Phythraxiojraxan.world

Privacy Policy

Last updated:

This Privacy Policy describes in detail how Phythraxiojraxan.world ("we", "us", "our") collects, uses, processes, stores, and protects your personal data when you visit our website, place an order, or interact with our services. We are committed to transparency and compliance with the General Data Protection Regulation (GDPR), the Australian Privacy Principles (APPs), and other applicable data protection laws in the jurisdictions where we operate.

Data Controller

The data controller responsible for your personal data is:

Phythraxiojraxan.world
151 Elizabeth St, Sydney NSW 2000, Australia
Australia
Email: admin@phythraxiojraxan.world

Data We Collect

We may collect the following categories of personal data:

  • Identity data: your name, email address, and any other identifiers you provide when placing an order or contacting us.
  • Contact data: email address, message content, and correspondence when you use our contact form, submit an order, or communicate with our support team.
  • Technical data: IP address, browser type and version, device information, operating system, pages visited, time spent on pages, and referral sources. This data may be collected through cookies and similar technologies as described in our Cookie Policy.
  • Usage data: information about how you interact with our website, including clicks, scroll depth, and navigation paths.

Purposes of Processing

We process your personal data for the following purposes:

  • To process and fulfil your orders and enquiries, including order confirmation, shipment tracking, and customer support.
  • To communicate with you about your orders, product updates, and relevant information you have requested.
  • To improve our website, user experience, and service quality based on usage patterns and feedback.
  • To comply with legal obligations, including tax, accounting, and regulatory requirements.
  • To analyse site traffic and user behaviour (with your consent where required by law).
  • To prevent fraud, abuse, and security incidents.

Legal Basis (GDPR)

We process your data based on the following legal grounds:

  • Contract: processing necessary for the performance of a contract with you (e.g. order fulfilment).
  • Consent: where you have given explicit consent for specific processing activities, such as analytics and marketing cookies. You may withdraw consent at any time.
  • Legitimate interests: improving our services, ensuring security, preventing fraud, and operating our business effectively, where such interests are not overridden by your rights.
  • Legal obligation: compliance with applicable laws and regulations.

Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected:

  • Order data: 7 years (for legal, tax, and accounting purposes as required by Australian law).
  • Contact form and enquiry data: 2 years from the date of last contact, unless a longer retention period is required by law.
  • Cookie data: as specified in our Cookie Policy, depending on the type of cookie.

After the retention period expires, we securely delete or anonymise your data so that it can no longer be associated with you.

Your Rights

Under GDPR and applicable data protection laws, you have the following rights:

  • Access: request a copy of the personal data we hold about you.
  • Rectification: request correction of inaccurate or incomplete data.
  • Erasure: request deletion of your data ("right to be forgotten"), subject to certain exceptions.
  • Restriction: request limitation of processing in certain circumstances.
  • Portability: receive your data in a structured, commonly used, machine-readable format.
  • Object: object to processing based on legitimate interests or for direct marketing purposes.
  • Withdraw consent: where processing is based on consent, you may withdraw it at any time.
  • Complain: lodge a complaint with a supervisory authority in your jurisdiction.

To exercise any of these rights, please contact us at admin@phythraxiojraxan.world. We will respond within one month of receiving your request.

Data Security

We implement appropriate technical and organisational measures to protect your data against unauthorised access, loss, or alteration, including:

  • HTTPS encryption for all data transmitted via our website.
  • Secure storage with access controls and authentication.
  • Regular security assessments and updates to our systems.

International Transfers

Your data may be processed in Australia and other jurisdictions. Where we transfer data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission.

Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or applicable law. The updated version will be posted on this page with a revised "Last updated" date. We encourage you to review this policy from time to time.

Contact

For privacy-related enquiries or to exercise your rights:
Phythraxiojraxan.world
151 Elizabeth St, Sydney NSW 2000, Australia
Email: admin@phythraxiojraxan.world