Skip to content

Security

How we handle the data you trust us with. The same posture everywhere: the minimum access required, protected while we hold it, deleted when we no longer need it.

Access model

Tacet connects to client systems with the minimum access required to deliver the Service, and every scope we request is explicitly justified.

  • Access to your Shopify store is read-only by default
  • Scores are delivered through platform integrations you authorize, such as Klaviyo, where Tacet writes them onto customer profiles and builds lists and segments
  • Tacet sends nothing to your customers and creates no discount unless an admin in your own organization has approved that specific play
  • We never change your prices, products, or orders

When Tacet acts for you

Tacet can propose a play: a specific audience, message, offer, and send time. Nothing happens until an admin in your organization approves it. Tacet staff cannot approve a play. A proposed play that nobody approves expires after 7 days.

  • After approval, Tacet works through your own Klaviyo account: it creates the campaign or flow, copies and edits your own templates, sends, and can cancel before the send
  • Tacet can load unique coupon codes into Klaviyo. It creates discount codes in your Shopify store only if you separately grant the Shopify discount permission, and only inside the limits of your written policy: maximum depth, once per customer, expiry, and a redemption ceiling
  • Every send leaves out a persistent holdout group, a comparison group for that play, and every customer without marketing consent
  • You can pause everything at any time, and cancel a send inside the undo window
  • A permanent ledger records who approved what, when, and what was sent

You are the controller of your customer data and the sender of record for every message. Tacet acts as your processor, on your documented instructions: your agreement, your policy, and each approval. Marketing consent remains your responsibility. Tacet relies on the consent status held in Klaviyo and Shopify.

Data protection

We implement commercially reasonable technical and organizational safeguards designed to protect client data from unauthorized access, disclosure, alteration, or destruction. These include:

  • Encryption of sensitive information
  • Access controls restricting data to authorized personnel
  • Logical separation of each client's data
  • Secure infrastructure practices, continuously evaluated and improved

Data lifecycle

We retain client data only as long as necessary to provide contracted services and meet legal obligations.

  • If you uninstall the Shopify app, Tacet’s access ends at once. Customer-level data (customers, orders, and their scores) is deleted when Shopify’s deletion request arrives, 48 hours after the uninstall
  • When a subscription ends, personal data is deleted in accordance with our contractual agreements
  • The ledger of approvals and sends is kept as a permanent record

What we never do with client data

We do not sell client data.

We do not use identifiable client data for our own advertising or marketing.

We do not contact your customers on our own behalf. A message goes out only when your admin has approved that play, and it is sent from your own account.

Anonymized, aggregated data that cannot identify any individual or business may be used to improve our models, as described in our Privacy Policy.

Data Processing Agreement

A Data Processing Agreement covering our obligations as a data processor, including confidentiality, security measures, and deletion, is available as part of contracting. The providers we use are listed in our Privacy Policy. Request a copy at legal@tacet.ai.

Reporting a security concern

If you believe you have found a vulnerability in our website or services, we want to hear about it. Contact security@tacet.ai, or see security.txt. We review every report.