Free shipping · COA per batch
HomePrivacy Policy

Legal

Privacy Policy

Effective date: January 1, 2025 · Last updated: May 2025

1. Information We Collect

When you place an order or create an account we collect: name, email address, shipping address, phone number, and payment information (processed securely via our payment processor — we do not store raw card numbers). We also collect automatically via cookies and analytics: IP address, browser type, pages visited, time on site, and referring URL. This data is used in aggregate to improve the site experience.

2. How We Use Your Information

We use your information to: (a) process and fulfill your orders; (b) send order confirmation and shipping notifications; (c) respond to customer service inquiries; (d) prevent fraud and ensure site security; (e) comply with legal obligations. We do not sell, rent, or trade your personal information to third parties for their marketing purposes.

3. Cookies

We use essential cookies (required for the site to function), analytical cookies (to understand how visitors use the site, via privacy-respecting analytics), and functional cookies (to remember your cart and preferences). You may disable non-essential cookies in your browser settings. Note that disabling essential cookies will affect site functionality.

4. Third-Party Services

We share data with trusted third parties only to the extent necessary to operate our business: payment processors (Stripe), shipping carriers, and analytics providers. Each is bound by their own privacy policies and applicable data protection laws. We do not share your data with advertising networks or social media platforms.

5. Data Retention

We retain order and account data for 7 years to comply with tax and legal requirements. Analytics data is retained in aggregate form only and does not identify individuals. You may request deletion of your personal data at any time (subject to legal retention requirements).

6. Your Rights

Depending on your jurisdiction you may have rights to: access the personal data we hold about you; correct inaccurate data; request deletion of your data; object to or restrict processing; data portability. To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.

7. Security

We use industry-standard security measures including TLS encryption for all data in transit and AES-256 encryption for sensitive data at rest. Our payment processing is PCI-DSS compliant. No method of internet transmission is 100% secure, and we cannot guarantee absolute security.

8. Children's Privacy

Our site is not directed to individuals under 18. We do not knowingly collect personal information from minors. If you believe a minor has provided us with personal information, contact us immediately and we will delete it.

9. Changes to This Policy

We may update this Privacy Policy periodically. The effective date at the top of this page reflects the most recent revision. Continued use of our site after changes are posted constitutes acceptance.

10. Contact

For privacy inquiries: [email protected]. For general inquiries, visit our contact page.