Правила за повелителност

1. Introduction

Terralox ("we", "us", "our") is committed to protecting your personal data in full compliance with the General Data Protection Regulation (GDPR – EU 2016/679) and applicable national data protection laws.

This Privacy Policy explains how we collect, use, store, and protect your personal information when you visit terralox.eu or make a purchase from our store.

Data Controller: Terralox Contact: support@terralox.eu

2. Data We Collect and Why

We collect only the minimum data necessary to operate our store and serve you effectively:

2.1 Order & Transaction Data

       Name, email address, phone number, delivery address

       Products purchased, order value, delivery status

       Cash on Delivery (COD) collection records

Purpose: To fulfill your purchase, coordinate delivery, and manage our accounts.

2.2 Delivery Interaction Data

       Delivery attempts, acceptance and refusal records

Purpose: To manage logistics and protect against repeated fraudulent refusals, based on our legitimate interest under GDPR Art. 6(1)(f).

2.3 Technical Data

       IP address, browser type, pages visited

Purpose: For store security and, with your consent, analytics.

2.4 Communications Data

       Support emails and order queries

Purpose: To respond to your requests.

3. Legal Basis for Processing (GDPR Art. 6)

       Contract performance (Art. 6(1)(b)): fulfilling and delivering your order

       Legal obligation (Art. 6(1)(c)): retaining transaction records as required by tax and accounting law

       Legitimate interests (Art. 6(1)(f)): recording COD delivery refusal history to protect against fraudulent use

       Consent (Art. 6(1)(a)): analytics cookies and marketing communications, which you can withdraw at any time



4. Data Sharing

We share only the minimum data necessary for each purpose:

       Courier and delivery partners: name, phone, delivery address, and COD amount for delivery and payment collection

       Shopify Inc. (our platform provider, US-based, covered by the EU–US Data Privacy Framework): order and store data for platform operation

       Accounting and legal advisors: transaction records as required by law

We do not sell your personal data to any third party.

5. International Data Transfers

Some of our service providers are based outside the European Economic Area (EEA). Where this occurs, we ensure appropriate safeguards are in place, such as:

       EU–US Data Privacy Framework (Shopify Inc.)

       Standard Contractual Clauses (SCCs) approved by the European Commission

6. Data Retention

       Order and transaction data: 7 years (legal/tax requirement)

       Delivery interaction data: 12 months from the date of the last order

       Analytics data: as per cookie consent settings (typically 13 months)

       Support communications: 2 years from resolution

After the applicable retention period, your data is securely deleted or anonymised.

7. Your Rights Under GDPR

As a data subject in the EU/EEA, you have the following rights:

       Right of access: request a copy of the data we hold about you

       Right to rectification: correct inaccurate or incomplete data

       Right to erasure ("right to be forgotten"): request deletion of your data, subject to legal retention requirements

       Right to restriction: limit how we process your data

       Right to data portability: receive your data in a machine-readable format

       Right to object: object to processing based on legitimate interests or for direct marketing

       Right to withdraw consent: at any time, without affecting prior processing

To exercise any of these rights, please contact us at: support@terralox.eu

We will respond within 30 days. You also have the right to lodge a complaint with your local data protection authority.

8. Cookies

We use cookies to ensure the store functions correctly and, with your consent, to analyse traffic and personalise your experience.

Essential cookies

Required for the store to operate (cart, checkout, security). These cannot be disabled.

Analytics cookies

Used to understand how visitors interact with our store (e.g. Google Analytics). Only enabled with your consent.

Marketing cookies

Used to deliver relevant advertisements. Only enabled with your consent.

You can manage your cookie preferences at any time via the cookie banner on our website or your browser settings.

9. Data Security

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse. These include SSL encryption, access controls, and secure payment processing via Shopify.

10. Children's Privacy

Our store is not directed at children under the age of 16. We do not knowingly collect personal data from minors. If you believe a child has provided us with personal data, please contact us and we will promptly delete it.


11. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. For significant changes, we will notify you by email or a prominent notice on our website.


12. Contact Us

If you have any questions, concerns, or requests regarding your personal data, please contact us:

       Email: support@terralox.eu

       Website: terralox.eu