Compliance
At Commentier, we are committed to protecting the privacy and rights of our users and their customers. Our platform is designed with compliance at its core, ensuring that you can confidently collect and publish reviews within global legal frameworks.
GDPR Compliance
We fully comply with the General Data Protection Regulation (GDPR). All personal data collected through Commentier, including customer names and phone numbers, is processed in accordance with lawful bases, primarily consent and contractual necessity. We provide tools for data access, correction, and deletion upon request.
Customer Consent
Merchants are responsible for ensuring that their customers have given explicit consent to receive WhatsApp messages. Commentier does not send unsolicited messages and assumes that customer contact information used through Shopify has been collected with proper opt-in methods.
WhatsApp Business Compliance
Commentier uses official WhatsApp Business APIs through compliant providers. All messaging flows respect WhatsApp’s commerce and conversation policies. Message templates must be pre-approved and cannot contain promotional content unless explicitly permitted.
Data Retention & Security
We retain only the data necessary to operate the service. All customer data is securely stored using industry best practices, including encryption at rest and in transit. You can request data deletion at any time, and we’ll comply within the legally required timeframes.
Third-Party Processors
We only work with sub-processors who meet strict data protection standards. A full list of sub-processors is available upon request. We ensure all partners comply with our Data Processing Agreement (DPA).
Your Responsibilities
As a Shopify merchant using Commentier, you are responsible for your store’s compliance with applicable data protection regulations, including informing your customers about the use of third-party review tools and obtaining the necessary consents.
Need More Info?
For additional details or compliance documentation (e.g. Data Processing Agreement, Sub-processor List), please contact us.
Email: legal@commentier.com
Last updated: May 3, 2025