Privacy policy
STWRAP, LLC. PRIVACY POLICY (Updated for 2025)
This Privacy Policy describes how your personal information is collected, used, and shared when you visit or make a purchase from www.stwrap.com (the “Site”).
1. COLLECTION AND LEGAL BASIS FOR PROCESSING
When you purchase something from our store, we collect the personal information you give us. We rely on the following legal bases to process your data:
- Contractual Necessity: To fulfill orders (name, address, email, payment details).
- Legitimate Interest: For store functionality, security, and internal analysis (IP address, browsing data).
- Consent: For email marketing (explicit permission is obtained).
Data We Collect:
- Transaction Information: Name, billing and shipping address, email address, and payment information (processed by third parties).
- Device Information: Internet Protocol (IP) address, browser type, operating system, and time zone.
- Usage Data: Information about the individual web pages or products you view, what websites or search terms referred you to the Site, and how you interact with the Site.
2. USE OF INFORMATION AND MODERN DATA PRACTICES
We use the data we collect primarily to fulfill your orders, communicate with you, and screen orders for potential risk or fraud. We also use data for the following internal purposes:
- Data Analysis and Improvement: To monitor and analyze Site performance, and to improve our products and services.
- Internal Machine Learning/AI: Data may be used in an aggregated and anonymized fashion to improve our internal systems, algorithms, and business processes, including machine learning models used for inventory prediction and personalization. This data is not used to train publicly available AI models.
- Targeted Marketing: To provide you with information or advertising relating to our products or services (only with your express consent, where required).
3. THIRD-PARTY SERVICES AND DATA DISCLOSURE
We may disclose your personal information if required by law or if you violate our Terms of Service. Otherwise, we disclose data only to essential service providers:
- Shopify: Our e-commerce platform stores your data on a secure server. Review Shopify’s Terms of Service and Privacy Statement for more insight.
- Payment Gateways: If you use a direct payment gateway, they process and store your encrypted credit card data in compliance with PCI-DSS standards.
- Analytics: We use Google Analytics to understand Site usage.
Jurisdiction & Disclosure: Certain third-party service providers may be located in or have facilities in a different jurisdiction than you or us. If you elect to proceed with a transaction, your information may become subject to the laws of the jurisdiction(s) in which that service provider is located (e.g., disclosure under US law if processed in the US).
Leaving Our Site: Once you click on links and leave our store's website, you are no longer governed by this Privacy Policy.
4. SECURITY AND COOKIES
Security
We take reasonable precautions, including the use of SSL technology and AES-256 encryption for credit card data, to protect your personal information. While no method is 100% secure, we follow all PCI-DSS requirements and industry