Privacy policy

Last Updated: April 9, 2025

This Privacy Policy describes how Lasteria collects, uses, and shares your personal data when you visit, use our services, or purchase from lasteria.com or otherwise communicate with us regarding the Website (collectively referred to as the “Services”). The terms "you" and "your" in this Privacy Policy refer to you as the user of the Services, whether you are a customer, website visitor, or another individual about whom we collect information under this Privacy Policy.

We recommend that you read this Privacy Policy carefully.


Changes to This Privacy Policy

We may occasionally update this Privacy Policy, for example, to reflect new practices or for other operational, legal, or regulatory reasons. The revised Privacy Policy will be published on the Website as indicated by the “Last Updated” date, and we will take any other actions required by applicable law.


How We Collect and Use Personal Data

To provide the Services, we collect your personal data from various sources as described below. The types of data we collect and use depend on how you interact with us.

In addition to the specific purposes mentioned below, we may use the information we collect about you to communicate with you, provide or improve the Services, comply with applicable legal obligations, enforce applicable service terms, and protect the Services, our rights, and the rights of others.


What Personal Data We Collect

The types of personal data we collect about you depend on how you interact with our Website and use our Services. When we use the term “personal data,” we mean information that identifies, relates to, describes, or can be linked to you. The sections below describe the categories and specific types of personal data we collect.


Data We Collect Directly From You

Data you provide to us through our Services may include:

  • Contact Information such as your name, address, phone number, and email address.

  • Order Information such as name, billing address, shipping address, payment confirmation, email address, and phone number.

  • Account Information such as username, password, security questions, and other details used to secure your account.

  • Customer Support Information such as information you choose to share when communicating with us, e.g., via our Services.

Some features of the Services may require you to provide certain information. You may choose not to share this information, but doing so might limit your access to those features.


Information We Collect About Your Use

We may also automatically collect certain information about your interaction with the Services (“Usage Data”) using cookies, pixels, and similar technologies ("Cookies"). Usage Data may include information about how you access and use the Website and your account, including device data, browser information, network connection, IP address, and interaction data.


Information We Receive From Third Parties

We may also receive information about you from third parties, including vendors and service providers collecting data on our behalf, such as:

  • Companies supporting our Website and Services, like Shopify.

  • Our payment processors, who collect payment data (e.g., bank account, credit/debit card information, billing address) to process your payment, fulfill your order, and deliver requested products/services.

When you visit our Website, open or click our emails, or interact with our Services or advertisements, we or third-party partners may automatically collect data via tracking technologies like pixels, web beacons, SDKs, third-party libraries, and cookies.

All information received from third parties will be processed according to this Privacy Policy. See also the section Third-Party Websites and Links below.


How We Use Your Personal Data

  • To Provide Products and Services. We use your data to provide you with the Services and fulfill our contract with you, including processing payments, delivering orders, sending account and order updates, creating and managing your account, facilitating returns and exchanges, and other related functions. We may also improve your shopping experience by enabling Shopify to link your account to other Shopify services, which will be subject to Shopify’s privacy and consumer protection policies.

  • Marketing and Advertising. We may use your personal data for marketing and advertising, including sending promotional emails, SMS, and mail, and displaying product or service ads. This may involve customizing our Services and advertising on our and others’ websites. If you reside in the EEA, the legal basis is our legitimate interest in promoting our products under Article 6(1)(f) of the GDPR.

  • Security and Fraud Prevention. We use your personal data to detect and prevent fraud, illegal activity, or harm. If you create an account, you are responsible for maintaining the confidentiality of your login information. Contact us immediately if you believe your account has been compromised. In the EEA, the legal basis for this processing is our legitimate interest in securing our Website under Article 6(1)(f) GDPR.

  • Communication and Service Improvement. We use your data to provide support and improve the Services. This is a legitimate interest that enables us to respond effectively and maintain our business relationship with you, under Article 6(1)(f) GDPR.


Cookies

Like many websites, we use cookies. For details on the cookies we use through Shopify, see: https://www.shopify.com/legal/cookies.
Cookies help operate and improve our Website and Services, store preferences, perform analytics, and tailor content. We may allow third-party services to use cookies for tailored advertising and improved service.

Most browsers accept cookies by default, but you can modify your browser settings to delete or reject them. Blocking cookies may negatively affect your experience and disable some Website functions. Blocking cookies may not fully prevent third-party data sharing (e.g., with ad partners).


How We Share Personal Data

We may share your personal data under certain circumstances, including:

  • With vendors or third parties performing services on our behalf (e.g., IT management, payment processing, analytics, support, delivery).

  • With business and marketing partners to deliver services and advertising.

  • With your consent, such as sharing data for product delivery or social media integrations.

  • Within our corporate group as part of our legitimate interest in managing the business.

  • In connection with business transactions (e.g., mergers or bankruptcies), legal obligations (e.g., subpoenas), enforcement of terms, or protection of rights.

We disclose personal data in the following categories and for the purposes described above:

Category Recipient Categories
Identifiers (e.g., contact, order, and account info) Vendors, service providers, affiliates, business/marketing partners
Commercial information (e.g., orders, shopping, support) Same as above
Internet or network activity (e.g., usage data) Same as above
Geolocation data (e.g., derived from IP address) Same as above

We do not use or disclose sensitive personal data without your consent or for profiling.


Third-Party Websites and Links

Our Website may contain links to third-party websites or platforms. If you follow those links, please review their privacy and security policies. We are not responsible for the content or data practices of those websites.

Public or semi-public information you share (e.g., on social media) may be viewed or used by others without restrictions. Inclusion of such links does not imply endorsement.


Children's Data

Our Services are not intended for children, and we do not knowingly collect personal data from children. If a child under your guardianship has provided personal data, contact us to request deletion.

As of the effective date of this policy, we are not aware of having “shared” or “sold” data of individuals under 16, as defined by applicable laws.


Data Security and Retention

While we take reasonable steps to protect your data, no method is completely secure. Data transmission may also be unprotected. Avoid sending sensitive data via insecure methods.

How long we retain your data depends on factors like your account status, service usage, legal obligations, dispute resolution, and enforcement of our policies.


Your Rights

Depending on your location, you may have some or all of the following rights, which are not always absolute:

  • Right to access/know: Request access to the personal data we hold about you and how we use/share it.

  • Right to deletion: Request that we delete your personal data.

  • Right to correction: Request correction of inaccurate data.

  • Right to portability: In some cases, request a copy of your data and/or request its transfer.

  • Restrict processing: Request we stop or limit data processing.

  • Withdraw consent: Withdraw consent where processing relies on it.

  • Appeal: If we deny a request, you may appeal our decision.

  • Manage communication preferences: Opt out of promotional emails via unsubscribe links.

You can exercise these rights on our Website or by contacting us using the details below. We may request information to verify your identity (e.g., email or account details). You may also authorize a representative to act on your behalf.


Complaints

If you have concerns about our data handling, contact us via the details below. If unresolved, you may appeal or file a complaint with your local data protection authority. In the EEA, a list of authorities is available here.


International Users

We may transfer, store, and process your data outside your country, including with staff or third-party partners abroad. For data transfers outside Europe, we rely on recognized safeguards such as the EU’s Standard Contractual Clauses or equivalent UK mechanisms unless the country offers adequate protection.


Contact

If you have questions about our privacy practices or this policy, or wish to exercise your rights, contact us at:
📧 Lasteria@support.com

Unless stated otherwise, we are the data controller for your personal data under applicable privacy law.