Last Updated: March 2, 2026
Auralia ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services.
1. Information We Collect
1.1 Personal Information
We collect information that you provide directly to us, including:
- Account Information: Name, email address, password (encrypted)
- Profile Information: Shipping addresses, billing addresses, phone number
- Payment Information: Credit card details (processed securely by Stripe, we do not store full card numbers)
- Order Information: Purchase history, product preferences, wishlist items
- Communication Data: Customer service inquiries, product reviews, survey responses
1.2 Automatically Collected Information
When you visit our website, we automatically collect certain information:
- Device Information: IP address, browser type, operating system, device identifiers
- Usage Data: Pages visited, time spent on pages, click patterns, recently viewed products
- Location Data: General geographic location based on IP address
- Cookies and Tracking: Session cookies, preference cookies, analytics cookies
1.3 Third-Party Information
We may receive information from third parties such as:
- Authentication Providers: When you log in through third-party services
- Payment Processors: Transaction status and fraud prevention data from Stripe
- Shipping Partners: Delivery status and tracking information
2. How We Use Your Information
We use your information for the following purposes:
- Order Processing: To process and fulfill your orders, including payment processing and shipping
- Account Management: To create and manage your account, authenticate your identity
- Customer Service: To respond to your inquiries, provide support, and resolve issues
- Personalization: To recommend products, show recently viewed items, and customize your experience
- Marketing: To send promotional emails, newsletters, and special offers (with your consent)
- Analytics: To understand how customers use our website and improve our services
- Security: To detect and prevent fraud, unauthorized access, and other security threats
- Legal Compliance: To comply with applicable laws, regulations, and legal processes
3. Legal Basis for Processing (GDPR)
Under the General Data Protection Regulation (GDPR), we process your personal data based on:
- Contractual Necessity: Processing necessary to fulfill our contract with you (order processing, delivery)
- Legitimate Interests: Our legitimate business interests (fraud prevention, analytics, security)
- Consent: Your explicit consent for marketing communications and non-essential cookies
- Legal Obligation: Compliance with applicable laws and regulations
4. Information Sharing and Disclosure
We may share your information with:
- Service Providers: Payment processors (Stripe), shipping carriers, email service providers, cloud hosting providers
- Business Partners: Third-party vendors who assist in operating our website and conducting our business
- Legal Requirements: Law enforcement, government authorities, or other third parties when required by law
- Business Transfers: In connection with a merger, acquisition, or sale of assets
We do not sell your personal information to third parties for their marketing purposes.
5. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to:
- Essential Cookies: Required for website functionality (authentication, shopping cart)
- Preference Cookies: Remember your settings and preferences
- Analytics Cookies: Understand how visitors use our website
- Marketing Cookies: Deliver relevant advertisements and measure campaign effectiveness
You can control cookies through your browser settings and our cookie consent banner. Note that disabling certain cookies may limit website functionality.
6. Your Rights Under GDPR
If you are located in the European Economic Area (EEA), you have the following rights:
- Right to Access: Request a copy of your personal data we hold
- Right to Rectification: Request correction of inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data ("right to be forgotten")
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Restrict Processing: Request limitation of how we process your data
- Right to Object: Object to processing based on legitimate interests or for direct marketing
- Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent
- Right to Lodge a Complaint: File a complaint with your local data protection authority
To exercise these rights, please contact us using the information provided below or use the self-service options in your account settings.
7. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law:
- Account Data: Retained while your account is active and for 3 years after account deletion
- Order History: Retained for 7 years for tax and accounting purposes
- Marketing Data: Retained until you unsubscribe or withdraw consent
- Login Attempts: Retained for 90 days for security purposes
- Analytics Data: Aggregated and anonymized after 2 years
8. Data Security
We implement appropriate technical and organizational measures to protect your personal information, including:
- HTTPS encryption for all data transmission
- Secure password hashing and authentication
- Regular security audits and vulnerability assessments
- Access controls and employee training
- PCI DSS compliance for payment processing
- Rate limiting and account lockout to prevent unauthorized access
However, no method of transmission over the Internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
9. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from your jurisdiction. We ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions by the European Commission
- Privacy Shield certification (where applicable)
10. Children's Privacy
Our services are not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately, and we will delete the information.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the new policy on this page and updating the "Last Updated" date. We encourage you to review this Privacy Policy periodically.
12. Contact Us
If you have questions about this Privacy Policy or wish to exercise your rights, please contact us:
Auralia Customer Privacy
Email: [email protected]
Address: [Your Business Address]
Phone: [Your Phone Number]
For GDPR-related inquiries, you may also contact our Data Protection Officer at: [email protected]