Privacy policy
Last updated: March 22, 2025
This Privacy Policy describes how VERVEIL Official (the "VERVEIL" or "VERVEIL Official", "Site", "we", "us", or "our") collects, uses, and discloses your personal information when you visit, use our services, or make a purchase from verveil-official.com (the "Site") or otherwise communicate with us regarding the Site (collectively, the "Services"). For purposes of this Privacy Policy, "you" and "your" means you as the user of the Services, whether you are a customer, website visitor, or another individual whose information we have collected pursuant to this Privacy Policy.
Please read this Privacy Policy carefully. By using and accessing any of the Services, you acknowledge that you have read, understood, and agree to the collection, use, and disclosure of your information as described in this Privacy Policy. If you do not agree to this Privacy Policy, please do not use or access any of the Services.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time, including to reflect changes to our practices or for other operational, legal, or regulatory reasons. We will post the revised Privacy Policy on the Site, update the "Last updated" date, and take any other steps required by applicable law. We encourage you to review this Privacy Policy periodically to stay informed about our practices.
How We Collect and Use Your Personal Information
To provide the Services, we collect and have collected over the past 12 months personal information about you from a variety of sources, as set out below. The information that we collect and use varies depending on how you interact with us.
In addition to the specific uses set out below, we may use information we collect about you to communicate with you (including responding to your inquiries and providing customer support), provide, personalize, and improve the Services, comply with any applicable legal obligations (such as tax and anti-fraud laws), enforce any applicable terms of service, and to protect or defend the Services, our rights, and the rights of our users or others.
2.1 What Personal Information We Collect
The types of personal information we obtain about you depends on how you interact with our Site and use our Services. When we use the term "personal information", we are referring to information that identifies, relates to, describes or can be associated with you. The following sections describe the categories and specific types of personal information we collect.
2.1.1 Information We Collect Directly from You
Information that you directly submit to us through our Services may include:
- Basic Contact Details: Your full name, postal address (for billing and shipping purposes, including physical street address), phone number, and email address.
-
Order Information: Details related to your purchase, including items ordered, size and color selections, billing and shipping addresses (including information provided if shipping to a hotel or a freight forwarding service, such as hotel name, registered guest name, room number, dates of stay, and freight forwarder address), payment confirmation details (e.g., last four digits of your credit card, transaction ID; we do not store full payment card numbers), email address, and phone number.
-
Account Information: If you choose to create an account with us, we collect your username, password, order history, and any other security question/answer you choose to provide.
-
Shopping Information: Items you view, add to your cart, or add to your wishlist; search terms you use on the Site.
-
Customer Support Information: Any information you share when corresponding with us via assist@verveil-official.com or through our help forms. This includes, but is not limited to, inquiries and information related to:
-
Placing orders, order modifications, or cancellations.
-
Payment processing, failures, declines, or refund status.
-
Shipping address corrections, updates, or issues.
-
Item availability, stock levels, or out-of-stock notifications.
-
Order processing status, production timelines, delays, or verification holds (e.g., for high-risk orders).
-
Shipping and delivery details, including tracking inquiries, estimated delivery times, customs procedures, and intervention if a package is held or delayed.
-
Non-receipt of packages, mis-delivered packages, undeliverable packages, or refused deliveries.
-
Product discrepancies (e.g., item significantly different from description, photos, wrong item received).
-
Returns, exchanges, or refunds for damaged, defective, incorrect items, or "change of mind" reasons, which may include providing photographic and/or video evidence to support your claim.
-
Queries about product fit, material composition (e.g., for apparel, jewellery), dimensions (e.g., for bags), care instructions, or potential skin sensitivities to materials (e.g., jewellery).
-
General inquiries about our products, Services, policies, or promotions.
-
-
User-Generated Content: If you provide reviews, feedback, comments, or recommendations on our Site, we collect the content you submit along with any images or videos you choose to share.
Some features of the Services may require you to directly provide us with certain information about yourself. You may elect not to provide this information, but doing so may prevent you from using or accessing these features (such as completing a purchase or creating an account).
2.1.2 Information We Collect through Cookies and Similar Technologies (Usage Data)
We also automatically collect certain information about your interaction with the Services ("Usage Data"). To do this, we may use cookies, pixels, web beacons, and similar technologies ("Cookies"). Usage Data may include:
-
Device and Browser Information: Device type (desktop/mobile/tablet), operating system and version, browser type and version, screen resolution, IP address, and language preferences.
-
Network Information: Your IP address (which may be used to infer your general location), Internet Service Provider (ISP), and network connection type.
-
Interaction Data: Pages or products viewed on the Site, time spent on pages, links clicked, features used (e.g., on-site currency converters), shopping cart activity (items added, abandoned), and similar browsing behavior and navigation paths through the Site.
-
Referral and Landing Pages: The website or link that referred you to our Site, search terms used to find our Site, and any promotional attribution data (e.g., coupon code usage, campaign identifiers).
-
Analytics and Performance Data: Information about how you navigate and interact with the Site, errors encountered, Site performance metrics (e.g., page load times), and overall user experience data.
This Usage Data helps us understand customer behaviour, improve our Site functionality, personalize your experience, diagnose technical issues, and enhance our Services.
2.1.3 Information We Obtain from Third Parties
Finally, we may obtain information about you from third parties, including from vendors and service providers who may collect information on our behalf, such as:
-
Shopify: Our Site is powered by Shopify. Shopify collects and processes information (including Usage Data via cookies) as part of providing the e-commerce platform, hosting, and basic infrastructure for our Services. We also receive customer and order information from Shopify when you place an order or create an account. For more information on Shopify's data practices, please refer to Shopify's Privacy Policy.
-
Payment Processors: Companies like Visa, MasterCard, American Express, PayPal, Google Pay, Apple Pay, and other payment gateways available on our Site collect payment information (e.g., bank account, credit or debit card number, expiration date, CVV, billing address) to authorize and process your payment in order to fulfill your orders and provide you with products or services you have requested. We do not store your full payment card information on our servers; sensitive payment data is handled directly by these processors through secure, encrypted channels.
-
Order Fulfillment Facilitation Partners (e.g., DSers-like applications): Our store utilizes third-party applications and services (order routing systems) to help us manage and automate the transmission of your orders efficiently. These partners receive necessary order information (such as items ordered, customer name, shipping address, email, and phone number) from our Shopify platform to integrate with our network of international suppliers for fulfillment.
-
International Suppliers and Fulfillment Partners: To fulfill your orders, we share necessary order and shipping information (including your name, shipping address, phone number, email address, and details of the items ordered) with our network of trusted third-party suppliers, specialized fulfillment centers, and artisan workshops. These partners are located in various international regions and are responsible for manufacturing (if applicable), picking, packing, quality checking, and dispatching your items directly to you from their locations.
-
Shipping Carriers: Various international and local postal services and couriers (e.g., DHL, FedEx, UPS, USPS, national postal services) receive your shipping information (name, address, phone number, package weight/dimensions) to transport, track, and deliver your orders. We may obtain shipment status updates from them.
-
Marketing and Advertising Partners: We may use third-party advertising platforms and social media networks (e.g., Facebook, Instagram, Google Ads, TikTok) that may collect data about your browsing behavior on our Site (via Cookies) to deliver tailored advertisements on their platforms or other websites. They may also provide us with aggregated reports on ad performance.
-
Analytics Providers: We may share Usage Data, often in aggregated or pseudonymized form, with analytics providers (e.g., Google Analytics) to help us understand Site traffic, user engagement, campaign effectiveness, and overall Site performance.
Any information we obtain from third parties will be treated in accordance with this Privacy Policy. We are not responsible for the accuracy of the information provided to us by third parties and are not responsible for any third party's policies or practices. For more information, see Section 5, "Third Party Websites and Links."
2.2 How We Use Your Personal Information
We use your personal information for legitimate business purposes in accordance with applicable data protection laws, including but not limited to:
2.2.1 Providing Products and Services (Primarily for Contractual Necessity)
This is essential to perform our contract with you when you place an order.
-
Order Processing & Fulfillment:
-
To process, confirm, and manage your orders (e.g., verify billing details, confirm availability of selected items).
-
To transmit your order and shipping information to our Order Fulfillment Facilitation Partners, who then route it to the appropriate International Suppliers and Fulfillment Partners for picking, packing, quality checking, and dispatch.
-
To facilitate payment processing via our third-party payment processors.
-
To generate and send order confirmation emails, shipping confirmation emails (with tracking numbers), and any relevant notifications regarding your order status (e.g., "on hold," "pending verification," "partially shipped").
-
To manage any issues related to stock, quality checks, or supplier availability—e.g., if an item unexpectedly becomes unavailable or fails a quality check, we will contact you to offer alternative options, a delayed shipment, or a refund.
-
-
Shipping & Delivery:
-
To arrange shipping through our network of international carriers, including calculating accurate shipping fees based on weight, dimensions, and destination.
-
To communicate tracking details to you and to coordinate with shipping carriers for delivery status updates, customs clearance, and any intervention if a package is held, delayed, or encounters delivery issues.
-
-
Account Management:
-
To create, maintain, and secure your customer account, allowing you to view order history, track shipments, save addresses, and manage preferences.
-
To authenticate login credentials and manage account recovery processes if you forget your password or need to update your profile.
-
-
Returns, Exchanges & Refunds:
-
To process requests for returns or exchanges following our policy guidelines (e.g., eligibility checks, condition verification, assigning returns authorization numbers, and providing instructions for return to the correct international returns facility address).
-
To collect and review evidence (photos, videos) of damaged, defective, or incorrect items.
-
To evaluate "change of mind" requests and coordinate return shipping logistics.
-
To issue refunds, store credits, or replacements (as applicable), reflecting any adjustments for original shipping fees, duties, or return shipping costs.
-
To address issues with incorrect, defective, or misrepresented items, sometimes without requiring physical returns (e.g., approving a refund or store credit based on evidence alone).
-
-
Customer Support & Communication (Related to Services):
-
To respond to your inquiries as detailed in Section 2.1.1 under "Customer Support Information."
-
To send administrative or transactional messages—for example, changes to our terms or policies, reminders to update account information, or verification requests if an order is flagged for security review.
-
For EEA/U.K. residents, the primary legal basis for these processing activities is the necessity to perform our contract with you (Article 6(1)(b) GDPR/UK GDPR). Where not strictly contractual, it falls under our legitimate interest to provide effective services and support (Article 6(1)(f) GDPR/UK GDPR).
2.2.2 Marketing and Advertising (Legitimate Interest / Consent Where Required)
-
Email Marketing & Promotional Communications:
-
To send you newsletters, promotional offers, and updates about new products, sales events, or special collections, provided you have opted-in or, where permitted by law (e.g., for existing customers regarding similar products), have not opted out.
You may opt out of promotional emails at any time by clicking the “Unsubscribe” link in the footer of marketing emails or by contacting assist@verveil-official.com.
-
-
Targeted Advertising & Personalization:
-
To tailor product recommendations and advertisements both on our Site and on third-party platforms (e.g., social media, search engines, other websites) based on your browsing behavior, purchase history, and expressed interests.
-
When you visit our Site, we or our advertising partners may use Cookies or pixels to track your interactions. We may share hashed or pseudonymized identifiers (like an encrypted email address) or Usage Data with advertising partners to serve relevant ads to you and others like you.
You can often control your preferences for targeted advertising through cookie banners on our Site, your browser settings, device settings, or the settings of the advertising platforms themselves. Where applicable, you may set a Global Privacy Control (GPC) preference, which we will honor as an opt-out of "sale" or "sharing" as required by law.
-
For EEA/U.K. residents, the legal basis for these marketing communications and targeted advertising is typically your consent (Article 6(1)(a) GDPR/UK GDPR), especially for cookies and electronic direct marketing to new prospects. In some limited cases (e.g., marketing to existing customers about similar products, or very general site personalization not involving extensive profiling), it may be our legitimate interest in growing our business (Article 6(1)(f) GDPR/UK GDPR), balanced against your right to privacy and your ability to opt-out.
2.2.3 Security and Fraud Prevention (Legitimate Interest / Legal Obligation)
-
Transaction Verification & Fraud Detection:
-
To screen orders for potential risk or fraud (e.g., using automated tools or manual review based on criteria like billing versus shipping address mismatch, unusually large or high-value purchases, IP address geolocation, past fraudulent activity).
-
To place certain orders on "hold" pending manual verification, which might involve contacting you for additional information.
-
To detect, prevent, investigate, and mitigate potential malicious, fraudulent, or illegal activity (e.g., unauthorized access, payment fraud, identity theft, denial-of-service attacks).
-
-
Account Security:
-
To monitor for suspicious login attempts or unauthorized access to your account.
-
To encourage best practices such as using strong, unique passwords and not sharing credentials.
-
-
Site Integrity & Incident Response:
-
To protect the security and integrity of our Site, databases, and systems.
-
To identify, investigate, and remediate security incidents, including cyberattacks, data breaches, or other threats to our systems or your data.
-
For EEA/U.K. residents, the legal basis for these security and fraud prevention activities is our legitimate interest in safeguarding our business, you, and other customers (Article 6(1)(f) GDPR/UK GDPR), and in some cases, to comply with a legal obligation (Article 6(1)(c) GDPR/UK GDPR).
2.2.4 Communicating with You and Service Improvement (Legitimate Interest)
-
Order Updates and Informational Messages (Non-Promotional):
-
To send you non-promotional communications such as order confirmations, shipping notifications, return authorizations, refund confirmations, customer support replies, and requests for additional information (e.g., if you provided an incorrect address or if a product is unexpectedly out of stock).
-
-
Customer Feedback & Quality Control:
-
To solicit feedback about your shopping experience, product satisfaction, and service quality so we can continuously improve.
-
To analyze returned merchandise, damage or defect reports, and discrepancy cases to identify potential trends, improve sourcing, enhance product descriptions, and monitor partner performance.
-
-
Operational Analytics & Site Optimization:
-
To understand how customers use our Site, measure the effectiveness of features, optimize our interface, and streamline processes (e.g., checkout flow, search functionality, product recommendations).
-
To perform A/B testing, gather aggregate usage trends, diagnose and fix technical issues, and improve our overall user experience.
-
-
Legal Compliance and Protection of Rights:
-
To comply with applicable legal obligations, regulatory requirements, and legal processes (e.g., responding to subpoenas or court orders).
-
To establish, exercise, or defend our legal rights or claims.
-
For EEA/U.K. residents, the legal basis for these activities is our legitimate interest in offering responsive, efficient service, maintaining a positive customer relationship, improving our offerings, and protecting our legal rights (Article 6(1)(f) GDPR/UK GDPR). For legal compliance, it is Article 6(1)(c) GDPR/UK GDPR.
Cookies and Similar Technologies
Like many websites, we use Cookies on our Site. For specific information about the Cookies that we use related to powering our store with Shopify, see https://www.shopify.com/legal/cookies. In brief, these Cookies can be categorized as:
-
Essential/Strictly Necessary Cookies: Required for the Site to function properly (e.g., remembering cart contents, login sessions, security features, processing payments). These cannot be disabled.
-
Analytics and Performance Cookies: Used to understand how you interact with our Site (e.g., page views, time on page, error tracking, popular products) to help us improve features, performance, and user experience.
-
Functionality Cookies: Enable enhanced features and personalization, such as remembering your preferences (e.g., language, currency), or recognizing returning users to provide a more tailored experience.
-
Advertising and Targeting Cookies: Allow us and our third-party advertising partners (e.g., Google Ads, Facebook Pixel) to deliver personalized advertisements relevant to your interests, both on our Site and on other websites. They also help measure the effectiveness of ad campaigns and limit the number of times you see an ad.
Most browsers automatically accept Cookies by default, but you can choose to set your browser to remove or reject Cookies through your browser controls. Please keep in mind that removing or blocking Cookies can negatively impact your user experience and may cause some of the Services, including certain features (like cart functionality, login, saved preferences) and general functionality, to work incorrectly or no longer be available. Additionally, blocking Cookies may not completely prevent how we share information with third parties such as our advertising partners. For more information on controlling advertising preferences, see Section 2.2.2 and Section 8.
How We Disclose Personal Information
In certain circumstances, we may disclose your personal information to third parties for legitimate purposes subject to this Privacy Policy. We do not "sell" your personal information in the traditional sense of exchanging it for monetary consideration. However, some disclosures for targeted advertising may be considered a "sale" or "sharing" under certain privacy laws like the CCPA/CPRA, for which you have opt-out rights (see Section 8).
Such circumstances for disclosure may include:
-
With vendors, service providers, and other third parties who perform services on our behalf or help us fulfill our business functions:
-
Shopify: As our e-commerce platform provider, hosting service, and for core site functionalities.
-
Payment Processors: To securely process your payments and prevent fraud.
-
Order Fulfillment Facilitation Partners: Software or applications (e.g., DSers-like tools) that automate the transmission of order details from our Shopify store to our network of suppliers. They receive identifiers, order information, and contact details for this routing purpose.
-
International Suppliers and Fulfillment Partners: We share necessary order information (including your name, shipping address, phone number, email, and details of items ordered) with these partners, who are located in various international dispatch locations, for the sole purpose of manufacturing (if applicable), picking, packing, quality checking, and shipping your order directly to you.
-
Shipping Carriers: To deliver your orders and provide tracking updates.
-
Customer Support Tools: Email hosting providers, help desk software to manage communications.
-
Data Analytics Providers: To analyze Site usage, performance, and customer behavior.
-
IT/Cloud Service Providers: For hosting, data storage, backups, and security monitoring.
-
Return Processing Partners: International returns facilities or services that may assist in handling returns, inspections, and restocking.
-
-
With Business and Marketing Partners:
-
Email Service Providers: To send newsletters, promotional content, and transactional emails.
-
Advertising Platforms & Networks: To deliver interest-based or remarketing ads on third-party websites, apps, and social media platforms. We may share hashed identifiers (like encrypted email addresses) or Usage Data with these partners. These partners may also collect information directly from your browser or device via Cookies when you visit our Site.
-
Affiliate Partners: If we engage in affiliate marketing, we may share non-sensitive transactional data (e.g., order ID, sale amount, promo code used) with affiliate networks or partners to attribute sales and calculate commissions. We would not share your direct personal identifiers for this purpose without further consent or clear notice.
-
-
When you direct, request us, or otherwise consent to our disclosure of certain information to third parties:
For example, if you elect to use a social media login integration (if offered) or share content from our Site on social media, you authorize us to share certain data with that platform.
If you explicitly ask us to share your information with a specific third party. -
In connection with a Business Transaction:
If VERVEIL Official is involved in a merger, acquisition, financing, reorganization, bankruptcy, receivership, sale of company assets, or transition of service to another provider, your personal information may be transferred as part of that transaction. We will notify you before your personal information is transferred and becomes subject to a different privacy policy, if required by law. -
To Comply with Legal Obligations and Protect Rights:
We may disclose your personal information if required to do so by law or in response to valid legal processes, such as subpoenas, court orders, search warrants, or governmental/regulatory requests.
To enforce our Terms of Service, investigate potential fraud or policy violations, or protect the rights, property, or safety of VERVEIL Official, our users, our partners, or the public. This includes sharing data with law enforcement, regulators, or other third parties when we believe in good faith it is necessary.
We have, in the preceding 12 months, disclosed the following categories of personal information for the business or commercial purposes set out above:
| Category of Personal Information | Categories of Recipients |
| Identifiers (e.g., name, postal address, email, phone number, IP address, account username) | Shopify, Payment Processors, Order Fulfillment Facilitation Partners, International Suppliers/Fulfillment Partners, Shipping Carriers, Customer Support Tools, Data Analytics Providers, IT/Cloud Service Providers, Return Processing Partners, Business and Marketing Partners (e.g., Email Service Providers, Advertising Platforms). |
| Commercial Information (e.g., order details, items viewed/purchased, shopping history, payment confirmation details, customer support notes and evidence) | Shopify, Payment Processors, Order Fulfillment Facilitation Partners, International Suppliers/Fulfillment Partners, Shipping Carriers, Customer Support Tools, Data Analytics Providers, Return Processing Partners, Business and Marketing Partners. |
| Internet or other similar network activity (e.g., Usage Data: device/browser info, site interaction, referral data, analytics data, cookie data) | Shopify, Data Analytics Providers, IT/Cloud Service Providers (for site operation and security), Business and Marketing Partners (especially Advertising Platforms & Networks who may also collect this via cookies). |
| Geolocation Data (e.g., general location inferred from IP address for shipping, fraud prevention, analytics, or currency/language display) | Shopify, Payment Processors (for fraud assessment), Order Fulfillment Facilitation Partners, International Suppliers/Fulfillment Partners, Shipping Carriers, Data Analytics Providers, Advertising Platforms (for localized ads). |
| User-Generated Content (e.g., reviews, comments, photos/videos submitted by you) | Shopify (if hosted on-site), potentially public display on our Site, Customer Support Tools (if submitted as part of an inquiry). |
We do not use or disclose "sensitive personal information" (as defined by applicable laws like CPRA, e.g., government IDs, precise geolocation, race, religion, genetic data, biometric data, health information, sexual orientation) for the purposes of inferring characteristics about you, or for any purposes other than those permitted by applicable law without your explicit consent (e.g., to provide a specific service you requested that requires it). We do not intentionally collect such sensitive personal information unless directly provided by you for a specific, limited purpose (e.g., an image showing a defect might inadvertently reveal other information, but our purpose is only to assess the defect).
Third Party Websites and Links
Our Site may provide links to websites or other online platforms operated by third parties (e.g., links to shipping carrier tracking sites, social media platforms, or payment gateways). If you follow links to sites not affiliated or controlled by us, you should review their privacy and security policies and other terms and conditions. We do not guarantee and are not responsible for the privacy or security of such sites, including the accuracy, completeness, or reliability of information found on these sites. Information you provide on public or semi-public venues, including information you share on third-party social networking platforms, may also be viewable by other users of the Services and/or users of those third-party platforms without limitation as to its use by us or by a third party. Our inclusion of such links does not, by itself, imply any endorsement of the content on such platforms or of their owners or operators, except as disclosed on the Services.
Children's Data
The Services are not intended to be used by children, and we do not knowingly collect any personal information from children. We define "children" as individuals under 16 years of age (or the equivalent minimum age for consent in the relevant jurisdiction). If you are the parent or guardian of a child who has provided us with their personal information, you may contact us using the contact details set out below (assist@verveil-official.com) to request that it be deleted.
As of the Effective Date of this Privacy Policy, we do not have actual knowledge that we “share” or “sell” (as those terms are defined in applicable law) personal information of individuals under 16 years of age.
Security and Retention of Your Information
Security: We implement commercially reasonable physical, technical, and administrative safeguards designed to protect your personal information from unauthorized access, loss, misuse, alteration, or destruction. These measures include:
-
Encryption: All data transmitted between your browser and our Site is encrypted using industry-standard SSL/TLS (Secure Socket Layer/Transport Layer Security) technology. Payment information is handled by PCI-DSS compliant payment processors.
-
Access Controls: Access to personal information within our organization is restricted to authorized personnel who have a legitimate business need to access it (e.g., for order processing, customer support, or system maintenance) and who are subject to confidentiality obligations.
-
Platform Security: Our e-commerce platform, Shopify, implements its own robust security measures to protect the data it hosts.
-
Regular Reviews: We periodically review our security practices and consider new technologies and methods to enhance protection.
However, please be aware that no security measures are perfect or impenetrable, and we cannot guarantee “perfect security.” Any information you send to us, especially via unencrypted channels like standard email, may not be secure while in transit. We recommend that you do not use insecure channels to communicate sensitive or confidential information to us. You are responsible for keeping your account credentials, such as your password, confidential and for notifying us immediately if you suspect any unauthorized use of your account.
Retention: How long we retain your personal information depends on different factors, such as whether we need the information to maintain your account, to provide the Services, comply with legal obligations (e.g., tax, accounting, or other legal reporting requirements, or to resolve disputes), or enforce other applicable contracts and policies. Generally, we will retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. For example:
-
Order and Transaction Records: Retained for at least seven (7) years to meet accounting, tax, and regulatory obligations in various jurisdictions.
-
Customer Account Data: Retained for as long as your account remains active or as needed to provide you with Services and support. If you request account deletion, we will remove or anonymize your data, except where we are legally obligated or have a legitimate interest to preserve certain records (e.g., for fraud prevention or legal claims).
-
Customer Support Communications: May be retained for up to two (2) to three (3) years after the interaction to help us monitor recurring issues, quality trends, provide ongoing support, and defend against potential claims, unless you request earlier deletion and no overriding legitimate ground for retention exists.
-
Marketing Preferences/Consent: Retained for as long as you consent to receive marketing, and for a reasonable period thereafter to ensure we honor opt-out requests.
When personal information is no longer needed for its original purpose or for a legally required retention period, we securely delete or anonymize it.
Your Privacy Rights and Choices
Depending on where you reside (e.g., California, EEA, UK), you may have some or all of the rights listed below in relation to your personal information. However, these rights are not absolute, may apply only in certain circumstances and, in certain cases, we may decline your request as permitted by law.
-
Right to Access / Know: You may have a right to request access to the personal information we hold about you, including details relating to the categories of personal information collected, sources of collection, purposes for processing, categories of third parties with whom we share your information, and the specific pieces of personal information.
-
Right to Delete (Erasure): You may have a right to request that we delete personal information we maintain about you, subject to certain exceptions (e.g., if we need to retain it to complete a transaction, comply with a legal obligation, or for security/fraud prevention).
-
Right to Correct (Rectification): You may have a right to request that we correct inaccurate or incomplete personal information we maintain about you.
-
Right of Portability: You may have a right to receive a copy of your personal information in a structured, commonly used, and machine-readable format, and to request that we transmit that data to another controller where technically feasible, in certain circumstances.
-
Right to Opt out of "Sale" or "Sharing" or Targeted Advertising: You may have a right to direct us not to "sell" or "share" your personal information for cross-context behavioral advertising or "targeted advertising," as defined in applicable privacy laws. As noted, we do not sell personal information for monetary consideration. However, use of advertising cookies may constitute "sale" or "sharing" under some laws. You can exercise this right by:
-
Adjusting your cookie preferences via any cookie consent banner or tool provided on our Site.
-
Enabling the Global Privacy Control (GPC) opt-out preference signal in your browser/device, which we will automatically treat as a request to opt-out of the "sale" or "sharing" of information for the device and browser you use to visit the Site, where required by law.
-
Contacting us directly as detailed below.
-
-
Right to Limit Use or Disclosure of Sensitive Personal Information (if applicable): As stated in Section 4, we do not intentionally collect or process sensitive personal information for inferring characteristics or for purposes other than those permitted by law without your consent. If this were to change, you would have the right to limit such use.
-
Right to Restrict Processing: You may have the right to ask us to limit or “block” the processing of your personal information under certain circumstances (e.g., if you contest the accuracy of the data or believe processing is unlawful while we investigate).
-
Right to Object: You may object to our processing of your personal information on grounds relating to your particular situation, especially where we rely on legitimate interests as our legal basis. We will cease processing unless we can demonstrate compelling legitimate grounds or for legal claims. You have an absolute right to object to processing for direct marketing purposes.
-
Withdrawal of Consent: Where we process your personal information based on your consent (e.g., for certain marketing emails or cookies), you may withdraw your consent at any time without affecting the lawfulness of processing prior to withdrawal.
-
Right to Non-Discrimination: We will not discriminate against you for exercising any of these rights (e.g., by denying goods or services, charging different prices, or providing a different level of quality), except as permitted by applicable law (e.g., if the difference is reasonably related to the value provided by your data).
-
Appeal: You may have a right to appeal our decision if we decline to process your request. You can do so by replying directly to our denial or contacting us.
You may exercise any of these rights where indicated on our Site or by contacting us at assist@verveil-official.com.
We will not discriminate against you for exercising any of these rights. We may need to collect information from you to verify your identity (e.g., your email address, order history, or other account information) before providing a substantive response to the request. This is a security measure to ensure that personal information is not disclosed to any person who has no right to receive it. In accordance with applicable laws, you may designate an authorized agent to make requests on your behalf to exercise your rights. Before accepting such a request from an agent, we will require that the agent provide proof you have authorized them to act on your behalf (e.g., a signed power of attorney or written authorization), and we may need you to verify your identity directly with us or confirm directly that you provided the agent permission. We will respond to your request in a timely manner as required under applicable law.
8.1 Additional California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have the following specific rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA):
-
Right to Know: You can request details about the categories and specific pieces of personal information we have collected about you, the categories of sources, the business/commercial purposes for collecting, selling, or sharing, and the categories of third parties to whom we disclose it.
-
Right to Delete: You can request deletion of your personal information, subject to legal exceptions.
-
Right to Correct: You can request correction of inaccurate personal information.
-
Right to Opt-Out of Sale/Sharing: You have the right to direct us not to "sell" or "share" your personal information. As explained, this primarily relates to the use of cookies for targeted advertising. You can exercise this right via the GPC signal or by contacting us. We do not knowingly sell or share the personal information of minors under 16.
-
Right to Limit Use and Disclosure of Sensitive Personal Information: As stated, we do not typically collect or use sensitive personal information for purposes requiring this right. If we did, you could direct us to limit its use.
-
Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA/CPRA rights.
To submit a verifiable consumer request under the CCPA/CPRA, please email assist@verveil-official.com. We do not currently offer a toll-free number for CCPA requests. We will verify your request using the information associated with your account or interaction with us and respond in accordance with the law.
International Users and Data Transfers
Your personal information may be transferred to, stored, and processed in countries other than your country of residence, including in countries where our service providers, order fulfillment facilitation partners, and international suppliers/fulfillment partners are located. These countries may have data protection laws that are different from the laws of your country.
Specifically, to provide our Services and fulfill your orders:
-
Shopify’s Infrastructure: Your personal information is processed on Shopify's platform, whose servers and data centers may be located in the United States, Canada, Ireland, or other countries.
-
Order Fulfillment Facilitation Partners: The software or applications we use to route orders (e.g., DSers-like tools) may process your order information on servers located in various jurisdictions globally.
-
International Suppliers and Fulfillment Partners: Crucially, to fulfill your order, your personal information (including name, shipping address, contact details, and order specifics) will be transferred to our network of international suppliers and fulfillment partners. These partners are located in various international regions (e.g., Asia, Europe, North America) from which your products are sourced, potentially manufactured, quality-checked, packed, and dispatched. This means your data will be transferred to and processed in countries outside of your country of residence.
-
Shipping Carriers: International carriers and postal authorities in the origin and destination countries will process your information for customs clearance and delivery.
-
Other Third-Party Service Providers: Some of our marketing, analytics, customer support, and IT service providers may have servers or personnel in multiple countries.
If we transfer your personal information out of Europe (EEA, UK, Switzerland) to countries not deemed by the European Commission or UK Government to provide an adequate level of data protection, we will rely on recognized transfer mechanisms such as the European Commission's Standard Contractual Clauses (SCCs), or any equivalent contracts issued by the relevant competent authority of the UK (such as the UK Addendum to the EU SCCs), as relevant, or other appropriate safeguards like Binding Corporate Rules (BCRs) where applicable, unless the data transfer is to a country that has been determined to provide an adequate level of protection or an exception applies.
By using our Services and providing us with your information, you acknowledge and, where required by law, consent to these transfers, storage, and processing of your personal information in countries outside your country of residence, in accordance with this Privacy Policy.
Complaints
If you have any questions, concerns, or complaints about our processing of your personal information or this Privacy Policy, please contact us first at assist@verveil-official.com. We will investigate and attempt to resolve your complaint promptly.
If you are an EEA/U.K. resident and are not satisfied with our response to your complaint, you have the right to lodge a complaint with your local data protection authority.
A list of EEA data protection authorities can be found here: https://edpb.europa.eu/about-edpb/about-edpb/members_en
For the UK, you can contact the Information Commissioner’s Office (ICO): https://ico.org.uk/make-a-complaint/
Company Information and Data Controller
“VERVEIL" or "VERVEIL Official” (verveil-official.com) is the business name under which we operate. For the purpose of applicable data protection laws (e.g., GDPR, UK GDPR, CCPA), VERVEIL Official is the data controller responsible for determining the means and purposes of processing your personal information collected through the Site and Services.
Contact
Should you have any questions about our privacy practices or this Privacy Policy, or if you would like to exercise any of the rights available to you, please email us at:
assist@verveil-official.com
Note to Users: This Privacy Policy is intended to be transparent and user-friendly. We have endeavored to provide comprehensive details about what information we collect, how we use it, and to whom we disclose it, especially reflecting our global drop-shipping model. This model involves routing orders via third-party integrations (Order Fulfillment Facilitation Partners) and sharing necessary information with a network of International Suppliers and Fulfillment Partners, as well as various shipping carriers, to get your order to you. Your privacy and trust are paramount to us, and we are committed to safeguarding your information in every step of your shopping journey with VERVEIL Official.
