Skip to content

Free shipping on orders over £50 | Worldwide delivery

Privacy Policy

Privacy Policy — Kalysian

Effective date: October 15, 2025

Who we are (Data Controller)

Kalysian (Auto-entrepreneur / Sole Proprietorship)
Owner: Jayson Elharrar
Address: 200 rue de la Croix Nivert, 75015 Paris, France
SIREN: 942 451 063 – RCS Paris
Email: kalysianshop@gmail.com

Kalysian is the data controller of your personal data. We do not currently appoint a Data Protection Officer. For any privacy question or request, contact us at the email above.

Scope

This Policy explains how we collect, use, share, store, and protect personal data when you visit our website, create an account, place an order, contact us, or interact with our content, cookies, and third-party services. It applies to users in the EU/EEA and the UK (and elsewhere where applicable).

What data we collect

  • Identity & Contact: name, email, shipping/billing address, phone (if provided).
  • Order & Transaction: items purchased, order value, currency (GBP), payment status, delivery info.
  • Payment: last 4 digits, tokenized IDs, method (processed by our payment providers: PayPal, Apple Pay, card processors). We do not store full card numbers.
  • Device/Usage: IP address, device and browser, pages viewed, timestamps, referral URLs, and approximate location (country/city) via cookies/analytics (see Cookies Policy).
  • Marketing Preferences & Communications: newsletter opt-in/opt-out, consent logs, messages you send us (email/support).
  • User-generated content (if applicable): reviews or photos you post or send to us for publishing.

Where data comes from

  • Directly from you (checkout, account, forms, support emails).
  • Automatically from your device via cookies and similar tech.
  • From service providers we use to operate the store (e.g., Shopify for e-commerce infrastructure; payment providers for payments; carriers/fulfillment partners for shipping; email/CRM tools for support and marketing).

Legal bases (EU/UK)

We process your data on the following bases:

  • Contract: to take and fulfill your order; provide customer support; process payments; arrange delivery.
  • Legitimate interests: fraud prevention, site security, service improvement, non-intrusive direct marketing to existing customers (where permitted), internal reporting.
  • Consent: placing non-essential cookies/analytics/ads; sending promotional emails/SMS where required. You can withdraw consent anytime.
  • Legal obligations: tax, accounting, consumer protection, responding to lawful requests.

How we use your data

  • Operate the store (hosting, checkout, order management, delivery, returns).
  • Payments via PayPal/Apple Pay/card processors (fraud checks, authorization, settlement).
  • Customer support and communications (order updates, responses to inquiries).
  • Analytics & performance to understand site usage (with consent in the EU/UK).
  • Marketing (with consent or as permitted by law): newsletters, offers, product updates.
  • Security & fraud prevention; compliance with laws and enforcement of our Terms.

Sharing your data

We share data with trusted processors only as needed to provide our Services:

  • Platform/hosting: Shopify (storefront, checkout, order management).
  • Payments: PayPal, Apple Pay, and card processors.
  • Logistics: shipping, warehousing, and returns partners (for delivery and returns handling).
  • Analytics/Marketing tools (if enabled): analytics, A/B testing, email/CRM.
  • Authorities & advisors: when required by law or to defend legal claims.

We do not sell your personal data. Third-party providers process your data under our instructions and contracts, with appropriate safeguards.

International transfers

Some partners may process data outside the EU/EEA and the UK (e.g., Canada/US/other). Where this occurs, we rely on adequacy decisions (where available) or EU/UK Standard Contractual Clauses and implement additional safeguards where necessary.

Retention

We keep personal data only as long as necessary for the purposes above, including:

  • Orders & invoices: retained to meet tax and accounting laws and for our legitimate interests (e.g., warranty/claims).
  • Customer support messages: typically up to 24 months after resolution.
  • Marketing data: until you opt out or withdraw consent.
  • Cookies/analytics: per the durations listed in the Cookies Policy.

When retention is no longer required, we securely delete or anonymize the data.

Your rights

Subject to conditions and local law (EU GDPR/UK GDPR), you have the right to:

  • Access your data;
  • Rectify inaccurate or incomplete data;
  • Erase (right to be forgotten);
  • Restrict processing;
  • Object to processing (including direct marketing);
  • Data portability;
  • Withdraw consent at any time for consent-based processing.

You also have the right to lodge a complaint with your supervisory authority (e.g., CNIL in France, ICO in the UK) or your local authority.

To exercise rights, email kalysianshop@gmail.com.

We may need to verify your identity.

Security

We use technical and organizational measures appropriate to the risk (encryption in transit, access controls, least-privilege practices). No system is 100% secure; please keep your account credentials confidential.

Children

Our Services are not intended for children. We do not knowingly collect data from individuals under the minimum age required by local law. If you believe a child has provided data, contact us to delete it.

Changes

We may update this Policy. We will post the new version with an updated Effective date. Your continued use after changes means you accept the update.

Contact

Kalysian — Privacy Requests
Email: kalysianshop@gmail.com

Address: 200 rue de la Croix Nivert, 75015 Paris, France