Skip to content
  • There are no suggestions because the search field is empty.

Shopify GDPR Request emails

Review Shopify GDPR Request emails

These are automated emails that go into request@citybeachsoftware from Shopify to remove customer data.

e.g

https://citybeachsoftware.freshdesk.com/a/tickets/80604

To Do With Orders:
  • The request is to delete the customer data for the order associated with that email address or order ID
  • Find the retailer using the Shopify URL e.g gmarley.myshopify.com
  • Search in the orders section for thomasjv90@gmail.com
  • If you can't find anything then we have already obfuscated the data so just make a note and close the ticket.

https://citybeachsoftware.freshdesk.com/a/tickets/80605

To Do With the Store/Account:

NOTE:  A change made in Aug 2023 via this Trello which means that instead of a ticket to delete the account it will be automated after 28 days.  https://trello.com/c/HE36n5sr

If you do see a ticket about account deletion bring to support meeting or ask in Product Support channel if not sure.

  • The request is to delete the store 
  • Find the retailer using the Shopify URL e.g boutiqueretailer.myshopify.com
  • Check that
    • the account is suspended
    • there are no outstanding orders
    • there are no live listings on any marketplace
  • Check that OA is not active. If it is then suspend it
  • If you're satisfied the account is dead then delete the account from the Sites page. 
  • Paste the job number into a note on the ticket and close the ticket 
  • If unsure, escalate to Jo or Bill.
To Do with Customer Data Request:
  • Requests to view stored customer data 
  • Customers can request their data from a store owner. When this happens, Shopify sends a payload on the customers/data_request topic to the apps that are installed on that store.

    If your app has been granted access to customer or order data, then it will receive a data request webhook. The webhook contains the resource IDs of the customer data that you need to provide to the store owner. It's your responsibility to provide this data to the store owner directly. In some cases, a customer record contains only the customer's email address.

  • Steps for scenario 3:  

    • use email address to find order.

    • if you find the order 'reach out to seller' and send screen dump of order to them explaining the process.

    • if you don't find the order that means we have complied with the shopify redaction process.

    • put a note in and close ticket.

customers/data_request

Anchor link to section titled "customers/data_request"

See: https://shopify.dev/apps/webhooks/configuration/mandatory-webhooks