Privacy Policy – Léonaé | GDPR-Compliant UK Data Protection

Privacy Policy

Leonae (“we”, “us”, “our”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, share and safeguard your information when you visit our website or purchase from our store. By using Leonae, you agree to the terms described below.

1. Controller Information

The data controller responsible for your personal information is:
Leonae
Email: support@leonae.com
Operating in the United Kingdom; serving the United Kingdom and international customers.

2. Legal Basis for Processing (GDPR)

We process personal data under the following legal bases:
• Your consent
• Performance of a contract (to process and deliver your order)
• Legitimate interests (fraud prevention, website analytics, marketing)
• Compliance with legal obligations (tax, accounting, consumer rights)

3. Information We Collect

3.1 Information You Provide Directly

• Name
• Billing and shipping address
• Email address
• Phone number
• Payment details (processed securely by payment providers; we do not store card information)
• Order notes or messages

3.2 Automatically Collected Information

• IP address
• Browser type and device type
• Pages visited and actions taken on the website
• Cookies and tracking technologies (see Cookie Policy)

3.3 Information from Third Parties

We may receive data from payment processors (PayPal, Stripe), advertising platforms (Meta, Google), and shipping partners to fulfil or verify orders.

4. How We Use Your Information

We use personal data to:

• Process, ship and deliver orders for both UK and international customers
• Manage two fulfilment markets (UK warehouse & international suppliers)
• Communicate order updates, tracking links and support
• Detect and prevent fraud
• Improve website performance, content and user experience
• Send marketing communications (only with your consent)

5. Dropshipping Disclosure

To offer a wider product range, Leonae works with fulfilment partners and international dropshipping suppliers (mainly Asia). When necessary, your shipping information may be shared with these partners strictly for order fulfilment.

We do not sell, rent or trade your personal data.

6. Sharing Your Information

We only share your information with trusted service providers:

• Payment processors (Stripe, PayPal, Shopify Payments)
• Shipping carriers (Royal Mail, Evri, international logistics networks)
• International fulfilment warehouses (only to ship your items)
• Shopify (our store platform)
• Analytics providers (Google Analytics, Meta Pixel)
• Email & marketing tools (Klaviyo, Shopify Email)

These parties are required to comply with GDPR and ensure equivalent protection standards.

7. International Data Transfers

Some data may be transferred outside the UK/EU when working with payment processors, analytics platforms or international suppliers. All transfers follow GDPR safeguards, including Standard Contractual Clauses (SCCs).

8. Data Retention

We retain personal information only as long as necessary for:
• Fulfilling orders
• Providing support
• Legal compliance (tax/audit — typically 6 years)
• Accounting and anti-fraud purposes

Marketing data can be deleted at your request.

9. Your Rights Under GDPR

You have the right to:

• Access your personal data
• Correct inaccurate data
• Request deletion (“right to be forgotten”)
• Restrict processing
• Object to marketing
• Request data portability
• Withdraw consent at any time

To exercise any rights, contact us at: support@leonae.com

10. Marketing Preferences

You will only receive email marketing if you opt-in. You may unsubscribe at any time via email or the link in our newsletters.

11. Cookies & Tracking

We use cookies to personalise content, analyse traffic, and improve user experience. See our Cookie Policy for full details.

12. Minors

Our website is not intended for children under 16. We do not knowingly collect or store information from minors.

13. Data Security

We implement technical and organisational measures to protect your data, including encryption, access control, firewall protection and secure payment gateways.

14. External Links

Our website may contain links to third-party sites. We are not responsible for their privacy practices.

15. Changes to This Policy

We may update this Privacy Policy occasionally. Updates will be posted on this page with the revised date. Continued use of our website means you accept any modifications.

16. Contact Information

If you have questions about this Privacy Policy or wish to make a GDPR request, contact us:
Email: support@leonae.com

Phone:+44 20 3996 9251
Subject: Data Protection Request