Skip to content

Privacy policy — POS Cart Attributes Shopify app

Last updated: July 8, 2026

This Privacy Policy describes how POS Cart Attributes (“the App”, “we”, “us”) handles information when merchants install and use the App.

POS Cart Attributes is an extension-only app. It runs inside Point of Sale and admin surfaces provided by your commerce platform. We do not operate an application backend and we do not receive, store, or process merchant or customer data on our own servers.

When you use the App, the following information may be accessed or written directly within your store’s platform environment:

  • Shop metafield pos_cart_attr.keys — the list of allowed cart-level attribute keys
  • Shop metafield pos_cart_attr.item_keys — the list of allowed line-item attribute keys

These lists are managed by you in admin. The App reads them from the POS device using platform Direct API access so staff see the same key options on every register.

  • Cart-level attributes — key/value pairs you add through the smart-grid tile. Stored as cart properties and, after checkout, as order data in your store.
  • Line-item attributes — key/value pairs you add per product from the line-item action. Stored as line-item properties and, after checkout, on the corresponding order line items in your store.

We do not copy this data off the platform. It remains in your store account.

  • Tile display name — an optional custom label for the smart-grid tile, saved on the POS device using the platform Storage API. This is not synced across devices unless you set the same name on each device manually.

The App does not:

  • Send cart, order, customer, or attribute data to us or to any third-party service operated by us
  • Use advertising or behavioural tracking
  • Collect payment card details (checkout is handled entirely by the platform)
  • Require customers to create accounts with us

The App listing references this documentation site at https://pos-cart-attributes.k2.digital/docs/. It is informational only. It does not use cookies, analytics, or forms that collect personal data.

The App may request platform permissions required for installation and operation (as declared at install time). The POS extension reads shop metafields and writes cart or line-item properties only as described above.

  • Order and line-item attribute data is retained according to your store’s settings and the platform’s data policies.
  • Device-local tile names persist on the POS device until cleared by staff or removed when the App is uninstalled from that device.

You control which attribute keys are available, what values staff enter at checkout, and whether to install, enable, or uninstall the App.

Uninstalling the App stops further use of its extensions. Data already saved on completed orders remains in your store as part of your order history.

The App relies on the commerce platform’s infrastructure to run. We do not share data with other third parties.

The App is intended for business use by merchants and their staff. It is not directed at children.

We may update this Privacy Policy from time to time. The “Last updated” date at the top will reflect the latest revision.

For privacy questions, email tech@k2.digital or see Support.