Ships fast from the EUComplimentary shipping over €50Water-resistant & tarnish-free30-day easy returns1-year warrantyShips fast from the EUComplimentary shipping over €50Water-resistant & tarnish-free30-day easy returns1-year warranty
EN

Privacy Policy

This Privacy Policy explains how Capri d’Oro (“we”, “us”) collects, uses and protects your personal data when you visit capridoro.com or place an order. We process personal data in accordance with the EU General Data Protection Regulation (GDPR).

Who we are (data controller)

Capri d’Oro is operated as a sole proprietorship by Maria Alejandra Cadavid, Via Portico di Ottavia 13, 00186, Rome, Italy. Business and VAT registration are in progress; this page will be updated once completed. Contact for all privacy matters: info@capridoro.com.

What we collect and why

  • Order data — name, email, shipping/billing address, phone, order history. Legal basis: performance of a contract (Art. 6(1)(b) GDPR); retention of invoicing records under Italian tax law (Art. 6(1)(c)).
  • Payment data — processed securely by Stripe Payments Europe, Ltd. We never receive or store your full card number. Legal basis: performance of a contract.
  • Support & email — messages you send to info@capridoro.com (hosted on Google Workspace). Legal basis: legitimate interest in answering you (Art. 6(1)(f)).
  • Newsletter — your email, only if you sign up. Legal basis: consent (Art. 6(1)(a)); unsubscribe anytime via the link in every email.
  • Analytics & advertising data — cookies and similar technologies for Google Analytics, Google Ads and Meta (Facebook/Instagram) advertising, set only with your consent via the cookie banner. Legal basis: consent. Before you choose, Google’s tags run in a restricted mode that stores nothing on your device and builds no profile. See the Cookie Policy.
  • Hashed contact details for conversion measurement — if you consent to marketing cookies, the email address, phone number and name/address you enter at checkout are irreversibly hashed in your browser before being sent to Google, so a purchase can be matched to an ad click (“enhanced conversions”). We never transmit these details in readable form, and Google is contractually restricted to using them for measuring our own conversions. Legal basis: consent — withdraw it at any time via the cookie settings link in the footer.

Who we share data with

Only service providers (processors) needed to run the store: Stripe Payments Europe (payments), Hostinger International (website hosting), Google Ireland Ltd (Google Workspace email, and — with consent — Google Analytics and Google Ads), Meta Platforms Ireland Ltd (with consent — Meta Pixel for Facebook/Instagram ads), and postal/courier carriers to deliver your order. We never sell your personal data.

International transfers

Some providers may process data outside the EU/EEA (e.g. in the United States). Where that happens, transfers are protected by the EU–US Data Privacy Framework and/or the European Commission’s Standard Contractual Clauses.

How long we keep data

  • Order and invoicing records: 10 years (Italian tax and accounting law).
  • Support emails: up to 2 years after the matter is closed.
  • Newsletter data: until you unsubscribe.
  • Consent-based cookies: see the lifetimes in the Cookie Policy.

Your rights

Under the GDPR you can request access to, correction of, or deletion of your data; restriction of processing; data portability; object to processing based on legitimate interest; and withdraw consent at any time (without affecting prior processing). Write to info@capridoro.com — we respond within one month. You may also lodge a complaint with your local supervisory authority; in Italy this is the Garante per la Protezione dei Dati Personali (gpdp.it).

Automated decision-making

We do not carry out automated decision-making that produces legal effects concerning you or similarly significantly affects you. Advertising audiences built with your consent are used only to decide which of our own ads you may be shown.

Security

The site is served over HTTPS, payments are handled entirely by Stripe, and access to personal data is limited to the people who need it to fulfil your order.

Children

Our store is not directed at children under 16, and we do not knowingly collect their data.

Changes

We will post any changes to this policy on this page with an updated date.

Last updated: 4 July 2026.