Privacy policy

PRIVACY POLICY

1. DATA CONTROLLER

This Privacy Policy describes how Naturalsheepskinrug.com ("we," "us," or "our") collects, uses, and protects your personal information.

Data Controller: Magdalena Kozielec Os. Mastalerze 33a 34-451 Tylmanowa, Poland Tax ID (NIP): 5170327777 Email: info@naturalsheepskinrug.com

2. INFORMATION WE COLLECT

We collect the following types of personal information:

a) Information you provide:

  • Name and contact details (email address)
  • Shipping address
  • Phone number (shared only with courier for delivery purposes)
  • Payment information (processed securely by our payment providers)
  • Order history and purchase details
  • Product reviews and comments (via Judge.me)

b) Information collected automatically:

  • Browsing behavior and website usage data via cookies
  • IP address and device information
  • Analytics data through Google Analytics/GA4 and Facebook Pixel

3. HOW WE USE YOUR INFORMATION

We use your personal data for the following purposes:

  • Order processing and fulfillment: To process your orders, arrange shipping via FedEx Express (3-5 days delivery), and communicate about your purchase
  • Payment processing: To process payments through Shopify Payments and PayPal
  • Customer service: To respond to your inquiries and provide support
  • Marketing communications: To send promotional emails via Shopify Email (with your consent)
  • Advertising: To run targeted advertising campaigns on Facebook and Google
  • Analytics: To understand how visitors use our website and improve our services
  • Reviews: To collect and display authentic customer reviews through Judge.me

4. LEGAL BASIS FOR PROCESSING (GDPR)

We process your personal data based on:

  • Contract performance: Processing necessary to fulfill your order
  • Consent: For marketing emails, cookies, and advertising (you can withdraw consent at any time)
  • Legitimate interests: For fraud prevention, analytics, and business operations
  • Legal obligation: For tax and accounting purposes

5. COOKIES AND TRACKING TECHNOLOGIES

We use cookies and similar technologies:

  • Essential cookies: Required for website functionality and checkout process
  • Analytics cookies: Google Analytics/GA4 to understand website usage
  • Marketing cookies: Facebook Pixel for targeted advertising and remarketing
  • Functional cookies: To remember your preferences

You can manage cookie preferences through your browser settings.

6. DATA SHARING AND THIRD PARTIES

We do not sell your personal data. We share information only with trusted service providers:

  • Shopify: Our e-commerce platform (hosting and order management)
  • Payment processors: Shopify Payments and PayPal (for secure payment processing)
  • Shipping carrier: FedEx Express (name, address, and phone number for delivery only)
  • Marketing platforms: Shopify Email, Facebook, and Google (for advertising campaigns)
  • Analytics: Google Analytics/GA4 (for website analytics)
  • Review platform: Judge.me (for collecting and displaying customer reviews)

These providers process data on our behalf and are contractually obligated to protect your information.

7. INTERNATIONAL DATA TRANSFERS

Some of our service providers (e.g., Shopify, Google, Facebook) may process data outside the European Economic Area (EEA). We ensure appropriate safeguards are in place, including Standard Contractual Clauses and adequacy decisions.

8. DATA RETENTION

We retain your personal data for as long as necessary to fulfill the purposes outlined in this policy, or as required by Shopify's data retention practices and applicable law. Typically:

  • Order and customer data: Retained in accordance with Shopify's retention policy
  • Marketing data: Until you unsubscribe or withdraw consent
  • Analytics data: Aggregated and anonymized after the retention period

9. YOUR RIGHTS (GDPR)

Under GDPR, you have the following rights:

  • Right to access: Request a copy of your personal data
  • Right to rectification: Correct inaccurate or incomplete data
  • Right to erasure: Request deletion of your data ("right to be forgotten")
  • Right to restriction: Limit how we use your data
  • Right to data portability: Receive your data in a structured format
  • Right to object: Object to processing based on legitimate interests or for marketing purposes
  • Right to withdraw consent: Withdraw consent for marketing or cookies at any time

To exercise your rights, contact us at info@naturalsheepskinrug.com

10. DATA SECURITY

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, loss, or misuse. However, no method of transmission over the internet is 100% secure.

11. CHILDREN'S PRIVACY

Our website is not intended for children under 16. We do not knowingly collect personal data from children.

12. CHANGES TO THIS POLICY

We may update this Privacy Policy from time to time. The "Last updated" date at the top indicates when changes were made. Continued use of our website constitutes acceptance of the updated policy.

13. CONTACT US

For questions about this Privacy Policy or to exercise your rights, contact us:

Email: info@naturalsheepskinrug.com Address: Magdalena Kozielec, Os. Mastalerze 33a, 34-451 Tylmanowa, Poland

14. SUPERVISORY AUTHORITY

If you believe we have not handled your data properly, you have the right to lodge a complaint with the Polish data protection authority: