Last updated: May 09, 2026 ยท Applies to Munshi Trust Network Shopify App
Pakistani stores only. Munshi scores orders using Pakistani mobile numbers (03xx / +92). Orders without a valid Pakistani phone number are automatically skipped and no data is collected for them.
Munshi Trust Network ("Munshi", "we", "us") is a Shopify app that helps Pakistani e-commerce merchants detect and reduce Cash-on-Delivery (COD) fraud. This Privacy Policy explains exactly what data we collect, how we use it, and the rights you have over it. We have deliberately designed Munshi to collect the minimum possible data โ raw phone numbers are never stored.
When a merchant installs Munshi and a COD order is placed in their store, we collect:
Merchant store domain
Your .myshopify.com domain and an encrypted Shopify access token so Munshi can tag orders on your behalf. No payment information is accessed.
Order metadata
Order ID, order name (e.g. #1001), order value (PKR), payment gateway (e.g. "COD" / "manual"), and fulfillment status. No line-item product data is collected.
Phone number hash only
When a COD order arrives, the customer's phone number is immediately normalised to international format (923XXXXXXXXX) and converted to a one-way HMAC-SHA256 cryptographic hash. The original number is discarded and never stored anywhere.
Address quality score
A single numeric quality score derived from the shipping address (e.g. does it contain a landmark, is it unusually short). The full address text is not stored.
Delivery outcome
Whether an order was delivered successfully or returned to origin (RTO). This outcome updates the buyer's anonymous trust score in our network.
โ We do NOT collect: customer names, full shipping addresses, email addresses, product data, payment card details, or any biometric information.
We do not sell your data. We do not use it for advertising or any purpose beyond fraud prevention.
Munshi requests the following Shopify API scopes and uses each exclusively for the stated purpose:
read_orders / read_all_orders
To receive and score incoming COD orders and import historical order data for trust scoring
write_orders
To tag Shopify orders with Munshi risk labels (e.g. "Munshi: High Risk")
read_customers
To match an order's phone number to a buyer profile for scoring
On first install, every merchant must review and explicitly accept three consent checkboxes before accessing the app:
Consent is recorded with a timestamp. Merchants may withdraw consent at any time by uninstalling the app.
As a merchant, you have the following rights:
Request a copy of all data Munshi holds for your store by emailing us.
Delete all your order logs and blacklist entries at any time from the Settings page inside the app. Uninstalling Munshi permanently deletes all your data within 48 hours.
Request your store's data in a machine-readable format by contacting us.
Withdraw consent and stop all data processing at any time by uninstalling the app.
Request correction of inaccurate trust scores for specific buyers by contacting us.
Regarding your customers: Customer phone numbers cannot be reversed from our database. If a customer requests data deletion under applicable privacy law, Shopify will notify us via our GDPR compliance webhook and we will delete the associated order logs within 30 days.
No buyer data (including hashed phone numbers or trust scores) is shared with any third party.
We may update this Privacy Policy from time to time. Material changes will be communicated to active merchants via a notice inside the Munshi dashboard. The "Last updated" date at the top of this page always reflects the most recent version. Continued use of the app after changes constitutes acceptance of the updated policy.
For privacy requests, data deletion requests, or any questions about this policy:
โ๏ธ hello@lyallpurtech.comWe aim to respond to all privacy requests within 5 business days.
ยฉ 2026 Lyallpur Technology. All rights reserved.