This Privacy Policy explains how AUSTER collects, uses, stores, and protects personal data of its users, in compliance with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and other relevant UK privacy laws.
The data controller responsible for your personal data is:
AUSTER & Co. (individual trader based in Brazil, operating under UK consumer and data protection compliance)
We collect the following types of personal data:
Identity Data (e.g., name, email address, phone number)
Contact Data (e.g., billing and shipping address)
Payment Data (e.g., last 4 digits of card, transaction ID — processed by Stripe)
Technical Data (e.g., IP address, browser type, time zone)
Usage Data (e.g., browsing behavior, pages viewed)
Marketing Preferences
We collect your data:
Directly from you (e.g., account creation, order checkout, contact forms)
Automatically through cookies and analytics tools
From third-party platforms (e.g., Stripe, analytics providers)
We use your personal data for:
Fulfilling orders and managing payments
Customer support and communication
Fraud prevention and platform security
Legal and regulatory compliance
Marketing communications (only with consent)
We process your data under the following legal bases:
Contractual necessity (e.g., fulfilling orders)
Legal obligation (e.g., tax recordkeeping)
Legitimate interest (e.g., analytics, fraud prevention)
Consent (e.g., marketing emails)
We may share your data with:
Payment processors (Stripe)
Delivery providers
Analytics and marketing partners
Legal authorities, where required
All third-party processors are subject to data processing agreements and meet GDPR compliance standards.
As the data controller is based in Brazil and some processors may be located outside the UK, we ensure appropriate safeguards such as Standard Contractual Clauses (SCCs) for data transfers.
We retain personal data:
For as long as necessary to fulfill the purposes outlined in this policy
For tax and legal compliance (typically up to 6 years)
You may request deletion of your data at any time, subject to legal exceptions
Under the UK GDPR, you have the right to:
Access your personal data
Rectify incorrect or incomplete data
Erase your data (right to be forgotten)
Restrict or object to processing
Data portability
Lodge a complaint with the Information Commissioner’s Office (ICO)
To exercise any of these rights, contact us at support@austerandco.com.
We implement appropriate technical and organizational measures to secure your data, including:
SSL/TLS encryption
Access controls
Secure payment processing via Stripe
Regular risk assessments and monitoring
Our website is not intended for children under 18. We do not knowingly collect personal data from minors.
We may update this Privacy Policy to reflect changes in the law or our practices. The updated version will be published on our website with the new effective date.
If you have questions, concerns, or requests regarding this Privacy Policy, please contact:
Email: support@austerandco.com
Response time: up to 2 business days
Effective Date of This Policy: 30 July 2025