Privacy policy
Effective Date: September 30, 2026
Last Updated: September 30, 2026
At SERENZA (operated by ANTHONY MUFUNDU / NORD CORP, SIREN: 882 687 213), we take data privacy and protection with the utmost seriousness. This Privacy Policy details our practices concerning the collection, use, disclosure, storage, and protection of your personal data when you browse our Site (serenza-uk.store), interact with our services, or make a purchase.
1. Data Controller
The Data Controller responsible for the processing of your personal data under the Regulation (EU) 2016/679 (General Data Protection Regulation - GDPR) is:
-
Entity Name: ANTHONY MUFUNDU / NORD CORP
-
SIREN: 882 687 213
-
Email: contact@serenza-uk.store
-
Phone: +33 7 52 02 58 78
2. Personal Data We Collect
We collect personal information directly from you when you provide it to us, automatically as you navigate through the Site, and from third-party service providers.
A. Information You Provide Directly:
-
Identity Data: Full name, title, date of birth.
-
Contact Data: Email address, telephone number, billing address, shipping address.
-
Payment & Transaction Data: Payment card details (processed securely via PCI-DSS compliant third parties), transaction history, order details, invoices.
-
Communication Data: Records of customer support queries, emails, feedback, and product reviews.
B. Information Collected Automatically:
-
Technical & Usage Data: IP address, browser type and version, time zone setting, location data, browser plug-in types, operating system, device hardware type, page load times, clickstream data, products viewed or added to cart.
-
Cookies & Tracking Technologies: HTTP cookies, web beacons, local storage, and session records (see Section 8 for details).
3. Legal Grounds and Purposes of Processing
We only process your personal data when we have a valid legal basis under GDPR Article 6:
-
Performance of Contract: To accept, process, fulfill, ship, and support your orders, manage payments, and handle returns.
-
Legal Obligation: To comply with tax laws, accounting regulations, anti-money laundering regulations, and legal inquiries.
-
Legitimate Interests: To prevent fraud, secure our website, analyze user behavior to improve our catalog, manage dispute resolution, and protect our business interests.
-
Consent: To send direct marketing communications or place non-essential analytics/advertising cookies on your device (you can withdraw consent at any time).
4. Third-Party Sharing & Data Transfers
We do not sell, rent, or trade your personal information. We disclose data solely to trusted sub-processors and operational partners under strict confidentiality agreements:
-
Platform Provider: Shopify Inc. (hosts our online store and stores data on secure servers).
-
Payment Processors: Shopify Payments, Stripe, and authorized merchant acquirers for payment authorization, fraud checks, and chargeback prevention.
-
Logistics & Carriers: Freight carriers, postal authorities, and order fulfillment centers for physical delivery.
-
IT & Security Partners: Web hosting infrastructure, firewall providers, spam filters, and fraud analysis tools.
-
Regulatory & Legal Authorities: Law enforcement agencies or regulatory bodies when required by mandatory legal provisions.
International Transfers: When personal data is transferred outside the European Economic Area (EEA), we ensure adequate protection through standard contractual clauses (SCCs) approved by the European Commission or equivalent legal safeguards.
5. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:
-
Order & Transaction Records: Retained for 10 years to comply with French commercial and tax codes.
-
Customer Support Records: Retained for 3 years from the date of last contact.
-
Marketing Communications: Retained until you unsubscribe or withdraw consent.
-
Cookies: Retained for a maximum duration of 13 months from consent.
6. Security Measures
We implement comprehensive technical and organizational security measures to protect your data against unauthorized access, loss, destruction, alteration, or disclosure. Payment transactions are fully encrypted using Transport Layer Security (TLS 1.2/1.3) and handled directly within PCI-DSS Level 1 certified banking environments.
7. Your Rights under GDPR
If you reside within the European Economic Area or the United Kingdom, you hold the following statutory rights:
-
Right of Access: Request copies of your personal data.
-
Right to Rectification: Request correction of inaccurate or incomplete information.
-
Right to Erasure ("Right to be Forgotten"): Request deletion of your data where legally permissible.
-
Right to Restrict Processing: Request limited processing under specific circumstances.
-
Right to Data Portability: Request transfer of your data in a structured, machine-readable format.
-
Right to Object: Object to direct marketing or processing based on legitimate interest.
-
Right to Lodge a Complaint: File a complaint with a supervisory authority (e.g., CNIL in France at cnil.fr).
To exercise any of these rights, contact us at contact@serenza-uk.store.
8. Cookie Policy
We use essential cookies necessary for website operation (cart preservation, session authentication). Non-essential cookies (analytical tools, advertisement targeting) are activated only after you provide consent through our cookie consent banner. You may manage cookie preferences at any time through your browser settings.
, Laura