Privacy Policy
Printvia.store is committed to protecting your privacy and handling your personal information transparently and securely. This policy details our data practices in compliance with applicable privacy laws.
Last updated: November 22, 2025
California Residents
CCPA notice reference
California consumers have additional rights under the California Consumer Privacy Act (CCPA). See Section 8 below for your CCPA rights and how to exercise them.
Data Controller Information
Company details and enterprise security statements
ISO 27001 Ready: Printvia.store has implemented an Information Security Management System (ISMS) aligned with ISO 27001:2022 standards. We maintain comprehensive security controls and are prepared for formal certification, demonstrating our commitment to protecting your personal information through international best practices.
Enterprise Data Protection Standards: We adhere to enterprise data protection requirements framework, implementing comprehensive security controls. Our commitment includes encryption standards (TLS 1.3, AES-256) and incident response procedures aligned with enterprise-grade requirements for supplier partnerships.
Your Privacy Rights
High-level principles
We are committed to protecting your personal information and respecting your privacy rights. We collect only data necessary for essential e-commerce functions and never sell personal information to third parties.
- We collect data you voluntarily provide and certain usage information
- Personal data is used only to fulfill orders and provide customer service
- We share information only with trusted service providers and as required by law
- You have the right to access, correct, delete, or port your personal data
- We implement industry-standard security measures to protect your information
1. Information We Collect
Bifurcated into provided vs automatic
Personal Information You Provide
- Contact details (name, email address, phone number)
- Account credentials and profile information
- Billing and shipping addresses for order fulfillment
- Payment information (securely processed by certified payment processors)
- Order history, product preferences, and wishlist items
- Customer service communications and feedback
- Essential communications related to your orders and account
Automatically Collected Information
- Technical data (IP address, browser type, device identifiers)
- Essential session data for cart and order functionality only
- System information (operating system, screen resolution)
- Essential session data for cart and checkout functionality
- Cart activity for order processing only
- Security logs for fraud prevention and system protection
2. How We Use Your Information
Purpose-based cards
We process your personal information for legitimate business purposes, including:
🛒 Order Processing
To fulfill purchases, manage payments, and coordinate shipping
🎧 Customer Service
To provide support, handle returns, and respond to inquiries
👤 Account Management
To maintain your account, preferences, and order history
📧 Essential Communications
To send order confirmations and account-related notifications
📊 Service Improvement
To analyze usage patterns and enhance platform functionality
🔒 Security & Fraud Prevention
To protect against unauthorized access and fraudulent activities
⚖️ Legal Compliance
To meet regulatory requirements and respond to legal requests
🔧 Platform Maintenance
To maintain and improve essential e-commerce functionality only
Legal Basis
We process personal data based on contract fulfillment, legitimate interests, legal obligations, and explicit consent where required by applicable privacy laws.
3. Information Sharing
Limited circumstances + vendor disclosure
We never sell, rent, or trade your personal information to third parties. We only share information for essential e-commerce functions in these limited circumstances:
🤝 Trusted Service Providers
Vetted partners who help us deliver services (shipping, payment processing, customer support) under strict confidentiality agreements
⚖️ Legal Obligations
When required by law, legal process, court order, or government authority
🏢 Business Transfers
In case of merger, acquisition, or asset sale (with notice to affected users)
🛡️ Safety & Security
To protect against fraud, security threats, or harm to our users and business
✅ Explicit Consent
With your clear, informed consent for specific disclosed purposes
Data Processing Agreements
All third-party service providers are contractually obligated to protect your data and use it only for specified purposes.
Third-Party Service Providers & Vendors (CCPA/CPRA Disclosure)
As required by California law, we disclose all third-party service providers who may process your personal information:
- Payment Processing: Stripe Inc. - Processes credit/debit card payments and manages transactions
- Cloud Storage: Google Cloud Storage - Stores product images and digital assets
- Database Hosting: Neon Database (PostgreSQL) - Stores user accounts, orders, and product data
- Application Hosting: Replit - Hosts and deploys our web application
- Analytics (with consent): Google Analytics - Analyzes website traffic and user behavior
- Shipping Partners: USPS, UPS, FedEx - Fulfills product deliveries (receives name/address only)
- Email Services: Transactional and marketing email providers (when you've opted in)
- Content Delivery: Cloudflare - Provides website security and performance optimization
- Customer Support: Help desk and ticketing systems for customer service
Important: We do NOT sell or share your personal information for cross-context behavioral advertising. All service providers are contractually bound to protect your data and use it only as directed by us.
4. Essential Cookies
Essential-only approach
We use only essential cookies necessary for e-commerce functionality:
- 🔐 Strictly Necessary Cookies — Essential for website functionality, security, and core services
- ⚡ Performance Cookies — Essential functionality only, no tracking or analytics
- 🎛️ Functional Cookies — Remember your preferences and settings for enhanced user experience
- 🚫 Essential Cookies Only — We do not use marketing or advertising cookies
Your Control
You can manage cookie preferences through our cookie consent banner or your browser settings. Disabling certain cookies may affect website functionality.
No Third-Party Tracking
We do not work with analytics or advertising partners for tracking purposes.
5. Data Security & Enterprise Protection Controls
Security measures + breach notification
We employ industry-standard security measures aligned with comprehensive enterprise security controls to protect your personal information:
- 🔒 Advanced Encryption — TLS 1.3 for data in transit, AES-256 encryption for data at rest
- 🔑 Access Controls — Multi-factor authentication and role-based access per enterprise standards
- ☁️ Infrastructure Security — Secure cloud hosting with 24/7 monitoring and threat detection
- 🔍 Regular Audits — Quarterly security assessments aligned with ISO 27001 framework
- 👨🎓 Staff Training — Enterprise-aligned privacy and security training for all personnel
- 💳 Payment Security — PCI DSS compliant payment processing with tokenization
- 🚨 Incident Response — 24-72 hour breach notification procedures per enterprise requirements
- 🛡️ Data Protection — Implementation of comprehensive security controls
- 📊 Security Monitoring — Continuous monitoring and logging per enterprise standards
Enterprise Security Control Categories
• Access Control: User access management, privileged access controls
• Cryptography: Key management, digital signatures, encryption protocols
• Physical Security: Secure areas, equipment protection
• Operations Security: Change management, malware protection
• Communications Security: Network controls, information transfer policies
• System Development: Security testing, code review processes
• Incident Management: Response procedures, forensic readiness
• Compliance: Regular assessments, audit trails
Data Breach Notification
Per enterprise requirements, we maintain a 24-72 hour breach notification procedure. In the unlikely event of a data breach affecting your personal information, we will notify you within 24 hours of discovery and relevant authorities within 72 hours as required by applicable laws and enterprise standards.
Data Processing Principles
We follow industry-standard data processing principles including lawfulness, fairness, transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, and confidentiality in all our data handling practices.
Your Responsibility
Please use strong, unique passwords and keep your account credentials confidential. Report any suspicious activity immediately.
6. Your Privacy Rights & Opt-Out Instructions
Opt-out and requests (updated email/phone)
You have the right to control your personal information. Here's how to exercise your privacy rights and opt out:
Opt Out of Communications
- 📧 Email Unsubscribe — Click the "unsubscribe" link in any promotional email
- ⚙️ Account Settings — Update your communication preferences in your account dashboard
- ✉️ Contact Us — Email support@printvia.store to stop all non-essential communications
- 📱 Phone/SMS — Reply "STOP" to any text messages or call us to opt out
Data Control Rights
Access Your Data
Request a copy of all personal information we have about you
Update Information
Correct or update any inaccurate personal information
Delete Your Data
Request complete deletion of your personal information (subject to legal requirements)
Data Portability
Request your data in a portable format to transfer to another service
Restrict Processing
Limit how we use your personal information
Object to Processing
Object to data processing based on legitimate interests
Withdraw Consent
Revoke consent for data processing at any time
How to Exercise Your Rights
Third-Party Opt-Outs
For general online behavioral advertising opt-outs:
- 🚫 NAI Opt-Out — Visit networkadvertising.org/choices
- 📊 DAA Opt-Out — Visit optout.aboutads.info
- 🌐 Browser Settings — Enable "Do Not Track" in your browser settings
Note
We do not use third-party tracking or advertising technologies, but these resources are provided for your general privacy protection.
No Discrimination: We will not discriminate against you for exercising your privacy rights.
7. Data Retention
Retention schedule
Following enterprise data retention policies, we retain your personal information for as long as necessary to:
- 🛠️ Provide our services — Support your account and deliver our services effectively
- ⚖️ Comply with legal obligations — Meet regulatory requirements and legal responsibilities
- 🤝 Resolve disputes — Handle conflicts and enforce our agreements
- 🔒 Improve & prevent fraud — Enhance services and protect against fraudulent activities
Enterprise-Aligned Retention Schedule
• Account Data: Retained while account is active plus 30 days after closure
• Transaction Records: 7 years per financial compliance requirements
• Security Logs: 90 days for operational logs, 1 year for audit trails
• Customer Support: 2 years from resolution per enterprise standards
When retention periods expire, we securely delete or anonymize data using industry-approved methods.
8. Third-Party Links
External website disclaimer
External Website Disclaimer
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of these external sites. We encourage you to review the privacy policies of any third-party sites you visit.
8. California Consumer Privacy Rights (CCPA/CPRA)
For California residents (updated contact details)
For California Residents
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA).
Categories of Personal Information We Collect:
Identifiers
Name, email address, phone number, IP address
Commercial Information
Purchase history, shopping preferences
Internet Activity
Browsing history on our website, search history within our site
Geolocation Data
General location from IP address for shipping purposes
Your California Privacy Rights:
Right to Know
Request information about what personal information we collect, use, and disclose
Right to Delete
Request deletion of your personal information (subject to certain exceptions)
Right to Correct
Request correction of inaccurate personal information we maintain about you
Right to Opt-Out
Opt out of the sale or sharing of your personal information
Right to Limit
Limit use and disclosure of sensitive personal information
Right to Non-Discrimination
Not receive discriminatory treatment for exercising your privacy rights
How to Exercise Your Rights:
Submit a Request:
• Email: support@printvia.store
• Phone: +1 (855) 727-3908
• Online: Use our "Do Not Sell or Share" link below
Verification Process:
We may need to verify your identity before processing your request to protect your privacy and security.
We Do Not Sell or Share Personal Information
Printvia.store does not sell, rent, or share your personal information with third parties for their direct marketing purposes. However, you can still exercise your opt-out rights if our practices change.
Do Not Sell or Share My Personal Information
9. Children's Privacy (COPPA Compliance)
Age restriction
Age Restriction Policy
Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.
If you believe we have collected information from a child under 13, please contact us immediately.
10. Changes to This Policy
Updates and notice
Policy Updates
We may update this Privacy Policy periodically to reflect changes in our practices or for legal reasons. We will notify you of any material changes by posting the updated policy on our website and updating the "Last Updated" date.
Contact Us About Privacy
Updated email/TFN/address
If you have questions about this Privacy Policy or how we handle your personal information, please contact us: