Fasty Connector Privacy Policy

Last updated: August 13, 2026

FIRMA LUI ADI SRL, Romania (“Fasty Connector”, “we”) provides a Shopify app that helps merchants create, validate, print, cancel, and track Speedy shipping labels. Contact: fastyconnector@gmail.com.

Operator: FIRMA LUI ADI SRL, CUI RO47956859, Aleea Detunata 13, Cluj-Napoca, Cluj 400434, Romania.

Data we process

We process the minimum information required to create a shipment: order identifier, recipient name, delivery address, phone number, and, only when required for international delivery, email address. We also process the merchant's shop domain, Shopify authorization data, encrypted Speedy credentials, shipment identifiers, and — when the merchant chooses a Speedy office or locker delivery — the pickup point the customer selected.

How we use data

Customer information is used only on the merchant's instructions to validate and create Speedy shipments and return labels and tracking data. It is not used for advertising, profiling, personalization, analytics, or sale. We transmit shipment data to Speedy as the carrier selected by the merchant.

Subscription billing

Paid app subscriptions are charged in US dollars through Shopify Billing. Shopify processes the approval, invoice, payment, applicable taxes, and any currency conversion. We receive the shop domain, plan name, subscription status, and billing-cycle information needed to grant the selected features. We do not receive or store the merchant's card or bank-account details.

Automatic AWB creation

Merchants on the Premium plan can ask the app to create AWBs without opening it. When this is on, we receive a notification from Shopify when an order is created and store only the order identifier, the order name, and the time at which it may be processed. The order's personal data is read from Shopify at that moment and is used the same way as a manual creation: to validate the shipment and send it to Speedy. It is not stored beyond what a manual creation stores. Automation is off until the merchant turns it on.

Labels and exports

A label or export is reached through a link that is signed and expires 30 minutes after it is issued. Labels are fetched from Speedy at the moment the link is opened and are never stored by us. Cash-on-delivery and shipment history exports are generated on request and contain the merchant's own shipment records, including order names, AWB numbers and amounts. They are not stored after the download.

Return labels

When a merchant creates a return AWB, we store the order identifier, the order name, the Speedy AWB number, who the merchant said carries the cost, the price Speedy quoted, and — so the label can be sent — the customer's email address for that order. A return label is reached through a signed link that stops working 30 days after the label is created; the PDF itself is fetched from Speedy when the link is opened and is never stored by us.

The message and the link are passed to Resend, our email provider, in its Ireland region, solely to deliver them to that customer. Resend receives the customer's email address, the shop's name and the message itself, and nothing else. Where no email provider is configured for an installation, nothing leaves the app: the merchant is handed a prefilled message and sends it from their own mail account. Return records are deleted when the shop's data is deleted.

Where the merchant lets Fasty act on Shopify's return flow, we receive a notification from Shopify when a return is requested or approved. We read that return and its order from Shopify at that moment, create the AWB, and pass the label link and tracking number back to Shopify. Shopify does not send the customer a label email in that flow, so we send it ourselves, exactly as described above and storing no more than a manually created return stores.

Ideas merchants send us

Merchants can send us product ideas from inside the app. We store the text of the idea together with the shop domain and the date, so we can read it and reply through the merchant's support contact. This is free text written by the merchant; we ask merchants not to include personal data in it, and we delete an idea on request. Ideas are readable only by us and are deleted when the shop's data is deleted.

The support assistant

The app has a support assistant a merchant can type into. What they write, and what it answers, is stored against the shop so a person can pick the conversation up and reply. Alongside each question we send the assistant a summary of that shop's own setup — which plan it is on, whether Speedy is connected, whether a sender and service are chosen, and the error messages from its recent failed AWBs — because that is what makes an answer useful rather than generic. The summary is generated at the moment of asking and is not stored separately.

Speedy credentials are never included: the assistant is told only whether an account is connected, never the username or password. Text that looks like a password, key or token is removed from a message before it is stored or sent anywhere. Questions and answers are processed by OpenAI, which acts as our processor for this feature and does not use the text to train models. Conversations are readable only by us and are deleted when the shop's data is deleted.

The assistant can also offer to do three things for you: create a Speedy AWB for an order, cancel one, or refresh tracking. It never does any of them on its own. You press a button that says what the action will cost, and we look the order up in your own shipments rather than trusting anything the assistant produced. Every one is recorded in your audit log, so you can see afterwards what was done from a conversation.

Storage and retention

Recipient data read from Shopify is processed transiently. If a merchant explicitly saves an AWB-only correction, those corrected fields are stored using authenticated encryption for up to 90 days and can be reset at any time. Labels are not retained by us. We retain operational order and shipment identifiers, non-personal audit events, settings, submitted ideas, and encrypted carrier credentials while the app is installed. Shopify privacy webhooks delete or redact applicable records, and uninstalling the app deletes the shop's settings, credentials, shipment records, saved corrections, return records, and pending automation entries. Non-personal security audit events are retained for up to 180 days.

Security

Data is transmitted over HTTPS. Speedy credentials and saved AWB-only recipient corrections are encrypted at rest using authenticated encryption. Access follows least-privilege controls, production and test environments are separated, and access to protected order data is logged without recording the personal data itself. Only encrypted backups are permitted.

Customer rights and incidents

We honor Shopify's mandatory data request, customer redaction, and shop redaction workflows. Merchants or customers can contact us about access, correction, deletion, or a security concern at the email above. Confirmed incidents are contained, documented, and reported to affected merchants without undue delay where required.