Docs / Quick Start for Retail & E-commerce

Quick Start for Retail & E-commerce

Getting Started for Retail Businesses

This guide helps retail and e-commerce businesses get up and running with SAR Portal quickly. Whether you run a Shopify store, WooCommerce site, or multi-location retail chain, follow these steps to be DSAR-ready today.

Step 1: Know Where Your Customer Data Lives (5 minutes)

Before processing any DSARs, map out where you store customer data:

Common Retail Data Sources

SystemData Types
E-commerce Platform (Shopify, WooCommerce, Magento)Orders, accounts, addresses, payment history
Email Marketing (Mailchimp, Klaviyo)Subscriber lists, open/click history, segments
Customer Service (Zendesk, Freshdesk)Support tickets, chat logs
Loyalty ProgrammePoints, rewards, purchase patterns
POS SystemIn-store transactions
Analytics (GA4)Browsing behaviour (often anonymised)
ReviewsCustomer reviews with personal details

Action: Make a checklist of your systems. You’ll need to export data from each when handling DSARs.

Step 2: Configure SAR Portal (10 minutes)

Organisation Settings

  1. Go to Settings > Organization (Settings is Admin-only)
  2. Enter your company details:
    • Business name as it appears to customers
    • Contact email for DSAR communications
    • Business address

Public Portal Setup

  1. Go to Settings > Integrations
  2. View your Public Portal Access URL (and generate the token-based link)
  3. Upload your logo and set your brand colour
  4. Preview how customers will see it

Your portal URL will look like: https://app.sarportal.com/subjectaccess?token=your-portal-token

Notification Preferences

  1. Go to Settings > Notifications
  2. Enable email alerts for:
    • New requests received
    • Deadlines approaching (7 days, 3 days)
    • Request status changes

Step 3: Add Your Team (5 minutes)

If others will help manage DSARs:

  1. Go to Users (Admin-only)
  2. Click Invite User
  3. Enter their email and select a role, then click Send Invitation:
    • Admin: Full access
    • Case Manager: Can manage cases but not settings
    • Reviewer: Can view, update status, attach documents, and request info — cannot create or close cases
    • Read Only: View and export only

Tip for retail: Consider giving store managers Case Manager access so they can help with employee DSARs.

Update your privacy policy to include your new DSAR portal:

To exercise your data rights (access, deletion, or correction),
please submit a request through our secure portal:
[Your Portal URL]

We will respond within one month as required by GDPR.

Also update:

Step 5: Handle Your First DSAR (10 minutes)

When a customer submits a request:

1. Review the Request

2. Gather Customer Data

Export data from each system:

Shopify:

Mailchimp:

Zendesk:

3. Attach Exports to the Case

4. Let AI Process

5. Complete the Response

Retail-Specific Tips

Handling Order Data

Customer order histories often include:

SAR Portal’s AI handles most of this, but review the redaction results.

Marketing Unsubscribe Requests

If someone asks to “be removed from marketing,” that’s not a DSAR — it’s an unsubscribe request. Handle it through your email platform directly.

But if they ask for “all data you hold on me” or “delete my data,” that IS a DSAR.

Former Employee Requests

Retail staff may submit DSARs after leaving. These require:

The same SAR Portal workflow handles employee DSARs.

Loyalty Programme Considerations

Loyalty data is personal data. Include:

Common Retail DSAR Scenarios

“Send me all my order history”

→ Export from e-commerce platform, upload, process, deliver

“Delete my account”

→ Create erasure case, delete from all systems, document what was deleted

“What marketing segments am I in?”

→ Export from email platform including segment data

“Stop using my data for recommendations”

→ Objection case, disable personalisation, confirm to customer

Getting Help


Ready to process your first DSAR? Open SAR Portal and follow the steps above.

New to SAR Portal? Start your free trial — no credit card required.