Privacy Policy
Privacy policy
Last updated: April 22, 2026
This Privacy Policy explains how Silver Palace Inc. ("we," "us," or "our"), operated at [yourstore.com], collects, uses, shares, and protects your personal information when you visit our website or make a purchase. It also describes your rights under applicable privacy laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA/CPRA).
Please read this policy carefully. By using our website, you agree to the practices described here.
1. Who we are
Silver Palace Inc.
640 S. Hill St Ste 349
Los Angeles, CA 90014
Email: info@silverpalaceinc.com
Phone: 213-488-9906
For GDPR purposes, we are the data controller of your personal information.
2. Information we collect
Information you provide to us
- Contact and account information: name, email address, phone number, username, and password when you create an account or contact us
- Order and billing information: billing address, shipping address, and order history
- Payment information: credit or debit card details (processed securely by our payment provider — we do not store full card numbers)
- Communications: messages you send us via contact forms, email, or customer support channels
- Marketing preferences: your choices regarding promotional emails and notifications
Information collected automatically
- Device and technical data: IP address, browser type and version, operating system, device identifiers
- Usage data: pages viewed, links clicked, time spent on pages, referring URLs, search terms used on our site
- Cookies and tracking technologies: see Section 7 (Cookies) for full details
- Transaction data: details about purchases and returns
Information from third parties
- Payment processors (e.g., Stripe, PayPal) confirming transaction completion
- Shipping carriers providing delivery status updates
- Advertising platforms (e.g., Google, Meta) sharing aggregated audience data
- Review platforms if you leave a product review
3. How we use your information
We use your personal information for the following purposes, and only where we have a lawful legal basis to do so:
To fulfill your orders (legal basis: contract performance)
- Process and fulfill purchases
- Send order confirmations, shipping notifications, and receipts
- Handle returns, refunds, and exchanges
- Respond to customer service inquiries
To operate and improve our business (legal basis: legitimate interests)
- Maintain the security and functionality of our website
- Detect and prevent fraud and unauthorized activity
- Analyze website traffic and shopping behavior to improve our store
- Conduct internal record keeping and business analysis
To comply with legal obligations (legal basis: legal compliance)
- Maintain financial and tax records as required by law
- Respond to lawful requests from government authorities
- Enforce our Terms of Service and other agreements
Marketing and communications (legal basis: consent or legitimate interests)
- Send promotional emails, offers, and newsletters — only where you have opted in or we have a legitimate interest (e.g., marketing similar products to existing customers)
- Personalize your shopping experience
- Show you targeted advertising on third-party platforms
You can withdraw consent or opt out of marketing at any time — see Section 9 (Your Rights).
4. Data retention
We keep your personal information only for as long as necessary for the purposes described in this policy, or as required by law. Our standard retention periods are:
| Data type | Retention period | Reason |
|---|---|---|
| Order and transaction records | 7 years | Tax and financial compliance |
| Customer account information | Duration of account + 3 years after last activity | Customer service and legal claims |
| Marketing preferences and email history | Until you unsubscribe + 1 year | Proof of consent |
| Customer support communications | 3 years | Quality assurance and dispute resolution |
| Website analytics and log data | 26 months | Business analytics (anonymized after 13 months) |
| Fraud prevention records | 5 years | Security and legal compliance |
After these periods expire, we securely delete or anonymize your data. You may request earlier deletion — see Section 9 (Your Rights).
5. How we share your information
We do not sell your personal information to third parties. We share your information only in the following circumstances:
Service providers
We share data with trusted third-party vendors who help us operate our business. These providers are contractually required to protect your data and use it only for the services they provide to us:
- Shopify Inc. — our e-commerce platform (data processed in accordance with Shopify's Privacy Policy)
- Payment processors — Stripe, PayPal, or others to securely process transactions
- Shipping carriers — UPS, USPS, FedEx, DHL to deliver your orders
- Email marketing platforms — Klaviyo, Mailchimp, or similar to send communications
- Analytics providers — Google Analytics to understand website usage
- Advertising platforms — Google Ads, Meta Ads for targeted marketing
Legal requirements
We may disclose your information if required by law, court order, or government authority, or when we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others.
Business transfers
If we merge with, are acquired by, or sell assets to another business, your information may be transferred as part of that transaction. We will notify you before your information is transferred and becomes subject to a different privacy policy.
6. International data transfers
Our store is operated from the United States. If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, your personal information may be transferred to and processed in the United States or other countries that may not have equivalent data protection laws.
When we transfer data internationally, we use appropriate safeguards including Standard Contractual Clauses (SCCs) approved by the European Commission, or rely on adequacy decisions where applicable.
7. Cookies and tracking technologies
We use cookies and similar technologies (pixel tags, web beacons) to operate our website, remember your preferences, and show you relevant advertising.
Types of cookies we use
- Strictly necessary cookies: Required for the website to function (e.g., shopping cart, login session). Cannot be disabled.
- Functional cookies: Remember your preferences such as language and currency.
- Analytics cookies: Help us understand how visitors use our site (e.g., Google Analytics). These are anonymized.
- Marketing cookies: Track your browsing to show you relevant ads on other websites (e.g., Facebook Pixel, Google Ads).
Managing cookies
You can control cookies through your browser settings or our cookie consent tool (where available). Note that disabling certain cookies may affect how the website functions.
To opt out of Google Analytics tracking, install the Google Analytics Opt-out Browser Add-on. To opt out of targeted advertising, visit aboutads.info or networkadvertising.org.
8. Data security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, loss, destruction, or alteration. These measures include:
- SSL/TLS encryption for all data transmitted between your browser and our website
- PCI-DSS compliance for payment processing (handled by certified payment processors)
- Access controls limiting who within our organization can access personal data
- Regular security reviews of our systems and practices
No method of transmission over the internet is 100% secure. While we work hard to protect your data, we cannot guarantee absolute security. If you believe your information has been compromised, contact us immediately at [privacy@yourstore.com].
9. Your privacy rights
Rights for all customers
- Right to know: You can ask us what personal information we hold about you
- Right to correct: You can update inaccurate information through your account or by contacting us
- Right to opt out of marketing: Click "Unsubscribe" in any marketing email, or contact us directly
Additional rights for EEA/UK residents (GDPR)
If you are located in the European Economic Area or United Kingdom, you have the following additional rights:
- Right of access (Article 15 GDPR): Receive a copy of all personal data we hold about you
- Right to rectification (Article 16 GDPR): Have inaccurate data corrected
- Right to erasure (Article 17 GDPR): Request deletion of your personal data ("right to be forgotten") subject to legal retention requirements
- Right to restriction (Article 18 GDPR): Request that we limit how we process your data
- Right to data portability (Article 20 GDPR): Receive your data in a structured, machine-readable format
- Right to object (Article 21 GDPR): Object to processing based on legitimate interests, including direct marketing
- Right to withdraw consent: Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing
- Right to lodge a complaint: You have the right to complain to your national data protection authority (e.g., ICO in the UK, or your EU supervisory authority)
Additional rights for California residents (CCPA/CPRA)
If you are a California resident, you have the following rights under the California Consumer Privacy Act:
- Right to know: Request disclosure of the categories and specific pieces of personal information we collect, use, disclose, and sell
- Right to delete: Request deletion of your personal information, subject to certain exceptions
- Right to correct: Request correction of inaccurate personal information
- Right to opt out of sale or sharing: We do not sell your personal information. We do share certain data with advertising partners, which may qualify as "sharing" under CCPA. You may opt out by contacting us or using the "Do Not Sell or Share My Personal Information" link in our website footer.
- Right to limit use of sensitive personal information: You may request that we limit our use of sensitive personal information to what is necessary to provide our services
- Right to non-discrimination: We will not discriminate against you for exercising your privacy rights
How to submit a Data Subject Access Request (DSAR)
To exercise any of the rights listed above, submit a request by:
- Email: info@silverpalaceinc.com with the subject line "Privacy Rights Request"
- Contact form: Visit our contact page and select "Privacy Request" as the subject
We will acknowledge your request within 72 hours and respond within 30 days (or 45 days where permitted by law with notice). We may need to verify your identity before fulfilling your request. We will not charge a fee for reasonable requests.
10. Children's privacy
Our website is not directed to children under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have inadvertently collected information from a child under 16, please contact us immediately and we will delete it promptly.
11. Third-party links
Our website may contain links to third-party websites. We are not responsible for the privacy practices of those sites. We encourage you to read the privacy policy of any website you visit.
12. Changes to this policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make significant changes, we will:
- Update the "Last updated" date at the top of this policy
- Post a notice on our website
- Send an email notification to registered customers where required by law
Your continued use of our website after changes are posted constitutes your acceptance of the updated policy.
13. Contact us about privacy
If you have any questions, concerns, or complaints about how we handle your personal information, please contact our privacy team:
Silver Palace Inc.
Attn: Privacy Team
640 S. Hill St Ste 349
Los Angeles, CA 90014
Email: info@silverpalaceinc.com
Phone: 213-488-9906
For unresolved GDPR complaints, you may also contact your local data protection authority. A list of EU supervisory authorities is available at edpb.europa.eu. UK residents may contact the Information Commissioner's Office at ico.org.uk.
