Правила за повелителност
1. Introduction
Terralox ("we", "us", "our") is committed to protecting your personal data in full compliance with the General Data Protection Regulation (GDPR – EU 2016/679) and applicable national data protection laws.
This Privacy Policy explains how we collect, use, store, and protect your personal information when you visit terralox.eu or make a purchase from our store.
Data Controller: Terralox Contact: support@terralox.eu
2. Data We Collect and Why
We collect only the minimum data necessary to operate our store and serve you effectively:
2.1 Order & Transaction Data
• Name, email address, phone number, delivery address
• Products purchased, order value, delivery status
• Cash on Delivery (COD) collection records
Purpose: To fulfill your purchase, coordinate delivery, and manage our accounts.
2.2 Delivery Interaction Data
• Delivery attempts, acceptance and refusal records
Purpose: To manage logistics and protect against repeated fraudulent refusals, based on our legitimate interest under GDPR Art. 6(1)(f).
2.3 Technical Data
• IP address, browser type, pages visited
Purpose: For store security and, with your consent, analytics.
2.4 Communications Data
• Support emails and order queries
Purpose: To respond to your requests.
3. Legal Basis for Processing (GDPR Art. 6)
• Contract performance (Art. 6(1)(b)): fulfilling and delivering your order
• Legal obligation (Art. 6(1)(c)): retaining transaction records as required by tax and accounting law
• Legitimate interests (Art. 6(1)(f)): recording COD delivery refusal history to protect against fraudulent use
• Consent (Art. 6(1)(a)): analytics cookies and marketing communications, which you can withdraw at any time
4. Data Sharing
We share only the minimum data necessary for each purpose:
• Courier and delivery partners: name, phone, delivery address, and COD amount for delivery and payment collection
• Shopify Inc. (our platform provider, US-based, covered by the EU–US Data Privacy Framework): order and store data for platform operation
• Accounting and legal advisors: transaction records as required by law
We do not sell your personal data to any third party.
5. International Data Transfers
Some of our service providers are based outside the European Economic Area (EEA). Where this occurs, we ensure appropriate safeguards are in place, such as:
• EU–US Data Privacy Framework (Shopify Inc.)
• Standard Contractual Clauses (SCCs) approved by the European Commission
6. Data Retention
• Order and transaction data: 7 years (legal/tax requirement)
• Delivery interaction data: 12 months from the date of the last order
• Analytics data: as per cookie consent settings (typically 13 months)
• Support communications: 2 years from resolution
After the applicable retention period, your data is securely deleted or anonymised.
7. Your Rights Under GDPR
As a data subject in the EU/EEA, you have the following rights:
• Right of access: request a copy of the data we hold about you
• Right to rectification: correct inaccurate or incomplete data
• Right to erasure ("right to be forgotten"): request deletion of your data, subject to legal retention requirements
• Right to restriction: limit how we process your data
• Right to data portability: receive your data in a machine-readable format
• Right to object: object to processing based on legitimate interests or for direct marketing
• Right to withdraw consent: at any time, without affecting prior processing
To exercise any of these rights, please contact us at: support@terralox.eu
We will respond within 30 days. You also have the right to lodge a complaint with your local data protection authority.
8. Cookies
We use cookies to ensure the store functions correctly and, with your consent, to analyse traffic and personalise your experience.
Essential cookies
Required for the store to operate (cart, checkout, security). These cannot be disabled.
Analytics cookies
Used to understand how visitors interact with our store (e.g. Google Analytics). Only enabled with your consent.
Marketing cookies
Used to deliver relevant advertisements. Only enabled with your consent.
You can manage your cookie preferences at any time via the cookie banner on our website or your browser settings.
9. Data Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse. These include SSL encryption, access controls, and secure payment processing via Shopify.
10. Children's Privacy
Our store is not directed at children under the age of 16. We do not knowingly collect personal data from minors. If you believe a child has provided us with personal data, please contact us and we will promptly delete it.
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. For significant changes, we will notify you by email or a prominent notice on our website.
12. Contact Us
If you have any questions, concerns, or requests regarding your personal data, please contact us:
• Email: support@terralox.eu
• Website: terralox.eu