Privacy policy

Last updated: May 13, 2026

sapontos operates this store and website, including all related information, content, features, tools, products, and services, in order to provide you, the customer, with an appropriate shopping experience (the “Services”). sapontos is powered by Shopify, which enables us to provide the Services to you. This Privacy Policy describes how we collect, use, and disclose your personal data when you visit, use, make a purchase or any other transaction through the Services, or when you communicate with us. In the event of any conflict between our Terms and Conditions of Service and this Privacy Policy, the Privacy Policy shall prevail with respect to the collection, processing, and disclosure of your personal data.

Please read this Privacy Policy carefully. By using and accessing the Services, you confirm that you have read this Privacy Policy and understand what is described regarding the collection, use, and disclosure of your information.

Personal data we collect or process

When we use the term “personal data,” we refer to information that identifies or can reasonably be linked to you or another person. Personal data does not include information collected anonymously or anonymized so that it cannot identify or be linked to you. Depending on your interaction with the Services, where you live, and as permitted or required by applicable laws, we may collect or process the following categories of personal data, including inferences drawn from such personal data:

  • Contact details including name, address, billing address, shipping address, phone number, and email address.

  • Financial data including credit card, debit card, and financial account numbers, card payment information, financial account details, transaction details, payment method, payment confirmation, and other payment details.

  • Account data including username, password, security questions, preferences, and settings.

  • Transaction data including items you view, add to your cart, add to your wishlist, purchase, return, exchange, or delete, as well as past transactions.

  • Communications with us including information you include in communications with us, such as when you submit a customer service dispute.

  • Device information including information about your device, browser, or network connection, IP address, and other unique identifiers.

  • Usage information including information about your interactions with the Services and how and when you interact with or browse the Services.

Sources of personal data

We may collect personal data from the following sources:

  • Directly from you, including when you create an account, visit or use the Services, communicate with us, or otherwise provide your personal data;

  • Automatically through the Services, including through your device when you use our products or services or visit our websites, and through the use of cookies and similar technologies;

  • From our service providers, including when we engage them to implement certain technologies and when they collect or process your personal data on our behalf;

  • From our partners or third parties.

How we use your personal data

Depending on how you interact with us or which Services you use, we may use your personal data for the following purposes:

  • To provide, personalize, and improve the Services. We use your personal data to provide the Services and fulfill our contract with you; process your payments; fulfill your orders; remember your preferences and items of interest; send account notifications; process purchases, returns, exchanges, or other transactions; create, maintain, and manage your account; arrange shipping; facilitate returns and exchanges; allow you to post reviews; and create a personalized shopping experience, such as product recommendations linked to your purchases. This may include using your personal data to personalize and improve the Services.

  • Marketing and advertising. We use your personal data for marketing and advertising purposes, such as sending marketing, advertising, and promotional communications via email, text message, or postal mail, and showing you online advertisements for products and services within our Services or on other websites, including based on items you previously purchased or added to your cart and other activity within the Services.

  • Security and fraud prevention. We use your personal data to authenticate your account; provide a secure payment and shopping experience; detect, investigate, or act against fraudulent, illegal, unsafe, or harmful activities; and protect public safety and our services. By choosing to use the Services and register an account, you are responsible for protecting your login credentials. We recommend that you do not share your username, password, or other login information with anyone.

  • Communications with you. We use your personal data to provide customer support, respond to your inquiries, provide effective services, and maintain our business relationship with you.

  • Legal reasons. We use your personal data to comply with applicable laws or respond to valid legal procedures, including requests from authorities or government agencies; to investigate or participate in testimonies, ongoing or potential legal claims, or other legal proceedings; and to enforce or investigate potential violations of our terms or policies.

How we disclose personal data

In certain circumstances, we may disclose your personal data to third parties for legitimate purposes subject to this Privacy Policy. These circumstances may include:

  • With Shopify, vendors, and other third parties who perform services on our behalf (for example, IT management, payment processing, data analysis, customer support, storage, fulfillment, and shipping).

  • With business and marketing partners to provide you with services and marketing advertisements. For example, we use Shopify to deliver personalized advertisements with third-party services based on your online activity across different merchants and websites. Our business and marketing partners will use your data in accordance with their own privacy policies. Depending on where you reside, you may have the right to request that we do not share your data for personalized advertising and marketing based on your online activity across different merchants and websites. You may exercise your right to opt out here.

  • When you request or authorize us to disclose certain information to third parties, such as for shipping your products or when using social media widgets or login integrations.

  • With our affiliates or within our corporate group.

  • In connection with a business transaction such as a merger or bankruptcy; in compliance with legal obligations (including responding to subpoenas, search warrants, and similar requests); to enforce service terms or policies; and to protect or defend the Services, our rights, and those of our users or others.

Relationship with Shopify

The Services are powered by Shopify, which collects and processes personal data related to your access to and use of the Services in order to provide and improve the Services for you. To provide and improve the Services, data you submit through the Services will be transmitted to and shared with Shopify and third parties who may reside in countries other than your own.

In addition, to help protect, grow, and improve our business, we use certain advanced Shopify features that incorporate data and information received from you through your interactions with our store, other merchants, and Shopify itself. To provide these advanced features, Shopify may use personal data collected from your interactions with our store, other merchants, and Shopify. In these circumstances, Shopify is responsible for processing your personal data, including responding to your requests to exercise your rights regarding the use of your personal data for these purposes.

For more information about how Shopify uses your personal data and the rights you may have, you can consult the Shopify Consumer Privacy Policy. Depending on where you reside, you may exercise certain rights regarding your personal data through the Shopify Privacy Portal link.

Third-party websites and links

The Services may contain links to websites or other online platforms operated by third parties. If you follow links to sites not affiliated with or controlled by us, you should review their privacy and security policies and other terms and conditions. We do not guarantee and are not responsible for the privacy and security of such sites or the accuracy, truthfulness, or reliability of the information contained therein.

Information you provide in public or semi-public contexts, including information shared on third-party social media platforms, may also be visible to other users of the Services and/or users of those third-party platforms without restriction as to its use by us or third parties. The inclusion of such links does not imply any endorsement by us of the content of such platforms or their owners or operators, except as disclosed in the Services.

Children’s data

The Services are not intended for use by minors, and we do not knowingly collect personal data from children below the age of majority in your jurisdiction. If you are a parent or guardian of a minor who has provided us with personal data, you may contact us using the details below to request deletion.

As of the effective date of this Privacy Policy, we are not aware of any “sharing” or “selling” (as those terms are defined under applicable law) of personal data of individuals under 16 years of age.

Data security and retention

Please note that no security measures are perfect or impenetrable, and we cannot guarantee “absolute security.” In addition, data you send to us may not be secure during transmission. We recommend using secure channels to communicate sensitive or confidential information.

The retention period for personal data depends on various factors, such as whether we need the data to maintain your account, provide the Services, comply with legal obligations, resolve disputes, or enforce agreements and policies.

Your rights and choices

Depending on where you reside, you may have one or more of the following rights regarding your personal data. However, these rights are not absolute and may only apply in certain circumstances, and we may deny your request as permitted by law.

  • Right of access/knowledge. You may have the right to request access to the personal data we hold about you.

  • Right to deletion. You may have the right to request deletion of your personal data.

  • Right to correction. You may have the right to request correction of inaccurate personal data.

  • Right to portability. You may have the right to receive a copy of your personal data and request that we transfer it to a third party, in certain circumstances and with certain exceptions.

  • Right to opt out of sale or sharing for targeted advertising. Depending on where you reside, you may have the right to opt out of the “sale” or “sharing” of your personal data or its processing for “targeted advertising” purposes as defined by applicable privacy laws. You may exercise this right here.

Please note that if you visit our website with the Global Privacy Control opt-out preference enabled, we will automatically treat this as a request to opt out for the device and browser you use to visit the website. If we can associate the device sending the signal with a Shopify account, we will also apply the opt-out request to the account. For more information about Global Privacy Control, you can visit https://globalprivacycontrol.org/. Other than Global Privacy Control, we do not recognize other “Do Not Track” signals that may be sent by your browser or device.

  • Managing communication preferences. We may send you promotional emails, and you can opt out at any time using the unsubscribe option included in our emails. If you opt out, we may still send you non-promotional emails, such as those related to your account or orders.

If you reside in the United Kingdom or the European Economic Area, and subject to limitations imposed by local law, you may also exercise the following rights:

  • Objection to processing and restriction of processing. You may have the right to request that we stop or restrict the processing of your personal data for certain purposes.

  • Withdrawal of consent. Where your consent is required to process your personal data, you have the right to withdraw it. Withdrawal does not affect the lawfulness of processing based on consent before its withdrawal.

You may exercise any of these rights where indicated in the Services or by contacting us using the contact details below. For more information on how Shopify uses your personal data and your rights, including regarding data processed directly by Shopify, visit https://privacy.shopify.com/en.

You will not be discriminated against for exercising your rights. Before processing your request, we may need to verify your identity as permitted by applicable law. In accordance with applicable laws, you may appoint an authorized agent to make requests on your behalf. Before accepting a request from an agent, we will require proof that the agent has been authorized by you, and we may ask you to verify your identity directly. We will respond to your request within the timeframes required by applicable law.

Complaints

If you have complaints about how we process your personal data, please contact us using the contact details below. Depending on where you reside, you may have the right to appeal our decision by contacting us or to lodge a complaint with your local data protection authority. For the EEA, a list of responsible data protection supervisory authorities can be found here.

International transfers

Please note that we may transfer, store, and process your personal data outside the country in which you reside.

If your personal data is transferred outside the European Economic Area or the United Kingdom, we will rely on recognized transfer mechanisms, such as the European Commission’s Standard Contractual Clauses or equivalent contracts issued by the relevant UK authorities, unless the transfer is to a country deemed to provide an adequate level of protection.

Changes to this Privacy Policy

We may update this Privacy Policy from time to time, including to reflect changes in our practices or for operational, legal, or regulatory reasons. We will post the updated Privacy Policy on the website, revise the “Last updated” date, and provide notice as required by applicable law.

Contact

If you have questions about our privacy practices or this Privacy Policy, or if you wish to exercise any of your rights, call the number provided or email us at sapontos.store@gmail.com.

For the purposes of applicable data protection laws, we are the data controller of your personal data.