Privacy Policy

Your digital privacy is a paramount priority for SmaTrendStore. This Privacy Policy outlines how we collect, utilize, share, and protect your personal data whenever you navigate https://airabreeze.smartrendstore.com or execute a purchase on our store.

This policy is designed to maintain absolute transparency and ensure strict compliance with international data privacy architectures, including the General Data Protection Regulation (GDPR) for European users and relevant global standards.

2.1 Information We Collect & Exact Data Retention Windows

We collect specific scopes of consumer data under various legal bases to power our e-commerce platform and optimize your user experience:

  • Order Processing & Fulfillment: To process your purchases, receive encrypted payments, and coordinate delivery, we collect your first name, last name, physical delivery address, telephone number, email address, transaction currency, credit card brand, card type, BIN number, and credit card issuer country.
    • Legal Basis: Performance of a Contract.
    • Retention Period: Data is kept for exactly 1 year following your completed transaction.
  • Cart Abandonment & Payment Failures: If you initiate a checkout sequence but fail to complete the transaction due to technical errors, card declines, or user exit, we collect your name, email, telephone number, and the contents of your cart. This data is utilized to reach out to you via email, SMS, or automated follow-up systems to assist you in finalizing your checkout.
    • Legal Basis: Legitimate Interest in optimizing sales and assisting consumers.
    • Retention Period: Kept for 1 month after the unsuccessful checkout sequence.
  • Customer Support & Inquiries: When you submit a ticket, complaint, or query to our support email channels, we collect your name, contact email, telephone number, order ID, and the entire historical content/attachments of your inquiry.
    • Legal Basis: Explicit User Consent and Legitimate Interest in handling consumer communications.
    • Retention Period: Stored securely for 10 anos (10 years) from the receipt of the last inquiry to defend corporate interests in prospective customer disputes.
  • Site Security & Analytics: When you browse our digital storefront, we automatically monitor your IP address, browser type, operating system configurations, pages viewed, time stamps, and tracking behavior. On mobile devices, generalized physical location data may be collected via wireless network signals.
    • Legal Basis: Legitimate Interest in auditing site security and tracking conversion trends.
    • Retention Period: Deleted automatically 1 month after your site visit.

2.2 Third-Party Service Providers & Technical Infrastructure

SmaTrendStore shares specific scopes of personal data with trusted infrastructure and marketing partners to execute operations. Third-party entities will only collect, process, and disclose your data to the specific extent required to perform their designated services:

  • E-Commerce Management: Our storefront is entirely hosted and operated via the Shopify Inc. platform.
  • Data Traffic & Security CDN: Web protection, caching, and anti-bot optimization are managed through Cloudflare.
  • Conversion Tracking & Analytics: Traffic behaviors and conversion optimization data are monitored utilizing Google Analytics, Meta Pixel, and Google Ads tracking architectures.
  • Data Flows Outside the EU/EEA: While primary data processing occurs within standard frameworks, logistics data (such as name, delivery phone number, and physical address) is securely transmitted to our fulfillment centers located outside the EU/EEA—specifically in China, Canada, and the United States—to complete product delivery. Regular compliance audits are executed to ensure data safety.

2.3 Technical Tracking & Cookie Manifest

Our platform deploys technical cookies to power key UI elements and metrics. Below is the precise operational data for these cookies:

  • XSRF-TOKEN (Strictly Necessary): Written to ensure site security and block malicious Cross-Site Request Forgery attacks. Expiry: 2 hours.
  • laravel_session (Strictly Necessary): Deployed internally to identify a unique session instance for a live browsing user. Expiry: 2 hours.
  • CookieScriptConsent (Strictly Necessary): Remembers and logs individual consumer preferences submitted on our cookie consent banner. Expiry: 1 month.
  • __cfruid (Strictly Necessary): Associated with Cloudflare traffic filtering to identify verified, trusted web visitors. Expiry: Session only.
  • AWSALBCORS (Strictly Necessary): Preserves sticky session instances for CORS use cases behind application load balancers. Expiry: 7 days.
  • __zlcmid (Functionality): Deployed via our live-chat software widget to identify your unique device across recurring support visits. Expiry: 1 year.
  • __cfduid (Targeting/Speed): Managed by Cloudflare to optimize asset loading speeds and override non-malicious security restrictions based on trusted visitor IPs. Expiry: 30 days.