Privacy Policy

Effective Date: April 11, 2025

At Salty Girl Boutique, accessible from saltygirlboutique.com, protecting your privacy is one of our highest priorities. This Privacy Policy outlines how we collect, use, and protect your personal data in accordance with the General Data Protection Regulation (GDPR) and other applicable laws.

1. Data Controller

Salty Girl Boutique is the data controller responsible for your personal data. If you have any questions about this policy, please contact us at:
Email: [email protected]

2. What Information We Collect

We may collect and process the following categories of personal data:

  • Contact Information: name, email address, mailing address, phone number
  • Account Details: username, password (encrypted), order history
  • Payment Details: billing information (handled securely via third-party processors)
  • Marketing Preferences: your consent or refusal to receive newsletters and promotional materials
  • Website Usage: IP address, browser type, device data, referral URLs, pages visited
  • Cookies and Tracking Technologies: for site functionality, analytics, and personalized content

3. How We Use Your Data

We use your personal data for the following purposes:

  • To process and deliver your orders
  • To respond to your inquiries or customer service requests
  • To manage your account
  • To improve our website, offerings, and user experience
  • To send you newsletters, promotional content, and updates (only if you’ve opted in)
  • To detect and prevent fraud or abuse
  • To comply with legal obligations

4. Legal Bases for Processing

Under GDPR, we process your data on one or more of the following legal bases:

  • Your consent (e.g., for marketing emails)
  • Fulfillment of a contract (e.g., to ship your order)
  • Legal obligations (e.g., tax or accounting compliance)
  • Legitimate interests (e.g., to improve services or detect fraud)

5. How We Share Your Data

We do not sell or rent your personal information. However, we may share your data with:

  • Service providers (e.g., payment processors, delivery couriers, analytics services)
  • Legal authorities when required by law
  • Marketing platforms only if you’ve opted in to receive communications

All third parties are bound by confidentiality and data protection agreements.

6. International Data Transfers

If we transfer your data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or equivalent measures to ensure the security of your data.

7. Data Retention

We retain your personal data only as long as necessary:

  • To provide services you’ve requested
  • To comply with legal and regulatory obligations
  • To resolve disputes or enforce agreements

When data is no longer needed, we securely delete or anonymize it.

8. Your Rights Under GDPR

As a data subject, you have the right to:

  • Access your personal data
  • Correct inaccurate or incomplete data
  • Delete your data (“right to be forgotten”)
  • Restrict or object to processing
  • Withdraw consent at any time
  • Request data portability

To exercise any of your rights, contact us at [email protected].

9. Cookies Policy

We use cookies to enhance your experience and analyze website traffic. You can control cookie settings in your browser or opt-out where applicable. For more information, please see our Cookie Policy .

10. Children’s Privacy

Our site is not directed to children under 16. We do not knowingly collect personal data from children. If you believe we have collected data from a child, please contact us so we can remove it.

11. Changes to This Policy

We may update this Privacy Policy occasionally. Any changes will be posted on this page, and where appropriate, notified via email. Your continued use of the site after changes have been made indicates your acceptance of the updated policy.

12. Contact Us

If you have questions, concerns, or requests regarding this policy or your personal data, please contact us at:
Email: [email protected]