Who we are
MetaBridge ("we", "us") is a Shopify app that maps Shopify customer metafields to Klaviyo profile properties (custom properties). Operated by Evan Blair / MetaBridge. Contact: hello@getmetabridge.com. Site: getmetabridge.com.
Protected customer data
MetaBridge accesses two kinds of protected customer data from Shopify: the customer metafield values you choose to map, and customer email, used only to find the matching Klaviyo profile. We request nothing else. We do not use customer data for advertising, profiling, or automated decisions, and we never sell or share it for ads.
What we process
- Shop / merchant data — shop domain, install state, OAuth tokens, reusable mappings, sync job metadata, billing status.
- Customer data — customer email (join key) and merchant-configured customer metafield values so we can sync to Klaviyo.
- Destination credentials — Klaviyo API keys the merchant provides. Keys are used only for the sync you authorize and are not sold.
- Website waitlist — if you request early access, we store your email, store URL, metafields needed, and current workaround so we can reply about early access.
How we use data
- Authenticate the shop and run mappings / sync jobs.
- Show dry-run previews and sync health to the merchant admin.
- Fulfill Shopify compliance webhooks (customers/data_request, customers/redact, shop/redact).
- Bill via Shopify App Pricing when live.
- Reply to early-access requests from the waitlist form.
No sale · no ads
We do not sell customer data. We do not share data with advertisers. We process data only to provide the sync service the merchant installs. Merchants remain the controller of their customer data; MetaBridge acts as a processor under their mapping instructions.
Consent and opt-outs
MetaBridge does not change any customer's marketing consent in Klaviyo. You control which customers are in scope. When Shopify sends a redaction request for a customer, we delete their data from MetaBridge.
Sharing
- Klaviyo — only properties the merchant maps, via APIs they authorize, under the merchant's own Klaviyo agreement.
- Shopify — install, billing, webhooks.
- Infrastructure — Cloudflare hosts this site and app infrastructure. Additional subprocessors (database, email/logs) will be named here as production expands.
Retention and deletion
Metafield values are passed through to Klaviyo for the sync attempt. Sync-related logs that may include email are retained only as needed for troubleshooting and then deleted. Tokens and shop data remain until uninstall or shop/redact. On customers/redact or shop/redact we delete or anonymize customer-linked data for that shop. Merchants can uninstall to revoke API access. Waitlist entries can be deleted on request.
Security
Data is encrypted in transit (TLS). Shopify webhooks are HMAC-verified. Scopes are minimized. Secrets are kept out of logs. Shopify tokens and Klaviyo API keys are stored encrypted when held server-side.
Contact
Privacy questions or waitlist deletion: hello@getmetabridge.com.