Privacy Policy — DD CENEO - Integracja i XML

Effective 2026-09-23

Who we are

DULDUL.PL - Radosław Dul, a sole trader registered in Poland. Tax identification number (NIP) 6282163301, statistical number (REGON) 122519615 — both resolve to the full entry in the public Polish business registers. For anything about personal data, write to app@ddapps.pl.

This app is a tool for merchants using Shopify. For the personal data of a merchant's own buyers, the merchant remains the controller and we act on their instructions.

What we read from the store

Only what the app has been granted, and only what the feed needs. The app does not request access to customers or orders, and has no way to read them.

AccessWhat for
read_productsTitles, descriptions, prices, images, identifiers and variant options — the content of the feed itself.
read_inventoryStock levels, which decide an offer's availability value.

What we store, and for how long

Worth saying first what we do not store: no data about a merchant's buyers, because the app cannot read any. The merchant's own email address is read from Shopify at the moment a notification is sent and is not written down.

DataKept
Shop domain, plan, feed settings and category mappingsUntil the app is uninstalled and Shopify asks us to erase the shop
Feed run history: time, duration, number of products and offers, errors90 days
List of products left out of a feed, with their titles at the time90 days, with the run it belongs to
The generated feed fileUntil the next generation replaces it
Shopify access tokenFor as long as the app is installed
Server logs30 days, then rotated out

Who else sees the data

Ceneo.pl reads the generated feed from an address the merchant gives them. We do not send anything to Ceneo ourselves — the merchant decides whether to hand over the address, and the feed contains product data, not personal data.

ProcessorRoleWhere
Hetzner Online GmbHHosting of the app and its databaseGermany (EEA)

Data is not transferred outside the European Economic Area.

Requests about personal data

We answer the three requests Shopify forwards on a buyer's or merchant's behalf:

Cookies and storefront tracking

The app can place the following in the storefront, each only when the merchant turns it on:

WhatWhyCookiesConsent
Ceneo widget (ssl.ceneo.pl/shops/sw.js)Shows the shop's Ceneo rating as a badge. Placed only when the merchant turns it on in the app and enables the app embed in their theme.ceneo_cid — a visitor identifier set by CeneoMarketing. By default the script waits for consent; the merchant can turn that off in the app settings.

Security

All traffic runs over TLS. Access tokens are held only in Shopify's session mechanism and are never written to logs. Access to the server is limited to the operator named above.

Changes

The effective date at the top changes with the text. Changes that affect what we collect or who receives it are announced in the app before they take effect.

Contact

app@ddapps.pl


Polityka prywatności — DD CENEO - Integracja i XML

Obowiązuje od 2026-09-23

Kto jest administratorem

DULDUL.PL - Radosław Dul, jednoosobowa działalność gospodarcza. NIP 6282163301, REGON 122519615 — oba prowadzą do pełnego wpisu w publicznych rejestrach. W sprawach danych osobowych: app@ddapps.pl.

Aplikacja jest narzędziem dla sprzedawców korzystających z Shopify. W zakresie danych kupujących w sklepie sprzedawcy administratorem pozostaje sprzedawca, a my działamy na jego zlecenie.

Jakie dane odczytujemy ze sklepu

Tylko te, na które aplikacja ma uprawnienia, i tylko te, których potrzebuje feed. Aplikacja nie prosi o dostęp do klientów ani zamówień i nie ma możliwości ich odczytania.

UprawnieniePo co
read_productsNazwy, opisy, ceny, zdjęcia, identyfikatory i opcje wariantów — czyli treść feedu.
read_inventoryStany magazynowe, które decydują o dostępności oferty.

Co przechowujemy i jak długo

Warto zacząć od tego, czego nie przechowujemy: żadnych danych kupujących w sklepie sprzedawcy, bo aplikacja nie może ich odczytać. Adres e-mail samego sprzedawcy pobieramy z Shopify w chwili wysyłki powiadomienia i nie zapisujemy go.

DaneOkres
Domena sklepu, plan, ustawienia feedu i mapowania kategoriiDo odinstalowania i żądania usunięcia danych sklepu
Historia uruchomień: czas, długość, liczba produktów i ofert, błędy90 dni
Lista produktów pominiętych w feedzie, z nazwami z chwili generowania90 dni, razem z uruchomieniem
Wygenerowany plik feeduDo następnego wygenerowania
Token dostępu ShopifyNa czas, gdy aplikacja jest zainstalowana
Logi serwera30 dni, potem rotowane

Komu przekazujemy dane

Ceneo.pl pobiera wygenerowany feed spod adresu, który sprzedawca im podaje. Sami niczego do Ceneo nie wysyłamy — o przekazaniu adresu decyduje sprzedawca, a feed zawiera dane produktów, nie dane osobowe.

PodwykonawcaRolaGdzie
Hetzner Online GmbHHosting aplikacji i bazy danychNiemcy (EOG)

Dane nie opuszczają Europejskiego Obszaru Gospodarczego.

Żądania dotyczące danych osobowych

Obsługujemy trzy żądania przekazywane przez Shopify:

Pliki cookie i śledzenie w sklepie

Aplikacja może umieścić w sklepie poniższe elementy — każdy dopiero wtedy, gdy sprzedawca go włączy:

CoPo coPliki cookieZgoda
Ceneo widget (ssl.ceneo.pl/shops/sw.js)Pokazuje ocenę sklepu w Ceneo jako plakietkę. Umieszczany tylko wtedy, gdy sprzedawca włączy go w aplikacji i włączy blok w motywie.ceneo_cid — identyfikator odwiedzającego, ustawiany przez CeneoMarketing. Domyślnie skrypt czeka na zgodę; sprzedawca może to wyłączyć w ustawieniach aplikacji.

Bezpieczeństwo

Cały ruch idzie po TLS. Tokeny dostępu przechowuje wyłącznie mechanizm sesji Shopify i nigdy nie trafiają do logów. Dostęp do serwera ma wyłącznie podmiot wskazany wyżej.

Zmiany

Data u góry zmienia się razem z tekstem. Zmiany dotyczące tego, co zbieramy albo kto otrzymuje dane, ogłaszamy w aplikacji, zanim zaczną obowiązywać.

Kontakt

app@ddapps.pl