Privacy Policy

# MagSnap Case Co. — Privacy Policy (GDPR + California)
_Last updated: 26 September 2025_

## Who we are & contact
Data Controller: **Nail Erden (self‑employed, Latvia)**, **Eduarda Smiļģa iela 5A, nr:2, Riga, LV‑1002**, Reg. No. **32767844548**. Email: **nailerden04@gmail.com**.

## What we collect
• Identification & contact data: name, email, phone, shipping/billing addresses.  
• Order & payment data: order details, payment status, last 4 digits of card (we do **not** store full card numbers).  
• Device/usage data: IP address, device identifiers, pages viewed, referring URLs.  
• Marketing preferences & communications.

## Sources
Directly from you; automatically via cookies/pixels; and from payment, fraud‑prevention, and shipping providers.

## Why we process your data (GDPR Art. 6)
• **Perform a contract:** process orders, payments, delivery, and support.  
• **Legitimate interests:** site security, fraud prevention, analytics, service improvement, limited direct marketing to existing customers.  
• **Consent:** email marketing where required; analytics/advertising cookies in the EEA/UK; sharing for “targeted advertising” in some jurisdictions.  
• **Legal obligations:** tax, accounting, and compliance.

## Retention
We keep data only as long as necessary for the purposes above (typically up to **6 years** for transaction records or as required by law), then delete or anonymize.

## Sharing
• **Processors:** payment providers (e.g., Stripe, PayPal), fraud‑prevention tools, fulfillment/warehousing partners, carriers, email/SMS platforms, analytics/ads platforms.  
• **Legal:** to comply with law or lawful requests.  
We do **not** sell personal information for money. We may **“share”** personal information for cross‑context behavioral advertising; see **Your Rights (California)** below.

## International transfers
Your data may be transferred outside the EEA (e.g., to the United States). We rely on safeguards such as Standard Contractual Clauses and provider adequacy mechanisms.

## Your rights (EEA/UK – GDPR)
You have the right to **access**, **rectify**, **erase**, **restrict**, **port**, and **object** (including to direct marketing). You may **withdraw consent** at any time. To exercise your rights, email **nailerden04@gmail.com**. You can also lodge a complaint with your local supervisory authority.

## Your rights (California – CPRA)
California residents can request to **know**, **delete**, and **correct** personal information and to **opt‑out of the sale or sharing** of personal information for cross‑context behavioral advertising. Use our footer link **“Do Not Sell or Share My Personal Information”** or email **nailerden04@gmail.com**. Authorized agents may submit requests. We will not discriminate against you for exercising your rights.

## Cookies & tracking
We use necessary cookies (site functionality), performance/analytics cookies, and advertising cookies/pixels. In the EEA/UK, we obtain consent for non‑essential cookies. Manage preferences via our cookie banner or your browser settings. See the Cookie Policy for details.

## Children
We do not knowingly collect data from children under 13.

## Security
We use appropriate technical and organizational measures to protect personal data. No system is 100% secure.

## Changes
We may update this policy; the “Last updated” date will change.