Legal · Privacy notice
What the registry holds about people
Last updated 2026-09-12
What is held, why, and for how long
| When | What | Why and on what basis | Kept |
|---|---|---|---|
| You open any page | Your IP address and request headers, processed by Cloudflare to deliver the page and stop attacks. Our server holds the IP in memory only, to limit request rates. | Running a secure service — legitimate interest, GDPR Art. 6(1)(f) | Not written to our database; at most 1 hour in memory |
| You open any page | A page-view count through Cloudflare Web Analytics, which uses no cookies and no cross-site identifier | Knowing which pages are read — legitimate interest | Aggregated counts only |
| You click through to a store | The store, the product, the registry page you clicked from, your browser's user-agent string, the time. No IP address, no cookie. | Counting outbound clicks and filtering automated ones — legitimate interest | 90 days, then deleted automatically |
| You claim a store | Your email, the verification token, the access key (stored only as a SHA-256 hash), your profile edits and your public response | Doing what you asked: verifying and running your claim — Art. 6(1)(b) | While the profile is claimed; deleted on request |
| You join a store's waitlist as a creator | Your email, traffic type and audience size. The store's verified owner sees them in the owner dashboard — that is the point of the queue. | Putting you in the queue you chose — Art. 6(1)(b) | Until you ask to leave, or the store is removed |
| You subscribe to Registry Weekly | Your email | Your consent — Art. 6(1)(a), withdrawn with the unsubscribe link | Until you unsubscribe |
| You report a fact | Your note and, if you give one, your email | Keeping the registry accurate — legitimate interest | With the report, deleted on request |
| A store publishes a contact address on its own site | That business email, found by the registry's crawler. It is never shown on the site or in the API. | Telling the store once that its profile is live and can be claimed — legitimate interest | Until the store objects |
| We send an email | The address, the kind of message, the store it concerned, the time; and every unsubscribe | Never sending the same message twice, and honouring opt-outs — legal obligation (CAN-SPAM) and legitimate interest | Opt-outs permanently; the send log while the registry runs |
Daily database backups are kept for 14 days on the server in Germany. A working copy of the database is kept on the operator’s own computer for development, under the same rules. Search-engine crawler visits (bot name, page, time — not people) are kept for 60 days.
Data about stores
Profiles are built from what stores publish: product feeds, policy pages, social links, the domain’s registration date and public blocklists. This is business information, and the dataset contains no data about people. Where a store is run by one person under their own name, that name may identify them; the registry relies on a legitimate interest in describing businesses that sell to the public, and the owner can object and have the profile removed (removal).
Who processes it for us
| Provider | Does | Where | Safeguard |
|---|---|---|---|
| Contabo GmbH | Hosts the application and database | Germany | Within the EEA |
| Cloudflare, Inc. | DNS, content delivery, attack protection, cookieless page-view counts | USA and global edge | EU Standard Contractual Clauses; EU–US Data Privacy Framework |
| Resend, Inc. | Delivers the registry's emails | USA | EU Standard Contractual Clauses |
To check a store, the registry also looks its domain name up in Google Safe Browsing, Spamhaus, SURBL and the public domain-registration (RDAP) service. Those lookups contain the store’s domain and nothing about any person.
Personal data is not sold, not shared for advertising, and not used to profile people. Trust scores rate stores, not individuals. California residents: the registry does not sell or share personal information.
Your rights
You can ask to see the data held about you, have it corrected or deleted, restrict or object to its use (including the use of a store’s business address), take it with you, and withdraw consent at any time. These rights come from the GDPR, the UK GDPR, Monaco Law n° 1.565 and, for California residents, the CCPA.
Email [email protected] from the address the data is filed under. Answers come within 30 days and cost nothing. If you are not satisfied, you can complain to the Commission de Contrôle des Informations Nominatives (CCIN) in Monaco or to the data-protection authority where you live.
Children, security, changes
- The registry is not directed at anyone under 16, and it does not knowingly collect their data.
- Pages are served only over HTTPS, the database is not reachable from the internet, and owner access keys are stored only as hashes — a leaked database would not let anyone sign in.
- Changes to this notice are dated at the top. A change that adds a new kind of data, purpose or recipient is published here 30 days before it takes effect.