Privacy policy

Last updated: [YYYY-MM-DD] This Privacy Policy is compliant with GDPR, CCPA, CalOPPA, and Facebook/Google advertising policies, governing the collection and use of personal data on [www.touchingone.com URL]. This website is restricted to users aged 18 years or older. ## 1. Data Collection & Legal Basis We collect personal data (name, address, email, payment details) only for the purpose of processing orders, providing customer support, and complying with legal obligations (GDPR Article 6(1)(b)). We do not collect sensitive personal data (e.g., health information) beyond what is necessary for order fulfillment. ## 2. Data Usage Restrictions • We do not use customer data for targeted advertising on Facebook/Google or any other platform. • We do not share personal data with third-party advertisers, marketers, or data brokers. • All payment data is processed through PCI-DSS compliant payment gateways (e.g., Stripe, PayPal) and is not stored on our servers. ## 3. Cookie Policy (Mandatory for EU/Google) We use strictly necessary cookies only (e.g., for cart functionality) – no tracking cookies. Users can disable non-essential cookies via browser settings. We do not use Facebook Pixel/Google Analytics to track users under 18 or collect sensitive data. ## 4. User Rights (GDPR/CCPA Compliance) Under GDPR/CCPA, you have the right to: • Access your personal data (GDPR Article 15) • Correct inaccurate data (GDPR Article 16) • Erase your data (Right to be Forgotten – GDPR Article 17) • Opt out of data processing (CCPA Right to Opt-Out) To exercise these rights, contact us at [Your Support Email]. ## 5. Data Retention We retain personal data only for the period required to fulfill orders and comply with tax/legal obligations (maximum 7 years), after which data is securely deleted. ## 6. Third-Party Services We use third-party services only for shipping (e.g., DHL, USPS) and payment processing – these providers are bound by data protection agreements to protect your data. We are not responsible for third-party privacy practices, but only work with GDPR/CCPA compliant providers. ## 7. Age Verification & Minor Protection We implement mandatory age verification (Age Gate) to prevent minors from accessing the site. We do not collect or store data from users under 18. ## 8. Contact Information For privacy-related inquiries, contact: Email: yuanqiangl05@gmail.com ,Address: UNIT 1021, BEVERLEY COMMCENTRE, 87-105 CHATHAM RDSOUTH, TSIM SHA TSUIHONG KONG.