PRIVACY POLICY
Last updated: October 10, 2025
This Privacy Policy explains how MATHEWECOMMERCE LLC ("MATHEWECOMMERCE", "we", "us", "our") collects, uses, discloses and protects your personal information when you visit www.spacevacpro.com (the "Site") or purchase our products. It is drafted to comply with:
- EU General Data Protection Regulation 2016/679 (GDPR)
- United Kingdom GDPR and Data Protection Act 2018
- Swiss Federal Act on Data Protection 2023 (revFADP)
- Australian Privacy Act 1988 and Australian Privacy Principles (APPs)
1. CONTROLLER OF PERSONAL INFORMATION
Legal owner: MATHEWECOMMERCE LLC
Registered address: 5830 E 2ND ST STE 7000 22393, Casper, WY 82609, USA
EIN (US Tax ID): 98-1844001
E-mail (privacy & support): info@spacevacpro.com
Supervisory authority contact (EU lead): Data Protection Commission, Ireland (or your local DPA)
2. PERSONAL INFORMATION WE COLLECT
- Identity data: first and last name
- Contact data: billing & shipping address, e-mail, telephone
- Order data: products purchased, order ID, payment status, returns
- Payment data: payment token, masked card digits, transaction ID (we do not store full card details)
- Usage data: pages visited, clicks, IP address, device, browser
- Marketing data: newsletter opt-in status, ad interactions (Meta Pixel, Google Ads – only if consented)
- Technical data: server log files, error codes, cookie IDs, user-agent string
We do not knowingly collect data from anyone under 16 years of age (under 15 in Australia). Parents or guardians may request deletion.
3. PURPOSES AND LEGAL BASES
| Purpose | EU/UK/CH legal basis | AU basis |
|---|---|---|
| Process and deliver orders | Contract (Art. 6 (1)(b)) | APPs 3, 6 |
| Customer support | Contract; Legitimate interest (Art. 6 (1)(f)) | APPs 3, 6 |
| Fraud prevention & site security | Legitimate interest | APP 11 |
| Tax & accounting compliance | Legal obligation (Art. 6 (1)(c)) | APP 6 (required by law) |
| Analytics & site improvement | Consent (Art. 6 (1)(a)) | Consent |
| Personalised advertising | Consent | Consent |
| E-mail marketing | Consent | Consent |
| Legal defence & dispute resolution | Legitimate interest | APP 6 (establish/defend legal rights) |
You may withdraw consent at any time (see section 10).
4. COOKIES AND TRACKING TECHNOLOGIES
The Site uses three categories of cookies:
- Essential cookies needed for cart, checkout and security (do not require consent).
- Analytics cookies to measure traffic (require opt-in consent in EU/UK/CH; optional in AU).
- Marketing cookies such as Meta Pixel and Google Ads (require opt-in consent).
Full details, including cookie names and lifetimes, appear in our Cookie Policy. A consent banner is shown on first visit and whenever material changes occur.
5. SHARING OF PERSONAL INFORMATION
We share personal information only when necessary and under a written data-processing agreement or equivalent safeguard:
- Payment processors (e.g. Stripe, PayPal)
- Logistics partners for shipping and tracking
- Meta Platforms Ireland Ltd. & Google LLC for ads (only if you consent)
- E-mail and CRM providers for transactional and marketing messages
- IT hosting providers to operate the Site
- Accountants, auditors and tax advisers
- Public authorities when required by law
We never sell or rent your personal information.
6. INTERNATIONAL DATA TRANSFERS
If information is transferred outside:
- European Economic Area → EU Standard Contractual Clauses (SCC) + supplementary measures
- United Kingdom → UK International Data Transfer Addendum (IDTA)
- Switzerland → SCC + Swiss addendum (Annex 2 revFADP)
- Australia → we take reasonable steps to ensure overseas recipients do not breach the APPs (APP 8.1)
7. DATA RETENTION
- Accounting records & invoices: 7 years (IRS guidelines)
- Order & shipping records: 6 years
- Customer-support tickets: 2 years after closure
- Marketing consent logs: until you withdraw consent + 5 years for evidence
- Analytics data: 14 months
- Meta Pixel & Google Ads event data: 180 days
- Server logs: 12 months
When retention periods expire we delete or irreversibly anonymise the data.
8. DATA SECURITY
We protect information with TLS 1.2/1.3 encryption, PCI-DSS Level 1 gateways, role-based access controls, 2-factor authentication, encrypted off-site backups, and annual penetration testing.
9. AUTOMATED DECISIONS AND PROFILING
We do not make decisions with legal or similar effects based solely on automated processing. We may create advertising audiences (profiling) if you consent to marketing cookies; you can opt out at any time.
10. YOUR RIGHTS
EU/UK/CH residents may request: access, rectification, erasure, restriction, data portability, objection, and withdrawal of consent.
Australian residents may request: access, correction, and may complain to us and the OAIC.
How to exercise your rights:
E-mail info@spacevacpro.com with the subject "Data Request". We reply within 30 days (EU/UK/CH) or 30 calendar days (AU).
11. COMPLAINTS
- EU: your local Data Protection Authority or the Irish Data Protection Commission
- UK: Information Commissioner's Office (ICO)
- Switzerland: Federal Data Protection and Information Commissioner (FDPIC)
- Australia: Office of the Australian Information Commissioner (OAIC)
We encourage you to contact us first; we will endeavour to resolve any issue promptly.
12. CHANGES TO THIS POLICY
We may update this Policy from time to time. The "Last updated" date will change accordingly. Significant changes will be announced via banner or e-mail where practical.
13. CONTACT
MATHEWECOMMERCE LLC
5830 E 2ND ST STE 7000 22393
Casper, WY 82609, USA
E-mail: info@spacevacpro.com
Website: spacevacpro.com