When you use my services, you trust me with your personal information — and I take that trust seriously. This Privacy Policy explains what data I collect, why I collect it, and how I use, share, and protect it.
Please take a moment to read it carefully.
🧾
What Information I CollectI collect personal information that you provide when:
- Placing an order
- Filling out a contact form
- Requesting a custom artwork
- Subscribing to updates or communicating with me directly
This may include:
- Your name
- Email address
- Shipping address
- Phone number
- Payment details (processed securely through third-party services)
💡
Why I Collect Your DataI use your personal information only for purposes directly related to:
- Processing and delivering your order
- Communicating with you (e.g., order updates, responses to questions)
- Providing customer support
- Sending product-related updates (only if you opted in)
- Handling legal or administrative requirements
I do
not use your data for advertising purposes or sell it to third parties.
🤝
Third-Party ServicesI work with trusted third-party providers to help operate this store smoothly:
- Shipping companies (to deliver your orders)
- Payment processors (like PayPal or Stripe)
- Email service providers (to send updates or confirmations)
I only share your data with these parties to the extent necessary to provide these services, and they are obligated to protect your information.
This Privacy Policy does not apply to third-party services I do not control.
🕒
How Long I Keep Your DataI retain your personal information only as long as needed:
- to fulfill your orders
- to resolve disputes or technical issues
- to comply with legal obligations (if applicable)
When your data is no longer needed, it is safely deleted.
🧑⚖️
Your RightsIf you reside in certain regions, including the EU, you have specific rights regarding your personal data:
- Access – You can request a copy of the personal information I hold about you.
- Correction or Deletion – You may request that I update, correct, or delete your data (unless I’m legally required to retain it).
- Restrict or Object – You can limit how I use your data or object to certain uses.
- Withdraw Consent – If you’ve agreed to receive marketing communications, you can withdraw that consent at any time.
- File a Complaint – If you’re based in the EU, you have the right to raise concerns with your local data protection authority.
Supplement from 1.04.2026:Legal Basis for ProcessingWe process your personal data on the following legal grounds in accordance with Article 6 of the GDPR:
- Performance of a contract (Art. 6(1)(b))
when processing is necessary to fulfill your order, deliver products, or provide requested services
- Legal obligation (Art. 6(1)(c))
when we are required to retain or process data for accounting, tax, or legal compliance purposes
when you voluntarily provide consent, for example:
- subscribing to updates
- agreeing to cookies (if applicable)
- Legitimate interests (Art. 6(1)(f))
where processing is necessary for:
- improving our services
- responding to inquiries
- ensuring website security
We ensure that our legitimate interests do not override your fundamental rights and freedoms.
Data RetentionWe retain personal data only for as long as necessary:
- Contact inquiries: up to 12 months
- Transaction data: as required by tax and accounting laws (typically up to 10 years)
- Marketing data: until you withdraw your consent
We may retain data longer if required to comply with legal obligations or resolve disputes.
Recipients of Personal DataWe may share your personal data with:
- Payment service providers
- Hosting and website infrastructure providers
- Analytics and marketing tools (if applicable)
- Legal or regulatory authorities when required
All third parties are required to respect the security of your data and to process it in accordance with applicable laws.
International Data TransfersSome of our service providers may be located outside the European Economic Area (EEA).
In such cases, we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses approved by the European Commission
- Transfers to countries with an adequacy decision
Your Rights Under GDPRUnder the GDPR, you have the right to:
- Access your personal data
- Rectify inaccurate data
- Erase your data (“right to be forgotten”)
- Restrict processing
- Object to processing
- Data portability
- Withdraw consent at any time
Right to Lodge a ComplaintYou have the right to lodge a complaint with a supervisory authority.
In Slovenia, this is:
Information Commissioner of the Republic of SloveniaAutomated Decision-MakingWe do not use automated decision-making or profiling that produces legal effects concerning you.
📩
ContactIf you have questions about your personal data or would like to exercise any of your rights, please contact me directly via
oxypoint.ok@gmail.com or the contact form on this website.
Thank you for trusting me with your information.