Handling information properly.
WHAT COUNTS AS CUSTOMER DATA
Names, addresses, phone numbers, email addresses Order history Anything identifying an individual
THE OBLIGATIONS
Under the NDPR and comparable frameworks, sending personal data to a third party is a processing activity carrying obligations.
WHAT TO ESTABLISH BEFORE SENDING ANY
What the provider does with it How long it is retained Whether it is used for training Whether your privacy notice covers it
WHAT TO DO INSTEAD, USUALLY
Remove identifying details. "Customer A in Lagos" rather than the name and address.
Most analysis works perfectly well on anonymised data.
WHAT NEVER TO SEND
Payment details Identification numbers Health information Anything you would not put in an email to a supplier
FOR ANALYSIS AT SCALE
Anonymise before processing.
WHAT TO UPDATE
Your privacy notice, if you use AI services on customer data.
FOR SPECIFICS
Visit zillionkinghost.com for further information, and take proper advice.