Last updated: July 22, 2026
1. Who we are. ProfitRoot is a product of SharpUnit LLC ("we", "us"). This policy explains how ProfitRoot handles information.
2. Data you upload. Two paths, handled differently. CSV files you upload are parsed in your browser and are not sent to us unless you save a workspace. Orders synced from a connected Shopify store are transmitted to and stored on our servers so they can be recomputed on later visits. When you save a workspace, the source input needed to reload it — your figures, or the raw upload text — is stored to your account in our database; The derived outputs (the reconciled bridge and margin ladder) are recomputed from those inputs on load and are never stored. Saved data is isolated to your account by row-level security and encrypted in transit and at rest.
2a. Connected stores (Shopify). If you connect a Shopify store, ProfitRoot reads your Shopify Orders through Shopify's API and stores the order economics needed to reconcile revenue to Net Sales, on our servers, in your account only, protected by row-level security. We use this data solely to compute and reconcile your revenue analysis. Access tokens are stored encrypted. This is distinct from the CSV path described in section 2: CSV files you upload are parsed in your browser.
3. Site analytics (first-party, cookieless). When you visit our marketing pages, we record the page you viewed, where you arrived from (the referring URL and any campaign tags in the link), and a coarse country and device type, server-side in our own database. This is first-party and cookieless: we do not use third-party analytics, advertising, or tracking technologies, we do not set tracking cookies, and we do not fingerprint your device. These records contain no IP address, no account, and no name. We do not use your data to train machine-learning models, and we do not sell data. We keep these records for up to 13 months, then delete them automatically.
4. Account information (if you sign in). ProfitRoot may offer optional account sign-in. If you create an account, our authentication provider processes your email address and authentication credentials to manage your sign-in session. If you save workspaces, their input data is stored to your account as described in section 2. If you subscribe, payments are processed by Stripe, which holds your billing identity (email and subscription status) — we never send Stripe your uploaded financial data. Authentication session cookies are used solely to keep you signed in.
5. Margin Readiness Check submissions. If you request a Margin Readiness Check, we collect and store the information you submit — your email address, an optional store URL, and the list of file types you tell us you have — in our database, so we can respond to your request and, if relevant, offer early access. We use it only to reply to you. We do not sell or share it, and we do not add you to any third-party marketing tool. You can ask us to delete it at any time (see section 8).
6. Files you send us by email. If you email us a data export for review, we store that file only for as long as it takes to produce the analysis you asked for, and we delete it on completion or on your request, whichever comes first. We do not add it to any account, we do not use it to train anything, and we do not share it. We ask that exports be anonymized where possible. To request deletion sooner, email admin@tryprofitroot.com.
7. Hosting. The ProfitRoot application is delivered through our hosting provider, which may process standard technical request information (such as IP address) as part of serving the site, consistent with its own privacy practices.
8. Data retention and deletion. CSV data you upload and do not save is parsed in your browser and is not retained by us. Orders synced from a connected Shopify store are stored on our servers, as described in section 2a. Workspaces you save are retained in your account until you delete them — you can delete any saved workspace at any time from within the app. First-party attribution records (section 3) are retained for up to 13 months and then purged automatically. Margin Readiness Check submissions (section 5) are kept until we have responded, and are deleted on request — email us. To delete your account, contact us at admin@tryprofitroot.com.
8a. Connected-store data. Disconnecting your Shopify store, or uninstalling ProfitRoot from your Shopify admin, deletes the order economics synced from that store. We honor Shopify's customer data-request, customer-redact, and shop-redact webhooks.
9. Children. ProfitRoot is a business tool and is not directed to children under 13.
10. Changes. We may update this policy; material changes will be reflected here with a new date.
11. Governing law. This policy is governed by the laws of the State of Tennessee, USA.
12. Contact. admin@tryprofitroot.com.