What data Digitdeck processes when someone requests the X-ray of their store at digitdeck.co/en/diagnostic, why, who it is shared with and how long it is kept.
The Developer Privacy Policy covers the Shopify app, where Digitdeck is the processor. This document covers a different relationship: in the X-ray, a person pastes a store's address and receives a report. Here Digitdeck is the controller of what is described below. This is a faithful translation of the Spanish original.
1. What data is processed, why and where it stays
| Data | When | Why | Where it stays |
|---|---|---|---|
| Store address | When the X-ray is requested | To measure its public pages (home page, a collection and a product) and build the report | In our platform (app.digitdeck.co), with the report and its screenshots |
| IP address, user agent and TLS fingerprint of the browser | When the X-ray is requested | To verify the requester is a person and to limit new requests to 3 per minute from one connection | Cloudflare receives them to decide. Our platform does not store the IP: it stores only a digest of it (SHA-256 hash with a secret salt), used to recognize repeated requests from one connection and as part of the proof of authorization |
| Only if the person types it, while waiting or at the end of the report | To send the link to the report | In our platform, as a contact in our contact records (CRM), and at the provider that sends the email | |
| Follow-up box, version of the text the person saw and date | Only if they check it (the box starts unchecked) | To send the follow-up emails and to show what they accepted | In our platform, next to the email |
| Page language | When the email is sent | To write in that language | In our platform, next to the email |
| What happened with the emails: when each one went out and whether there was an unsubscribe, a bounce or a booking of the diagnostic | After each send | To stop the follow-up when it should stop | In our platform, next to the email |
According to the Turnstile privacy addendum, to verify the person Cloudflare receives the IP address, the TLS fingerprint, the user agent and the site key with its origin.
The report and the screenshots belong to the measured store and are public pages: anyone with the link can see them. We ask search engines not to show them.
What we don't do. We don't ask for access to the store or install anything on it. We read public pages only. We don't sell data. We don't use the email for anything other than what is described here. And we give the artificial intelligence that helps with the editorial judgment no data about whoever requested the report (see section 4).
2. Cookies and browser storage
- The X-ray stores neither your email nor the store's address in your browser.
- If you go from the report to booking, the site saves a draft (the store, the interest and a message) in that tab's session so it doesn't ask you twice. It stays in your browser until you submit the booking form or close the tab.
- The site's language switcher saves your choice in a first-party cookie,
dd_lang, for one year, only if you pick a language by hand. - Checking that you are a person is done by Turnstile, from Cloudflare. Its script loads only on the X-ray page and runs in a frame from
challenges.cloudflare.com. It may save a technical item in browser storage under Cloudflare's domain, not underdigitdeck.co. In the test we ran on October 7, 2026 with Cloudflare's test keys, it saved one local-storage item and no cookies. Cloudflare describes Turnstile's signals as strictly necessary to detect and block bots.
3. The email and the follow-up
- The email is never required to see the report.
- With the email alone, we send one email with the link to the report.
- With the box checked, we also send up to two follow-up emails: at 2 days, with the fix that returns the most points to the store (it goes out only if the report has a verified one), and at 5 days, with the invitation to the 30-minute diagnostic. With the box unchecked, none is sent.
- Unsubscribe: the follow-up emails, and the report email when the box is checked, carry a signed unsubscribe link and the
List-Unsubscribeheader. One click stops the follow-up immediately, for every report requested with that email. If the box is unchecked, the only email is the report and there is no follow-up to cancel. - The follow-up also stops if the same email books the diagnostic, if the email bounces or if its owner marks it as spam. A bounce also stops the report email.
- Contact records. Whoever leaves their email is recorded in our contact records as someone who requested the X-ray of their store, whether or not they checked the box. The team gets a notice with the store, the report score, the email and whether the box was checked. If it wasn't, the notice says the person should receive only the report and not the follow-up. It is seen by team members with access to the CRM and is used to know who requested the X-ray and with what score.
4. Who it is shared with and where it is processed
Only with providers needed to deliver this, under confidentiality and limited use. This list is specific to the X-ray; the one for the Shopify app is in the Subprocessor List and does not include all of these.
| Provider | Why | What it receives | Where |
|---|---|---|---|
| Cloudflare | Serves the site and its Worker, limits requests per connection, verifies the requester is a person (Turnstile) and stores the report's screenshots (R2) | IP, user agent and TLS fingerprint; the requested address; screenshots of public pages | Cloudflare's global network |
| Render Services, Inc. | Hosts our platform's API | What passes through it: store address, email, language and box | Virginia, United States |
| Neon, Inc. | Our platform's database | Everything that is stored: address, report, email, box with its version and date, IP digest | AWS us-east-1 (Virginia, United States) |
| Resend, Inc. | Sends the emails from send.digitdeck.co |
Email, message content and delivery and bounce events | United States or the provider's global infrastructure |
| Google LLC | Gmail as a fallback, only if Resend fails. To measure speed, the engine may query PageSpeed Insights | With Gmail: email and message content. With PageSpeed: the public addresses of the home page, a collection and a product | Google's global infrastructure |
| Anthropic | Editorial judgment with Claude on the clarity of the store's headline and text | Only the store's public text: titles, headings, buttons, announcement and a fragment of the visible text. Never the email, the IP or data about whoever requested the report | United States |
The measuring is done by Digitdeck's own equipment, which opens the store's public pages and builds the report. It is not an outside provider.
Almost all of these providers process data in the United States, that is, outside Colombia. Where needed, contractual clauses or another legal mechanism are used. We don't sell or share data for advertising.
5. How long it is kept
There is no scheduled automatic deletion and we don't promise one. Data is kept for as long as it serves what is described here: the report and its screenshots, the email, the follow-up and the proof of what the person accepted.
- Delete or correct: the person can ask at any time by writing to digitdeck.servicios@gmail.com.
- Response times, under Colombian Law 1581 of 2012 and Decree 1377 of 2013: queries within 10 business days and claims within 15 business days. If we can't make it, we say why and give the new date, which is no more than 5 further business days for a query or 8 for a claim.
- Unsubscribing from the follow-up: immediate, with the link in each email.
6. Rights
Under Colombian Law 1581 of 2012, a person can know, update and rectify their data, ask for proof of the authorization they gave, revoke it and ask for their data to be deleted, by writing to digitdeck.servicios@gmail.com. Digitdeck may verify the identity of the sender. After filing the query or claim with Digitdeck, a complaint can be filed with the Superintendencia de Industria y Comercio.
7. Changes
If the meaning of what the person accepts changes (the follow-up box or the privacy line of the form), the text moves to a new version (radiografia-correo-N), and that version is the one stored with each authorization. The current text is radiografia-correo-2. When this document changes, the date above changes with it.