Legal
Privacy Policy
Last updated: June 2026
1. Information We Collect
When you place an order, we collect your name, email address, shipping address, and payment information. Payment details are processed directly by Stripe and are never stored on our servers. We may also collect browsing data such as pages viewed and time on site through analytics tools to improve your experience.
2. How We Use Your Information
We use your information to process and fulfill orders, send order confirmation and shipping notification emails, respond to customer service inquiries, and improve our website and product offerings. We do not sell, trade, or rent your personal information to third parties.
3. Email Communications
If you subscribe to our newsletter, we will send you new arrivals, exclusive offers, and curated product picks. You may unsubscribe at any time by clicking the unsubscribe link in any email we send. Order confirmation and transactional emails are sent regardless of marketing preferences.
4. Cookies
We use cookies to remember your cart contents and improve site navigation. We use analytics cookies (such as Google Analytics) to understand how visitors use our site. You may disable cookies through your browser settings, though some features of the site may not function as intended. Analytics cookies are only set with your consent where required by applicable law.
5. Data Security and Retention
We use TLS 1.2+ encryption to protect data transmitted between your browser and our servers. Stripe handles all payment processing under PCI DSS Level 1 compliance. We retain order data for 7 years for accounting and tax purposes. Customer contact data is retained for up to 3 years after your last interaction with us, unless you request deletion sooner.
6. Third-Party Services
We use the following third-party services, each governed by their own privacy policy: Stripe (payment processing — stripe.com/privacy), Google Analytics (site analytics — policies.google.com/privacy), shipping carriers for order fulfillment, and Resend for transactional email delivery. We disclose only the data each provider needs to perform their service.
7. Your Rights (California Residents — CCPA)
If you are a California resident, you have the right to: (1) know what personal information we collect and how it is used; (2) request deletion of your personal information; (3) opt out of the sale of your personal information (we do not sell personal information); (4) non-discrimination for exercising your rights. To submit a request, contact us at hello@nexora.co.
8. Your Rights (EEA/UK Residents — GDPR)
If you are located in the European Economic Area or United Kingdom, you have the right to access, correct, or erase your personal data; restrict or object to processing; and receive your data in a portable format. Our lawful basis for processing is performance of a contract (order fulfillment) and legitimate interest (fraud prevention, service improvement). To exercise these rights, contact hello@nexora.co. You also have the right to lodge a complaint with your local data protection authority.
9. Contact
For privacy-related questions or to exercise your data rights, contact us at hello@nexora.co. We will respond within 30 days.