Privacy Policy
Crossdock — Square↔Shopify integration. Last updated 2026-05-01 (v1).
Audit log retention
Audit log retention. We retain operational audit log records for up to 24 months following the originating event for the establishment, exercise, or defence of legal claims (GDPR Article 17(3)(e)). Audit records are scoped to system-internal metadata (event type, timestamp, correlation identifier, actor type) and are not used for customer-facing functionality. Records older than 24 months are auto-deleted by scheduled job. Customer-identifying fields embedded in audit diffs are subject to redaction-on-request within the 30-day GDPR response window via the customers/redact webhook cascade.
Related documents
For data-subject access and erasure requests, the Shopify-managed GDPR webhook flow (customers/data_request, customers/redact, shop/redact) is the canonical mechanism.
Related documents: Terms of Service, Cookie Disclosure, Subprocessor List, Data Processing Addendum. Security contact: security.txt (RFC 9116).