Roles and instructions
For merchant store, catalog, order, shopper, and shipment personal information, the merchant is the controller and Ship Safe Offers is the processor or service provider. We process that information only to provide the Services and follow the merchant’s documented instructions, including product configuration.
Core commitments
- Personnel with access are bound to confidentiality and limited by least-privilege controls.
- Technical and organizational safeguards are described in the Security & Trust Statement.
- Subprocessors are identified on the Subprocessors page; we remain responsible for their performance and provide notice of material changes as required by the customer agreement.
- We assist merchants with appropriate data-subject requests and notify affected merchants without undue delay after confirming a personal-data breach involving their information.
- Where required for an international transfer, an appropriate safeguard such as the Standard Contractual Clauses applies.
- After termination, personal information is deleted or returned as stated in the agreement, subject to legal retention duties.
Request the executable DPA
Merchants may request the complete, executable Data Processing Addendum by emailing help@shipsafeoffers.com.
Still have a question?We will give you a direct answer.
Contact us