This Privacy Policy explains how Deiss Limited (“Deiss,” “we,” “us,” or “our”) collects, uses, discloses, and protects personal information when you visit or make a purchase from https://deiss.co/ (the “Site”), or otherwise interact with us (collectively, the “Services”).
If you do not agree with this Privacy Policy, please do not use the Services.
1) Who We Are
Controller (for GDPR purposes): Deiss Limited
Registered address: Agiou Pavlou & Kadmou, 2, WISDOM TOWER, 3rd floor, 1105, Nicosia, Cyprus
Email: [email protected]
2) Personal Information We Collect
We collect personal information from you, automatically from your device, and from third parties.
A) Information you provide directly
When you use the Services, we may collect:
- Contact and identity details: name, email address, phone number (if provided).
- Order and account details: items purchased, order history, account credentials (if you create an account), and communications preferences.
- Billing and shipping details: billing address and shipping address.
- Customer support communications: messages you send us (e.g., by email or via contact forms).
B) Information collected automatically
When you access the Site, we may automatically collect:
- Device and usage data: IP address, browser type, device identifiers, operating system, pages viewed, actions taken, referring URLs, and timestamps.
- Cookie and similar technology data: identifiers and event data collected via cookies and similar technologies (see Section 6).
C) Information from third parties
We may receive information from:
- Payment processors (Stripe): confirmation of payment status and transaction-related details (e.g., payment success/failure, transaction identifiers).
- Fulfillment and shipping providers (Amazon): delivery status, tracking details, and fulfillment-related updates.
- Analytics providers (Google Analytics): aggregated or event-level data about Site usage.
3) How We Use Personal Information
We use personal information to:
- Provide the Services and fulfill orders (process purchases, provide order confirmations, deliver products, handle returns/refunds where applicable).
- Process payments and prevent fraud (including transaction security and verification).
- Provide customer support and respond to inquiries.
- Operate, maintain, and improve the Site (performance monitoring, debugging, analytics, and user experience improvements).
- Comply with legal obligations (e.g., accounting, tax, and regulatory requirements).
- Protect rights and safety (security monitoring, abuse prevention, and enforcement of our terms).
4) Legal Bases for Processing (EEA/UK and Similar Jurisdictions)
If you are located in the European Economic Area (EEA) or the United Kingdom, we process personal data under one or more of the following legal bases:
- Performance of a contract: to process and deliver your order and provide the Services.
- Legitimate interests: to operate and improve the Site, secure the Services, prevent fraud, and maintain customer relationships (balanced against your rights).
- Consent: where required, for non-essential cookies/analytics and certain marketing communications.
- Legal obligation: to comply with applicable laws (e.g., tax and accounting).
5) How We Share Personal Information
We may share personal information with trusted third parties only as needed to operate our business and provide the Services, including:
A) Fulfillment and shipping (Amazon)
We share shipping and order information (such as your name, shipping address, phone number if provided, and order contents needed for fulfillment) with Amazon for fulfillment, delivery, and shipping support.
B) Payment processing (Stripe)
Payments are processed by Stripe. When you submit payment information, it is collected and processed directly by Stripe in accordance with Stripe’s privacy practices. We generally do not store full payment card numbers on our servers; we may receive limited information such as payment status, card brand, and a transaction reference.
C) Legal and business transfers
We may disclose information if required by law or to protect rights and safety, and in connection with a business transaction (e.g., merger, acquisition, reorganization, or asset sale).
6) Cookies and Google Analytics
We use cookies and similar technologies to operate the Site and to understand how visitors use the Site.
Google Analytics
We use Google Analytics to collect information about Site traffic and usage (e.g., pages visited, session duration, interactions). Google Analytics may use cookies or similar technologies.
Your choices: You can manage cookies through your browser settings. If you disable certain cookies, parts of the Site may not function as intended.
7) International Data Transfers
Because we serve customers in the EU and the United States, your personal information may be processed in countries outside your country of residence, including the United States, where some of our service providers (such as Stripe and Google) may process data.
Where required by applicable law (including GDPR), we implement appropriate safeguards for international transfers, such as contractual protections (e.g., Standard Contractual Clauses) and other measures as applicable.
8) Data Retention
We keep personal information only as long as necessary for the purposes described in this Privacy Policy, including to provide the Services, comply with legal obligations, resolve disputes, and enforce agreements.
Typical retention periods may include:
- Order and transaction records: typically retained for 7 years for accounting/tax and compliance purposes.
- Account information (if applicable): typically retained while the account remains active and for up to 2 years after the last activity or account closure (unless a longer period is required for legal/compliance reasons).
- Customer support communications: typically retained for up to 2 years after the matter is closed.
- Analytics data: typically retained for up to 26 months, depending on configuration and legal requirements.
We may retain information for longer periods where required by law, necessary to establish or defend legal claims, or needed for fraud prevention and security purposes.
9) Security
We maintain reasonable administrative, technical, and organizational measures designed to protect personal information. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.
10) Your Rights and Choices
A) EEA/UK rights (GDPR)
If you are in the EEA/UK, you may have the right to:
- request access to your personal data,
- request correction of inaccurate data,
- request deletion (where applicable),
- request restriction of processing,
- object to processing (including some processing based on legitimate interests),
- request data portability, and
- withdraw consent (where processing is based on consent).
You may also lodge a complaint with your local data protection authority.
B) U.S. privacy rights (state laws)
Depending on your U.S. state of residence, you may have rights to access, correct, delete, or receive a copy of certain personal information, and to opt out of certain forms of processing (such as targeted advertising, where applicable).
Do we sell personal information? We do not sell personal information for money in the ordinary commercial sense.
C) Marketing communications
If we send marketing emails, you can opt out at any time by using the unsubscribe link in the email or contacting us at [email protected]. You may still receive transactional messages (e.g., order confirmations and shipping updates).
D) How to exercise your rights
To submit a request, contact [email protected] with the subject line “Privacy Request”. We may need to verify your identity before fulfilling your request.
11) Children’s Privacy
The Services are not intended for children under 16 years of age. We do not knowingly collect personal information from children. If you believe a child has provided personal information to us, contact us at [email protected], and we will take appropriate steps to delete such information.
12) Third-Party Links
The Site may contain links to third-party websites or services. We are not responsible for the privacy practices of those third parties. Please review their privacy policies before providing them personal information.
13) Changes to This Privacy Policy
We may update this Privacy Policy from time to time. The “Last updated” date indicates when it was most recently revised. Changes become effective when posted on the Site.
14) Contact Us
Deiss Limited
Agiou Pavlou & Kadmou, 2, WISDOM TOWER, 3rd floor, 1105, Nicosia, Cyprus
Email: [email protected]