The apps
What each app reads from Shopify.
All three request read-only access. None request customer names, email addresses, phone numbers, billing or shipping addresses, or payment details. None sell data or share it with advertising networks.
CarryLeads
Reads: shop name, shop contact email, and product titles, types, vendors and tags.
Stores: OAuth session records, plus lead metadata such as Google Place IDs, score, stage, notes and campaign status, along with settings, credit ledger entries and generated copy.
Third parties: your search inputs go to the Google Places API to find matching businesses, and your business and product context goes to OpenAI to draft outreach copy. No customer data is sent to either.
Munafa
Reads: order, product and inventory data, via read_orders, read_products and read_inventory.
Stores: your cost settings, saved as an app-owned metafield inside your own Shopify store, and an OAuth session token. Profit is computed on demand, so no copy of your order history is kept.
Third parties: none.
Dhandha
Reads: recent order totals and line items, product titles, status and prices, and inventory quantities.
Stores: OAuth session records. Growth metrics are generated from Shopify on request rather than stored.
Third parties: none.