Privacy Policy
HKXSC-SAUNA ("we," "us," or "our") respects your privacy and is committed to protecting your personal information. This policy describes how we collect, use, and share your information when you visit or make purchases from hkxsc-sauna.com (the "Site").
1. INFORMATION WE COLLECT
a) Personal Identification Data
- Name, email, phone number
- Shipping/billing addresses
- Payment information (processed via PCI-DSS compliant gateways)
b) Device Information (Automatically Collected)
- IP address, browser type, device identifiers
- Time zone, cookie data, referring URLs
- Site interaction data (pages viewed, session duration)
Collected through:
- Cookies
- Log files (IP address, browser type)
- Web beacons/pixels (page interaction tracking)
c) Product-Specific Data
- Sauna usage patterns (from connected devices)
- Optional wellness preference surveys
2. HOW WE USE YOUR INFORMATION
Purpose | Examples | Legal Basis |
---|---|---|
Order Processing | Payment processing, shipping, warranty activation | Contract fulfillment |
Customer Support | Sauna maintenance inquiries, returns | Legitimate interest |
Risk Management | Fraud screening (using IP/device data) | Legal compliance |
Site Optimization | Analytics via Google Analytics | Legitimate interest |
Marketing* | New sauna accessory announcements | Consent |
Product Improvement | Infrared heater performance analysis | Legitimate interest |
*Opt-out available at any time
3. SHARING YOUR INFORMATION
We never sell personal data. Limited sharing occurs with:
✅ Service Providers:
- Shopify (e-commerce platform)
- Google Analytics
✅ Logistics Partners:
UPS/LTL for delivery
✅ Payment Processors:
PayPal, Stripe (PCI-DSS Level 1)
✅ Legal Compliance:
Court orders or regulatory requests
4. BEHAVIORAL ADVERTISING
We use Device Information for targeted ads. Opt-out options:
Do Not Track: We do not alter data practices in response to DNT signals.
5. YOUR PRIVACY RIGHTS
- Access/Correction: Request data file via service@hkxsc-sauna.com
- Deletion: Remove non-essential data (transaction records excluded)
- Opt-Out: Marketing unsubscribe (link in all emails)
- CCPA/CPRA: California residents may designate agents
EU Residents:
- Right to erasure/portability
- Data transferred outside Europe (US/Canada) under SCCs
- Processing basis: contract fulfillment or legitimate interests
6. DATA RETENTION
Order Information is retained until deletion request, unless required by law. Device Information is anonymized after 26 months.
7. SECURITY MEASURES
- 256-bit SSL encryption
- Regular penetration testing
- Payment tokenization
- Employee privacy training
8. INTERNATIONAL TRANSFERS
Data may transit through U.S. (CA/TX), EU (Germany), and Hong Kong servers under GDPR-compliant safeguards.
9. CHILDREN'S PRIVACY
Site not intended for users <18. We do not knowingly collect minors' data.
10. CONTACT US
For questions or complaints:
- Email: service@hkxsc-sauna.com
- Phone: (909) 809-6087 (Privacy Officer)
Sauna-Specific Protections
- Usage Analytics: Anonymized unless explicit consent given
- Health Data Separation: Wellness surveys stored separately
- Voice Recordings: "Support calls recorded for quality" (if applicable)
Updated April 16, 2025
COPYRIGHT © 2025 HKXSC-SAUNA. ALL RIGHTS RESERVED