Privacy Policy / Datenschutzerklärung
English
BAETTER GmbH (“BAETTER”, “we”) provides Birthday Club to Shopify merchants. Contact: info@baetter.io. This policy applies from 17 July 2026 / 17. Juli 2026.
Roles and data
For birthday-book data, the merchant is controller and BAETTER is its processor. The app processes the Shopify shop domain, encrypted authentication sessions, customer identifiers, names and full dates of birth entered in the birthday book, person-to-customer relationships, the configured birthday tag and operational privacy-request records. We discard email addresses and phone numbers received in compliance webhooks.
Purposes and recipients
Data is used only to display and manage the birthday book, calculate the birthday window, add or remove the merchant-configured tag, enable merchant-authorised use through Shopify Flow and authorised apps, and answer access or deletion requests. We do not sell personal data. Shopify hosts the merchant-owned records and provides the platform API; Hetzner Online GmbH hosts the app backend in the nbg1 (Nuremberg, Germany) location. They are listed as subprocessors in the DPA.
International transfers and security
Primary app hosting is in Germany. Shopify may process data internationally under its contractual transfer safeguards. BAETTER uses access controls, least-privilege scopes, TLS, AES-256-GCM encryption for sessions and export snapshots, encrypted backups, integrity-protected webhooks, retention limits and restricted operational logs.
Retention and uninstall
- Birthday entries remain until a customer or merchant deletes them, or a redaction is received.
- Because entries are merchant-owned Shopify data, they remain under merchant control after uninstall unless the merchant uses the in-app purge first.
- Privacy export snapshots are kept for at most 30 days from receipt and, once delivered, for at most another 7 days.
- Job history and encrypted backups are kept for up to 30 days. Sessions are removed on uninstall/shop redaction.
Your rights
Depending on applicable law, data subjects may request access, correction, deletion, restriction, portability or objection and may complain to a supervisory authority. Customers should normally contact the Shopify merchant, who controls their data. Merchants and authorities can contact BAETTER at the address above.
Deutsch
Die BAETTER GmbH („BAETTER“, „wir“) stellt Shopify-Händlern Birthday Club bereit. Kontakt: info@baetter.io. Diese Erklärung gilt ab 17 July 2026 / 17. Juli 2026.
Rollen und Datenkategorien
Für Daten im Geburtstagsbuch ist der Händler Verantwortlicher und BAETTER Auftragsverarbeiter. Verarbeitet werden Shop-Domain, verschlüsselte Authentifizierungssitzungen, Kundenkennungen, Namen und vollständige Geburtsdaten, die Zuordnung zum Kunden, der konfigurierte Geburtstagstag und operative Datenschutzanfragen. E-Mail-Adressen und Telefonnummern aus Compliance-Webhooks werden verworfen.
Zwecke und Empfänger
Die Verarbeitung ist auf Anzeige und Verwaltung des Geburtstagsbuchs, Berechnung des Geburtstagsfensters, Setzen und Entfernen des Händler-Tags, händlerautorisierte Nutzung durch Shopify Flow und berechtigte Apps sowie Auskunft und Löschung beschränkt. Es findet kein Datenverkauf statt. Shopify hostet die händlereigenen Einträge und stellt die Plattform-API; Hetzner Online GmbH hostet das Backend am Standort nbg1 (Nürnberg, Deutschland). Beide sind in der AVV als Unterauftragsverarbeiter genannt.
Drittlandtransfer und Sicherheit
Das primäre App-Hosting erfolgt in Deutschland. Shopify kann Daten auf Grundlage seiner vertraglichen Transfergarantien international verarbeiten. BAETTER setzt Zugriffskontrollen, minimale Berechtigungen, TLS, AES-256-GCM-Verschlüsselung, verschlüsselte Backups, HMAC-geschützte Webhooks, Löschfristen und datensparsame Logs ein.
Aufbewahrung und Deinstallation
- Einträge bleiben bis zur Löschung durch Kunde/Händler oder einer Redaction erhalten.
- Als händlereigene Shopify-Daten bleiben sie nach Deinstallation unter Kontrolle des Händlers, sofern nicht zuvor die vollständige Löschung genutzt wird.
- Auskunfts-Snapshots: höchstens 30 Tage ab Eingang, nach Auslieferung höchstens weitere 7 Tage.
- Job-Historie und verschlüsselte Backups: bis 30 Tage; Sessions werden bei Deinstallation/Shop-Redaction gelöscht.
Betroffenenrechte
Betroffene können je nach Rechtslage Auskunft, Berichtigung, Löschung, Einschränkung, Übertragbarkeit oder Widerspruch verlangen und sich bei einer Aufsichtsbehörde beschweren. Kunden wenden sich grundsätzlich an den Shopify-Händler als Verantwortlichen; Händler erreichen BAETTER über das oben genannte Postfach.