CINXE.COM
GDPR checklist for Shopify Stores | Pandectes GDPR Compliance
<!DOCTYPE html><html lang="en" dir="ltr"><head><meta http-equiv="Content-Type" content="text/html; charset=utf-8"><meta name="viewport" content="width=device-width, initial-scale=1"><meta property="og:locale" content="en"><meta property="og:site_name" content="Pandectes GDPR Compliance"><meta property="og:type" content="website"><link rel="icon" href="https://image.crisp.chat/avatar/website/d85cae7d-b8a0-4182-ba38-6d83860f700a/512/?1739555162383" type="image/png"><link rel="apple-touch-icon" href="https://image.crisp.chat/avatar/website/d85cae7d-b8a0-4182-ba38-6d83860f700a/512/?1739555162383" type="image/png"><meta name="msapplication-TileColor" content="#1972F5"><meta name="msapplication-TileImage" content="https://image.crisp.chat/avatar/website/d85cae7d-b8a0-4182-ba38-6d83860f700a/512/?1739555162383"><style type="text/css">*::selection { background: rgba(25, 114, 245, .2); } .csh-theme-background-color-default { background-color: #1972F5; } .csh-theme-background-color-light { background-color: #F3F6FB; } .csh-theme-background-color-light-alpha { background-color: rgba(243, 246, 251, .4); } .csh-button.csh-button-accent { background-color: #1972F5; } .csh-article .csh-article-content article a { color: #1972F5; } .csh-article .csh-article-content article .csh-markdown.csh-markdown-title[data-type="#"] { border-color: #1972F5; } .csh-article .csh-article-content article .csh-markdown.csh-markdown-code.csh-markdown-code-inline { background: rgba(25, 114, 245, .075); border-color: rgba(25, 114, 245, .2); color: #1972F5; } .csh-article .csh-article-content article .csh-markdown.csh-markdown-list[data-type]:before { background: #1972F5; }</style><title>GDPR checklist for Shopify Stores | Pandectes GDPR Compliance</title><script type="text/javascript">window.$crisp = []; CRISP_WEBSITE_ID = "d85cae7d-b8a0-4182-ba38-6d83860f700a"; CRISP_RUNTIME_CONFIG = { locale : "en" }; (function(){d=document;s=d.createElement("script");s.src="https://client.crisp.chat/l.js";s.async=1;d.getElementsByTagName("head")[0].appendChild(s);})(); </script><!-- Google tag (gtag.js) --> <script async src="https://www.googletagmanager.com/gtag/js?id=G-TF9WJN9S34"></script> <script> window.dataLayer = window.dataLayer || []; function gtag(){dataLayer.push(arguments);} gtag('js', new Date()); gtag('config', 'G-TF9WJN9S34'); </script> <script> console.dir(window.location.href); document.addEventListener("DOMContentLoaded", function() { if (window.location.href === "https://help.pandectes.io/en/") { console.dir('mpikame'); var mymeta = 'Learn how to use Pandectes GDPR Compliance with user manuals, how-to’s, videos, and more! Navigate the Pandectes Knowledge Base to find help on every feature'; console.dir(mymeta); var meta = document.querySelector('meta[name="description"]'); if (meta) { console.dir('eixe meta'); } else { console.dir('den eixe meta'); meta = document.createElement('meta'); meta.name = "description"; meta.content = mymeta; document.getElementsByTagName('head')[0].appendChild(meta); } } }); </script><meta name="description" content="Learn how to make your Shopify Store GDPR Compliant"><meta property="og:title" content="GDPR checklist for Shopify Stores"><meta property="og:description" content="Learn how to make your Shopify Store GDPR Compliant"><meta property="og:url" content="https://help.pandectes.io/en/article/gdpr-checklist-for-shopify-stores-vmi51s/"><link rel="canonical" href="https://help.pandectes.io/en/article/gdpr-checklist-for-shopify-stores-vmi51s/"><link rel="stylesheet" href="https://static.crisp.help/stylesheets/libs/libs.min.css?c45d4110e422b65cceab2c63385a673c2" type="text/css"/><link rel="stylesheet" href="https://static.crisp.help/stylesheets/site/common/common.min.css?c55f0e421ab911de070a05a4f72887687" type="text/css"/><link rel="stylesheet" href="https://static.crisp.help/stylesheets/site/article/article.min.css?c969f7e5d49bbbee71282386999b95db4" type="text/css"/><script src="https://static.crisp.help/javascripts/libs/libs.min.js?c4c40240d758380f768a4c8b73cefc502" type="text/javascript"></script><script src="https://static.crisp.help/javascripts/site/common/common.min.js?cf0d6812f7bcf657ba9aacc75813bef6e" type="text/javascript"></script><script src="https://static.crisp.help/javascripts/site/article/article.min.js?c740fc3c9bf5f56b81acb05f35ad95bbf" type="text/javascript"></script></head><body><header role="banner"><div class="csh-wrapper"><div class="csh-header-main"><a href="/en/" role="none" class="csh-header-main-logo"><img src="https://storage.crisp.chat/users/helpdesk/website/1a5af239e847cf00/help_1msc50d.png" alt="Pandectes GDPR Compliance"></a><div role="none" class="csh-header-main-actions"><div data-expanded="false" role="none" onclick="CrispHelpdeskCommon.toggle_language()" class="csh-header-main-actions-locale"><div class="csh-header-main-actions-locale-current"><span data-country="gb" class="csh-flag"><span class="csh-flag-image"></span></span></div><ul><li><a href="/en/" data-current="true" role="none" class="csh-font-sans-medium"><span data-country="gb" class="csh-flag"><span class="csh-flag-image"></span></span>English</a></li></ul></div><a href="https://pandectes.io/" target="_blank" rel="noopener noreferrer" role="none" class="csh-header-main-actions-website"><span class="csh-header-main-actions-website-itself csh-font-sans-regular">Go to website</span></a></div><span class="csh-clear"></span></div><form action="/en/includes/search/" role="search" onsubmit="return false" data-target-suggest="/en/includes/suggest/" data-target-report="/en/includes/report/" data-has-emphasis="false" data-has-focus="false" data-expanded="false" data-pending="false" class="csh-header-search"><span class="csh-header-search-field"><input type="search" name="search_query" autocomplete="off" autocorrect="off" autocapitalize="off" maxlength="100" placeholder="Search our help center..." aria-label="Search our help center..." role="searchbox" onfocus="CrispHelpdeskCommon.toggle_search_focus(true)" onblur="CrispHelpdeskCommon.toggle_search_focus(false)" onkeydown="CrispHelpdeskCommon.key_search_field(event)" onkeyup="CrispHelpdeskCommon.type_search_field(this)" onsearch="CrispHelpdeskCommon.search_search_field(this)" class="csh-font-sans-regular"><span class="csh-header-search-field-autocomplete csh-font-sans-regular"></span><span class="csh-header-search-field-ruler"><span class="csh-header-search-field-ruler-text csh-font-sans-semibold"></span></span></span><div class="csh-header-search-results"></div></form></div><div data-tile="default" data-has-banner="false" class="csh-header-background csh-theme-background-color-default"></div></header><div id="body" class="csh-theme-background-color-light csh-body-full"><div class="csh-wrapper csh-wrapper-full csh-wrapper-large"><div class="csh-article"><aside role="complementary"><div class="csh-aside"><div class="csh-article-category csh-navigation"><a href="/en/category/getting-started-12nwdzv/" role="link" class="csh-navigation-back csh-navigation-back-item"><span style="background-color: #1972f5;" data-has-category="true" class="csh-category-badge csh-font-sans-medium">Getting Started</span></a></div><p class="csh-aside-title csh-text-wrap csh-font-sans-bold">Related articles</p><ul role="list"><li role="listitem"><a href="/en/article/select-regions-for-our-cookie-banner-6mqwip/" role="link" class="csh-aside-spaced csh-text-wrap csh-font-sans-regular">Select regions for our cookie banner</a></li><li role="listitem"><a href="/en/article/4-steps-to-ensure-compliance-1trf3y7/" role="link" class="csh-aside-spaced csh-text-wrap csh-font-sans-regular">4 Steps to Ensure Compliance</a></li><li role="listitem"><a href="/en/article/installation-guide-1ell1h8/" role="link" class="csh-aside-spaced csh-text-wrap csh-font-sans-regular">Installation guide</a></li><li role="listitem"><a href="/en/article/add-the-app-banner-and-the-widgets-using-shopifys-theme-editor-1qawhhh/" role="link" class="csh-aside-spaced csh-text-wrap csh-font-sans-regular">Add the app banner and the widgets using Shopify’s theme editor</a></li><li role="listitem"><a href="/en/article/cookie-consent-12um3np/" role="link" class="csh-aside-spaced csh-text-wrap csh-font-sans-regular">Cookie Consent</a></li><li role="listitem"><a href="/en/article/a-brief-overview-of-the-application-19uhttv/" role="link" class="csh-aside-spaced csh-text-wrap csh-font-sans-regular">A brief overview of the application</a></li><li role="listitem"><a href="/en/article/managing-and-verifying-consent-go51au/" role="link" class="csh-aside-spaced csh-text-wrap csh-font-sans-regular">Managing and verifying consent</a></li><li role="listitem"><a href="/en/article/how-to-disable-shopifys-customer-privacy-banner-1730yzc/" role="link" class="csh-aside-spaced csh-text-wrap csh-font-sans-regular">How to disable Shopify's Customer Privacy banner</a></li></ul></div></aside><div role="main" class="csh-article-content csh-article-content-split"><div class="csh-article-content-wrap"><article class="csh-text-wrap"><div role="heading" class="csh-article-content-header"><div class="csh-article-content-header-metas"><div class="csh-article-content-header-metas-category csh-font-sans-regular">Articles on:<span> </span><a href="/en/category/getting-started-12nwdzv/" role="link">Getting Started</a></div></div><h1 class="csh-font-sans-bold">GDPR checklist for Shopify Stores</h1></div><div role="article" class="csh-article-content-text csh-article-content-text-large">This guide provides essential steps and considerations for maintaining adherence. Navigate GDPR compliance for your Shopify store with our thorough checklist.<br class="csh-new-line"/><br class="csh-new-line"/><h3 id="3-video-tutorial" data-type="###" onclick="CrispHelpdeskCommon.go_to_anchor(this)" class="csh-markdown csh-markdown-title csh-font-sans-semibold">Video tutorial</h3><br class="csh-new-line"/><br class="csh-new-line"/><span data-label="2025 GDPR Compliance CHECKLIST" class="csh-markdown csh-markdown-video csh-markdown-youtube"><span class="csh-markdown-video-wrap csh-markdown-youtube-wrap"><iframe type="text/html" width="560" height="349" src="https://www.youtube.com/embed/d8-RowepCAM?rel=0" loading="lazy" frameborder="0" allowfullscreen="allowfullscreen"></iframe></span></span><br class="csh-new-line"/><br class="csh-new-line"/><h3 id="3-introduction" data-type="###" onclick="CrispHelpdeskCommon.go_to_anchor(this)" class="csh-markdown csh-markdown-title csh-font-sans-semibold">Introduction</h3><br class="csh-new-line"/><br class="csh-new-line"/>The General Data Protection Regulation (GDPR) is the toughest privacy and security law in the world, yet few Shopify Stores are completely compliant with its statutes.<br class="csh-new-line"/><br class="csh-new-line"/>The EU General Data Protection Regulation (GDPR) is among the world’s toughest data protection laws. Under the GDPR, the EU’s data protection authorities can impose fines of up to up to <span class="csh-markdown csh-markdown-bold csh-font-sans-medium">€20 million</span> (roughly $20,372,000), or <span class="csh-markdown csh-markdown-bold csh-font-sans-medium">4%</span> of worldwide turnover for the preceding financial year – whichever is higher.<br class="csh-new-line"/><br class="csh-new-line"/><h3 id="3-checklist" data-type="###" onclick="CrispHelpdeskCommon.go_to_anchor(this)" class="csh-markdown csh-markdown-title csh-font-sans-semibold">Checklist</h3><br class="csh-new-line"/><br class="csh-new-line"/><span data-type="*" class="csh-markdown csh-markdown-list"><span class="csh-markdown csh-markdown-bold csh-font-sans-medium">Cookie Consent Banner</span> that is compatible with GDPR standards. This is provided by our application.</span><br class="csh-new-line"/><span data-type="*" class="csh-markdown csh-markdown-list"><span class="csh-markdown csh-markdown-bold csh-font-sans-medium">Privacy Policy & Cookie Policy</span> (or combined) that cover your policies and all the tracking & data storage details of your store. This step requires you to evaluate your data collection requirements. Our application provides you with an option to link this page to the banner and have an automated cookie declaration page.</span><br class="csh-new-line"/><span data-type="*" class="csh-markdown csh-markdown-list"><span class="csh-markdown csh-markdown-bold csh-font-sans-medium">Customer Data Requests Management</span> that allows users to view, download and delete their data from your Shopify store. This is provided by our application.</span><br class="csh-new-line"/><span data-type="*" class="csh-markdown csh-markdown-list"><span class="csh-markdown csh-markdown-bold csh-font-sans-medium">Tracking Scripts & Cookies</span> should not start before user consent is given. This is provided by our application. There are some scripts & cookies that Shopify manages and is responsible to modify/block them through our integration with their consent API.</span><br class="csh-new-line"/><span data-type="*" class="csh-markdown csh-markdown-list"><span class="csh-markdown csh-markdown-bold csh-font-sans-medium">Withdraw Consent</span> must be available to the visitor to remove existing consent and change banner choices. This is provided by our application.</span><span class="csh-markdown csh-markdown-line csh-article-content-separate csh-article-content-separate-top"></span><p class="csh-article-content-updated csh-text-wrap csh-font-sans-light">Updated on: 13/02/2025</p><span class="csh-markdown csh-markdown-line csh-article-content-separate csh-article-content-separate-bottom"></span></div></article><section data-has-answer="false" role="none" class="csh-article-rate"><div class="csh-article-rate-ask csh-text-wrap"><p class="csh-article-rate-title csh-font-sans-medium">Was this article helpful?</p><ul><li><a href="#" role="button" aria-label="Yes" onclick="CrispHelpdeskArticle.answer_feedback(true); return false;" class="csh-button csh-button-grey csh-button-small csh-font-sans-medium">Yes</a></li><li><a href="#" role="button" aria-label="No" onclick="CrispHelpdeskArticle.answer_feedback(false); return false;" class="csh-button csh-button-grey csh-button-small csh-font-sans-medium">No</a></li></ul></div><div data-is-open="false" class="csh-article-rate-feedback-wrap"><div data-had-error="false" class="csh-article-rate-feedback-container"><form action="https://help.pandectes.io/en/article/gdpr-checklist-for-shopify-stores-vmi51s/feedback/" method="post" onsubmit="CrispHelpdeskArticle.send_feedback_comment(this); return false;" data-is-locked="false" class="csh-article-rate-feedback"><p class="csh-article-rate-feedback-title csh-font-sans-bold">Share your feedback</p><textarea name="feedback_comment" cols="1" rows="1" maxlength="200" placeholder="Explain shortly what you think about this article. We may get back to you." onkeyup="CrispHelpdeskArticle.type_feedback_comment(event)" class="csh-article-rate-feedback-field csh-font-sans-regular"></textarea><div class="csh-article-rate-feedback-actions"><button type="submit" role="button" aria-label="Send My Feedback" data-action="send" class="csh-button csh-button-accent csh-font-sans-medium">Send My Feedback</button><a href="#" role="button" aria-label="Cancel" onclick="CrispHelpdeskArticle.cancel_feedback_comment(); return false;" data-action="cancel" class="csh-button csh-button-grey csh-font-sans-medium">Cancel</a></div></form></div></div><div data-is-satisfied="true" class="csh-article-rate-thanks"><p class="csh-article-rate-title csh-article-rate-thanks-title csh-font-sans-semibold">Thank you!</p><div class="csh-article-rate-thanks-smiley csh-article-rate-thanks-smiley-satisfied"><span data-size="large" data-name="blushing" class="csh-smiley"></span></div><div class="csh-article-rate-thanks-smiley csh-article-rate-thanks-smiley-dissatisfied"><span data-size="large" data-name="thumbs-up" class="csh-smiley"></span></div></div></section></div></div></div></div></div><footer role="contentinfo"><div class="csh-footer-ask"><div class="csh-wrapper"><div class="csh-footer-ask-text"><p class="csh-footer-ask-text-title csh-text-wrap csh-font-sans-bold">Not finding what you are looking for?</p><p class="csh-footer-ask-text-label csh-text-wrap csh-font-sans-regular">Chat with us or send us an email.</p></div><ul class="csh-footer-ask-buttons"><li><a aria-label="Chat with us" href="#" role="button" onclick="CrispHelpdeskCommon.open_chatbox(); return false;" class="csh-button csh-button-accent csh-button-icon-chat csh-button-has-left-icon csh-font-sans-regular">Chat with us</a></li><li><a aria-label="Send us an email" href="/cdn-cgi/l/email-protection#166563666679646256667778727375627365387f79" role="button" class="csh-button csh-button-accent csh-button-icon-email csh-button-has-left-icon csh-font-sans-regular">Send us an email</a></li></ul></div></div><div class="csh-footer-copyright csh-footer-copyright-separated"><div class="csh-wrapper"><span class="csh-footer-copyright-brand"><span class="csh-font-sans-regular">© 2025</span><img src="https://storage.crisp.chat/users/helpdesk/website/1a5af239e847cf00/pandectes_1pwsj61.png" alt="Pandectes GDPR Compliance"></span></div></div></footer><script data-cfasync="false" src="/cdn-cgi/scripts/5c5dd728/cloudflare-static/email-decode.min.js"></script></body></html>