Privacy Policy

1. Introduction

This Privacy Policy explains how TALMORIN, LLC collects, uses, stores, protects, and shares personal information when customers visit talmorin.com, create or place an order, contact our support team, request a return or refund, use order tracking services, or otherwise interact with our website.

We are committed to handling personal information responsibly and using it only for legitimate business, transactional, security, customer service, and legal purposes. By using our website, you acknowledge the practices described in this Privacy Policy.

2. Information We Collect

Depending on how you use our website, we may collect information such as your name, billing address, delivery address, email address, telephone number, order information, products purchased, transaction status, customer service communications, return or refund information, and other details you voluntarily provide.

We may also receive limited technical information generated when you interact with the website, including IP address, browser type, device type, operating system, referring pages, approximate geographic region, access times, and website activity.

3. Information Provided During Orders

When you place an order, we collect the information reasonably necessary to process the purchase, arrange delivery, provide order updates, prevent transaction errors, manage customer support, and handle returns or refunds where applicable.

Customers are responsible for providing accurate billing, delivery, and contact information. We use this information only as reasonably necessary to complete the transaction and provide related services.

4. How We Use Personal Information

We may use personal information to:

  • Process and manage customer orders.
  • Confirm payments and transaction status.
  • Arrange order fulfillment and delivery.
  • Provide order tracking information.
  • Respond to customer questions and support requests.
  • Review returns, refunds, damaged products, or delivery issues.
  • Detect fraud, unauthorized transactions, or misuse of our services.
  • Maintain website security and operational reliability.
  • Comply with accounting, legal, tax, payment, and regulatory obligations.
  • Improve the functionality and customer experience of our website.

5. Legal Bases for Processing

Where the General Data Protection Regulation or similar privacy legislation applies, we process personal information only where an appropriate legal basis exists.

Depending on the circumstances, processing may be necessary to perform a contract with you, comply with a legal obligation, protect legitimate business interests, prevent fraud or security incidents, establish or defend legal claims, or act with your consent where consent is required.

6. Payment Information and Stripe

We use Stripe as one of our payment service providers. When a customer chooses a payment method processed through Stripe, sensitive payment credentials are transmitted directly to Stripe or its authorized payment infrastructure.

TALMORIN, LLC does not store complete payment card numbers, card security codes such as CVV or CVC, or magnetic-stripe data on our website or normal business systems. Stripe processes payment information through its secure payment infrastructure and maintains payment-security controls designed to meet applicable PCI DSS requirements.

We may receive limited transaction information from Stripe, such as payment status, transaction identifiers, payment method type, billing information, and fraud or risk indicators necessary to confirm and manage the transaction.

7. PayPal Payments

Customers may also be able to pay through PayPal. When PayPal is selected, payment information is processed within PayPal's systems according to PayPal's own privacy and security practices.

We generally receive only the information required to confirm that payment was authorized or completed, together with transaction details needed to associate the payment with the corresponding order.

8. HTTPS, SSL/TLS and Data Transmission Security

Our website uses HTTPS and SSL/TLS encryption to help protect information transmitted between a customer's browser and our website.

TLS encryption helps reduce the risk that information transmitted through the website can be read or altered by unauthorized parties while in transit. We also maintain valid security certificates where required for encrypted HTTPS connections and periodically review website configurations to identify outdated or insecure communication methods.

Sensitive payment data processed through Stripe or PayPal is transmitted through the payment provider's secured infrastructure rather than being stored directly by us.

9. Information Security Measures

We use reasonable administrative, technical, and organizational safeguards designed to protect personal information against unauthorized access, disclosure, loss, misuse, alteration, or destruction.

These measures may include restricted administrative access, account authentication, HTTPS encryption, SSL/TLS communication, access permissions based on business need, software and plugin updates, malware and security monitoring, server-level protections, secure payment integrations, and periodic review of website access and configuration.

Access to customer information is limited to personnel, contractors, or service providers who require that information to perform legitimate business functions.

10. Data Minimization

We aim to collect only the personal information reasonably necessary to process orders, provide customer support, complete payments, arrange deliveries, manage returns and refunds, maintain security, and satisfy applicable legal requirements.

We do not intentionally request sensitive information that is unnecessary for these purposes. Payment authentication data and full card credentials are handled by Stripe, PayPal, or other relevant financial institutions rather than being retained in our normal website database.

11. Service Providers and Data Sharing

We may share limited personal information with service providers when necessary to operate our business. These providers may include payment processors, hosting providers, website service providers, delivery carriers, logistics companies, fraud-prevention services, technical support providers, and professional advisers.

Information is provided only to the extent reasonably necessary for the relevant service. We do not sell customer payment information, and we do not provide full payment card information to advertising or unrelated third parties.

12. Delivery and Order Fulfillment Information

To fulfill an order, we may provide relevant recipient details to delivery and logistics providers, including the customer's name, delivery address, telephone number, email address, order reference, and information reasonably necessary for delivery.

For information regarding shipping coverage, delivery estimates, tracking, customs charges, and delivery-related matters, please review our Shipping Policy.

13. Cookies and Similar Technologies

Our website may use cookies or similar technologies to maintain essential website functions, remember session information, support shopping cart functionality, improve security, understand website performance, and help detect suspicious activity.

Some cookies are necessary for the website to operate correctly. Other cookies may be used only where permitted by applicable law or, where required, after appropriate consent has been obtained.

14. Data Retention

Personal information is generally retained for no longer than one year from the date it is no longer actively required for the purpose for which it was collected.

Certain information may need to be retained for a longer period where required by applicable tax, accounting, payment dispute, chargeback, fraud-prevention, regulatory, consumer protection, or other legal obligations. Where longer retention is required, the information will be retained only for the necessary period and used for the applicable legal or operational purpose.

When personal information is no longer reasonably required, we may delete, anonymize, or securely dispose of it as appropriate.

15. GDPR and Privacy Rights

Where the GDPR applies, individuals may have the right to request access to their personal information, correction of inaccurate information, deletion of information in certain circumstances, restriction of processing, objection to certain processing, and portability of eligible personal information.

Individuals may also withdraw consent where processing is based on consent. Withdrawal of consent does not affect processing that was lawful before consent was withdrawn.

Some rights are subject to legal limitations. For example, we may need to retain certain order or payment records where required for accounting, fraud prevention, transaction disputes, legal claims, or compliance obligations.

16. International Data Transfers

Because we provide services to customers in the United States, Europe, and other supported regions, information may be processed in countries other than the customer's country of residence.

Where personal information is transferred internationally, we and our relevant service providers seek to use appropriate legal and security safeguards where required by applicable privacy law. The exact processing location may depend on the infrastructure used by payment processors, hosting providers, logistics providers, and other service providers.

17. Returns, Refunds and Transaction Records

When a customer submits a return, refund, damaged-product, or payment-related request, we may retain relevant communications, photographs, order details, transaction references, shipping information, and supporting documentation needed to review the request and maintain an accurate transaction record.

Refunds are issued according to our Return & Refund Policy. Where an eligible refund is approved, it is returned to the original payment method. Stripe payments are refunded through the original Stripe-supported payment method, while PayPal payments are refunded through the original PayPal payment method.

Transaction and refund records may also be used to respond to payment disputes, chargebacks, fraud reviews, or inquiries from Stripe, PayPal, banks, card networks, or other authorized financial institutions.

18. Privacy Questions, Requests and Policy Updates

If you have questions about this Privacy Policy, wish to exercise an applicable privacy right, or have concerns about how your personal information is handled, please contact us at care@talmorin.com or visit our Contact Us page.

We may request reasonable information to verify your identity before responding to a privacy request so that personal information is not disclosed or changed at the request of an unauthorized person.

We may update this Privacy Policy when necessary to reflect changes in our website, security practices, service providers, payment methods, legal requirements, or business operations. The current version published on talmorin.com will apply from its stated effective or updated date.