Privacy Policy
Effective Date: November 15, 2025
Contact: support@colordori.com
This Privacy Policy describes how Colordori.com (“Colordori”, “we”, “our”, or “us”) collects, uses, and protects your personal data when you use our website and services (“Services”). We are committed to protecting your privacy and complying with the EU General Data Protection Regulation (GDPR), Payment Services Directive 2 (PSD2), and Strong Customer Authentication (SCA) requirements.
1. Data Controller
The controller responsible for your personal data is:
Colordori.com support@colordori.com
2. Data We Collect
We collect personal data when you use our Services, create an account, or interact with us. This may include:
a. Account & Profile Information
- Name, email address, username, and password.
- Shipping and billing addresses.
- Profile photo or store details (for sellers).
b. Transaction & Payment Information
- Order details, payment amounts, and status.
- Payment card information (processed securely by third-party payment providers compliant with PSD2 and SCA).
- VAT or tax details when applicable.
c. Technical Information
- IP address, browser type, device identifiers, and operating system.
- Usage data, including pages viewed, clicks, and time spent.
d. Communication Data
- Messages sent to us or between buyers and sellers via the platform.
- Marketing preferences and customer support requests.
3. Legal Bases for Processing (GDPR Article 6)
- Contractual necessity: to provide and operate our Services.
- Legal obligation: to comply with tax, fraud prevention, and payment security laws.
- Legitimate interests: to improve our services, prevent abuse, and ensure platform safety.
- Consent: when you agree to receive marketing communications or non-essential cookies.
4. How We Use Your Data
- Register and manage your account.
- Process orders, payments, and refunds.
- Verify identities and authenticate transactions (as required by SCA).
- Prevent fraud and ensure secure payments (per PSD2).
- Provide customer support.
- Improve website performance and personalize user experience.
- Send administrative and marketing communications (only with your consent).
5. Payment Security & PSD2 Compliance
All payments on Colordori are processed via trusted third-party payment providers that comply with the Payment Services Directive 2 (PSD2).
To protect users, Strong Customer Authentication (SCA) is implemented for online transactions — requiring two or more of the following:
- Something you know (password, PIN)
- Something you own (mobile device, card)
- Something you are (biometric verification)
Colordori itself does not store your full payment card details.
6. Cookies & Tracking Technologies
We use cookies and similar technologies to improve functionality, analyze usage, and personalize content. For detailed information, see our Cookies Policy.
7. Data Retention
We retain personal data only for as long as necessary:
- To fulfill our contractual and legal obligations.
- To resolve disputes or enforce agreements.
- To meet accounting and tax requirements.
- Once no longer needed, your data is securely deleted or anonymized.
8. Data Sharing
We may share data with:
- Service providers (payment processors, logistics partners, analytics tools).
- Legal authorities, if required by law or to prevent fraud.
- Buyers and sellers, as needed to complete transactions.
All third-party partners are bound by GDPR-compliant data protection agreements.
9. Data Transfers
If your data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards such as Standard Contractual Clauses (SCCs) or equivalent mechanisms are in place.
10. Your Rights Under GDPR
- Access: Request a copy of your personal data.
- Rectification: Correct inaccurate or incomplete information.
- Erasure: Request deletion of your data (“right to be forgotten”).
- Restriction: Limit data processing in certain cases.
- Portability: Receive your data in a structured, machine-readable format.
- Objection: Withdraw consent or object to certain processing activities.
To exercise your rights, contact us at: support@colordori.com
11. Security
We use administrative, technical, and physical safeguards to protect personal data from unauthorized access, loss, or misuse. Our partners adhere to ISO 27001 and PCI-DSS standards for secure payment processing.
12. Children’s Privacy
Colordori is not directed to individuals under 18. We do not knowingly collect personal data from minors.
13. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal obligations. The “Effective Date” above will indicate when revisions take effect.
14. Contact Us
If you have questions about this Policy or your data, please reach us at: 📧 support@colordori.com