PRIVACY POLICY
Last updated: 2025-12–01
This Privacy Policy explains how BALSAIS, MB (“we”, “us”, “our”) collects, uses, and protects your personal data when you visit our website or place an order.
We are committed to complying with the EU General Data Protection Regulation (GDPR) and ensuring transparency on how your data is handled.
1. COMPANY INFORMATION
BALSAIS, MB
Company registration number: 307470571
Registered in Lithuania
Email: info@balsais.com
We operate our online store through WooCommerce / WordPress.
2. PERSONAL DATA WE COLLECT
We collect the following personal data when you interact with our website:
2.1 DURING ORDER PLACEMENT
– Name
– Email address
– Phone number
– Shipping address
– Billing address
– Order details (products purchased, order history)
– Payment information (processed securely by our payment partner — we do not store full payment card details)
2.2 CUSTOMER SUPPORT
– Any information you voluntarily provide when contacting us.
2.3 MARKETING (ONLY WITH CONSENT)
If you choose to sign up for marketing (must be ticked explicitly), we collect:
– Name
– Email address
Emails are managed through Omnisend.
2.4 Website Analytics
We use:
– Meta Pixel;
– Google services (e.g., tracking / analytics)
These tools may collect anonymised usage data such as IP address, device type, browsing behaviour, and interactions with products.
No marketing or statistical cookies are stored without your consent.
3. HOW WE USE YOUR PERSONAL DATA
We use your data to:
3.1 FULFILL ORDERS
– Process orders and payments through payment partner;
– Ship orders using logistics partners (e.g., DPD, FedEx, courier services);
– Communicate order status, delivery updates, or issues.
3.2 CUSTOMER SERVICE
– Respond to your inquiries;
– Resolve issues or complaints;
– Provide product or return assistance.
3.3 MARKETING (ONLY IF CONSENT IS GIVEN)
– Send newsletters;
– Provide promotional or product updates through Omnisend;
– Customise marketing ads via Meta and Google (if applicable)
3.4 WEBSITE FUNCTIONALITY
– Improve shopping experience;
– Analyse website performance;
– Detect fraud or misuse.
4. LEGAL BASIS FOR PROCESSING
We process your data under the following GDPR legal grounds:
– Contractual necessity — to fulfil your order;
– Legal obligation — to comply with accounting or tax rules;
– Legitimate interest — to improve our website and prevent fraud;
– Consent — for marketing emails and analytics where required.
You may withdraw your consent at any time.
5. DATA SHARING
We only share data with trusted third parties when necessary:
5.1 SHIPPING PROVIDERS
We share your name, address, phone number, and email with courier services to generate shipping labels and deliver orders.
5.2 PAYMENT PROCESSING
Payments are processed securely through the payment partner, which receives only the data required to complete the transaction.
We do not store or access your full payment card details.
5.3 MARKETING SERVICES (ONLY IF CONSENT GIVEN)
– Omnisend receives your name and email for newsletters and updates.
– Meta and Google may receive anonymised analytics data.
We never sell personal data to third parties.
6. DATA RETENTION
We retain data only for as long as necessary:
– We retain order and transaction records for 10 years, as required under EU accounting and tax regulations, including Directive 2013/34/EU;
– Customer service messages: up to 2 years.
– Marketing data: until you unsubscribe or withdraw your consent.
– Analytics data: retained according to Meta/Google standard retention periods.
You can request deletion of your personal data at any time unless we are legally required to keep it.
7. YOUR GDPR RIGHTS
As an EU customer, you have the right to:
– Request access to your personal data;
– Request correction of inaccurate data;
– Request deletion (“right to be forgotten”);
– Request restriction of processing;
– Object to processing (including marketing);
-Withdraw consent at any time;
– Request data portability.
To exercise your rights, contact: info@balsais.com
We respond within 30 days.
8. DATA SECURITY
We implement technical and organisational measures to protect your data, including:
– SSL encryption;
– Secure payment processing;
– Restricted access to administrative systems;
– Regular platform security updates (WooCommerce/WordPress).
Despite our efforts, no online transmission is 100% secure.
9. INTERNATIONAL DATA TRANSFERS
Some service providers (e.g., Meta, Google, Omnisend) may store data outside the EU.
In such cases, GDPR-approved safeguards (Standard Contractual Clauses) are used to ensure adequate protection.
10. CHANGES TO THIS PRIVACY POLICY
We may update this Privacy Policy from time to time.
The updated version will be published on this page with a new “Last updated” date.
11. CONTACT
For any questions or data requests, contact:
info@balsais.com