Controller identity and contact points
The controller responsible for personal data is Phakronxgroz, located at 3401 N Miami Ave Ste 100, Miami, FL 33127, United States. You can reach our privacy desk at ask@phakronxgroz.world. Please include enough context for us to verify your request while minimizing unnecessary personal data in the subject line.
If you are in the European Economic Area or the United Kingdom, you may also contact us to exercise GDPR rights. We respond within statutory timelines unless complexity requires an extension, which we will explain.
Categories of personal data we collect
- Identity and contact: full name, email address, shipping or billing address when you supply it, telephone number if you choose to share it for logistics.
- Transaction and inquiry records: messages you submit through forms, product questions, attachments you send voluntarily, customer service transcripts.
- Technical and usage: IP address, device type, browser, approximate region derived from IP, referring URL, pages viewed, and interaction signals when you consent to optional analytics cookies.
- Preference artifacts: cookie consent choices stored locally to honor your marketing and analytics decisions across sessions.
- Compliance artifacts: excerpts required for fraud reviews, tax documentation, shipping manifests, and dispute records.
We do not intentionally collect special categories of data such as health diagnoses through this website. If you volunteer clinically sensitive information in a message, we recommend redacting where possible; we will limit internal access to what is necessary to fulfill your request.
Purposes and legal bases under the GDPR
Where the GDPR applies, we rely on the following legal bases as described in Article 6:
- Contract and pre-contract steps: processing orders, confirming shipments, answering product inquiries you initiate.
- Legitimate interests: securing the website, monitoring aggregate performance, improving content clarity, enforcing terms, and recovering debts subject to balancing tests.
- Legal obligation: tax filings, responding to lawful requests from regulators, preserving records required by consumer protection rules.
- Consent: optional analytics and marketing cookies or emails where consent is the appropriate basis in your jurisdiction.
Automated decision-making
We do not use automated decision-making that produces legal or similarly significant effects solely based on profiling for supplement purchases on this site. Fraud filters may flag transactions for human review without automatically declining them.
International transfers
Our infrastructure may include service providers in the United States and other regions. When we transfer personal data from the EEA, UK, or Switzerland, we implement appropriate safeguards such as Standard Contractual Clauses, supplementary measures where required by regulators, or other mechanisms recognized by applicable law.
Retention schedule
- Marketing leads and general support tickets: up to thirty-six months after the last meaningful interaction unless litigation requires longer retention.
- Completed purchases and refunds: up to seven years where tax, accounting, or consumer protection statutes impose minimums.
- Web server logs with personal identifiers masked where feasible: ninety days rolling retention unless an active security investigation extends the window.
- Consent strings and cookie documentation: at least twelve months from the last update to evidence compliance.
Security measures
We employ layered safeguards including TLS for data in transit, access control policies for staff, vendor security reviews, patching routines, least-privilege credentials, and encrypted backups for critical systems. No online system is perfectly secure; please report suspected incidents promptly so we can escalate containment.
Your rights
Depending on jurisdiction you may request access, rectification, erasure, restriction, portability, objection, or withdrawal of consent. EU and UK residents may lodge complaints with supervisory authorities. California residents may submit requests under the CCPA/CPRA with exemptions where verification fails or where retention is legally required.
Children
This website is intended for adults purchasing dietary supplements. We do not knowingly collect personal data from anyone under sixteen years of age.
Changes and version control
We revise this Privacy Policy when our processing operations or legal obligations change. The date at the top reflects the latest substantive review. Material changes may be highlighted on the homepage or through email when we have a lawful basis to contact you.
For regulatory correspondence or registered mail: 3401 N Miami Ave Ste 100, Miami, FL 33127, USA · ask@phakronxgroz.world