Privacy Policy
How we handle your information
Effective 5 May 2026
This Privacy Policy describes how Luciana (“we,” “our,” or “Luciana”) collects, uses, and protects your personal information when you visit shop-luciana.co, create an account, place an order, or otherwise interact with us. By using the site, you consent to the practices described below.
1. Information we collect
What you give us
- Account details — name, email, and password. Passwords are stored hashed; we never see or store them in plain text.
- Order details — billing and shipping address, telephone number, and the items you purchase.
- Payment information — handled directly by our payment partners (Paystack, Stripe, Flutterwave). We do not store full card numbers on our servers.
- Communications — emails, support requests, reviews, and any messages you send us.
What we collect automatically
- Device and browser info (IP address, browser, OS, referrer).
- Usage signals (pages viewed, items added to cart, search terms).
- Cookies and similar technologies — see Section 6.
2. How we use your information
- To fulfill orders and provide customer service.
- To process payments through our payment partners.
- To communicate about your orders, account, and — only with your consent — marketing.
- To personalize the storefront and improve product recommendations.
- To detect fraud, abuse, and protect site security.
- To comply with legal obligations (tax, accounting, regulatory reporting).
3. Sharing your information
We share data only with parties that need it to deliver the service:
- Payment processors — Paystack, Stripe, Flutterwave.
- Shipping carriers — DHL, FedEx, and regional couriers as appropriate to your destination.
- Cloud infrastructure — Supabase (database, auth), Vercel (hosting), Cloudflare (CDN and security).
- Analytics — PostHog and Google Analytics 4 (aggregated, anonymized usage).
- Marketing email — only with your explicit opt-in consent.
- Legal authorities — when required by law, court order, or to protect our rights.
We do not sell your personal information.
4. International data transfers
Luciana operates across West Africa, the United Kingdom, and North America. Your data may be processed in any of these regions. Where cross-border transfer occurs, we use appropriate safeguards (Standard Contractual Clauses or equivalent).
5. Data retention
- Account data — kept while your account is active, plus a 30-day recovery window after a deletion request.
- Order records — retained for 7 years to meet tax and accounting requirements.
- Marketing data — kept until you unsubscribe.
- Server logs — typically rotated within 90 days.
6. Cookies
We use first-party cookies for authentication (your sign-in session) and shopping cart state. We use limited analytics cookies (PostHog, GA4) to understand site usage. You can disable non-essential cookies in your browser settings without losing core functionality.
7. Your rights
Depending on your jurisdiction (UK GDPR, EU GDPR, California CCPA, Nigeria NDPR), you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate or incomplete data.
- Delete your data (the “right to be forgotten”).
- Export your data in a portable format.
- Object to or restrict certain processing.
- Withdraw marketing consent at any time.
To exercise any of these rights, email privacy@shop-luciana.co from the address on your account. We respond within 30 days.
8. Children's privacy
The site is not directed to anyone under 16. We do not knowingly collect personal data from children. If we discover we have, we will delete it.
9. Security
We protect your data with encryption in transit (TLS 1.3), encryption at rest, role-based access controls, and regular security reviews. Despite these measures, no internet transmission is 100% secure.
10. Third-party links
The site may link to third-party services (Instagram, TikTok, Pinterest, payment processors). Their privacy practices are governed by their own policies, not this one.
11. Changes to this policy
We may update this Policy from time to time. Material changes will be communicated via email and a banner on the site. The “Effective” date at the top of this page reflects the most recent revision.
12. Contact
Questions or requests:
privacy@shop-luciana.co
Luciana Privacy Office
