly when each class of data is deleted.

VERSION 1.0EFFECTIVE 2 September 2026ISSUED BY [LEGAL ENTITY]DRAFT FOR COUNSEL REVIEW
3.1

Source images stay in Shopify

Source images are the photographs already attached to a product in your store. Dambl reads them to run a session. It does not copy them into a separate library, and it does not remove or alter the originals.

A read happens only when you open a product in the application or start a session against it.

3.2

Generated photographs

Photographs a session returns are stored on our infrastructure so that you can review, compare and re-shoot them before deciding what to keep.

They are kept for as long as your account is open. There is no automatic expiry, because a library you cannot return to is not a library — a photograph you shot in March is still there in December. They are deleted when the account is deleted, or sooner if you ask.

Downloading a photograph or writing it to a product copies it out of our store; that copy is yours and is unaffected by any deletion here. Photographs written to a Shopify product become part of your store's media and are governed by your own arrangements with Shopify from that point.

3.3

The generation step

Image generation is performed by Google (Gemini API). Source images and the text of your session instructions are transmitted to that provider for the sole purpose of producing your photographs.

Use of the paid Gemini API is governed by Google's API terms, under which submitted content is not used to train Google's models. Google states its own handling and retention for that service; we do not restate their period here, because it is theirs to change and ours to pass on.

If we change generation provider we will update clause 2.5 of the privacy notice and give 30 days notice by email before the change takes effect.

3.4

Retention at a glance

SOURCE IMAGESNot stored by Dambl. Read on demand from Shopify.
GENERATED PHOTOGRAPHSKept while the account is open. No automatic expiry. Deleted with the account, or sooner on request.
SESSION RECORDSInstructions, plan and credit movements: kept while the account is open, then deleted with it.
ACCOUNT DATADeleted within 48 hours of uninstall.
BILLING RECORDSseven years, to meet accounting and tax obligations.
OPERATIONAL LOGSRequest and error logs rotate automatically as the log volume fills. They are not kept as a permanent record and are not used to build a profile of you.
BACKUPSA database snapshot every 15 minutes, the three most recent kept. A deletion is gone from backups within a 45-minute window.
3.5

Uninstalling

Uninstalling the application revokes our access to your store immediately. No further reads or writes are possible.

Shopify notifies us and the account is erased within 48 hours — session records, generated files and library entries with it. Billing records are retained under clause 3.4.

If you want deletion sooner than the scheduled window, write to support@dambl.app and we will action it within 7 days.

3.6

Security

Data is encrypted in transit with TLS 1.2 or above, and at rest by the storage provider.

Dambl is operated by one person. Production access is limited to that operator, over key-based authentication, and is logged. There is no shared account and no standing third-party access.

Every release runs an automated test suite that includes the credit ledger, webhook verification and the access controls on stored images. We hold no third-party security certification and do not claim one; if you need a security review before installing, write to support@dambl.app and we will answer specific questions in writing.

If a personal data breach occurs we notify the relevant supervisory authority within 72 hours where required, and affected merchants without undue delay.

Questions about this document go to support@dambl.app. Where a term here conflicts with the Shopify Partner Program Agreement or the Shopify Terms of Service, those terms prevail for matters they govern.