Legal

NDA Policy

Last updated:

Your business ideas, source code, and customer data are safe with us. This policy explains the confidentiality protections built into every HireShopifyDevs engagement — from how we vet and bind our developers, to how we manage your credentials and intellectual property.

Need a signed NDA before sharing details?

We sign NDAs before every engagement. Contact us at hello@hireshopifydevs.com and we'll have a document to you within 1 business day.

1. Our Commitment to Confidentiality

At HireShopifyDevs, we understand that your business logic, store architecture, customer data, and product roadmap are among your most valuable assets. Every engagement we undertake — from an initial discovery call to a full-scale Shopify Plus build — is conducted under a framework of strict confidentiality. This NDA Policy outlines the protections we have in place and your rights as a client.

2. What Is Covered

2.1 Confidential Information

For the purposes of this policy, "Confidential Information" means any non-public information disclosed by you (the Client) to HireShopifyDevs or any developer working on your project, whether disclosed verbally, in writing, digitally, or by any other means. This includes: your Shopify store source code and theme files; custom app code and integrations; business strategies, roadmaps, and financial data; customer lists and order data; product pricing structures; marketing plans and campaign data; third-party vendor relationships; login credentials and API keys; and any other information you designate as confidential.

2.2 What Is Not Covered

Information is not considered Confidential if it: was already publicly available at the time of disclosure; becomes publicly available through no fault of HireShopifyDevs or any developer; was independently known to us prior to your disclosure (and we can evidence this); is independently developed by us without reference to your Confidential Information; or is required to be disclosed by law, regulation, or court order — in which case we will notify you promptly and cooperate with any effort to obtain a protective order.

3. Developer-Level NDAs

3.1 Platform NDA

Every developer accepted onto the HireShopifyDevs platform signs a comprehensive NDA and Data Processing Agreement as a condition of joining. This agreement is in place before any developer is matched with a client and covers all client engagements they work on through our platform.

3.2 Project-Specific NDA

For engagements involving particularly sensitive information — such as unreleased product launches, acquisition plans, proprietary algorithms, or regulated data — we offer a project-specific NDA signed directly between you (the Client), HireShopifyDevs, and the assigned developer(s). This can be arranged before any project details are shared with the development team.

3.3 Requesting a Custom NDA

If you require a custom NDA drafted to your specifications (e.g., to meet your legal team's requirements or to include specific jurisdiction or liquidated damages clauses), you may request this before onboarding. Contact us at hello@hireshopifydevs.com with your requirements and we will coordinate with you promptly.

4. Obligations of HireShopifyDevs

4.1 Access Minimisation

We follow a strict principle of minimum necessary access. Developers and team members are only granted access to the systems, credentials, and data specifically required to complete their assigned tasks. No developer has blanket access to your entire Shopify admin, payment details, or customer records unless explicitly required and agreed.

4.2 Non-Disclosure

HireShopifyDevs will not disclose your Confidential Information to any third party other than developers, subcontractors, or service providers who need it to deliver your project and who are themselves bound by confidentiality obligations no less protective than those in this policy.

4.3 Non-Use

We will not use your Confidential Information for any purpose other than delivering the services you have contracted with us. We will not use your code, designs, customer data, or business information to benefit any other client or to compete with you.

4.4 Security Measures

We maintain appropriate technical and organisational security measures to protect Confidential Information, including encrypted credential storage (we use a vetted secrets manager — never plain-text files), restricted team channel access, secure code repositories, and mandatory credential revocation immediately upon project completion or termination.

5. Credential Management

5.1 How We Handle Credentials

Any store login credentials, API keys, private app tokens, or third-party service credentials you share with our team are: stored in an encrypted secrets management system; shared only with the specific developer(s) who require them; never shared via email or public communication channels; and revoked/deleted from our systems upon project completion or upon your request.

5.2 Your Responsibility

We strongly recommend creating a dedicated staff account for our developer with only the permissions required, rather than sharing your primary admin credentials. After project completion, you should revoke the developer's access and rotate any API keys or tokens that were shared. We are happy to guide you through this process.

6. IP Ownership & Code Confidentiality

All custom code written for your project is your property upon full payment (per our Terms of Service). We will not reuse, repurpose, or share your custom code with other clients. While we retain the right to reference our work with you in general portfolio descriptions (e.g., "Built a custom Shopify Plus storefront for a DTC fashion brand"), we will not reproduce, share, or display specific code, designs, or proprietary features without your explicit written consent.

7. Duration of Confidentiality Obligations

Confidentiality obligations under this policy and any associated NDA survive the termination or expiry of the engagement for a period of three (3) years. Obligations relating to trade secrets and personally identifiable customer data survive indefinitely or for as long as such information remains confidential.

8. Breach & Remedies

HireShopifyDevs takes confidentiality breaches extremely seriously. In the event of an actual or suspected breach of confidentiality by any developer or team member, we will notify you promptly, take immediate steps to contain the breach, cooperate fully with any investigation, and take disciplinary action up to and including permanent removal from our platform and legal proceedings. You acknowledge that a breach of confidentiality may cause irreparable harm for which monetary damages alone may be inadequate, and that you may seek injunctive relief in addition to any other available remedies.

9. Contact & NDA Requests

To request a project-specific NDA, to ask questions about our confidentiality practices, or to report a potential breach, please contact our legal team at hello@hireshopifydevs.com. We aim to respond to all NDA requests within 1 business day.