YOUR VAULT

YOUR VAULT IS EMPTY

START COLLECTING
YOUR DATA

PRIVACY

Last updated: March 2025

Privacy Policy

1. Data We Collect

We collect the minimum information necessary to fulfill your orders and provide our services. This includes: your email address (for account creation, order updates, and optional newsletter), shipping address (for order fulfillment), payment information (processed securely through third-party payment processors — we do not store card details), and basic device/browser data collected automatically through analytics.

2. How We Use Your Data

Your data is used exclusively to: process and ship your orders, communicate order status and shipping updates, send marketing communications (only with your explicit consent), improve our Site and services through anonymized analytics, and prevent fraud. We do not sell, rent, or trade your personal information to third parties for marketing purposes. Period.

3. Cookies and Analytics

We use essential cookies required for Site functionality (cart, session management) and optional analytics cookies to understand how visitors interact with our Site. Analytics data is anonymized and aggregated. You can disable non-essential cookies through your browser settings. The Site will remain functional with only essential cookies.

4. Third-Party Services

We use the following third-party services that may process your data: payment processors (for secure transaction handling — they operate under their own privacy policies), shipping carriers (receiving only the information necessary for delivery), email service providers (for transactional and marketing emails), and analytics providers (receiving only anonymized, aggregated data). All third-party partners are vetted for security and data handling practices.

5. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy. Order data is retained for the duration required by applicable tax and commerce regulations. Account data is retained until you request deletion. Analytics data is anonymized and retained indefinitely in aggregate form. You may request deletion of your data at any time (see Section 7).

6. Data Security

We implement industry-standard security measures to protect your data, including encrypted connections (TLS/SSL), secure payment processing through PCI-compliant providers, restricted access to personal data on a need-to-know basis, and regular security audits. While we take every reasonable precaution, no system is 100% secure. We will notify affected users promptly in the unlikely event of a data breach.

7. Your Rights (GDPR & Global)

Regardless of your location, you have the right to: access the personal data we hold about you, correct inaccurate data, request deletion of your data ("right to be forgotten"), export your data in a portable format, withdraw consent for marketing communications at any time, and lodge a complaint with a supervisory authority. To exercise any of these rights, contact us at privacy@frostedgenetics.com. We will respond within 30 days.

8. Law Enforcement

We will NEVER share your personal information with law enforcement agencies without valid legal process. This means we require a valid court order, warrant, or subpoena before disclosing any user data. We will notify you of any such request unless legally prohibited from doing so. We do not voluntarily cooperate with fishing expeditions. Your privacy is not negotiable.

9. Minors

Our Site and services are not intended for individuals under 18 years of age (or 21 where applicable). We do not knowingly collect personal information from minors. If we become aware that we have collected data from a minor, we will delete it immediately.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated effective date. Significant changes will be communicated via email to registered users. Continued use of the Site after changes constitutes acceptance of the updated policy.

11. Contact

For any privacy-related inquiries, data requests, or concerns, contact us at privacy@frostedgenetics.com. For data deletion or export requests, please include the email address associated with your account. We aim to respond to all requests within 30 days.

FROSTED GENETICS — PRIVACY POLICY — LAST UPDATED MARCH 2025