The actual split of responsibility, in plain language, with links to the binding documents if you need to cite them.
This works the same way as any SMS app built on Shopify, Postscript, Attentive, and Klaviyo SMS included. SMS consent is captured through your store's own opt-in flow, whether that's at checkout or an earlier signup point like a pop-up, and it's stored in Shopify. CART, like those tools, only messages shoppers who've already opted in there. There's no separate arrangement or workaround, it's the standard Shopify consent model.
Every message, and any linked page it points to, is checked against these categories. This is the same list carriers enforce on every A2P 10DLC sender.
No. CART's live engine only messages shoppers who already started checkout and gave SMS consent somewhere in your store's opt-in flow, whether that was at checkout or an earlier pop-up. CART doesn't independently re-verify that consent, since Shopify is where it's captured and stored. That configuration stays with you.
Talk to your own counsel about your store's opt-in setup before activating CART. SalesLead.ai isn't in a position to give legal advice on your specific consent flow, but the infrastructure (opt-out handling, carrier registration, message frequency limits) is built to the same standard regardless of the underlying consent basis.
Per the Terms of Service and MSA, clients indemnify SalesLead.ai against claims arising from a failure to obtain proper consent. SalesLead.ai is not liable for claims, fines, or penalties arising from a client's consent practices.
Yes. The Terms of Service, Master Services Agreement, DPA, and Content Policy are all public. What you sign matches what's published here.
Still have a question a page can't answer? Ask directly, no sales pitch required.
Email the Team