Privacy Policy
**Last Updated and Effective: June 18, 2025**
**1. Introduction**
Gleamcolor ("we," "us," or "our") operates this website and related services (collectively, the "Services"). We are committed to protecting your privacy and complying with applicable data protection laws, including the European Union's General Data Protection Regulation (GDPR) and the U.S. California Consumer Privacy Act (CCPA/CPRA).
This Privacy Policy explains how we collect, use, disclose, protect, and manage your personal information. By accessing or using our Services, you agree to the practices described in this Policy.
**2. Data Controller Information**
Under the GDPR and other applicable laws, Gleamcolor acts as the data controller for your personal information.
If you have any privacy-related questions or wish to exercise your rights, please contact us at:
Email: privacy@gleamcolor.com
Address: 4708 S Harrington AVE Sloux Fails SD United States
Note: If gleamcolor does not have an establishment in the European Union, we will appoint a representative as required by GDPR Article 27 and publish their contact details here.
**3. Types of Personal Information We Collect**
We may collect the following categories of personal information:
- Identity and Contact Information: Such as your name, email address, phone number, and billing or shipping address.
- Financial and Payment Information: Such as encrypted credit card numbers, transaction history, and preferred payment method.
- Account Credentials: Such as your username and a securely hashed password.
- Device and Usage Data: Such as your IP address, browser type, operating system, access times, pages viewed, and clickstream data.
- Communication Content: Any information you provide when you contact us via customer support forms, email, or phone.
- Preferences and Behavioral Data: Such as your shopping cart contents, wishlist items, browsing history, and how you interact with our products and Services.
Children's Privacy: We do not knowingly collect personal information from children under the age of 16. If we become aware that we have inadvertently collected such data, we will take prompt steps to delete it.
**4. Sources of Personal Information**
We collect personal information from the following sources:
- Directly from you when you provide it to us (e.g., during account registration, at checkout, or when you contact customer service).
- Automatically through technologies like cookies, log files, and pixel tags when you use our Services.
- From third-party service providers (e.g., payment processors and shipping carriers), strictly limited to what is necessary for the services they provide.
**5. How We Use Your Personal Information**
We use your personal information for the following purposes:
- To Fulfill Orders and Provide Services: We use your name, address, payment information, and order details to process your transactions and deliver the services you request. Our lawful basis under GDPR is performance of a contract, and our business purpose under CCPA is providing goods and services.
- For Account Management and Customer Support: We use your contact information and communication records to manage your account and respond to your inquiries. Our lawful basis under GDPR is performance of a contract and our legitimate interest in providing customer support, and our business purpose under CCPA is customer service.
- For Personalization and Site Optimization: We use your browsing behavior and device data to improve and personalize your experience on our website. Our lawful basis under GDPR is your consent or our legitimate interest in website optimization, and our business purpose under CCPA is personalizing the user experience.
- For Marketing Communications: We may use your email address or phone number to send you marketing messages, but only if you have given us your explicit consent. Our lawful basis under GDPR is your consent, and our business purpose under CCPA is direct marketing.
- For Security and Fraud Prevention: We use your IP address, device information, and transaction patterns to protect our Services and users from fraud and abuse. Our lawful basis under GDPR is our legitimate interest in safeguarding our business and users, and our business purpose under CCPA is security and fraud detection.
- For Legal Compliance: We may use your information as necessary to comply with our legal obligations, such as tax and accounting rules. Our lawful basis under GDPR is compliance with a legal obligation, and our business purpose under CCPA is compliance with law.
Marketing Consent: You may withdraw your consent for marketing communications at any time by using the unsubscribe link in any email or by contacting us directly.
**6. How We Disclose Your Personal Information**
We only share your personal information under the following circumstances:
- With Service Providers: We engage trusted third parties to perform functions on our behalf, such as payment processing, order fulfillment, IT services, and cloud hosting. These partners are bound by data processing agreements and may only use your information to provide their services.
- For Legal Requirements: We may disclose information if required by law, such as to comply with a subpoena, court order, or other valid legal process.
- In Connection with Business Transfers: If we are involved in a merger, acquisition, or sale of all or a portion of our assets, your information may be transferred. We will notify you and outline your choices.
- With Your Consent: We may share information for specific purposes with your explicit consent.
Sale of Personal Information: We do not "sell" or "share" your personal information for cross-context behavioral advertising. We have not engaged in such activities in the past 12 months.
**7. Your Privacy Rights**
Depending on your location, you may have the following rights regarding your personal information:
- Under GDPR and CCPA/CPRA: The right to access, correct, and delete your personal information.
- Under GDPR: The right to restrict processing, data portability, and to withdraw consent.
- Under CCPA/CPRA: The right to opt-out of the "sale" or "sharing" of your information, and protection against non-discrimination for exercising your rights.
How to Exercise Your Rights:
You can exercise your rights by clicking the "Exercise Your Privacy Rights" link in our website footer or by sending a request to privacy@gleamcolor.com. We will respond to your request within 30 days under the GDPR or 45 days under the CCPA. We are required to verify your identity before processing certain requests to protect your information.
Global Privacy Control (GPC): We honor the GPC signal. If your browser is set to send the GPC signal, we will treat it as a valid request to opt-out of the "sharing" of your personal information for targeted advertising.
**8. International Data Transfers**
Your personal information may be processed in countries outside your country of residence, including the United States and locations in Asia, which may have different data protection laws. When we transfer personal data from the European Union or the United Kingdom, we rely on approved legal mechanisms, such as the European Union's Standard Contractual Clauses, to ensure adequate protection. You may request a copy of the safeguards we have put in place by contacting us.
**9. Data Retention Period**
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required or permitted by law. For example, we retain order information for 7 years after completion to comply with tax and accounting legal requirements, and we retain your contact information for marketing purposes until you unsubscribe.
**10. Security Measures**
We implement industry-standard technical and organizational measures designed to protect your personal information. These measures include using SSL/TLS encryption to protect data in transit, storing sensitive data like passwords using secure hash algorithms, and conducting regular security assessments. Please note that no method of transmission over the Internet or method of electronic storage is 100% secure.
**11. Cookies and Tracking Technologies**
We use cookies and similar tracking technologies to analyze trends, administer the website, and track users' movements around the site. For detailed information on the cookies we use and how to manage your preferences, please see our separate Cookie Policy.
**12. Policy Updates**
We may update this Privacy Policy from time to time to reflect changes in our practices or legal obligations. The "Last Updated" date at the top of this page will indicate when revisions were made. We will notify you of any material changes by posting a notice on our Services or by other means.
**13. Contact Us**
If you have any questions about this Privacy Policy or wish to exercise your privacy rights, please contact us:
Email: privacy@gleamcolor.com
Address: 4708 S Harrington AVE Sloux Fails SD United States