| Data | When | Why |
|---|---|---|
| Name, email, password (hashed) | Account registration | To create and secure your account |
| Shipping name and address | Placing an order | To fulfil and ship your order |
| Order contents and history | Placing an order | Order fulfilment, your order history, accounting |
| Payment details | Checkout | Processed directly by our payment provider (Stripe) — we do not receive or store your full card number |
| Name, email, optional phone, message | Contacting support | To respond to your enquiry |
| Page path, referring site, browser type, country (derived from IP, not the IP itself) | Browsing the site | Basic traffic analytics — see Section 3 |
We do not store your raw IP address in our analytics. When you visit the site, your IP is used momentarily, on our own server, to determine your country (via an offline lookup — it is never sent to a third-party geolocation service) and to compute a one-way hash used only to approximate "same visitor, same day" for traffic counts. That hash is generated using a value that changes daily, so it cannot be used to identify or track you across different days, and it cannot be reversed back into an IP address.
We use one essential cookie: a session cookie that keeps you signed in. It is required for the site to function (shopping cart, account, checkout) and is not used for advertising or cross-site tracking. We also load fonts from Google Fonts, which involves your browser making a request to Google's servers — see Google's own privacy policy for how they handle that request.
We do not sell personal data to third parties, and we do not share it for advertising purposes.
You can request a copy of the personal data we hold about you, ask us to correct inaccurate data, or ask us to delete your account and associated data, by contacting us through the site's support form. Some information (such as completed order records) may need to be retained for accounting or legal reasons even after an account deletion request.
Passwords are stored using industry-standard one-way hashing (bcrypt) — we cannot see your actual password, and neither can anyone who might gain access to our database. Sessions are managed server-side. Payment card details never reach our servers. See our engineering documentation for further technical detail if relevant to your due diligence.
This site is not directed at, and does not knowingly collect data from, anyone under 18.
We may update this policy from time to time. Material changes will be reflected by updating the date at the top of this page.
Questions about this policy, or requests relating to your data, can be sent through the site's support form.