EEZI COMMERCE

Privacy Policy

Last Updated: 04/05/2025

Welcome to EEZI Commerce (“we,” “our,” or “us”). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, make purchases, or interact with our services. As a dropshipping business, EEZI Commerce acts as the Data Controller for the personal data we collect from you. We work with various trusted suppliers, including platforms like Spocket and other reliable partners located in the UK, US, Europe, and Canada, who act as Data Processors to fulfill your orders. Your trust is paramount to us, and we are dedicated to handling your personal data with the utmost care and transparency.

Please read this Privacy Policy carefully. By using our website and services, you consent to the data practices described in this policy. If you do not agree with the terms of this Privacy Policy, please do not access or use our website.

1. Information We Collect

To provide you with a seamless and high-quality shopping experience, we collect various types of information from you. This information allows us to process your orders, deliver products, and improve our services.

1.1. Personal Data You Provide Directly: When you interact with our website, you may provide us with personal information that can identify you. This includes:

  • Identity Data: Your first name, last name, username, or similar identifiers.
  • Contact Data: Billing address, delivery address, email address, and telephone numbers.
  • Financial Data: Payment card details (processed securely by our payment gateway providers, we do not store full card details on our servers).
  • Transaction Data: Details about payments to and from you, and information about the products and services you have purchased from us.
  • Profile Data: Your username and password, purchase history, preferences, feedback, and survey responses.
  • Marketing and Communications Data: Your preferences in receiving marketing communications from us and your communication preferences.

1.2. Data We Collect Automatically: As you navigate and interact with our website, we may automatically collect certain technical and usage data about your equipment, Browse actions, and patterns. This information helps us understand how our site is used and how we can enhance your experience. This includes:

  • Technical Data: Internet Protocol (IP) address, mobile device unique ID, login data, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform, and other technology on the devices you use to access our website.
  • Usage Data: Information about how you use our website, including pages visited, time spent on pages, search queries, visit timestamps, products viewed, and other related activity.
  • Cookies and Similar Technologies: We collect this data using cookies, server logs, and other similar technologies. For more details, please see our “Cookies and Tracking Technologies” section below.

1.3. Information from Third Parties: We may receive personal data about you from third parties and public sources to enhance our services and marketing efforts. These sources may include:

  • Analytics Providers: Such as Google Analytics, based both inside and outside the EU.
  • Search Information Providers: Such as Google.
  • Technical, Payment, and Delivery Service Providers: Such as Stripe, who process payments securely.
  • Partners, Data Brokers, or Aggregators: Who provide identity and contact data.
  • Publicly Available Sources: Such as social media platforms, where you may have made information public.

1.4. Non-Personal Data: We also collect, use, and share “Aggregated Data,” such as statistical or demographic data, for any purpose. While this data may be derived from your personal data, it is not considered personal information in law as it does not directly or indirectly reveal your identity. For example, we may aggregate your Usage Data to calculate the percentage of users accessing a specific website feature.

1.5. Special Categories of Personal Data: EEZI Commerce does not knowingly collect any “Special Categories of Personal Data” about you (this includes details about your race or ethnicity, religious or philosophical beliefs, sex life, sexual orientation, political opinions, trade union membership, information about your health, and genetic and biometric data). Nor do we collect information about criminal convictions and offenses. Please do not submit such information to us.

2. How We Use Your Information

We use the information we collect for various essential purposes related to the operation of our dropshipping business. Our legal bases for processing your personal data include:

  • Performance of a Contract: To fulfill our obligations arising from any contracts entered into between you and us (e.g., processing your orders).
  • Legitimate Interests: Where it is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests (e.g., improving our services, preventing fraud).
  • Legal Obligation: To comply with a legal or regulatory obligation.
  • Consent: Where you have given explicit consent for us to process your data for a specific purpose (e.g., sending marketing communications).

Specifically, we use your personal data for the following purposes:

  • To Process and Fulfill Your Orders: This is the core of our business. We use your Identity, Contact, Financial, and Transaction Data to process your payment, dispatch your order, and arrange for timely delivery. This necessarily involves sharing your shipping details with our trusted suppliers (including Spocket and other partners) and their shipping carriers.
  • To Manage Your Account: To create and manage your account, provide customer support, and send you important updates regarding your orders or account status.
  • To Improve Our Website and Services: We analyze Usage and Technical Data to understand how our website is used, identify areas for improvement, and enhance user experience. This helps us optimize product offerings, navigation, and overall site functionality.
  • For Marketing and Promotions: With your consent (where required), we may use your Contact, Profile, and Marketing and Communications Data to send you newsletters, promotional offers, and information about products that may interest you.
  • To Conduct Market Research and Surveys: To understand customer preferences, improve our product selection, and tailor our services to your needs.
  • To Ensure Security and Prevent Fraud: We use Technical and Usage Data to monitor for fraudulent activities, protect our website, and ensure the security of your transactions and data.
  • To Comply with Legal Obligations: To meet our legal and regulatory requirements, resolve disputes, and enforce our agreements.
  • For Business Transfers: In the event of a merger, acquisition, or sale of all or a portion of our assets, your personal data may be transferred as part of the transaction. We will ensure appropriate safeguards are in place.

3. Sharing Your Information

In the context of our dropshipping model, sharing your information is essential for order fulfillment. We share your data only when necessary and with parties who are committed to protecting your privacy.

3.1. With Suppliers and Dropshipping Platforms: To fulfill your orders, we share necessary personal data (primarily Identity, Contact, and Transaction Data) with our network of dropshipping suppliers, including platforms like Spocket and other trusted partners located in the UK, US, Europe, and Canada. These suppliers require your shipping information to dispatch products directly to you. It is crucial to understand that:

  • EEZI Commerce is the Data Controller: We determine the purposes and means of processing your personal data.
  • Suppliers are Data Processors: They process your personal data on our behalf and according to our instructions, solely for the purpose of fulfilling your order. We strive to ensure that all our suppliers have robust data protection measures in place and comply with relevant data privacy laws. While Spocket is a key partner, we also work with other suppliers, and your data may be shared with them based on the specific products you purchase.

3.2. With Service Providers: We engage third-party service providers to perform functions on our behalf. These include:

  • Payment Processors: To securely handle your payment transactions (e.g., Stripe).
  • Shipping and Logistics Partners: Beyond our direct suppliers, these partners manage the delivery of products.
  • Website Hosting and IT Service Providers: Who provide infrastructure and support for our website.
  • Analytics Providers: To help us understand website usage (e.g., Google Analytics).
  • Marketing and Advertising Partners: To manage our marketing campaigns and provide relevant advertisements.
  • Customer Support Platforms: To assist with your inquiries.

These service providers are only given access to the personal information necessary to perform their specific functions and are contractually obligated to keep your information confidential and secure.

3.3. For Legal Reasons: We may disclose your information if required to do so by law or in the good faith belief that such action is necessary to:

  • Comply with a legal obligation or respond to a court order, subpoena, or governmental request.
  • Protect and defend the rights or property of EEZI Commerce.
  • Prevent or investigate possible wrongdoing in connection with the service.
  • Protect the personal safety of users of the service or the public.
  • Protect against legal liability.

3.4. Business Transfers: In the event of a merger, acquisition, or sale of all or a portion of our assets, your personal information may be transferred to the acquiring entity. We will notify you via email and/or a prominent notice on our website of any change in ownership or uses of your personal information, as well as any choices you may have regarding your personal information.

4. Data Security

The security of your personal data is a top priority for us. We implement a variety of technical and organizational security measures designed to protect your personal information from unauthorized access, accidental loss, disclosure, alteration, or destruction. These measures include:

  • Encryption: Using Secure Socket Layer (SSL) technology to encrypt data during transmission.
  • Access Controls: Restricting access to personal data to authorized personnel who have a business need to know.
  • Firewalls and Network Security: Implementing firewalls and other network security measures to protect our systems.
  • Regular Audits and Monitoring: Conducting regular security assessments and monitoring our systems for vulnerabilities.
  • Data Minimization: Collecting only the necessary personal data required for our operations.

While we strive to use commercially acceptable means to protect your personal data, no method of transmission over the Internet or method of electronic storage is 100% secure. Therefore, we cannot guarantee its absolute security.

5. Data Retention

We will retain your personal data only for as long as is necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements.

To determine the appropriate retention period for personal data, we consider the amount, nature, and sensitivity of the personal data, the potential risk of harm from unauthorized use or disclosure of your personal data, the purposes for which we process your personal data and whether we can achieve those purposes through other means, and the applicable legal requirements. For example, information related to your orders and transactions will be stored for a period necessary to comply with tax and accounting laws.

6. International Data Transfers

EEZI Commerce operates globally, and your personal data may be transferred to, stored in, and processed in countries outside of your country of residence, including but not limited to the United States, Canada, and various countries within the UK and Europe where our suppliers are located. These countries may have data protection laws that are different from those in your jurisdiction.

When we transfer your personal data internationally, we ensure that appropriate safeguards are in place to protect your data in accordance with this Privacy Policy and applicable data protection laws. This may include:

  • Transferring data to countries that have been deemed to provide an adequate level of protection for personal data by the European Commission.
  • Using specific contracts approved by the European Commission which give personal data the same protection it has in Europe (Standard Contractual Clauses).
  • Where we use providers based in the US, we may transfer data to them if they are part of privacy frameworks that require them to provide similar protection to personal data shared between Europe and the US.

By using our services, you understand and agree to the transfer of your information to these countries.

7. Your Data Protection Rights

Depending on your location and applicable data protection laws (such as the GDPR for EU residents or CCPA for California residents), you may have certain rights regarding your personal data. These rights generally include:

  • The Right to Access: You have the right to request copies of your personal data.
  • The Right to Rectification: You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
  • The Right to Erasure ( “Right to be Forgotten”): You have the right to request that we erase your personal data, under certain conditions.
  • The Right to Restrict Processing: You have the right to request that we restrict the processing of your personal data, under certain conditions.
  • The Right to Object to Processing: You have the right to object to our processing of your personal data, under certain conditions.
  • The Right to Data Portability: You have the right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.
  • The Right to Withdraw Consent: Where we rely on your consent to process your personal data, you have the right to withdraw that consent at any time. This will not affect the lawfulness of any processing carried out before you withdraw your consent.

If you make a request, we have one month to respond to you. To exercise any of these rights, please contact us using the details provided in the “Contact Us” section below. We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal data (or to exercise any of your other rights). This is a security measure to ensure that personal data is not disclosed to any person who has no right to receive it.

8. Cookies and Tracking Technologies

Our website uses cookies and similar tracking technologies to enhance your Browse experience, analyze website traffic, and personalize content.

  • Cookies are small data files placed on your device. They help us remember your preferences, understand how you interact with our site, and improve our services.
  • Pixel Tags/Web Beacons are small graphic files that allow us to monitor the usage of our website.

We use two types of cookies:

  • Session Cookies: These are temporary and are deleted once you close your web browser.
  • Persistent Cookies: These remain on your device until they expire or are manually deleted, helping us remember you on subsequent visits.

You can set your browser to refuse all or some browser cookies, or to alert you when websites set or access cookies. Please note that if you disable or refuse cookies, some parts of our website may become inaccessible or not function properly.

9. Third-Party Links

Our website may include links to third-party websites, plug-ins, and applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements. When you leave our website, we encourage you to read the privacy policy of every website you visit.

10. Children’s Privacy

Our services are not intended for children under the age of 16. We do not knowingly collect personally identifiable information from anyone under the age of 16. If you are a parent or guardian and you are aware that your child has provided us with Personal Data, please contact us. If we become aware that we have collected Personal Data from anyone under the age of 16 without verification of parental consent, we will take steps to remove that information from our servers.

11. Changes to This Privacy Policy

We may update our Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any changes by posting the new Privacy Policy on this page and updating the “Effective Date” at the top of this Privacy Policy. We encourage you to review this Privacy Policy periodically for any changes. Your continued use of our services after the posting of changes constitutes your acceptance of such changes.

12. Contact Us

If you have any questions about this Privacy Policy, our data practices, or if you wish to exercise any of your data protection rights, please contact us.