Privacy Policy
Last updated: 2026-05-17
1. Introduction
This Privacy Policy describes how [Business Name] ("we", "our", or "us") collects, uses, and shares your personal information when you use our website at [Website URL], our services, or otherwise interact with us.
We process this data to fulfill orders, ship products, handle returns, and improve your shopping experience.
By using our website or services, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use our website or services.
2. Information we collect
2.1 Information you provide to us
We collect information you give us directly, including:
- Shipping and billing addresses
- Order history and items purchased
- Payment card information (processed by our payment provider, see below — we do not store full card numbers on our servers)
- Gift card balances and store credit
- Wishlist contents and saved products
- Product reviews and ratings you submit
- Payment information (processed by our payment provider — see Section 4 below; we do not store full card numbers on our servers)
2.2 Information collected automatically
When you use our website, we automatically collect certain information through cookies and similar technologies:
- Usage data: pages visited, time spent on each page, referring URL, search terms used to find us
- Device data: IP address, browser type and version, operating system, device type, screen resolution
- Cookie data: see Section 5 (Cookies) below for details
3. How we use your information
We use the information we collect to:
- Process and fulfill your orders
- Calculate applicable sales tax
- Detect and prevent fraudulent transactions
- Send order confirmations, shipping updates, and delivery notifications
- Process returns, refunds, and warranty claims
- Understand how visitors use our website so we can improve it
- Comply with legal obligations and respond to lawful requests
4. How we share your information
We share your information with the following categories of third parties:
4.1 Service providers
We share information with third-party service providers who help us operate our business. These providers are contractually required to use your information only for the purposes we specify and to protect it appropriately:
- Payment processors (e.g. Stripe, PayPal) — handle card data per PCI-DSS requirements
- Shipping carriers (e.g. USPS, FedEx, DHL) — receive name + shipping address to deliver orders
- Tax compliance services (e.g. TaxJar, Avalara) — receive transaction data for sales tax calculation
- Fraud prevention services — receive order metadata + IP for risk scoring
4.2 Legal compliance and rights protection
We may disclose your information if required by law (e.g. in response to a court order, subpoena, or government request) or if we believe disclosure is necessary to protect our rights, property, or safety, or that of our users or others.
4.3 Business transfers
If we are involved in a merger, acquisition, or sale of all or a portion of our assets, your information may be transferred as part of that transaction. We will notify you (e.g. via email and/or a notice on our website) of any such change and the choices you may have.
4.4 We do not sell your personal information
We do not sell your personal information to third parties for monetary consideration.
5. Cookies and similar technologies
We use cookies and similar tracking technologies to operate our website, remember your preferences, and analyze how visitors use our site. The categories of cookies we use:
- Strictly necessary cookies — required for the website to function (e.g. session cookies, security cookies). These cannot be disabled.
- Functional cookies — remember your preferences (language, region, accessibility settings).
- Analytics cookies — help us understand how visitors use the site (which pages, how long, what search terms led them here).
You can manage cookies through your browser settings. Disabling certain cookies may affect website functionality.
6. Data retention
We retain your personal information for as long as necessary to provide our services, comply with legal obligations, resolve disputes, and enforce our agreements.
Order records are retained for 7 years to comply with tax and accounting regulations. Shipping addresses are retained as long as your account is active and for 1 year after closure for return/warranty support.
Once these periods expire, we securely delete or anonymize your information.
7. Your privacy rights
Depending on where you live, you may have certain rights regarding your personal information:
- Right to access — request a copy of the personal information we hold about you
- Right to correction — request that we correct inaccurate information
- Right to deletion — request that we delete your personal information (subject to certain exceptions)
- Right to portability — request a portable copy of your data in a machine-readable format
- Right to opt out — of marketing communications, certain types of data sharing, and (where applicable) the "sale" of personal information
To exercise any of these rights, contact us at the email address below. We will respond within the time period required by applicable law (typically 30–45 days).
If you are located in California, you have specific rights under the CCPA/CPRA, including the right to know what personal information we collect about you and to request its deletion. EU/UK customers have rights under GDPR including data portability and the right to be forgotten. Contact us at the email below to exercise any of these rights.
8. Children's privacy
Our services are not directed to children under 13 (or under 16 in the EU/UK). We do not knowingly collect personal information from children in those age groups. If you believe we have collected information from a child, please contact us at the email below and we will delete it promptly.
9. Changes to this policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will notify you by updating the "Last updated" date at the top of this policy and, where appropriate, by other means (e.g. email or a notice on our website).
We encourage you to review this policy periodically.
10. Contact us
If you have questions about this Privacy Policy or want to exercise any of your privacy rights, please contact us at:
[Business Name]
Email: [contact@example.com]
Website: [Website URL]
This policy was generated using the Lokuma Free Privacy Policy Generator. It is a starting template, not legal advice. Have it reviewed by a qualified lawyer in your jurisdiction before publishing — especially if your industry is regulated (health, finance, children's services) or if you operate across multiple countries.