Last updated: August 2, 2026
Asmara ("we", "our", "the app") is developed and operated by Astel AI, based in Jakarta, Indonesia. This policy explains what data Asmara collects when a merchant installs it on their Shopify store, how it's used, where it's stored, and how merchants can exercise their rights over it.
When a merchant installs Asmara, we access the following through the Shopify Admin API, limited to the read_products and read_metaobjects scopes:
When the staff member who installs Asmara authenticates via Shopify OAuth, we receive their name, email, and locale, used solely to authenticate the app session inside Shopify admin. We also store the marketing content (captions, images, videos) Asmara generates on the merchant's behalf, and basic technical logs (for example, request timestamps and error messages) needed to operate and troubleshoot the app. We do not ask merchants for information about their customers.
None. Asmara has no storefront-facing component, does not run on the merchant's storefront, and does not use cookies or other tracking technologies on shoppers' devices. We do not collect, store, or process any personal data belonging to a merchant's customers.
Shop and product data is used only to generate the marketing content a merchant requests inside the app. We don't use this information for advertising, don't build customer-facing interest-based segments, and don't sell or share it with anyone outside the subprocessors listed below.
To generate content, product information (titles, descriptions, images) is shared with the following categories of subprocessors, acting on our behalf under contractual confidentiality and data protection terms:
Asmara's application servers and database run on infrastructure located in Singapore. Astel AI is not established in the European Economic Area (EEA) and does not direct the app at EEA merchants specifically; if a merchant based in the EEA or UK installs Asmara, their shop and staff data described above is transferred to and processed in Singapore for the purposes described in this policy.
We retain shop data for as long as the app is installed. When a store uninstalls Asmara, we delete the shop's session, API key, and content records within 48 hours, in line with Shopify's mandatory compliance webhook (shop/redact).
Because Asmara does not collect customer data, requests under customers/data_request and customers/redact are acknowledged with no data to return or erase.
If you are a merchant or staff member whose name, email, or locale we hold, you can ask us to access, correct, or delete that information at any time by emailing us at the address below. We will respond within a reasonable timeframe. Given the limited, non-sensitive data Asmara handles, Astel AI has not appointed a dedicated Data Protection Officer; the contact below handles all privacy requests directly.
Data in transit is encrypted via HTTPS. Access tokens and API keys are stored encrypted at rest and are never exposed to the storefront or shared with any party other than the subprocessors listed above.
Questions about this policy or your data can be sent to hello@astelai.com.
Astel AI
Jl. Cipinang Jaya, Jatinegara, Jakarta Timur
DKI Jakarta, 13410, Indonesia
We may update this policy as Asmara's features change. Material changes will be reflected by updating the "Last updated" date above.
See also our Terms of Service.