Privacy policy
Ordo: Order Number Display · Last updated 5 October 2026
Ordo: Order Number Display ("Ordo", "the app") shows customers their order number on a Shopify store's Thank you and Order status pages. This policy explains what information the app accesses when a merchant installs it, how that information is used, and how long it is kept.
Information the app accesses
- Store details: the store's Shopify domain, and the access credentials Shopify issues when the app is installed (an access token, a refresh token, their expiry dates and the permissions granted, which are limited to reading orders).
- Order details: when a customer reaches the Thank you page, the app reads that order's ID, order number (for example #1001) and confirmation number from Shopify, to display the order number to that customer. These details are not stored.
- Plan status: whether the store has an active plan for the app. This is saved on the store itself, in a Shopify field that only the app can change.
The app does not access customers' names, email addresses, phone numbers, addresses or payment details. It does not use cookies, analytics or tracking on the store's pages.
How the information is used
Only to provide the app's features: showing the order number to the customer who placed the order, and checking whether the store has an active plan. The information is not used for advertising, profiling or automated decision-making.
Sharing
The information is not sold, rented or shared. It is processed by Shopify, which provides the platform, and stored on a server hosted by Amazon Web Services in the United States.
Retention and deletion
- Order details are read when needed and are not kept.
- Store details are deleted when the merchant uninstalls the app, and again when Shopify sends its store data deletion request.
- Server logs may contain store domains and error details for troubleshooting. They contain no customer personal information.
Security
All traffic between Shopify, the store and the app is encrypted with HTTPS. Requests from the store's pages must carry a token signed by Shopify before the app answers them, and an order's number is only returned when the matching confirmation number is provided.
Your rights
Because the app does not store customers' personal information, customer data access and deletion requests received through Shopify have no stored data to return or delete. Merchants can remove all store data by uninstalling the app, or by contacting us at the address below.
Changes to this policy
If the app's data practices change, this page will be updated and the date above revised.
Contact
Questions about this policy: support@onx.digital