Privacy Policy

Privacy Notice

SECTION 1 – How Do We Use Your Data?

When you make a purchase in our store, during the buying and selling process, we collect personal data that you provide, such as your name, address, and email address.

When you browse our store, we automatically receive your computer's IP address, which helps us determine the type of browser and operating system you are using.

Email Marketing (if applicable): With your consent, we may send you emails with updates about our store, new products, and other news.

SECTION 2 – Consent

How do I give my consent?

When you provide personal data to complete a transaction, verify a credit card, place an order, arrange shipping, or initiate a return, you implicitly consent to the collection and use of this data solely for that specific purpose.

If we request your data for secondary purposes, such as marketing, we will ask for your explicit consent directly or give you the option to decline.

How can I withdraw my consent?


If, after giving consent, you change your mind, you may withdraw it at any time regarding the collection, use, and disclosure of your data by contacting us at service@vitaexff.com.

SECTION 3 – Data Disclosure

We may disclose your personal data if required by law or in the event that you violate our Terms of Service.

SECTION 4 – Shopify

Our store is hosted on Shopify Inc., which provides us with the e-commerce platform to sell products and services to you.

Your data is stored on Shopify's general storage systems, databases, and applications, within a server protected by firewalls.

Payments

If you choose a direct payment gateway to complete your purchase, Shopify stores your credit card information encrypted according to the PCI-DSS (Payment Card Industry Data Security Standard) standard.

Transaction data is retained only for as long as strictly necessary to complete the purchase; it will be deleted thereafter.


All direct payment gateways comply with the PCI-DSS standards established by the PCI Security Standards Council, to which brands such as Visa, Mastercard, American Express, and Discover are members.

The PCI-DSS requirements ensure the secure handling of credit card data by our store and its service providers.

For further information, you may review Shopify's Terms of Service (https://www.shopify.com/legal/terms) and Privacy Policy (https://www.shopify.com/legal/privacy).

SECTION 5 – Third-Party Services

In general, the third-party providers we use collect, use, and disclose your data only to the extent necessary to perform the agreed services.

However, certain third-party providers (such as payment gateways and transaction processors) have their own privacy policies regarding the data they are required to receive in connection with your purchases.

We recommend that you review their privacy notices to understand how they handle your personal data.

Please note that some providers may be based or operate in jurisdictions other than yours or ours. Therefore, if you complete a transaction through a third-party service, your data may be subject to the laws of that jurisdiction.

For example, if you are located in the United States and the transaction is processed by an American payment gateway, your data may be subject to U.S. regulations, including the Patriot Act.

Once you leave our website or are redirected to third-party websites or applications, you are no longer governed by this Privacy Policy or our Website Terms of Service.

Links


By clicking on the links in our store, you may be redirected to external websites. We assume no responsibility for third-party privacy policies and encourage you to review their respective notices.

SECTION 6 – Security

To protect your personal data, we take appropriate precautions and follow industry best practices to prevent loss, misuse, unauthorized access, disclosure, alteration, or destruction.

Credit card information is transmitted using SSL (Secure Socket Layer) technology and stored with AES-256 encryption.

No method of transmission over the Internet or electronic storage is 100% secure, but we comply with all PCI-DSS requirements and recognized industry standards.

SECTION 7 – Cookies

Below is a list of cookies we use, allowing you to choose whether to enable or disable them:

_session_id: A unique session token that enables Shopify to store data about your session (e.g., referrer, login page, etc.).  
_shopify_visit: No data stored; valid for 30 minutes from the last visit, used for internal access statistics
_shopify_uniq: no data stored, expires at midnight of the following day, tracks visits from a single customer to the store  
cart: unique token valid for 2 weeks, stores cart contents  
_secure_session_id: secure session token  
storefront_digest: unlimitedly valid unique token, useful for verifying access to the password-protected store  

SECTION 8 – Age Requirement  

By using this site, you confirm that you have reached the age of majority in your state or province of residence; or, if you are already an adult, you confirm that you have authorized us to allow minors under your care to use the site.  

SECTION 9 – Changes to Privacy Policy  

We reserve the right to modify this privacy policy at any time; we encourage you to review it regularly.  

Any changes and clarifications take effect immediately upon publication on the website. In the event of substantial changes, we will notify you here of the update so you can understand what data we collect, how we use it, and under what circumstances we disclose it.


If our store were acquired or merged with another company, your data may be transferred to the new owners in order to continue offering you our products.

Questions and contacts

If you wish to access, correct, modify, or delete your personal data held by us, file a complaint, or receive further information, please contact our Privacy Compliance Officer at service@vitaexff.com