Privacy policy
Last updated: September 25, 2026
Sample Studio is operated by Vladimir Lukashov. This policy covers the Shopify app, this website, and requests sent to our support address.
Information we process
- Shopify connection: your store domain, access permissions, authentication tokens, and session information needed to connect the app. If Shopify supplies user information with a session, it can include a user ID, name, email, language, and account-role information.
- Products: product and variant identifiers, titles, images, status, prices, inventory information, and sample pairings obtained from Shopify. Pairings are saved in your store’s product metafields; the app does not maintain a separate product catalogue database.
- App subscription: your store identifier, selected subscription item, current access period, scheduled cancellation, and the time of the last verification. We cache this information to check access without interrupting your storefront during a short service outage. Shopify handles app billing; we do not receive payment card details.
- Support: your email address and the information you choose to include in a support request.
- Technical requests: our hosting providers process connection information such as IP addresses, browser information, request times, and diagnostic logs to deliver and protect the service.
The app does not request access to customer records or order history. The sample button uses Shopify’s cart and checkout. Customer contact, delivery, and payment information is handled by the merchant and Shopify, not collected by Sample Studio’s sample button.
How we use information
We use this information to authenticate merchants, display products, save sample pairings, verify app subscription access, answer support requests, and maintain the service. We do not sell personal information, use it for targeted advertising, or build customer profiles.
Where data protection law requires a legal basis, providing the service and requested support relies on performing our agreement with you; security and troubleshooting rely on our legitimate interest in operating a reliable service. We may also process information to meet legal obligations.
Service providers
We use Shopify for store integration and checkout, Vercel for hosting, Neon for the session and subscription-access database, and ImprovMX and Google Gmail for support email. Information is processed by these providers as needed for those purposes. Their infrastructure may process information outside your country, including in the United States.
We may disclose information when required by law or necessary to investigate abuse and protect the service. Contact us for information about the providers and international processing relevant to your request.
Retention and deletion
Connection sessions are kept while the app needs access to your store. Our app deletes matching session and subscription-access records from its active database when it receives a verified Shopify uninstall or shop-erasure webhook. Provider backups and technical logs are subject to their separate retention and deletion cycles.
Pairings remain in your Shopify store until you remove them. Removing a pairing does not delete either product. Support correspondence is retained for handling the request and necessary follow-up, or for resolving a dispute or meeting a legal obligation. You can request deletion of support information at the address below.
Cookies and the interactive preview
The sample button adds no advertising cookies or tracking scripts. It sends the store domain to our server to check that the button is available under the store’s app subscription. This check does not send customer identifiers, cart contents, or the referring page URL. Shopify manages its own login, cart, and checkout technologies. Our public interactive preview stores example pairings in your browser’s local storage so they survive a reload. These preview pairings are not sent to a Shopify store; you can remove them by clearing this site’s browser data.
Your choices and rights
You can uninstall the app to revoke its access. You can contact us to request access to, correction of, or deletion of your personal information. Depending on applicable law, you may also request portability or restriction of processing, object to processing, and complain to your local data protection authority. We may need to verify your identity before responding.
If you bought a sample, contact the store where you placed the order about its customer or order data.
Contact and changes
Operator: Vladimir Lukashov, Carrer de l’Escorial 181, 08024 Barcelona, Spain.
For privacy questions or requests, email support@vovaluka.com. Please do not include passwords, access tokens, or payment card information. Updates to this policy will appear on this page with a revised date.