> For the complete documentation index, see [llms.txt](https://docs.wandreferrals.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.wandreferrals.com/account-and-privacy/gdpr-and-data.md).

# Privacy and data rights

## What it does

Wand Referrals is built to help you meet privacy obligations (GDPR/UK-GDPR, CCPA/CPRA) and Shopify's Protected Customer Data rules. This article summarizes the merchant-facing pieces; the full policy and data map live in the compliance docs.

## Shopify GDPR webhooks

The three mandatory Shopify privacy webhooks are wired and honored:

* **`customers_data_request`** — a customer's data-access request.
* **`customers_redact`** — delete/redact a customer's data.
* **`shop_redact`** — after uninstall, delete or anonymize non-financial personal data and retain only pseudonymous financial, tax, reconciliation, and audit evidence required for the seven-year legal-retention period. The app remains disabled and cannot silently resume processing.

These implement the repository's approved privacy behavior. Qualified legal and Shopify review of the financial-retention basis remains required before launch.

## Affiliate data lifecycle

* Ordinary merchant archiving is a soft delete with a **30-day recycle bin**, after which personal data is **anonymized** while financial, tax, payout, gift, or agreement evidence is retained when required. A verified privacy-erasure flow may hard-delete an affiliate only when no retained obligation or evidence exists.
* See [Managing affiliates](https://github.com/wand-referrals-app/wand-referrals/tree/codex/gitbook-docs-foundation/docs/manual/affiliates/managing-affiliates/README.md) for archive/restore/anonymize.

## Data-subject requests (DSAR)

For access, erasure, or portability requests from an affiliate or customer, follow the DSAR process: verify identity, scope the request by your role (controller vs processor), export or delete/anonymize the right records (retaining financial/tax data), log the action, and respond within the statutory window.

## Consent & communications

* Implemented consent-aware storefront analytics runs only when Shopify reports the required purpose consent. The remaining server-side attribution consent posture and consent-aware pixel rollout still require documented launch evidence.
* Preference and unsubscribe handling exists on supported communication surfaces, but the compliance register still requires every marketing and recurring send path to prove it gates on stored preference state before launch. SMS opt-in/STOP controls require equivalent operational evidence.
* Affiliate disclosure (FTC) guidance is provided so affiliates disclose their relationship with you.

## MLM network visibility

If you enable multi-level marketing, the affiliate **Network** page intentionally shows an upline affiliate limited details about level-1 and level-2 recruits: name/email identity, status, joined date, sales, and commission totals. Cover this visibility in your affiliate program terms and privacy notice, and do not enable MLM unless it is appropriate for the program.

## Tax records

Tax forms (W-9/W-8BEN) and withholding records are retained for tax-reporting obligations even when an affiliate is archived. See [Tax forms & withholding](https://github.com/wand-referrals-app/wand-referrals/tree/codex/gitbook-docs-foundation/docs/manual/payouts/tax-forms/README.md).

## Where to read more

* Compliance register: `docs/COMPLIANCE.md`
* Privacy & data map (data inventory, lawful basis, retention, sub-processors, DSAR runbook, breach response): `docs/PRIVACY_AND_DATA.md`

## Related

* [Managing affiliates](https://github.com/wand-referrals-app/wand-referrals/tree/codex/gitbook-docs-foundation/docs/manual/affiliates/managing-affiliates/README.md)
* [Tax forms & withholding](https://github.com/wand-referrals-app/wand-referrals/tree/codex/gitbook-docs-foundation/docs/manual/payouts/tax-forms/README.md)
* [Settings overview](https://github.com/wand-referrals-app/wand-referrals/tree/codex/gitbook-docs-foundation/docs/manual/settings/settings-overview/README.md)
