PRIVACY & COMPLIANCE

How do I add a do not sell my data page to OpoShop?

How do I add a do not sell my data page to OpoShop?
Quick answer: You add a "Do Not Sell or Share My Personal Information" page by creating a dedicated page, linking it in your footer, and connecting it to a mechanism that actually stops data sharing when a shopper opts out. The page needs clear opt-out instructions and should respect the Global Privacy Control signal. A consent app makes this real by turning the request into an actual stop on your marketing pixels, not just a form that goes nowhere.

What a do not sell my data page actually does

A "Do Not Sell My Data" page gives California and similar-state shoppers a way to opt out of the sale or sharing of their personal information. Under CCPA and CPRA, "sale" includes the data sharing that happens when marketing pixels pass information to ad networks.

Most small stores are surprised to learn they may be "selling" data at all. You are not handing over a spreadsheet. But when a Meta or TikTok pixel shares a shopper's behavior with an ad platform, California law can treat that as a sale or share, which triggers the opt-out right.

The page is the shopper's front door to that right. It has to do three things:

  • Explain the right: Tell shoppers they can opt out of the sale or sharing of their data.
  • Provide the mechanism: Give a clear way to submit the opt-out, like a toggle or form.
  • Actually stop sharing: Turn the request into a real halt on the pixels that share data.

For a OpoShop store, the third point is what separates a compliant page from a decorative one. The opt-out has to change behavior, not just record a preference.

Why the page needs to connect to real blocking

The page has to connect to real blocking because an opt-out that does not stop the pixels is not an opt-out. A form that files a request but keeps sharing data with ad networks fails the actual requirement.

This is the gap most stores miss. They add a nice page with a "Do Not Sell" heading, then leave every marketing pixel firing exactly as before. The shopper opted out on paper and nothing changed in practice.

The fix is a link between the page and your tracking. When a shopper opts out, the marketing category of cookies and pixels should switch off for that visitor. Their analytics might still run depending on your setup, but the data-sharing pixels go quiet.

In your OpoShop store, a consent app is what makes that connection automatic. The opt-out signal reaches the pixels and stops the sharing, so the page does what it claims instead of just displaying a promise.

Add a do not sell page

What the page must include to be compliant

A compliant do not sell page includes clear language, an easy opt-out method, and recognition of the Global Privacy Control signal. Each piece covers a different part of California's requirements.

Here is what belongs on the page:

  • A clear title: "Do Not Sell or Share My Personal Information" so shoppers recognize it instantly.
  • Plain explanation: A short description of what opting out does and what data is involved.
  • An opt-out control: A toggle, button, or form that submits the request with minimal friction.
  • GPC recognition: Support for the browser Global Privacy Control signal as an automatic opt-out.
  • A footer link: A visible link, usually in the footer, so the page is easy to find sitewide.

A quick example shows how it flows. A shopper in California scrolls to your footer, clicks "Do Not Sell or Share My Personal Information," and flips the opt-out toggle. From that point, your marketing pixels stop sharing their data with ad networks.

The Global Privacy Control piece matters because California treats it as a valid opt-out on its own. If a shopper's browser sends the GPC signal, your OpoShop store should honor it automatically, even before they visit the page.

How to add a do not sell page to your store

The best approach is to create the page, wire it to your consent tool, add the footer link, and confirm the opt-out actually stops sharing. Do it in that order so nothing is left unconnected.

1
Create the page
Add a dedicated page titled Do Not Sell or Share My Personal Information with a plain explanation.
2
Add an opt-out control
Place a clear toggle or form so shoppers can submit the request in one step.
3
Connect it to your pixels
Wire the opt-out to your consent app so accepting it actually stops marketing data sharing.
4
Link it in the footer
Add a visible footer link so the page is reachable from every part of your store.
5
Honor the GPC signal
Configure your store to treat the browser Global Privacy Control signal as an automatic opt-out.

Here is what those steps look like in practice.

1. Build the page and the opt-out control

Create a new page in your OpoShop store titled "Do Not Sell or Share My Personal Information." Keep the copy short and plain: explain that shoppers can opt out of the sale or sharing of their data, then place the opt-out control right there.

The control should be simple. A single toggle or a short form beats a long process. The less friction, the more likely the opt-out actually works for the shopper who wants it.

2. Wire the opt-out to your marketing pixels

This is the step that makes the page real. Connect the opt-out to your consent app so that flipping it switches off the marketing category for that visitor. Their data stops flowing to ad networks.

Without this connection, the page is theater. In your OpoShop store, the consent app is what carries the opt-out signal to the pixels, so the request changes behavior instead of just being logged.

3. Link it in the footer and turn on GPC

Add a visible footer link so the page appears on every page of your store. California expects the opt-out to be easy to find, and the footer is the standard spot.

Then enable Global Privacy Control recognition. When a browser sends the GPC signal, your store should treat it as an opt-out automatically. That way you honor the right even for shoppers who never click the footer link.

There are three ways stores handle the do not sell requirement, and they differ sharply in whether they actually work. Only the connected setups hold up.

ApproachWhat it coversCompliance statusWatch-out
Standalone page onlyA form or notice with no pixel connectionFails, sharing continuesLooks compliant but changes nothing
Page plus consent appOpt-out that stops marketing pixelsMeets the core requirementNeeds correct pixel mapping
Page plus app plus GPCOpt-out and automatic browser signalFully aligned with CPRA expectationsRequires GPC recognition enabled

The standalone page is the common trap. It has the right title and a form, but nothing behind it, so data keeps flowing after the shopper opts out. That is not compliance.

The page-plus-app setup is the real baseline. The opt-out reaches the pixels and stops the sharing, which is what the law actually cares about.

The page-plus-app-plus-GPC setup is the strongest. It handles both the manual opt-out and the automatic browser signal California recognizes. For a OpoShop store selling into California, that combination covers the requirement fully.

See how the opt-out works

Common mistakes with do not sell pages

Most do not sell mistakes come from building the page and forgetting the plumbing behind it.

The first mistake is a disconnected page. A form that submits nowhere while pixels keep firing is the most common failure. The opt-out has to actually stop the sharing.

The second mistake is hiding the link. If the page is buried and not in the footer, shoppers cannot find it. California expects the opt-out to be easy to reach from anywhere on the site.

The third mistake is ignoring GPC. The Global Privacy Control signal is a valid opt-out on its own, and a store that ignores it is out of step with current expectations. Honor the signal automatically.

The fourth mistake is confusing wording. If a shopper cannot tell whether flipping the toggle opts them in or out, the choice is unclear. Keep the language plain in your OpoShop store so the action is obvious.

The fifth mistake is set-and-forget. New pixels can reopen data sharing that the opt-out does not cover. A quick check when you add tools keeps the opt-out honest as your store changes.

What we recommend for [OpoShop](https://oposhop.io) merchants

For OpoShop merchants selling to California shoppers, we recommend a dedicated page wired to a consent app, a visible footer link, and GPC recognition turned on. That set covers both the manual and automatic opt-out paths.

Start with three things:

  1. A clearly titled page with a simple opt-out control.
  2. A live connection so the opt-out actually stops marketing pixels.
  3. GPC recognition so browser signals are honored automatically.

That mix satisfies what California rules ask of a typical store. It also keeps the setup low-maintenance, because the consent app carries the signal to the pixels for you.

If a meaningful share of your traffic is Californian, prioritize the pixel connection first, since a disconnected page is the biggest risk. If you sell nationwide, add the page now, because more states are adopting similar opt-out rights.

For many stores, the best do not sell page is the one that quietly does exactly what it says. That is the goal. Not decorative. Functional.

Best answer: You add a do not sell my data page by creating a clearly titled page with a simple opt-out control, wiring it to your consent app so it actually stops marketing pixels, linking it in the footer, and honoring the GPC signal. Set that up in your OpoShop store so the opt-out changes behavior, not just appearances.

If you want a straightforward next step, look at how a consent app connects your opt-out page to the pixels that share data.

Set up your opt-out page

FAQs

Does my small store really "sell" data if I do not charge for it?

Possibly, yes. Under CCPA and CPRA, "sale" and "share" are broad and can include the data your marketing pixels pass to ad networks, even with no money changing hands. If you run a Meta or TikTok pixel, you likely trigger the opt-out requirement.

Where should the do not sell link go on my store?

In the footer, so it appears on every page. California expects the opt-out to be easy to find sitewide, and the footer is the standard, expected location. A buried link that only appears on one page does not meet that expectation.

What is the Global Privacy Control signal?

GPC is a browser setting that automatically tells websites a shopper wants to opt out of data sale or sharing. California treats it as a valid opt-out on its own, so your store should recognize and honor it without the shopper needing to click anything.

Will the opt-out break my analytics too?

Not necessarily. The opt-out targets the sale or sharing of data, which is mostly your marketing pixels. Depending on your setup, analytics can keep running, though many stores group everything non-essential under consent to stay simple and safe.

Do I need this page if I do not sell to California?

If you have no California shoppers, the strict requirement may not apply, but adding the page is still smart. More states are passing similar opt-out laws, and having the mechanism ready keeps your OpoShop store ahead of the expanding patchwork of rules.

How do I know the opt-out actually stopped the sharing?

Test it. Opt out on the page, then open your store in a private window and watch the network tab. Your marketing pixels should stop sending data after the opt-out. If they keep firing, the page is not connected to the pixels yet.

Ready to give California shoppers a real opt-out? Set up the page where you already sell.

Add the opt-out now

Ready to dive in?

Learn more