Privacy Policy
Last updated: April 2, 2026
1. Who we are
The data controller for this website is [Your Full Name], residing at [Street Address, Postal Code, City, Italy] (hereinafter "we", "us", or "the Seller").
For any privacy-related enquiry or to exercise your rights, contact us at [privacy@youremail.com] or via WhatsApp at +39 339 624 9230.
2. Data we collect and why
a) Newsletter subscription
When you subscribe to receive product drop notifications, we collect your email address.
This data is transmitted to and processed by Intuit Inc. (Mailchimp) on our behalf.
The legal basis is your freely given consent (GDPR Art. 6(1)(a)).
You may withdraw consent at any time by clicking the unsubscribe link in any email we send.
Your address is removed from our list within 30 days of unsubscription.
b) Purchases via Shopify
When you click "Buy" you are redirected to Shopify's external checkout platform. Shopify Inc.
collects and processes your name, email address, delivery address, and payment details
as an independent data controller. The legal basis for that processing is the performance
of the purchase contract (GDPR Art. 6(1)(b)). We receive only order confirmation data
necessary to manage the transaction. Please refer to
Shopify's Privacy Policy
for full details.
c) Server logs (browsing data)
Our hosting provider automatically logs technical data such as IP addresses, browser type,
pages visited, and access timestamps. This information is used solely for the secure
and correct operation of the website. The legal basis is our legitimate interest
(GDPR Art. 6(1)(f)). Log files are retained for a maximum of 30 days on a rolling basis.
3. Third-party processors
- Shopify Inc. — e-commerce platform (USA). Data transfers are covered by Standard Contractual Clauses (SCC). Shopify Privacy Policy.
- Intuit Inc. (Mailchimp) — email marketing (USA). Data transfers are covered by Standard Contractual Clauses (SCC). Mailchimp Privacy Policy.
- [Hosting provider] — web hosting and server infrastructure.
4. Data retention
We retain personal data only for as long as necessary for the purpose for which it was collected, or as required by applicable law. Newsletter email addresses are deleted upon unsubscription. Order and transaction data held by Shopify is governed by Shopify's own retention policy and Italian fiscal record-keeping obligations.
5. International transfers
Shopify Inc. and Intuit Inc. (Mailchimp) are based in the United States. Transfers of personal data outside the European Economic Area (EEA) are carried out on the basis of Standard Contractual Clauses as adopted by the European Commission (Art. 46 GDPR).
6. Your rights
Under GDPR (Articles 15–21) you have the right to:
- Access the personal data we hold about you;
- Rectify inaccurate or incomplete data;
- Request erasure of your data ("right to be forgotten");
- Restrict or object to certain processing activities;
- Data portability (receive your data in a structured, machine-readable format);
- Withdraw consent at any time, without affecting the lawfulness of prior processing.
To exercise any of the above rights, write to [privacy@youremail.com]. We will respond within 30 days.
You also have the right to lodge a complaint with the Italian supervisory authority: Garante per la protezione dei dati personali (www.garanteprivacy.it).
7. Cookies
This website uses cookies. For detailed information on the cookies set, their purpose, and how to manage them, please read our Cookie Policy.
8. Changes to this policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. We will post the revised version on this page with an updated "Last updated" date. We encourage you to review it periodically.