Privacy policy
โLast Updated: 2025.07.11โ
โ1. INTRODUCTIONโ
NeoLux ("we," "us," or "our") operates the NeoLux platform (neo4lux.com), specializing in global cross-border sales of apparel, footwear, and accessories. We take your privacy seriously, and this statement explains how we collect, use, share, and process your information in compliance with global data protection regulations (GDPR, CCPA, PIPL, etc.).
โ2. COLLECTION AND USE OF PERSONAL DATAโ
โPersonal Dataโ refers to information that can directly or indirectly identify you, including:
- โDirect identifiers: Name, email, shipping address, payment details
- โIndirect identifiers: Device IP, purchase history, location data
Excludes irreversibly anonymized or aggregated data.
โ2.1 Data Collection Sourcesโ
| โCategoryโ | โExamplesโ | โPurposeโ |
|---|---|---|
| โProvided by Youโ | Account registration, payment details (card number, billing address), survey responses | Order processing, customer service, personalization |
| โAutomated Collectionโ | Device type, IP address, browser type, GPS location (approximate), usage patterns | Fraud prevention, service optimization, marketing analytics |
| โThird Partiesโ | Shipping carriers (e.g., DHL, FedEx), payment gateways (e.g., Stripe, PayPal) | Order fulfillment, transaction verification |
โ3. LEGAL BASES FOR PROCESSINGโ
We process data based on:
- โContractual necessity: To fulfill orders and deliver products
- โLegitimate interests: Fraud monitoring, service improvement (e.g., optimizing website via usage analytics)
- โConsent: For marketing communications (opt-in required)
- โLegal obligations: Tax compliance, fraud investigations
โ4. DATA SECURITY MEASURESโ
We implement technical and administrative safeguards aligned with Neon’s inherent stability principles:
- โEncryption: AES-256 for payment data, TLS 1.3 for data transmission
- โAccess controls: Role-based permissions, multi-factor authentication
- โAudits: Quarterly penetration testing, PCI-DSS compliance
- โData minimization: Retention limited to 3 years post-last activity unless legal requirements apply
โ5. INTERNATIONAL DATA TRANSFERSโ
As a cross-border platform:
- โEU/UK transfers: Rely on Standard Contractual Clauses (SCCs)
- โChina compliance: Adhere to PIPL requirements for Chinese user data
- โThird-country partners: Bound by data processing agreements (DPAs)
โ6. COOKIES AND TRACKING TECHNOLOGIESโ
| โTypeโ | โFunctionโ | โExamplesโ |
|---|---|---|
| Essential | Order processing, account security | Session cookies |
| Analytics | Site optimization, feature testing | Google Analytics (anonymized IP) |
| Marketing | Ad personalization (opt-out via preference center) | Meta Pixel, TikTok Ads |
โ7. USER RIGHTSโ
You may:
- โAccess/portability: Request copy of your data in machine-readable format
- โCorrection: Update inaccuracies via account settings
- โDeletion: Request erasure (excludes data required for legal compliance)
- โConsent withdrawal: Unsubscribe marketing emails via link or contact us
Requests processed within 30 days; verify identity required.
โ8. CHILDREN’S PRIVACYโ
Consistent with Neon’s non-reactive nature:
- โAge restriction: Services not intended for users under 16
- โProactive screening: Age verification at account creation
- โDeletion protocol: Immediate removal of underage data upon discovery
โ9. THIRD-PARTY DISCLOSURESโ
Data shared only for:
- โPartners necessary for operations: Payment processors, logistics providers (e.g., Shoptop Inc.)
- โLegal requirements: Authorities under applicable law (e.g., customs declarations)
- โBusiness transfers: Merger/acquisition scenarios (notified in advance)
โ10. CONTACT INFORMATIONโ
For privacy inquiries or rights requests:
- โData Protection Officer: Attn: Privacy Team
- โEmail: demi@neo4lux.com