Privacy policy
Last updated: May 26, 2026
ZAptieka (“we”, “us”, “our”) operates this website and store, including all related content, features, tools, products and services (the “Services”), to provide you with a curated shopping experience.
Our store is powered by Shopify, which processes certain data on our behalf to enable the Services.
This Privacy Policy explains how we collect, use, and share your personal information when you use our website, make purchases, contact us, or interact with our Services.
By using our Services, you confirm that you have read and understood this Privacy Policy.
1. Data Controller
ZAptieka is the data controller responsible for your personal data.
Contact:
Email: info@zaptieka.com
Address: Citadeles iela 2, Rīga, 1010, Latvia
2. Personal Data We Collect
We collect and process the following categories of personal data:
A. Information you provide
- Name, billing and shipping address
- Email address and phone number
- Payment and order information
- Customer support messages
- Account details (if applicable)
B. Automatically collected data
- IP address and device information
- Browser type and settings
- Usage data (pages viewed, time on site, interactions)
- Cookies and similar tracking technologies
C. Transaction data
- Products viewed, added to cart, purchased, returned or cancelled
- Order history and preferences
3. Legal Basis for Processing (GDPR Requirement)
We process your personal data under the following legal bases:
Contract (Art. 6(1)(b) GDPR)
To:
- Process and deliver your orders
- Manage payments and refunds
- Provide customer support
Legal obligation (Art. 6(1)(c) GDPR)
To:
- Comply with tax, accounting, and legal requirements
Legitimate interest (Art. 6(1)(f) GDPR)
To:
- Improve our website and services
- Prevent fraud and abuse
- Understand customer behavior to optimize experience
Consent (Art. 6(1)(a) GDPR)
To:
- Send marketing emails
- Use non-essential cookies (analytics, advertising, retargeting)
You may withdraw consent at any time.
4. How We Use Your Data
We use personal data to:
- Provide and fulfill orders
- Manage payments and shipping
- Improve user experience and product offering
- Communicate with customers
- Send marketing communications (if opted-in)
- Prevent fraud and secure our Services
- Comply with legal obligations
5. Cookies and Tracking Technologies
We use cookies to:
- Enable core website functionality (strictly necessary cookies)
- Analyze website performance (analytics cookies)
- Improve marketing effectiveness (marketing cookies)
Non-essential cookies are only activated with your consent.
You can:
- Accept or reject cookies via the cookie banner
- Change preferences at any time
- Withdraw consent in browser settings or our cookie tool
6. Marketing & Advertising
If you opt in, we may send:
- Email marketing campaigns
- Product recommendations
- Promotional offers
We may also use advertising tools (such as Meta Pixel or Google Ads) to show relevant ads.
You can unsubscribe at any time via the email link or by contacting us.
We do not sell personal data.
7. Data Sharing
We share personal data only when necessary with:
- Shopify (store infrastructure & hosting)
- Payment providers
- Shipping and logistics partners
- Email and marketing platforms
- Analytics providers (where consent is given)
- Legal authorities when required
Some providers may process data outside the EU under Standard Contractual Clauses (SCCs).
8. International Data Transfers
Your data may be transferred outside the EU/EEA, including to Canada or the United States (e.g., Shopify infrastructure).
We ensure appropriate safeguards are in place, such as:
- EU Standard Contractual Clauses
- Data Processing Agreements
9. Data Retention
We retain personal data only as long as necessary:
- Orders & transaction data: up to 7 years (legal requirement)
- Customer accounts: until deletion request or inactivity
- Marketing data: until consent is withdrawn
- Analytics data: typically 12–26 months
10. Your Rights (EU/EEA Customers)
You have the right to:
- Access your data
- Correct inaccurate data
- Request deletion (“right to be forgotten”)
- Restrict processing
- Object to processing
- Data portability
- Withdraw consent at any time
To exercise rights: info@zaptieka.com
We respond within 30 days.
11. Security
We apply reasonable technical and organizational measures to protect your data. However, no system is completely secure.
12. Children
Our Services are not intended for individuals under 18. We do not knowingly collect data from minors.
13. Changes to This Policy
We may update this Privacy Policy from time to time. Updates will be posted on this page with a revised “Last updated” date.
14. Contact
If you have any questions about this Privacy Policy or your data:
ZAptieka
Email: info@zaptieka.com
Address: Citadeles iela 2, Rīga, 1010, Latvia