Privacy policy
Last updated: 1 February 2026
Who we are
Digistore24 MSLW Limited operates this website and is the data controller for personal data collected through it. Contact: support@nailvyn.net.
What we collect
- Order data: name, email address, phone number (optional), shipping address, and the items you purchased.
- Payment data: processed by Stripe. We never see or store your full card number, CVC or expiry date.
- Support correspondence: emails you send us.
- Technical data: basic, aggregated information needed to keep the site running securely.
Why we use it
- To process and ship your order (performance of a contract).
- To send order confirmations, tracking and refund communications.
- To handle guarantee and refund requests.
- To meet accounting and tax obligations (legal obligation).
- If you enter your email at checkout but do not complete your order, we may store it to send a single reminder about your unfinished basket (legitimate interest). You can ask us to delete it at any time.
Who we share it with
Only the processors required to fulfil your order: our payment provider (Stripe), our hosting and database provider, our email provider and the shipping carrier delivering your parcel. We do not sell your personal data to anyone, ever.
How long we keep it
Order records are retained for as long as required by tax and accounting law in our jurisdiction. Support emails are retained for up to 24 months.
Your rights
If you are in the EU/EEA or UK you have the right to access, correct, delete, restrict or port your data, and to object to processing. Email support@nailvyn.net and we will respond within one month. You also have the right to lodge a complaint with your local data protection authority.
Cookies
We use only the cookies and local storage strictly necessary to operate the site and the secure checkout. We do not run advertising trackers on this site.
Security
Data is transmitted over encrypted HTTPS connections and stored in access-controlled systems. Payment card data is handled entirely by Stripe, a PCI-DSS Level 1 provider.
Changes
If we update this policy we will change the date at the top of this page. Material changes will be communicated by email to affected customers.