Privacy Policy
Last updated: 23 June 2026
We are pleased that you are visiting our website and thank you for your interest. In the following, we will inform you about the handling of your personal data when you use our website. Personal data are all data with which you can be personally identified.
By using our website and services, you agree to the collection and use of information in accordance with this Privacy Policy.
1. Information We Collect
We collect personal data that you voluntarily provide when placing an order, creating an account, or contacting our customer support team, including:
- Full name
- Billing and shipping address
- Email address
- Phone number
- Payment information (processed securely via third-party payment providers; not stored on our servers)
- IP address and device/browser information
- Order and transaction history
- Website usage data and behavior (via cookies and analytics tools)
2. Purposes of Data Processing
We use your personal data for the following purposes:
- Processing, shipping, and invoicing your orders
- Providing customer service and support
- Sending order updates, tracking information, and important notifications
- Improving our website, services, and product offerings
- Preventing fraud and misuse of our platform
- Sending marketing communications only when you have given explicit consent
3. Legal Basis for Processing
We process your data based on:
- Performance of a contract (your purchase)
- Your consent (e.g. marketing communications)
- Legal obligations (such as tax and accounting requirements)
- Legitimate interests (such as fraud prevention and service improvement)
4. Sharing Data with Third Parties
We only share your data with third parties when necessary to operate our business, including:
- Payment providers
- Shipping and logistics partners
- Suppliers involved in fulfilling and delivering your orders
- Analytics and marketing service providers (where applicable and subject to your cookie preferences)
All third parties are bound by data processing agreements where required. We never sell your personal data.
Some orders may be fulfilled directly by suppliers outside the European Economic Area (EEA), including China. In such cases, appropriate safeguards are implemented to ensure data protection compliance.
5. Data Retention
We retain your personal data only as long as necessary for the purposes outlined in this policy or as required by law (for example, a 7-year tax retention period for financial records).
6. Cookies
Our website uses cookies to improve functionality, analyze user behavior, and support marketing activities. For more details, please refer to our separate Cookie Policy.
You can manage or disable cookies at any time through your browser settings or our cookie consent banner.
7. Data Security
We implement appropriate technical and organizational measures to protect your data against loss, misuse, and unauthorized access. All payments are processed via secure SSL-encrypted connections.
8. Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Restrict or object to processing
- Withdraw consent at any time
- Request data portability
To exercise these rights, please contact us at info@ciara-rose.com
You also have the right to file a complaint with the relevant supervisory authority (in the Netherlands: the Dutch Data Protection Authority).
16. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect operational, legal, or regulatory changes.
Any updates will be posted on this page with a revised “Last updated” date.
17. Contact
If you have any questions about this Privacy Policy or your personal data, please contact:
Ciara & Rose
Email: info@ciara-rose.com