This document defines the specific purposes for which personal information is collected, used, and processed by DCKAP Integrator — and establishes controls ensuring that data use is restricted to these stated purposes only.
2. Permitted Uses of Personal Data
Data Element
Permitted Use
Who Uses It
Restriction
Consumer name & address
Order sync from eCommerce to ERP for fulfilment
Integration Engine
Not used for marketing
Consumer email
Order confirmation relay to ERP
Integration Engine
Not stored beyond 24h
Portal user email
Authentication, audit trail, notifications
DCKAP Platform
Not shared with third parties
Portal user activity log
Security monitoring, audit compliance
DCKAP Security Team
Read-only; 1 year retention
API credentials (customer)
Authenticate to source/destination systems
Credential Vault
Encrypted; never logged
Sync metadata (counts, timestamps)
SLA monitoring, support, invoicing
DCKAP Operations
Anonymised for analytics
Error logs (PII masked)
Debugging, support resolution
DCKAP Support / Engineering
PII stripped before storage
3. Prohibited Uses
Personal data transiting through integration flows must NOT be used by DCKAP for its own marketing, advertising, profiling, or analytics purposes.
Consumer data (orders, addresses) must NOT be retained beyond the 24-hour processing window.
API credentials must NOT be used by DCKAP staff to access customer systems outside the scope of the contracted service.
Personal data must NOT be transferred to countries without an adequate level of data protection unless appropriate safeguards are in place (SCCs, BCRs, adequacy decision).
4. Purpose Limitation Controls
Control
Description
Verification
Data minimisation
Only fields required by the integration flow are extracted from source
Field mapping audit
PII masking in logs
Personal fields masked before log storage — purpose: debug, not PII storage
Log content review
Short retention for transit data
Consumer data auto-purged within 24 hours of sync completion
Automated purge job
Access controls
DCKAP staff access to customer data restricted to support cases with customer consent
Access log review
Sub-processor controls
Sub-processors contractually restricted to processing data only for DCKAP’s service delivery