Cart Marshal Policy

GDPR and CCPA Request Handling

GDPR, CCPA, and customer data request handling page for Cart Marshal.

Last updated: July 17, 2026. This page describes Cart Marshal request handling for merchants and privacy requests.

Shopify privacy webhooks

Cart Marshal implements Shopify privacy webhook handlers for customer data requests, customer deletion, and shop deletion. It records limited compliance metadata such as the webhook and request IDs, Shopify customer ID, number of order IDs included in the request, request status, and timestamps. It does not copy the underlying customer profile or order history into the app database, so customer-level requests typically have no stored customer record to return or delete.

Merchant requests

Merchants can send privacy requests to support@fiveacrecode.com. Include the shop domain and request type. Do not include unnecessary customer personal data in the initial email.

Retention

Cart Marshal stores merchant configuration while needed to operate the app. Shop deletion handling purges per-shop app records after uninstall according to Shopify's privacy webhook flow. Support emails and security logs may be retained for reasonable business, security, fraud prevention, legal, or audit purposes.