Privacy policy

Last updated: April 1, 2026

 

Magsmarts ("we", "us", or "our") operates Magsmarts.com (the "Site"). This Privacy Policy describes how we collect, use, and disclose your personal information when you visit, use our services, or make a purchase from the Site (collectively, the "Services"), or otherwise communicate with us.

For the purposes of the EU General Data Protection Regulation (GDPR), Magsmarts is the Data Controller of your personal information.

Please read this Privacy Policy carefully. By accessing or using the Services, you acknowledge the collection, use, and disclosure of your information as described herein.


1. Data Controller Contact Information

If you have any questions about this Privacy Policy or our data protection practices, or if you wish to exercise your legal rights, please contact us:

  • Email: magsmartsy1@gmail.com

  • Business Name: Oluwaseyi

  • Registered Address: Rue Kruger, 95100, Atgenteuil.Fr


2. Personal Information We Collect

We collect information that identifies, relates to, or can reasonably be linked to you. The categories of personal data we collect include:

  • Contact & Identifier Details: Your name, billing address, shipping address, phone number, and email address.

  • Financial Information: Payment card details (processed securely via our payment processors), transaction details, and payment confirmations.

  • Account Information: Your username, encrypted password, and account preferences.

  • Transaction and Order History: Information about the items you view, add to your cart, place on your wishlist, purchase, or return.

  • Customer Support Communications: Information you choose to include when you message us or submit a support inquiry.

  • Device and Usage Data: IP address, browser type, device identifiers, network connection type, and details about how and when you navigate our Site (collected via cookies and similar technologies).


3. Legal Bases for Processing Your Data

Under the GDPR, we only process your personal data when we have a valid legal basis to do so. We rely on the following grounds:

Purpose of Processing Categories of Data Legal Basis (GDPR Art. 6)
Fulfilling Orders & Account Management: Processing payments, managing your account, arranging shipping/dropshipping, and facilitating returns. Contact, Financial, Account, Transaction data Performance of a Contract: Necessary to fulfill our contractual obligations to you.
Customer Support: Responding to inquiries, fixing technical issues, and managing our relationship with you. Contact, Communication, Device data Performance of a Contract or Legitimate Interests (to ensure a functional shopping experience).
Marketing & Personalization: Sending promotional emails, showing targeted ads, and improving our store's performance. Contact, Usage, Device data Consent: You have the right to withdraw your marketing or cookie consent at any time.
Security & Fraud Prevention: Detecting, investigating, or preventing fraudulent transactions or malicious activity. Financial, Device, Transaction data Legitimate Interests: To protect our platform, business operations, and consumers from fraud.
Compliance with Law: Maintaining financial records, tax reporting, or responding to legal requests from authorities. Transaction, Financial, Contact data Legal Obligation: Necessary to comply with laws we are subject to within the EU.

4. How We Disclose Your Personal Information

We share your personal data with trusted third-party service providers to help us operate our store and deliver our Services:

  • Shopify: Our e-commerce platform host. Shopify processes your data to ensure the store functions, processes payments, and safely handles checkouts.

  • Dropshipping and Delivery Partners: Because we operate as a dropshipping store, we securely transmit your name, shipping address, phone number, and ordered items to our third-party fulfillment partners and shipping carriers to package and deliver your products directly to you.

  • Payment Processors: Your payment information is securely transmitted directly to PCI-compliant payment gateways (e.g., Stripe, PayPal) and is not stored on our servers.

  • Marketing and Analytics Partners: We share usage and device data with partners (such as Google Analytics and Shopify Audiences) to optimize our advertising, provided you have consented to tracking cookies.

  • Legal and Regulatory Authorities: We may disclose your data if required by law, to protect our legal rights, or to respond to valid subpoenas or government requests.


5. International Data Transfers

Because Magsmarts is powered by Shopify and utilizes global dropshipping supply chains, your personal data may be transferred to, stored, and processed outside the European Economic Area (EEA), including in Canada, the United States, and other countries.

Whenever we transfer your personal data outside the EEA, we ensure a similar degree of protection is afforded to it by ensuring at least one of the following safeguards is implemented:

 

  • The country has been deemed to provide an adequate level of protection for personal data by the European Commission.

     

  • We utilize Standard Contractual Clauses (SCCs) approved by the European Commission, which give personal data the same protection it has in Europe.


6. Cookies and Tracking Technologies

Our website uses cookies to enhance your browsing experience, remember your cart items, and analyze site traffic. For detailed information about the cookies we use and how to manage your preferences, please view our [Insert Link to Cookie Policy, if applicable] or adjust your preferences via our on-site cookie banner.

You can also opt out of targeted advertising by adjusting your browser settings or utilizing the Global Privacy Control.


7. Data Retention

We will only retain your personal data for as long as reasonably necessary to fulfill the purposes we collected it for, including for the purposes of satisfying any legal, regulatory, tax, accounting, or reporting requirements.

  • Order Data: Retained for the duration of our contract, plus the statutory period required by EU tax and accounting laws (typically 5 to 10 years depending on the jurisdiction).

  • Account Data: Retained for as long as your account remains active or until you request its deletion.

  • Marketing Data: Retained until you withdraw your consent or unsubscribe from our mailing lists.


8. Your GDPR Rights

If you are a resident of the EU/EEA, you have the following rights under data protection laws:

  • Right of Access: You have the right to receive a copy of the personal data we hold about you.

  • Right to Rectification: You have the right to request that we correct any inaccurate or incomplete personal data.

  • Right to Erasure ("Right to be Forgotten"): You have the right to request that we delete your personal data under certain conditions.

  • Right to Restrict Processing: You have the right to request that we limit how we process your data.

  • Right to Data Portability: You have the right to request a transfer of your data to you or to another third party in a structured, commonly used machine-readable format.

  • Right to Object: You have the right to object to our processing of your data based on legitimate interests or for direct marketing purposes.

  • Right to Withdraw Consent: Where we rely on your consent to process data, you can withdraw it at any time without affecting the lawfulness of processing before the withdrawal.

To exercise any of these rights, please email us at magsmartsy1@gmail.com. We will respond to your request within one month. We may need to verify your identity before processing your request to protect your security.


9. Right to Lodge a Complaint

If you believe that our processing of your personal data infringes GDPR regulations, you have the right to lodge a complaint with a supervisory authority in your country of residence, place of work, or place of the alleged infringement.

A complete list of EU Data Protection Authorities can be found here: EU Data Protection Authorities List.


10. Children's Data

Our Services are not directed to individuals under the age of 16. We do not knowingly collect personal data from children. If you become aware that a child has provided us with personal data without parental consent, please contact us immediately, and we will take steps to remove the information.


11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, dropshipping operations, or relevant legal obligations. Any changes will be posted on this page with an updated "Last updated" date.