OECD Privacy Guidelines compliance for an online store
OECD Guidelines on the Protection of Privacy and Transborder Flows of Personal Data. This page applies it to one kind of product (online store), so you get the obligations that are actually yours instead of a summary of the whole statute.
Does it apply to you?
Not binding law: the baseline of internationally accepted privacy practice, used where no local statute applies.
What an online store typically processes
- orders, shipping addresses and delivery tracking
- card payments through a processor
- cart abandonment and marketing email
- advertising pixels and conversion tracking
Each of these is processing you have to disclose. Adding an SDK later adds to this list — which is why a policy written once goes stale.
Documents you need
The intersection of what OECD Privacy Guidelines requires and what an online store actually does:
- Privacy policy
- Terms of service
Rights you must honour
OECD Privacy Guidelines gives people in International the right to:
- Access a copy of their data
- Correct inaccurate data
Cookies and trackers
Trackers may load by default, but the visitor needs a working way to opt out, and you must honour it.
See what your site is actually missing
Paste your URL. We fetch the live page, detect the trackers, payments and AI calls that really ship to visitors, and tell you which documents and consent you need. No signup.
No signup · result in seconds
Primary sources
- OECD Privacy Guidelines — OECD Guidelines on the Protection of Privacy and Transborder Flows of Personal Data · official text
- Collection Limitation — Collect lawfully, with knowledge or consent where appropriate
- Purpose Specification — Say why you collect, before you collect
- Security Safeguards — Protect data with reasonable safeguards
- Individual Participation — Let people see and correct their data
- Accountability — The controller answers for compliance
OECD Privacy Guidelines for other kinds of product
- OECD Privacy Guidelines compliance for a SaaS
- OECD Privacy Guidelines compliance for a marketplace
- OECD Privacy Guidelines compliance for a mobile app
- OECD Privacy Guidelines compliance for an AI chatbot
- OECD Privacy Guidelines compliance for an AI image generator
- OECD Privacy Guidelines compliance for an AI writing tool
Other frameworks for an online store
This page is an engineering summary of publicly available regulatory requirements, generated from LexVibe's framework registry — not legal advice. Every framework links to its official text so you can check it yourself. For decisions about your own compliance posture, consult the primary sources and a lawyer qualified in the relevant jurisdiction.