Privacy Policy
Your trust is our most valuable asset. This policy details how ERREXCA Atelier handles and protects your personal information.
Effective Date: November 24, 2025
1. Data We Collect
We collect personal data to fulfill our services, enhance your shopping experience, and maintain our relationship with you as a valued client.
Personal & Contact Information:
- Name, shipping/billing addresses, email address, and telephone number.
- Account credentials, including encrypted passwords.
- Information gathered when you contact Client Services.
Transaction & Payment Data:
- Details about the products you purchase, order history, and delivery information.
- We do not store full payment card details; these are processed securely by PCI-compliant third-party providers.
Bespoke & Atelier Data:
- Measurements, material preferences, design specifications, and consultation notes relevant to custom commissions.
Technical & Usage Data:
- IP address, browser type, operating system, and data about how you use our website (e.g., pages visited, time spent, referral sources).
2. How We Use Your Data
Your data is primarily used to deliver our luxury products and services, and specifically for the following purposes:
- **Order Fulfillment:** To process transactions, manage shipping, and handle returns and exchanges.
- **Client Service:** To respond to your inquiries, schedule atelier appointments, and manage product warranties.
- **Personalization:** To tailor our website experience and suggest products or services relevant to your interests and purchase history.
- **Security & Fraud Prevention:** To protect our services and clients from fraudulent activities and unauthorized access.
- **Marketing (with Consent):** To send you updates, newsletters, and exclusive event invitations, only where you have explicitly opted in.
3. Data Sharing and Disclosure
ERREXCA Atelier does not sell your personal data. We only share information with third parties necessary to operate our business or as required by law.
- **Service Providers:** We share data with partners who assist with core functions, such as shipping carriers (for delivery), payment processors (for secure transactions), and IT services (for website maintenance).
- **Legal Compliance:** We may disclose your data if legally required to do so by government authorities.
4. Data Security & Retention
We employ robust security measures to protect your personal data from loss, misuse, or unauthorized access, including:
- Secure Socket Layer (SSL) encryption for all data transmitted online.
- Regular security audits and access controls to our databases.
- Encrypted storage of all client passwords using industry-leading hashing algorithms.
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law.
5. Your Client Rights
Depending on your location (such as residents of the EU/EEA or California), you may have the following rights regarding your personal data:
- **Right to Access:** You can request a copy of the personal data we hold about you.
- **Right to Correction:** You can request that we correct any inaccurate or incomplete data we hold.
- **Right to Deletion (Right to be Forgotten):** You can request the deletion of your personal data, subject to certain legal restrictions (e.g., maintaining transaction records).
- **Right to Object:** You can object to the processing of your data for direct marketing purposes at any time.
To exercise any of these rights, please contact our Data Protection Officer at privacy@errexca.com.
6. Changes to this Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any significant changes by posting the new policy on this page and updating the 'Effective Date' at the top.