ARTICLE 1 – PERSONAL INFORMATION WE COLLECT
When you make a purchase from our store, as part of the buying and selling process, we collect the personal information you provide, such as your name, address and email address.
When you browse our store, we also automatically receive your computer's internet protocol (IP) address, which helps us learn more about the browser and operating system you use.
Email marketing (where applicable): with your permission, we may send you emails about our store, new products and other updates.
SMS marketing (where applicable): by entering your phone number at checkout, you agree to receive text messages (order tracking and abandoned-cart recovery) as well as promotional offers. SMS messages will not exceed 4 per month. You can unsubscribe at any time by replying STOP.
ARTICLE 2 – CONSENT AND LEGAL BASIS
How do we obtain your consent?
When you provide us with personal information to complete a transaction, verify your credit card, place an order, arrange a delivery or return a purchase, we process this information on the basis that it is necessary to perform our contract with you.
If we ask for your personal information for another reason, such as marketing, we will either ask you directly for your explicit consent or give you the opportunity to opt out. Where we rely on consent (for example, marketing communications), you may withdraw it at any time.
How can I withdraw my consent?
If after opting in you change your mind, you may withdraw your consent for us to contact you, or to collect, use or disclose your information, at any time by contacting us at contact@eavenest.com.
ARTICLE 3 – DISCLOSURE
We may disclose your personal information where required to do so by law, or if you breach our Terms of Service.
ARTICLE 4 – SHOPIFY
Our store is hosted by Shopify Inc. They provide us with the online e-commerce platform that allows us to sell our products and services to you.
Your data is stored through Shopify's data storage, databases and the general Shopify application. Your data is kept on a secure server behind a firewall.
Payment
If you make a purchase through a direct payment gateway, Shopify will store your credit card information. This information is encrypted in accordance with the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction data is stored only as long as necessary to complete your order. Once your order is complete, the purchase transaction information is deleted.
All direct payment gateways comply with PCI-DSS, managed by the PCI Security Standards Council, a joint effort of brands such as Visa, MasterCard, American Express and Discover.
For more information, please review Shopify's Terms of Service and Privacy Statement.
ARTICLE 5 – THIRD-PARTY SERVICES
In general, the third-party providers we use will only collect, use and disclose your information to the extent necessary to perform the services they provide to us.
However, certain third-party service providers, such as payment gateways and other payment transaction processors, have their own privacy policies regarding the information we are required to provide to them for your purchase transactions. We recommend that you read their privacy policies carefully so you can understand how they will handle your personal information.
Some providers may be located in, or have facilities located in, a different jurisdiction from you or us. If you proceed with a transaction that involves a third-party provider, your information may become subject to the laws of the jurisdiction in which that provider or its facilities are located.
Where your personal data is transferred outside the UK, we take steps to ensure it is protected by appropriate safeguards, such as an adequacy decision by the UK Government or standard contractual clauses / an International Data Transfer Agreement recognised under the UK GDPR.
Once you leave our store's website, or are redirected to a third-party website or application, you are no longer governed by this Privacy Policy or by our Terms of Service.
Links
When you click on links on our store, they may direct you away from our site. We are not responsible for the privacy practices of other sites and encourage you to read their privacy statements.
ARTICLE 6 – SECURITY
To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed.
If you provide us with your credit card information, it is encrypted using secure socket layer (SSL) technology and stored with AES-256 encryption. Although no method of transmission over the internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement additional generally accepted industry standards.
COOKIES
Here is a list of cookies that we use. We've listed them here so that you can choose whether you want to allow them or not.
_session_id, unique session identifier, allows Shopify to store information about your session (referrer, landing page, etc.).
_shopify_visit, no data held, persists for 30 minutes from the last visit. Used by our website provider's internal statistics tracker to record the number of visits.
_shopify_uniq, no data held, expires at midnight (relative to the visitor) the next day. Counts the number of visits to a store by a single customer.
cart, unique identifier, persists for 2 weeks, stores information about your cart.
_secure_session_id, unique session identifier.
storefront_digest, unique identifier, indefinite if the store has a password, used to determine whether the current visitor has access.
ARTICLE 7 – AGE OF CONSENT
This website is not intended for children. By using this site, you confirm that you are at least 16 years of age, or that you are using the site with the consent of a parent or guardian. We do not knowingly collect personal data from children under 13.
ARTICLE 8 – CHANGES TO THIS PRIVACY POLICY
We reserve the right to modify this privacy policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon posting on the website. If we make material changes to this policy, we will notify you here that it has been updated, so that you are aware of what information we collect, how we use it, and under what circumstances we disclose it.
If our store is acquired by or merged with another company, your information may be transferred to the new owners so that we may continue to sell products to you.
YOUR RIGHTS AND CONTACT
Under the UK GDPR and the Data Protection Act 2018, you have the right to access, correct, update, restrict, object to, or request deletion of the personal information we hold about you, as well as the right to data portability.
If you would like to exercise any of these rights, make a complaint, or simply want more information, please contact our privacy officer at contact@eavenest.com.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO), the UK supervisory authority, at www.ico.org.uk.
The data controller responsible for your personal data is Louzina Ltd, 71–75 Shelton Street, Covent Garden, London, WC2H 9JQ.
Last updated: 19 July 2026