esc
Reference

Privacy, data & compliance

What data the extension handles and shares, and the controls available to you.

The at-a-glance answers for a privacy review, with the mechanics one link away. Share this page with your data-protection officer.

Note

This page describes how the extension behaves. Compliance with privacy law in your jurisdiction is your responsibility. Nothing here is legal advice.

Privacy at a glance

  • What syncs: only the store data you switch on: subscribers, customers, orders and carts, and your catalog.
  • Who processes it: Mailchimp, under its own terms; add it to your data-processor list like any marketing platform.
  • Consent: customers arrive as non-subscribed; marketing always requires an opt-in; an unsubscribe always wins.
  • Deletion: deleting in Magento archives the Mailchimp contact; archiving is reversible and stops billing for that contact.
  • What ebizmarts sees: diagnostics and your business contact details, never your customers’.

What syncs where

Data Where it goes Your control
Newsletter subscribers (name, email, status) Your Mailchimp audience Sync Newsletter Subscribers
Customers who ordered or left a cart (name, email, address, purchase history) Your Mailchimp audience Sync Customers
Orders and carts Your Mailchimp store Enable Ecommerce Sync / Sync Abandoned Carts
Product catalog Your Mailchimp store Sync Catalog

Mailchimp handles this data under its additional terms and privacy policy; if you list the services that process your customer data, add Mailchimp like any marketing platform. Every toggle lives in Configuration settings.

  • Customers sync as non-subscribed by default: transactional email only.
  • Becoming subscribed always requires an explicit opt-in.
  • Double Opt-In is controlled in your Mailchimp audience settings; when your audience has it on, Mailchimp sends the confirmation email first. The extension shows the status read-only in Configuration.
  • An unsubscribe always wins; no sync or re-sync ever re-subscribes anyone.

Unsubscribes & consent covers the two-way flow; Grow your audience covers the opt-in surfaces.

Deleting contacts

Action in Magento What happens
Delete a customer Mailchimp contact archived; local activity records clear on the retention windows
Delete a newsletter subscriber Mailchimp contact archived, local sync record purged
A contact unsubscribes Status change, honored in both directions

Archiving is reversible, preserves your audience history, and archived contacts stop counting toward your Mailchimp bill. The store’s own activity records clear on their own retention schedule (the API Sync Log defaults to 30 days), and deleting the newsletter subscriber row also purges that contact’s local event records at once. For a formal right-to-erasure request, permanent deletion of the Mailchimp contact is done inside Mailchimp, by the merchant. The retention windows are adjustable in Configuration settings.

Support, diagnostics and notifications

The extension keeps a lightweight, one-way connection to ebizmarts: it reports, it never reaches in. It shares your extension version, sync health, and your business contact details, never your customers’. Your shoppers’ data never leaves your store. Pause it per store from the Support tab in the connection popup; the QoS Report page lists the recent payloads it has sent, word for word. The same channel delivers version and security notices right in your admin.

The Pixel and your logs

The optional Pixel respects Magento’s Cookie Restriction Mode: where a consent banner is required, it waits for each visitor’s consent. The Mailchimp Pixel & behavioral events has the mechanics. Logs mask personal data by default (emails as m***@domain.com), never store credentials, and troubleshooting data purges itself; the toggles and retention windows are in Configuration settings.

Questions along the way? Troubleshooting has the answers, and ebizmarts support is one email away.

About this website

This last section is about this documentation site, not about the extension.

  • What we measure: page views, with Google Analytics, so we can see which guides actually get read. Once you accept, we also record what you type into this site’s search box and whether it found anything, so we can spot the questions the docs don’t answer.
  • Before you accept: no cookies are set, nothing is stored on your device, and your searches are not measured at all. Google Analytics still receives a cookieless signal that a page was viewed, with no stored identifier, so separate visits cannot be linked together.
  • After you accept: Google Analytics sets its usual cookies and measures the visit as any analytics install would.
  • What never leaves your browser: a search that looks like it holds personal data — an email address, a phone or order number, a store address, an API key — is dropped before anything is sent.
  • Where your choice lives: in this site’s local storage, on your device. It is not a cookie and it is never sent to us.
  • Changing your mind: reopen the cookie choice at any time. Declining also clears the analytics cookies already on your device; you can clear this site’s data in your browser as well.

The guide asks for no account, no email address and no personal detail, so nothing here identifies you by name.

Next: TroubleshootingThe most common issues and how to fix them, most frequent first.