PAREL Subscriptions
プライバシーポリシー
最終更新日:2026年9月12日
PAREL Subscriptionsを運営するARCTERIS(以下「当社」)は、Shopifyストア運営者とその顧客に関する情報を、定期購入サービスの提供に必要な範囲で取り扱います。本ポリシーは、当社が収集する情報、その利用目的、保存と削除の方法を説明します。
1. 収集する情報
- ストアドメイン、ShopifyのストアID、認証セッション情報
- 定期契約ID、顧客ID、注文ID、販売プラン、契約状態、次回請求日、周期、商品・バリエーションID、数量、価格、通貨
- 継続決済の結果、失敗コード、再試行状態、監査記録、最小化したWebhook識別情報
- 障害診断の件数、重大度、診断日時、請求ジョブの実行・成功状態
- 選択式の解約理由、任意で入力した補足と、解約・休止・次回スキップ・周期延長・商品変更・次回クーポンの選択履歴
- 解約抑止、次回だけの追加商品、定期購入ギフトを顧客画面へ表示した 時刻、操作・成果・注文成功の状態と、ハッシュ化した施策識別子
- 購入後通知の送信時に必要なメールアドレス、およびプライバシー要求通知に必要なストア連絡先
- アプリ利用料の計算に必要な定期商品売上、返金、換算レート、料金プラン情報
- 店舗が任意に登録した代理店コード、報酬対象期間、入金・控除・支払記録
- 店舗が任意に登録した外部Webhook送信先、購読イベント、送信結果・再送記録
- 店舗が任意に作成した開発者APIキーのハッシュ、権限、許可IP、利用日時・レート制御記録と利用件数
- 店舗が登録した次回だけの追加商品、数量、価格、クーポンコード、および解約抑止で次回請求だけに適用したクーポンと、処理結果
- 顧客または店舗が請求回ごとに確定したBOXの商品、数量、カテゴリ、価格、選択期限、展開状態
- 会員ランクの対象となる定期商品売上・返金・手動調整、判定額、ランク、割引・顧客タグの同期状態
- 定期購入ギフトの対象請求回、受取期限、受取・配送・決済状態、配送方法と送料、注文ID
当社はカード番号、カード有効期限、セキュリティコードを取得または保存しません。配送先変更時や定期購入ギフト受取時の氏名、会社名、配送先住所、郵便番号、電話番号はShopifyで送料を再計算し て契約または対象請求回を更新する間だけ処理し、アプリDB、監査ログ、メール、外部Webhookへ保存しません。ギフト受取URLの生のトークンは恒久保存せず照合用ハッシュだけを保持します。購入者がギフト案内メールを依頼した場合に限り、受取人メールと専用鍵で暗号化したトークンを送信・取消・期限切れまでOutboxで一時処理します。メール送信が外部サービスに受理された後、または案内が無効になった後、Outboxに一時保存した宛先、本文、暗号文は消去します。 Shopify Flowトリガーが受理された後も、Outboxに一時保存した顧客参照とイベント本文を消去します。 IP制限付き開発者APIの呼出元IPは許可判定中だけ処理し、DBや監査ログへ保存しません。 顧客施策の計測台帳には、ブラウザが生成した生の判断ID、ギフトURL、生のギフトトークンを保存しません。
2. 利用目的
- 販売プラン、定期契約、請求予定、契約変更を提供するため
- 継続決済、決済失敗の回復、重複請求防止を行うため
- 選べるBOXの内容を請求前に確認し、欠品時の無断代替を防いで安全に請求するため
- 定期商品売上と返金に基づく会員ランクを判定し、次回注文へランク割引を 適用して現在ランクをShopify顧客タグへ同期するため
- 購入者が指定した1回分をギフトとして受け付け、受取人が選んだ配送先と送料をその請求回だけに適用するため
- 購入後案内、プライバシー要求対応、サポートを行うため
- 店舗が設定した外部システムへ契約・決済状態を連携するため
- 解約理由を集計し、休止・次回スキップの選択肢を提供してサービスを改善するため
- 顧客画面で表示した施策から操作、一次成果、同じ請求予定回の注文成功までを重複なく集計し、店舗の施策改善に役立てるため
- アプリ利用料を正確に計算し、返金を調整するため
- 代理店紹介を判定し、報酬明細と手動振込を管理するため
- 不正利用の防止、障害調査、法令およびShopify要件へ対応するため
3. 共有先・処理委託先
サービス提供に必要な範囲で、Shopify、ホスティング・データベース事業者、メール配信事業者(Resend等)へ情報を送信する場合があります。また、店舗が外部Webhookを設定した場合、その店舗が指定した送信先へ契約・決済の最小限の識別子と状態を送信します。氏名、メール、住所、電話番号は外部Webhook本文に含めません。当社は個人情報を販売せず、行動ターゲティング広告のために利用しません。為替レート事業者へ顧客情報を送信しません。
4. 保存期間と削除
情報は、サービス提供、請求、監査、法令対応に必要な期間だけ保持します。Shopifyから顧客削除またはショップ削除の正式な要求を受信した場合、対象データを削除するか、関連付けできない形へ不可逆に仮名化します。アプリのアンインストール時は認証セッションを削除し、Shopifyのショップ削除要求に従って店舗データを削除します。
5. 安全管理
通信の暗号化、アクセス制御、店舗ごとのデータ分離、秘密情報の分離、冪等処理、監査記録を用いて情報を保護します。ただし、インターネット上の通信または保存方法に絶対的な安全性を保証するものではありません。
6. データに関する請求
Shopifyストアの顧客は、購入先ストアへ開示・訂正・削除等を依頼してください。ストア運営者からShopifyの正式なプライバシー要求を通じて受領した請求には、Shopifyの手順に従って対応します。
7. お問い合わせ
本ポリシーまたはデータ取扱いについては、k.yamane@arcteris.jpまでご連絡ください。
8. 変更
法令、Shopify要件またはサービス内容の変更に応じて本ポリシーを更新し、更新日をこのページに表示します。重要な変更は、合理的な方法でストア運営者へ通知します。
Privacy Policy
Last updated: September 12, 2026
ARCTERIS, the operator of PAREL Subscriptions, processes information about Shopify merchants and their customers only as needed to provide subscription services.
Information we process
We process store and session identifiers; subscription contract, customer, order, selling plan, product and variant identifiers; contract status, schedule, quantity, price and currency; billing attempt results; refunds; audit records; incident diagnostic counts, severity, timestamps, and billing-job execution status; selected cancellation reasons, optional comments, and cancellation, pause, skip, frequency-extension, product-change, or next-cycle coupon decision history; timestamps and states for impressions, actions, primary outcomes, and successful orders for cancellation-retention, next-cycle add-on, and subscription-gift experiences, linked with a hashed journey identifier; merchant-provided referral codes and related commission and payout records; and merchant-configured outbound webhook destinations, subscribed events, and delivery or retry results; merchant-created developer API key hashes, scopes, allowed IP addresses, last-used timestamps, rate-limit counters, and usage totals; next-cycle add-on products, quantities, prices, coupon codes, cancellation-retention coupons applied only to the next billing cycle, and their processing results; box products, quantities, categories, prices, selection deadlines, and expansion status confirmed for each billing cycle; qualifying subscription sales, refunds, manual adjustments, tier balances, tiers, and discount and customer-tag synchronization status for membership programs; subscription-gift billing cycles, acceptance deadlines, acceptance, delivery and payment status, delivery option and price, and resulting order identifiers; and minimized inbound webhook identifiers. We temporarily process an email address when sending a post-purchase message, gift-recipient notice, or merchant privacy-request notice. For a requested gift notice, the gift token is stored only as ciphertext under a dedicated key until delivery, cancellation, or expiration. The recipient, message body, and ciphertext are then erased from our outbox. Customer references and event bodies are also erased after Shopify Flow accepts a trigger. For an IP-restricted developer API key, we process the caller IP only while checking the allowlist and do not store it in our database or audit logs.
We do not collect or store card numbers, expiration dates, or security codes. When a delivery address is changed or a subscription gift is accepted, we process the recipient name, company, shipping address, postal code, and phone number only while asking Shopify to recalculate delivery options and update the contract or selected billing cycle. We do not store those fields in the application database, audit log, email, or outbound webhooks. We do not retain raw gift-link tokens at rest; the gift record retains only a lookup hash, with the temporary encrypted exception described above for a buyer-requested recipient notice. The experience-measurement ledger does not retain raw browser decision IDs, gift URLs, or raw gift tokens.
How we use information
We use information to operate selling plans and subscription contracts, process and recover recurring payments, prevent duplicate charges, offer pause or skip alternatives, analyze selected cancellation reasons, measure de-duplicated experience impressions, actions, primary outcomes, and successful orders for the same billing cycle, provide notifications and support, calculate app usage fees and refund adjustments, administer agency referral commissions and manual payout records, send minimized subscription and billing events to merchant-configured systems, verify box selections before billing and prevent unapproved out-of-stock substitutions, calculate membership tiers from net subscription spend, apply the earned tier discount to the following order, synchronize the current tier to a Shopify customer tag, apply a recipient-selected delivery address and shipping price to one gifted billing cycle, investigate incidents, and comply with applicable law and Shopify requirements.
Service providers
We may share the minimum information required with Shopify, hosting and database providers, and email delivery providers such as Resend. When a merchant configures an outbound webhook, we send minimum contract and billing identifiers and status to that merchant-selected destination. We do not include customer names, email addresses, shipping addresses, or phone numbers in outbound webhook bodies. We do not sell personal information or use it for behavioral advertising. Customer information is not sent to our foreign-exchange-rate provider.
Retention, deletion, and security
We retain information only as long as needed for service delivery, billing, audit, and legal obligations. When Shopify sends a valid customer or shop redaction request, we delete the relevant data or irreversibly pseudonymize references that must remain for billing integrity. We use encrypted transport, access controls, tenant isolation, secret separation, idempotent processing, and audit records to protect data.
Requests and contact
Customers should submit access, correction, or deletion requests to the Shopify store where they made their purchase. Merchants can contact us at k.yamane@arcteris.jp. We respond to requests received through Shopify's required privacy webhooks in accordance with Shopify's procedures.