Privacy policy
Last updated: 12 August 2026
ShelfAtlas is a Danish retail-catalog data platform, currently in early access. This policy describes what personal data we handle when you use shelfatlas.com and the ShelfAtlas API — it is short because we collect very little.
Data controller
Henrik Lambert, Odense, Denmark, is the data controller for ShelfAtlas. ShelfAtlas is operated as a personal project by one person — it is not a registered company (yet).
What we collect
- Account data. When you create an account, our authentication provider (Clerk) processes the email address and name you provide. We use it to operate your account and issue API keys — nothing else.
- API usage. We count requests per API key (for rate limits, quotas, and understanding usage). Request counts are tied to your key, not profiled beyond that.
- Error and server logs. Standard server logs (Vercel) and error monitoring (Sentry) may briefly capture technical request details, including IP addresses, to keep the service working. They are used for operations only.
What we do not do
- No analytics or marketing trackers — the site sets no tracking cookies.
- No selling or sharing of personal data with third parties for their own purposes.
- No profiling of visitors. The catalog data we serve is about groceries, not people.
Processors we rely on
Clerk (authentication), Vercel (hosting), Neon (database), Sentry (error monitoring), and GitHub (scheduled jobs). Each processes data only to provide their service to us.
Your rights
Under the GDPR you can request access to, correction of, or deletion of your personal data. Deleting your account removes your account data and revokes your API keys. While our support inbox is being set up, contact us via GitHub and we will respond within 30 days.
If you believe we are processing your personal data unlawfully, you have the right to complain to the Danish data protection authority, Datatilsynet (Carl Jacobsens Vej 35, 2500 Valby, Denmark).