Privacy Policy
By using this website, creating an account, or making a purchase, you agree to the practices described in this policy.
1. Information We Collect
We collect personal information when you:
1.1 Create an Account
-
Name
-
Email address
-
Password (encrypted)
-
IP address
-
Device/browser information
1.2 Place an Order
-
Name
-
Billing address
-
Email address
-
Order details
-
IP address & device details (for fraud prevention)
-
Download logs:
-
file accessed
-
timestamp
-
IP address
-
number of downloads
-
1.3 Process a Payment
Payments are securely handled by Stripe and PayPal.
We do NOT store any card numbers, expiry dates, or CVV codes.
1.4 Use Our Website
We may automatically collect data such as:
-
IP address
-
Cookies
-
Browser type
-
Device type
-
Pages visited
-
Time spent on site
-
Referral sources
This helps improve website performance, security, and usability.
1.5 Sign Up to Our Newsletter
If you subscribe, we collect:
-
Email address
-
Name (optional)
2. How We Use Your Information
We use your information to:
2.1 Process Your Orders
-
Deliver digital products
-
Send order confirmations
-
Provide download links
-
Provide customer support
2.2 Prevent Fraud & Protect Our Business
We log IP addresses, downloads, account behaviour, and payment risk scores to:
-
detect suspicious accounts
-
prevent chargeback abuse
-
verify digital delivery
-
assist in payment disputes
2.3 Improve Our Website
-
Analyse site usage
-
Improve performance
-
Fix errors
-
Optimise pages
2.4 Marketing (Only With Consent)
If you opt in, we may send:
-
product updates
-
discounts
-
newsletters
You can unsubscribe at any time.
3. Legal Basis for Processing (UK GDPR)
We process your data under the following lawful bases:
-
Contract – to deliver goods/services you purchase
-
Legal obligation – UK/EU tax requirements
-
Legitimate interests – fraud prevention, site security, analytics
-
Consent – newsletters and marketing emails
4. How We Store & Protect Your Data
We use industry-standard security measures:
-
SSL encryption across the whole site
-
Secure servers
-
Encrypted passwords
-
Strict access controls
-
Regular security scans
-
Firewall & anti-fraud protection
Payment information is never stored on our servers.
5. Who We Share Your Data With
We only share your information with trusted providers required to run our business:
5.1 Payment Processors
-
Stripe
-
PayPal
They securely process your payments; we do not see your full card details.
5.2 Security & Anti-Fraud Tools
(e.g., WooCommerce Anti-Fraud, Stripe Radar)
Used to protect against unauthorized purchases and disputes.
5.3 Email Service Providers
If you subscribe or place an order, your email may be stored in our:
-
MailPoet / MailChimp (or your chosen provider)
5.4 Legal Requirements
We may disclose data if legally required by:
-
HMRC
-
Police
-
Courts
We never sell your data to third parties.
6. Cookies
We use cookies to:
-
Remember your cart
-
Keep you logged in
-
Improve checkout
-
Detect fraud
-
Track analytics
You can disable cookies in your browser settings, but some parts of the site may not function properly.
7. Digital Downloads Tracking
Because products are delivered instantly and cannot be returned, we log:
-
IP address
-
Timestamp
-
File downloaded
-
Number of download attempts
-
Device/browser
This information may be used as evidence in chargeback or dispute cases.
8. Data Retention
We retain data for:
-
6 years – order/invoice data (legal requirement)
-
24 months – download logs
-
As long as account is active – user accounts
-
Until you unsubscribe – marketing emails
You may request deletion at any time (unless legal obligations require retention).
9. Your Rights Under UK GDPR
You have the right to:
-
Access your personal data
-
Correct inaccurate data
-
Request deletion of your data
-
Restrict processing
-
Object to processing
-
Request a copy of your data
-
Withdraw consent (for email marketing)
-
File a complaint with the ICO
To request any of these rights, email us at:
📧 [your email]
10. Children’s Privacy
Our products are for parents, educators, and adults.
We do not knowingly collect data from children under 16.
11. External Links
Our website may contain affiliate links or links to third-party websites.
We are not responsible for the privacy practices of those sites.
12. Changes to This Policy
We may update this Privacy Policy periodically.
Changes will be posted on this page with an updated date.
13. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your rights, contact us:
📧 admin@kreartivas.com
🌐 matildagomes.co.uk
🇬🇧 United Kingdom
