Data Controller
The controller of personal data is AuraLume OÜ.
For any questions regarding personal data, you can contact us at: auralume.info@gmail.com
What personal data we collect
We may collect the following data:
- Name
- Email address
- Phone number
- Delivery address
- Order and payment information (purchase history)
- Payment details required for refunds
Purpose of data processing
Your personal data is used for:
- Processing and fulfilling your orders
- Delivering products
- Providing customer support
- Processing payments and refunds
- Maintaining accounting records
- Handling possible complaints or disputes
We may also use purchase history to improve our products and customer experience.
Legal basis
Personal data is processed:
- To fulfil a contract (your order)
- To comply with legal obligations (e.g., accounting requirements)
- Based on your consent (e.g., marketing emails, if applicable)
Data sharing
We may share data only with necessary service providers:
- Delivery services (for order shipping)
- Payment providers (for payment processing)
- Accounting service providers (if applicable)
- IT service providers for website operation
All partners are required to protect your data according to GDPR rules.
Data storage
- Order and accounting data is stored as required by law.
- Data is kept only for as long as necessary for order fulfillment and legal obligations.
Your rights
You have the right to:
- Request access to your data
- Request correction or deletion of your data
- Withdraw consent (if applicable)
- Request transfer of your data
To exercise your rights, contact: auralume.info@gmail.com
Contact & Complaints
If you have concerns about data processing, please contact us first.
You also have the right to contact the Estonian Data Protection Inspectorate: aki.ee