Free EU shipping over 1500 SEK.

Privacy Policy

VILYSA – Privacy Policy

Last Updated: [February 12, 2026]

1. Controller of Your Data
The data controller responsible for your personal information is VILYSA. For any questions regarding this policy or your data, you can contact us at: service@vilysa.com.

2. The Information We Collect
We collect information necessary to provide our services, fulfill your orders, and improve your experience.

●Information You Provide: This includes your name, email address, shipping/billing address, phone number, payment details, and any communications you send to our customer service.

Information Collected Automatically: When you visit our site, we collect certain data through cookies and similar technologies. This may include your IP address, browser type, device information, pages viewed, and how you interact with the site. For detailed information, please see our Cookie Policy.

Information from Third Parties: We receive information from partners who provide services on our behalf, such as payment processors (e.g., Stripe, PayPal) and our e-commerce platform provider (Shopify), strictly to complete your order.

3. How and Why We Use Your Information (Our Legal Bases)
Under the GDPR, we process your personal data based on specific legal grounds:

To Perform a Contract with You (Article 6(1)(b)): We process your data to process your payment, fulfill your order, arrange shipping, and manage returns or exchanges. This is essential for the purchase agreement.

For Our Legitimate Interests (Article 6(1)(f)): We process your data for:

Security & Fraud Prevention: To protect our website, business, and customers from malicious activity.

Service Improvement: To analyze site usage and optimize our services, website performance, and product offerings.

Marketing (Soft Opt-in): If you have made a purchase or engaged with us, we may use your email address to send you similar product recommendations or offers, which you can opt out of at any time.

Based on Your Consent (Article 6(1)(a)): We will only send you direct marketing newsletters and promotional emails if you have explicitly opted in. You can withdraw your consent at any time by clicking "unsubscribe" in any email or contacting us.

To Comply with Legal Obligations (Article 6(1)(c)): We retain transaction data as required by tax, consumer, and commercial law.

4. How We Share Your Information
We share your data only with trusted third-party service providers who assist us in operating our business, under strict data processing agreements. These include:

●Quickbutik: Our e-commerce platform.

Payment Processors: To securely handle your transactions.

Shipping and Fulfillment Partners: To deliver your order.

Marketing and Analytics Providers: To help us understand our audience (only in anonymized or pseudonymized form where possible).

We do not sell your personal data. We may disclose information if required by law (e.g., to authorities).

5. International Data Transfers
Your data may be processed by our service providers outside the European Economic Area (EEA). In such cases, we ensure transfers are safeguarded by standard contractual clauses approved by the European Commission or other valid legal mechanisms to ensure an adequate level of protection.

6. Data Retention
We retain your personal information only as long as necessary for the purposes stated in this policy, or as required by law (e.g., for tax and warranty purposes). Order information is typically kept for a minimum period defined by local commercial and tax law (often 7-10 years). If you have an account, we retain your data until you request deletion.

7. Your GDPR Rights
As an EU/EEA resident, you have the following rights regarding your personal data:

Right of Access: To request a copy of the data we hold about you.

Right to Rectification: To correct inaccurate or incomplete data.

Right to Erasure ("Right to be Forgotten"): To request deletion of your data under certain conditions.

Right to Restriction of Processing: To limit how we use your data.

Right to Data Portability: To receive your data in a structured, machine-readable format.

Right to Object: To object to processing based on our legitimate interests, including direct marketing.

Right to Lodge a Complaint: You have the right to complain to your local Data Protection Authority.

To exercise any of these rights, please contact us at service@vilysa.com. We will respond within one month.

8. Cookies
Our website uses essential, functional, analytical, and marketing cookies. Essential cookies are required for the site to function and cannot be switched off. You can manage your preferences for other cookies via our Cookie Banner or your browser settings. Please see our full Cookie Policy for details.

9. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify you of any significant changes by posting the new policy on our site and updating the "Last Updated" date.