Privacy Policy

Privacy Policy (GDPR Compliant) Effective Date: [01.04.2025] 1. Introduction steph_and_yoga ("we", "us", or "our") is committed to protecting your personal data and your privacy rights. This privacy policy explains how we collect, use, store, and share your personal data when you use our services in accordance with the General Data Protection Regulation (GDPR) (EU) 2016/679. 2. Data Controller steph_and_yoga Roonstr. 24, 12203 Berlin, Germany [email protected] 3. What Data We Collect We may collect and process the following categories of personal data: Name Email address Phone number Billing and shipping address Payment details (processed securely via third-party services) IP address Browser type and operating system Website usage data (e.g., cookies, analytics) 4. How We Use Your Data We process your data for the following purposes: To fulfill and manage your orders or services To communicate with you (e.g., order updates, customer support) To send marketing emails (with your consent) To improve our services and website To comply with legal obligations 5. Legal Basis for Processing We rely on one or more of the following legal bases under GDPR: Your consent (Article 6(1)(a)) Performance of a contract (Article 6(1)(b)) Compliance with legal obligations (Article 6(1)(c)) Our legitimate interests (Article 6(1)(f)) 6. Sharing Your Data We only share your data with trusted third-party service providers, such as: Payment processors (e.g., Stripe, PayPal) Email marketing platforms (e.g., Brevo) Analytics providers (e.g., Google Analytics) Web hosting and IT support providers We ensure these third parties comply with GDPR and protect your data. 7. International Transfers If we transfer your data outside the European Economic Area (EEA), we will ensure appropriate safeguards are in place, such as: EU Standard Contractual Clauses Transfers to countries with an adequacy decision by the European Commission 8. Data Retention We retain personal data only for as long as necessary: For the purposes stated above To comply with legal and accounting obligations For the resolution of disputes 9. Your Rights Under GDPR You have the following rights: Access your data Rectify inaccurate data Erase your data ("right to be forgotten") Restrict or object to processing Data portability Withdraw consent at any time Lodge a complaint with a supervisory authority To exercise these rights, contact us at [Your Email]. 10. Cookies and Tracking We use cookies and similar technologies to enhance your experience. You can manage cookie preferences through your browser settings or our website's cookie banner. 11. Security We take appropriate technical and organizational measures to secure your data from unauthorized access, disclosure, alteration, or destruction. 12. Changes to This Policy We may update this privacy policy occasionally. The latest version will always be posted on our website with the date of revision. 13. Contact Us If you have any questions or concerns about this policy or your data, contact: Stephanie Graf steph_and_yoga [email protected] Roonstr. 24, 12203 Berlin, Germany