Privacy notice · effective 2 August 2026

Your catalogue stays in your browser.

Short answer: The core CatalogVigil checker reads, validates, and exports your selected CSV inside the active browser tab. CatalogVigil does not intentionally upload catalogue rows, file contents, file names, SKUs, handles, product titles, image URLs, findings, or corrected exports to its servers.

Who is responsible for this website?

CatalogVigil is operated by Guilherme Costa, a private individual established in Portugal and operating under the name CatalogVigil. He is the controller for personal data processed directly for this website. Privacy requests can be sent to catalogvigil@gmail.com.

What does this notice cover?

This notice covers the public CatalogVigil website, its free browser-local checker, ordinary hosting and security operations, optional contact by email, and the external funding links described below. It does not govern Shopify, Ko-fi, Google, Lemon Squeezy, or another external service when you visit or use that provider directly.

What happens to a selected CSV?

The browser reads the selected file into memory so the page can parse rows, apply deterministic checks, display findings, preview selected normalisations, and create downloads. The original file is not changed. Active file data is discarded when you clear the session, close or reload the tab, or the browser releases the page.

Generated issue reports and corrected files are downloaded to the location controlled by your browser. The audit JSON excludes observed catalogue values by default; including them is an explicit local choice. CatalogVigil does not receive a copy of a download unless you separately choose to send it, and you should not email private catalogues.

Which browser storage is used?

The page can store two ordinary preferences in local storage: create/update intent and whether observed values should be included in audit JSON. These preferences do not contain catalogue rows or identifiers. They remain until you clear them through CatalogVigil or your browser. No CatalogVigil tracking cookie is required by the current build.

What reaches the hosting provider?

Like ordinary websites, the hosting infrastructure may process technical request data needed to deliver and protect the site, such as IP address, request date and time, requested path, response status, browser or user-agent information, referrer information, and security events. The purposes are page delivery, reliability, abuse prevention, incident investigation, and legal compliance. The legal basis is the operator's legitimate interests in providing and securing the service and, where applicable, compliance with legal obligations.

CatalogVigil is hosted by Hostinger. Technical logs are retained according to the hosting configuration and provider's operational retention, then deleted or rotated unless a specific security incident, dispute, or legal obligation requires a relevant record for longer. The operator accesses such records only when reasonably needed for operation or security.

What happens when you email?

Email can contain your address, name, message, attachments, and related technical metadata. It is processed to answer the request, take pre-contractual steps you ask for, maintain necessary correspondence, protect the service, or comply with law. The applicable basis is the requested communication or pre-contractual step, legitimate interests in maintaining support and security records, or a legal obligation.

Routine correspondence is reviewed periodically and deleted when it is no longer reasonably needed. Records relevant to an unresolved request, legal obligation, security event, or dispute may be retained for the corresponding limitation or compliance period. Email is handled through Google services. Do not send payment-card details, account credentials, or a private catalogue.

How do support and other external links work?

The optional Ko-fi support button is an ordinary external link. CatalogVigil does not receive payment-card data. When you open Ko-fi or another external destination, that provider receives ordinary request information and applies its own privacy and payment terms. A voluntary contribution does not unlock checker features or change a finding.

Shopify source links and any clearly labelled affiliate link work the same way: no request is made to the destination until you activate the link. If a qualifying affiliate programme is enabled, CatalogVigil may receive aggregate referral or commission information from the provider, but checker data is not attached to the referral.

Are analytics, advertising, or checkout active?

Analytics is not active in the current production configuration. The dormant code boundary accepts only coarse allow-listed event categories and must not be activated without a renewed privacy and consent assessment.

Google AdSense ad serving is not active in this build. The dormant integration cannot load Google advertising code or reserve visible ad space without an approved account, a real ad-unit ID, a published Google-certified consent message, an updated privacy review, and a compatible page-specific security policy.

The Lemon Squeezy Agency Kit checkout is not active in the current production configuration. No purchase data is sent by CatalogVigil while the checkout is unavailable. Before sales are enabled, the commercial disclosures, seller registration details, privacy status, checkout terms, digital-delivery consent, and applicable consumer information must be completed. When activated, Lemon Squeezy is expected to act as Merchant of Record for checkout, payment, tax collection, receipt, and delivery functions under its own buyer and privacy terms; CatalogVigil remains responsible for the product licence and its own support communications.

Who can receive personal data?

Depending on what you do, recipients can include Hostinger for hosting and security, Google for email, and professional or public authorities where disclosure is legally required. Ko-fi, Shopify, Lemon Squeezy, and advertising providers receive data only when their relevant link or integration is used or enabled as described above. CatalogVigil does not sell catalogue contents or personal data.

Are there international transfers?

Some service providers may process information outside Portugal or the European Economic Area. Where Guilherme Costa selects a processor that makes a restricted transfer, the transfer must rely on an applicable adequacy decision, approved contractual safeguards such as standard contractual clauses, or another lawful mechanism. External services you choose to visit apply their own transfer arrangements.

Is providing data required?

You do not need an account or need to provide personal data to use the checker. Local file access is technically necessary for the check you request, but its contents stay in the browser. Email and voluntary support are optional. If a commercial checkout is later activated, the Merchant of Record will identify the information needed for payment, tax, fraud prevention, receipt, and delivery.

What are your rights?

Subject to applicable conditions, you can request access, correction, deletion, restriction, or portability of personal data, and object to processing based on legitimate interests. Where processing relies on consent, you can withdraw it for the future as easily as it was given. Because the core checker has no server-side catalogue store, Guilherme Costa normally cannot retrieve or delete a CSV that never left your device.

Send a request to catalogvigil@gmail.com. Reasonable information may be requested to verify identity and avoid disclosing data to the wrong person. You can also complain to Portugal's supervisory authority, the Comissão Nacional de Proteção de Dados (CNPD), or another competent supervisory authority.

Security, automated decisions, and children

CatalogVigil limits data collection, processes catalogue data locally, uses a restrictive browser security policy, and separates optional third-party integrations from the checker. No internet service can promise absolute security, so keep your own backup and do not share sensitive catalogues unnecessarily.

CatalogVigil does not make solely automated decisions that produce legal or similarly significant effects about visitors. The service is intended for people managing commercial catalogue data and is not directed to children. If you believe a child sent personal data by email, contact the address above.

Changes to this notice

This notice will be updated before a materially different analytics, advertising, checkout, account, or hosted-report feature is activated. Material changes will be identified by a new effective date and, where appropriate, a prominent site notice. The version published when processing occurs governs that processing.