Last updated: January 31, 2025
Who We Are
Our website address is: https://hierro.store. We operate an e-commerce website that accepts Bitcoin only.
What Personal Data We Collect and Why
Essential Shopping Data
When you use our store, we collect:
- Products you’ve viewed
- Basic location and IP address (for tax and shipping estimates)
- Browser type and version
- Shopping cart contents (stored temporarily via cookies)
Checkout Information
During checkout, we collect:
- Name or alias
- Email address
- Shipping address
- Purchase details
This information is used to:
- Process and fulfill your orders
- Send order confirmations and updates
- Handle refunds and support requests
- Comply with tax and accounting requirements
- Prevent fraud
- Improve our store offerings
Account Information
If you create an account, we store:
- Your name or alias
- Email address
- Password (encrypted)
- Address information
- Order history
If you use Gravatar for your avatar, your email hash may be shared with their service (see: https://automattic.com/privacy/).
Media
Please note: if you upload images, avoid those with embedded location data (EXIF GPS). Visitors can download and extract location data from website images.
Cookies
We use cookies for:
Essential Store Functionality
- Shopping cart contents
- Session management
- Order processing
Optional Features
- Comment author details (if you opt-in)
- Login persistence (lasts 2 days, or 2 weeks with “Remember Me”)
- Screen preferences
Payment Processing
Bitcoin Payments
- We use a self-hosted payment processor (BTCPayServer)
- Minimal personal data is required for transactions
- Transaction IDs are stored for order fulfillment
Data Security
- All data is encrypted using SSL/TLS
- We follow industry best practices for security
Data Sharing
Who Has Access
Our team members can access:
- Order details
- Customer information
- Shipping information
This access is limited to fulfilling orders, processing refunds, and providing customer support.
Third-Party Services
We share data with:
- Shipping providers (delivery services)
Data Retention
We retain data for:
- Order information: 7 years (tax/accounting requirements)
- Account information: Until you delete your account
- Cart sessions: 24 hours
Your Rights
You have the right to:
- Access your personal data
- Receive an export of your data
- Request deletion of your data
- Correct any inaccurate data
- Object to our data processing
Note: Some data must be retained for legal, administrative, or security purposes.
Additional Information
Security Measures
- SSL/TLS encryption for all traffic
- Secure password storage
- Regular security updates
- Limited staff access to personal data
Privacy Policy Updates
We may update this policy occasionally. Significant changes will be notified through our website.
Contact Information
For privacy-related questions:
- Email: privacy@hierro.store
- Response time: Within 48 hours
Legal Basis
This privacy policy complies with:
- GDPR requirements
- CCPA requirements
- Local privacy laws
For specific questions about data handling, please contact privacy_gdpr@hierro.store.