Privacy Policy

We measure checkouts, not people.

Last updated 2026-08-05 | applies to tidewall.ch and every report it produces

The short version: we collect the little we need to produce your report and deliver what you bought, we keep it briefly, we sell none of it, and this site runs no JavaScript and no tracking at all. The long version follows.

Who is responsible

The controller is Romain Dufour, operating as TideWall, Switzerland. Contact for anything in this policy: sales@tidewall.ch. We process personal data under the Swiss Federal Act on Data Protection (nFADP) and, where it applies to you, the EU GDPR.

What we collect, and why

Store URL
The address you submit for a scan. Needed to run the scan; it is also what the report is about.
Revenue figures
Optional monthly revenue and international share, if you provide them. Used only to convert percentage findings into your own numbers, never published.
Email address
Optional for a free scan (to send you the report link); required for a purchase or a subscription (to deliver what you bought and send alerts).
Payment data
Handled entirely by Stripe. We receive a confirmation and the billing email; we never see or store card numbers.
Server logs
Standard access logs (IP address, time, path) kept for security and abuse prevention.

We do not build profiles, we do not run analytics scripts, we show no ads, and we never sell or rent data. The site's security policy forbids all script execution, so there is nothing here that could track you even by accident.

What the scanner touches

The scanner reads publicly accessible pages of stores, the same pages any visitor's browser loads. It identifies itself as TideWallBot, honours a per-host delay and a robots.txt opt-out addressed to it. For the paid verification pass, pages are fetched through residential network exits operated by Bright Data; what transits there is the store page request, not your account data.

Legal bases

How long we keep it

Anonymous scan reports are purged after 90 days, automatically. A purchased report is kept so its permanent link keeps working. Subscription data lives as long as the subscription, then the last report is kept for your reference until you ask us to delete it. Logs rotate on a short cycle.

Who processes data for us

Hetzner
Cloud hosting of the application and its database.
Infomaniak
Domain, DNS and email (Switzerland). Outbound and inbound mail transits their servers.
Stripe
Payment processing and subscription billing.
Bright Data
Residential network exits used to fetch public store pages from inside each market during a verification pass.

Each processes data only to provide its service to us. Some of them process data outside Switzerland or the EU; where they do, transfers rest on recognised safeguards such as standard contractual clauses.

Your rights

You can ask for access to the data we hold about you, have it corrected or deleted, object to a processing, or receive a copy. Write to sales@tidewall.ch and we answer without drama. If you believe we handle data unlawfully you can complain to the Swiss FDPIC or your local supervisory authority.

Brand owners and the public index

The Checkout Health Index lists named storefronts with scores derived from their public pages, reproducible by anyone with a browser. If you operate a listed store and believe an entry is wrong, run a fresh scan or write to us; the same engine re-checks it, and the entry follows the result.

Security

Traffic is encrypted end to end, secrets live outside the code, the application executes no third-party scripts, and access to the server is by key only. No system is perfect; ours is small on purpose, and it holds little worth taking.

Changes

When this policy changes, the date at the top changes with it. A material change affecting subscribers is announced by email.

Related: Terms of Service | Legal notice | About TideWallBot