Compliance

Data privacy & GDPR

How PharmaBoost handles shop data, webhooks, and merchant responsibilities.

Book a Free Digital Audit
All documentation

Shop isolation

Each Shopify store's data is scoped by shop domain. PharmaBoost does not mix data between merchants.

GDPR webhooks

Shopify mandatory webhooks (customer data request, redact, shop redact) are supported. Customer data requests export profile and submission records and email the JSON file to your pharmacist notification address in Settings.

Your responsibilities

You are the data controller for patient and customer data. Maintain lawful basis, privacy notices, and retention aligned with GPhC and UK GDPR. See pharmaboost.co.uk/app/privacy for the app privacy policy.