Privacy Policy
Supastands respects your privacy. We only collect what we need to process your order, provide support, and keep the site running smoothly.
Last updated: 28 February 2026
1. Who we are
Controller: Supastands
Address: 5662EP Geldrop, The Netherlands
Website: supastands.com
Email: info@supastands.com
2. What personal data we collect
2.1 When you place an order (WooCommerce checkout)
- Name
- Billing and shipping address
- Email address
- Phone number (if provided)
- Order details (products, quantities, totals)
- Payment status and transaction references (payment details are handled by our payment provider)
2.2 When you create an account (optional)
- Name and email address
- Billing/shipping details you choose to save
- Login and account preferences (stored by WordPress/WooCommerce)
2.3 When you contact us
- Name and email address
- The content of your message
- Any attachments you choose to send
2.4 Automatically collected data (site usage)
- IP address
- Browser and device type
- Pages visited and actions taken on the site
- Approximate location (derived from IP, not precise GPS)
- Cookie and session identifiers
3. Why we use your data
- To process, pack and ship your order
- To take payment and prevent fraud
- To provide customer support (questions, returns, issues)
- To send important service emails (order confirmations, shipping updates)
- To comply with legal obligations (tax and accounting)
- To improve our webshop experience and performance
We do not sell your personal data. Ever.
4. Legal bases (GDPR)
- Contract – we need your details to fulfil your order and deliver products.
- Legal obligation – we must keep certain records for tax and accounting.
- Legitimate interest – to run and secure our webshop, prevent abuse, and improve usability.
- Consent – for optional cookies and (if used) marketing emails.
5. WooCommerce-specific data & features
5.1 Cart and session
WooCommerce stores a session identifier in your browser to remember your cart contents while you browse. This is required for the webshop to function.
5.2 Account area
If you create an account, you can view past orders and manage saved details. You can request deletion of your account (see section 10).
5.3 Reviews (if enabled)
If product reviews are enabled, we may display your review name and content publicly. Please avoid sharing personal data in reviews.
6. Who we share data with
We only share personal data with trusted partners when necessary to run the webshop:
- Payment providers (to process payments securely)
- Shipping carriers (to deliver your parcel)
- Hosting and website providers (to keep the site online and secure)
- Accounting tools or advisors (for legal bookkeeping)
- Email service providers (for transactional emails like order confirmations)
Where required, we have data processing agreements (DPAs) in place with these providers.
7. International transfers
If any service providers process data outside the European Economic Area (EEA), we ensure appropriate safeguards, such as Standard Contractual Clauses (SCCs) or equivalent legal mechanisms.
8. How long we keep your data
- Order and invoice records: 7 years (Dutch tax requirement)
- Account data: until you delete your account or request deletion (unless we must keep order records)
- Support emails: up to 2 years (unless needed longer for an ongoing issue)
- Analytics data: per analytics provider retention settings (see cookies section)
9. Cookies
We use cookies to make the webshop work properly and to improve the experience.
9.1 Essential cookies (required)
These cookies are required for core functions like cart and checkout, security, and user sessions. Without these, the site won’t work properly.
9.2 Analytics cookies (optional)
If enabled, these help us understand how visitors use our site so we can improve it. We only place these where consent is required and you have opted in.
9.3 Marketing cookies (optional)
If we use advertising or remarketing tools, we will clearly ask for your consent first and provide an easy opt-out.
9.4 Managing cookies
You can control cookies via our cookie banner (if enabled) and via your browser settings. Disabling essential cookies may prevent checkout from working.
10. Your rights (GDPR)
You have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data (where legally possible)
- Restrict or object to processing in certain cases
- Data portability
- Withdraw consent at any time (where processing is based on consent)
To exercise any of these rights, contact us at info@supastands.com. We respond within 30 days.
If you believe we handled your data incorrectly, you can also file a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).
11. Security
We take appropriate technical and organisational measures to protect your personal data, including secure hosting, encryption (SSL), limited access, and secure payment processing.
12. Children
Our webshop is not intended for children under 16. We do not knowingly collect personal data from children.
13. Changes to this policy
We may update this Privacy Policy when needed. The latest version will always be available on this page.
14. Contact
Supastands
5662EP Geldrop, The Netherlands
Email: info@supastands.com