Privacy policy
🔒 PRIVACY POLICY – EILA EQUESTRIAN AS
Effective Date: [Insert date]
Company: EILA Equestrian AS
Org. No.: 935 893 488
Address: Erling Skjalgsons gate 2b, 4307 Sandnes
Email: eqbyeila@gmail.com
Website: www.eilaequestrian.com
1. OVERVIEW
EILA Equestrian AS (“EILA Equestrian,” “we,” “us,” or “our”) operates this store and website — including all related content, features, products, and services — to provide you, the customer, with a curated shopping experience (the “Services”).
Our store is powered by Shopify, which enables us to provide these Services to you.
This Privacy Policy describes how we collect, use, and disclose your personal information when you visit, use, or make a purchase through our website or otherwise communicate with us.
If there is a conflict between this Privacy Policy and our Terms of Service, this Privacy Policy governs all collection and processing of personal information.
By using our Website or Services, you acknowledge that you have read and understood this Privacy Policy.
2. PERSONAL INFORMATION WE COLLECT
When we use the term “personal information,” we refer to data that identifies or can reasonably be linked to you.
We may collect the following categories of personal information depending on your interaction with us:
-
Contact details: name, email, phone number, billing and shipping addresses.
-
Payment and financial data: payment method, card type, transaction details (processed securely by our payment providers).
-
Account information: username, preferences, settings.
-
Transaction data: products viewed, added to cart, purchased, returned, or exchanged.
-
Communication data: messages and correspondence with customer service.
-
Device and usage data: IP address, browser type, device information, session duration, pages visited, and referral source.
-
Cookies and analytics data: gathered via Shopify and third-party services such as Google Analytics and Meta (Facebook/Instagram) Pixel.
We may collect this information:
-
directly from you (when you order, sign up, or contact us),
-
automatically through cookies and analytics tools,
-
from Shopify and trusted service partners supporting our store operations.
3. PURPOSES, LEGAL BASES & STORAGE PERIODS
a. Purchases
Purpose: To process, ship, and manage your order, including payment and invoicing.
Legal basis: Contract performance (GDPR Art. 6 (1)(b)) and legal obligation (Art. 6 (1)(c), e.g. accounting).
Retention: For the duration of the contract and warranty period (2 years / 5 years for long-life goods), plus bookkeeping retention required under Norwegian law (5 years).
b. Direct Marketing & Newsletters
Purpose: To send you news, offers, and personalized marketing based on your preferences and past purchases.
Legal basis: Consent (GDPR Art. 6 (1)(a)). You may withdraw consent at any time.
Retention: Until you unsubscribe or withdraw consent.
c. Transactional & Account Communication
Purpose: To send you necessary updates (order confirmations, shipping notices, account notifications).
Legal basis: Legitimate interest and contract performance.
Retention: For as long as necessary to complete the transaction and meet legal obligations.
d. Customer Support
Purpose: To provide help and resolve inquiries.
Legal basis: Contract performance and/or legitimate interest.
Retention: Up to 6 months after the case is resolved.
e. Checkout Reminders
Purpose: To remind you of uncompleted purchases.
Legal basis: Legitimate interest (GDPR Art. 6 (1)(f)).
Retention: Deleted within 1 month if no purchase is completed.
f. Website Analytics, Cookies & Marketing
Purpose: To analyze usage, improve functionality, and deliver relevant ads.
Legal basis: Legitimate interest and consent (see Cookie Policy).
Retention: See Cookie Policy for details.
g. Fraud Prevention & Security
Purpose: To verify payments, detect and prevent fraud, ensure account and system security.
Legal basis: Legitimate interest (GDPR Art. 6 (1)(f)).
Retention: Data deleted on a 6-month basis unless needed longer for security reasons.
h. Analytics & Statistics
Purpose: To compile anonymized data on traffic, performance, and sales trends.
Legal basis: Legitimate interest.
Retention: Data anonymized wherever technically possible.
4. HOW WE USE YOUR INFORMATION
Depending on your interaction, we may use your information to:
-
Provide, operate, and improve our Services;
-
Process payments, fulfill and ship orders;
-
Manage your account and preferences;
-
Communicate with you about your purchases and support inquiries;
-
Send marketing, promotional, or service-related messages;
-
Detect, prevent, or investigate fraud or misuse;
-
Comply with legal obligations.
5. HOW WE SHARE YOUR INFORMATION
We share personal data only with trusted providers necessary for our operations:
| Category | Partner Examples | Purpose |
|---|---|---|
| E-commerce platform | Shopify | Website hosting, checkout, analytics |
| Payment processing | Klarna, Vipps, Stripe, Shopify Payments | Secure payment handling |
| Shipping & logistics | Bring/Posten, DHL, UPS and local partners | Order delivery |
| Analytics & advertising | Google Analytics, Meta (Facebook/Instagram Pixel) | Site performance & marketing |
| Email & newsletters | Shopify Email / Mailchimp / Klaviyo | Communication & campaigns |
| Accounting & compliance | Accounting software / auditors | Legal obligations |
Some partners (e.g. Shopify, Google, Meta) may store data outside the EU/EEA.
International transfers are protected under GDPR-approved safeguards, such as the EU Standard Contractual Clauses (SCCs).
6. SHOPIFY RELATIONSHIP
Our store is hosted on Shopify Inc., which provides the e-commerce infrastructure.
Shopify collects and processes certain data about your interactions with our store (for example, through checkout, analytics, and advertising features).
Shopify may process this data as an independent data controller in order to improve its platform and associated merchant services.
For more details on how Shopify handles your information and your rights under their processing, visit:
🔗 https://www.shopify.com/legal/privacy
7. SECURITY & RETENTION
We maintain appropriate technical and organizational measures to protect your data against unauthorized access, loss, or misuse.
However, no online system is completely secure, and transmission of information is at your own risk.
We store your data only for as long as necessary to fulfill the purposes above or as required by law.
When data is no longer needed, it is deleted or anonymized.
8. YOUR RIGHTS
You have the following rights under GDPR and Norwegian law:
-
Right of access – obtain a copy of your personal data.
-
Right to rectification – correct inaccurate or incomplete information.
-
Right to erasure (“right to be forgotten”) – request deletion when legally permitted.
-
Right to object – to certain types of processing, including direct marketing.
-
Right to restrict processing – in specific circumstances.
-
Right to data portability – request transfer of your data to another controller.
-
Right to withdraw consent – at any time, where processing is based on consent.
To exercise your rights, contact us at hello@eilaequestrian.com.
We may ask for identification to ensure your privacy and security.
9. CHILDREN’S DATA
Our Services are not intended for children under the age of 16.
We do not knowingly collect or process personal information from minors.
If you believe a child has provided data to us, please contact us for prompt deletion.
10. INTERNATIONAL TRANSFERS
If your data is transferred outside Norway / the EEA (e.g. to Shopify’s servers in Canada or the U.S.), we ensure protection through recognized legal mechanisms, such as the EU Standard Contractual Clauses or equivalent safeguards approved by the EU Commission.
11. THIRD-PARTY LINKS
Our Website may contain links to third-party websites or services not operated by EILA.
We are not responsible for their privacy practices. Please review their policies before providing any personal data.
12. COMPLAINTS & SUPERVISION
If you believe your data is processed unlawfully, please contact us first.
You also have the right to lodge a complaint with the Norwegian Data Protection Authority (Datatilsynet) at www.datatilsynet.no.
For EEA residents outside Norway, you may contact your national data protection authority.
13. CHANGES TO THIS POLICY
We may update this Privacy Policy from time to time to reflect changes in our practices or legal obligations.
Updates will be posted on this page with a revised “Last updated” date.
Your continued use of the Website after updates constitutes acceptance of the revised terms.
14. CONTACT INFORMATION
EILA Equestrian AS
Org. No.: 935 893 488
Erling Skjalgsons gate 2b 4307 Sandnes
📧 eqbyeila@gmail.com | 🌍 www.eilaequestrian.com