Privacy Policy (GDPR & CCPA Compliant)
**Effective Date:** [01/12/2025]
1. Introduction
This Privacy Policy explains how we collect, use, disclose, and protect your personal data in compliance with:
* The **General Data Protection Regulation (GDPR)** (EU/EEA)
* The **California Consumer Privacy Act (CCPA/CPRA)** (United States)
2. Personal Data We Collect
We may collect the following categories of personal data:
* Identifiers (name, email address, shipping address, IP address)
* Commercial information (order history, transaction details)
* Internet activity (browser type, pages visited, device data)
We do not knowingly collect data from children under 13.
3. Legal Basis for Processing (GDPR)
We process personal data based on one or more of the following legal grounds:
* Performance of a contract (order fulfillment)
* Consent (marketing communications, cookies)
* Legal obligation
* Legitimate business interests
4. How We Use Your Data
Your data is used to:
* Process and deliver orders
* Provide customer support
* Communicate order updates
* Improve website functionality
* Comply with legal requirements
5. Data Sharing
We do **not sell** personal data.
We may share data with trusted third parties such as:
* Payment processors
* Shipping and logistics providers
* Website hosting and analytics providers
These parties process data only as necessary and are contractually obligated to protect it.
6. Cookies and Tracking
We use cookies and similar technologies to:
* Enable essential website functions
* Analyze traffic and usage
You can manage or disable cookies through your browser settings.
7. Your Rights (GDPR)
If you are located in the EU/EEA, you have the right to:
* Access your personal data
* Correct inaccurate data
* Request deletion of your data
* Restrict or object to processing
* Data portability
* Withdraw consent at any time
8. Your Rights (CCPA/CPRA)
If you are a California resident, you have the right to:
* Know what personal data we collect and why
* Request access to your data
* Request deletion of your data
* Opt out of the sale or sharing of personal data (we do not sell data)
* Not be discriminated against for exercising your rights
9. Data Retention
We retain personal data only as long as necessary to fulfill the purposes outlined in this policy or as required by law.
10. Data Security
We implement reasonable technical and organizational measures to protect your data. However, no online transmission is completely secure.
11. International Transfers
If you are located outside our operating country, your data may be transferred and processed in jurisdictions with different data protection laws. We take steps to ensure appropriate safeguards are in place.
12. Changes to This Policy
We may update this Privacy Policy from time to time. Updates will be posted on this page with a revised effective date.
13. Contact Us
To exercise your privacy rights or ask questions, contact us at:
Email: [support@shop.ooxle.com]