Privacy policy
PIRO SIRO PRIVACY POLICY
Last updated: 22 March 2026
Piro Siro operates this store and website, including all related information, content, features, tools, products and services, in order to provide you, the customer, with a curated shopping experience (the "Services").
Piro Siro is powered by Shopify, which enables us to provide the Services to you. This Privacy Policy describes how we collect, use, and disclose your personal information when you visit, use, or make a purchase or other transaction using the Services or otherwise communicate with us. If there is a conflict between our Terms of Service and this Privacy Policy, this Privacy Policy controls with respect to the collection, processing, and disclosure of your personal information.
Please read this Privacy Policy carefully. By using and accessing any of the Services, you acknowledge that you have read this Privacy Policy and understand the collection, use, and disclosure of your information as described in this Privacy Policy. We are the data controller for the personal data described in this policy. We are subject to the General Data Protection Regulation (EU) 2016/679 ("GDPR") and applicable national implementing legislation.
Personal information we collect or process
When we use the term "personal information," we are referring to information that identifies or can reasonably be linked to you or another person. Personal information does not include information that is collected anonymously or that has been de-identified, so that it cannot identify or be reasonably linked to you. We may collect or process the following categories of personal information, including inferences drawn from this personal information, depending on how you interact with the Services, where you live, and as permitted or required by applicable law:
-
Contact details including your name, address, billing address, shipping address, phone number, and email address.
-
Financial information including credit card, debit card, and financial account numbers, payment card information, financial account information, transaction details, form of payment, payment confirmation and other payment details. Data related to card and payment is processed and stored by Shopify on our behalf – we do not store raw card data).
-
Account information including your username, password, security questions, preferences and settings.
-
Transaction information including the items you view, put in your cart, add to your wishlist, or purchase, return, exchange or cancel and your past transactions.
-
Communications with us including the information you include in communications with us, for example, when sending a customer support inquiry or requesting a refund.
-
Device information including information about your device, browser, or network connection, your IP address, and other unique identifiers.
- Usage information including information regarding your interaction with the Services, including how and when you interact with or navigate the Services.
Personal information sources
We may collect personal information from the following sources:
-
Directly from you including when you create an account, visit or use the Services, communicate with us, or otherwise provide us with your personal information.
-
Automatically through the Services including from your device when you use our products or services or visit our websites, and through the use of cookies and similar technologies.
- From our service providers including when we engage them to enable certain technology and when they collect or process your personal information on our behalf.
How we use your personal information
Depending on how you interact with us or which of the Services you use, we may use personal information for the following purposes:
-
Provide, tailor, and improve the Services. We use your personal information to provide you with the Services, including to perform our contract with you, to process your payments, to fulfil your orders, to remember your preferences and items you are interested in, to send notifications to you related to your account, to process purchases, returns, exchanges or other transactions, to create, maintain and otherwise manage your account, to arrange for shipping, to facilitate any returns and exchanges, to enable you to post reviews, and to create a customised shopping experience for you, such as recommending products related to your purchases. This may include using your personal information to better tailor and improve the Services.
-
Marketing and advertising. We use your personal information for marketing and promotional purposes, such as to send marketing, advertising and promotional communications by email, and to show you online advertisements for products or services on the Services or other websites, including based on items you previously have purchased or added to your cart and other activity on the Services. You can choose to receive newsletters from us, and you can withdraw this consent at any time.
-
Security and fraud prevention. We use your personal information to authenticate your account, to provide a secure payment and shopping experience, detect, investigate or take action regarding possible fraudulent, illegal, unsafe, or malicious activity, protect public safety, and to secure our services. If you choose to use the Services and register an account, you are responsible for keeping your account credentials safe. We highly recommend that you do not share your username, password or other access details with anyone else.
-
Communicating with you. We use your personal information to provide you with customer support, to be responsive to you, to provide effective services to you and to maintain our business relationship with you.
- Legal reasons. We use your personal information to comply with applicable law or respond to valid legal process, including requests from law enforcement or government agencies, to investigate or participate in civil discovery, potential or actual litigation, or other adversarial legal proceedings, and to enforce or investigate potential violations of our terms or policies.
How we disclose personal information
In certain circumstances, we may disclose your personal information to third parties for legitimate purposes subject to this Privacy Policy. Such circumstances may include:
- With Shopify, vendors and other third parties who perform services on our behalf (e.g. IT management, email marketing, payment processing, data analytics, customer support, cloud storage, fulfilment and shipping).
- We use Shopify for customer support issues.
- We use Google Analytics to analyse website data. See Google’s privacy policy.
- We use MailerLite for email marketing. See MailerLite’s privacy policy.
- When you direct, request us or otherwise consent to our disclosure of certain information to third parties, such as to shipping products or through your use of social media widgets or login integrations.
- In connection with a business transaction such as a merger or bankruptcy, to comply with any applicable legal obligations (including to respond to subpoenas, search warrants and similar requests), to enforce any applicable terms of service or policies, and to protect or defend the Services, our rights, and the rights of our users or others.
Cookies and tracking technologies
Our website uses cookies and similar technologies. We use Google Analytics 4 (GA4) to analyse website usage. This is the tool that sets cookies on your device.
We operate a consent-first approach: analytics and marketing cookies are only activated after you give explicit consent via our cookie banner. We implement Google Consent Mode v2, which instructs GA4 to operate in a cookieless, modelled mode until consent is granted.
Cookies on our website:
|
Category |
Details |
|
Strictly necessary |
Necessary cookies are essential for the basic functioning of the webshop, such as enabling navigation, remembering items in your shopping cart, and processing secure payments. Without these cookies, core features like logging in or completing a purchase would not work properly. These cookies do not store personally identifiable information and cannot be disabled without affecting site performance. No consent is required. |
|
Analytics / performance |
Statistic cookies help website owners to understand how visitors interact with websites by collecting and reporting information anonymously. Require consent. |
|
Marketing / targeting |
Marketing cookies are used to track visitors across websites. The intention is to display ads that are relevant and engaging for the individual user and thereby more valuable for publishers and third-party advertisers. |
|
Preferences |
Preference cookies enable a website to remember information that changes the way the website behaves or looks, like your preferred language or the region that you are in. |
You can manage or withdraw your cookie consent at any time by clicking the "Cookie Settings" link in the footer of our website, or by adjusting your browser settings. Withdrawing consent does not affect the lawfulness of processing carried out before withdrawal.
How long we keep your data
We retain your personal data only for as long as necessary for the purposes described in this policy, or as required by law:
|
Category |
Details |
|
Order and transaction data |
7 years from the date of transaction (tax and accounting obligations) |
|
Customer account data |
Duration of account + 2 years after last activity, unless you request erasure sooner |
|
Marketing consent and preferences |
Until you withdraw consent or unsubscribe |
|
Analytics data (Google Analytics) |
As configured in GA4 account (default: 14 months); data is aggregated/anonymised |
|
Cookie consent records |
12 months from the date of consent, then renewed |
|
Correspondence / support enquiries |
3 years from resolution of the enquiry |
Relationship with Shopify
The Services are hosted by Shopify, which collects and processes personal information about your access to and use of the Services in order to provide and improve the Services for you. Information you submit to the Services will be transmitted to and shared with Shopify as well as third parties that may be located in countries other than where you reside, in order to provide and improve the Services for you.
In addition, to help protect, grow, and improve our business, we use certain Shopify enhanced features that incorporate data and information obtained from your interactions with our Store, along with other merchants and with Shopify. To provide these enhanced features, Shopify may make use of personal information collected about your interactions with our store, along with other merchants, and with Shopify. In these circumstances, Shopify is responsible for the processing of your personal information, including for responding to your requests to exercise your rights over use of your personal information for these purposes.
To learn more about how Shopify uses your personal information and any rights you may have, you can visit the Shopify Consumer Privacy Policy. Depending on where you live, you may exercise certain rights with respect to your personal information here.
Third party websites and links
The Services may provide links to websites or other online platforms operated by third parties. If you follow links to sites not affiliated or controlled by us, you should review their privacy and security policies and other terms and conditions.
We do not guarantee and are not responsible for the privacy or security of such sites, including the accuracy, completeness, or reliability of information found on these sites. Information you provide on public or semi-public venues, including information you share on third-party social networking platforms may also be viewable by other users of the Services and/or users of those third-party platforms without limitation as to its use by us or by a third party. Our inclusion of such links does not, by itself, imply any endorsement of the content on such platforms or of their owners or operators, except as disclosed on the Services.
Children's data
The Services are not intended to be used by children, and we do not knowingly collect any personal information about children under the age of majority in your jurisdiction. If you are the parent or guardian of a child who has provided us with their personal information, you may contact us using the contact details set out below to request that it be deleted.
As of the Effective Date of this Privacy Policy, we do not have actual knowledge that we "share" or "sell" (as those terms are defined in applicable law) personal information of individuals under 16 years of age.
Security and retention of your information
Please be aware that no security measures are perfect or impenetrable, and we cannot guarantee "perfect security." In addition, any information you send to us may not be secure while in transit. We recommend that you do not use unsecure channels to communicate sensitive or confidential information to us.
How long we retain your personal information depends on different factors, such as whether we need the information to maintain your account, to provide you with Services, comply with legal obligations, resolve disputes or enforce other applicable contracts and policies.
International transfers
Please note that we may transfer, store and process your personal information outside the country you live in.
If we transfer your personal information out of the European Economic Area or the United Kingdom, we will rely on recognised transfer mechanisms like the European Commission's Standard Contractual Clauses, or any equivalent contracts issued by the relevant competent authority of the UK, as relevant, unless the data transfer is to a country that has been determined to provide an adequate level of protection.
Changes to this privacy policy
We may update this Privacy Policy from time to time, including to reflect changes to our practices or for other operational, legal, or regulatory reasons. We will post the revised Privacy Policy on this website, update the "Last updated" date and provide notice as required by applicable law.
Your rights and choices
Under the GDPR, you have the following rights in relation to your personal data:
|
Category |
Details |
|
Right of access (Art. 15) |
Request a copy of the personal data we hold about you and information about how it is processed. |
|
Right to rectification (Art. 16) |
Request correction of inaccurate or incomplete personal data. |
|
Right to erasure (Art. 17) |
Request deletion of your personal data, where there is no overriding legal ground for us to retain it. |
|
Right to restriction (Art. 18) |
Request that we limit the processing of your data in certain circumstances. |
|
Right to data portability (Art. 20) |
Receive your personal data in a structured, machine-readable format and transmit it to another controller. |
|
Right to object (Art. 21) |
Object to processing based on legitimate interests or for direct marketing purposes. |
|
Right to withdraw consent (Art. 7(3)) |
Withdraw your consent at any time where processing is based on consent (e.g. cookies, marketing emails), without affecting prior lawful processing. |
|
Rights re. automated decisions (Art. 22) |
Not to be subject to solely automated decisions with significant effects. We do not carry out such processing. |
You may exercise any of these rights where indicated on the Services or by contacting us using the contact details provided below. To learn more about how Shopify uses your personal information and any rights you may have, including rights related to data processed by Shopify, you can visit https://privacy.shopify.com/en.
We will not discriminate against you for exercising any of these rights. We may need to verify your identity before we can process your requests, as permitted or required under applicable law. In accordance with applicable laws, you may designate an authorised agent to make requests on your behalf to exercise your rights. Before accepting such a request from an agent, we will require that the agent provide proof you have authorised them to act on your behalf, and we may need you to verify your identity directly with us. We will respond to your request in a timely manner as required under applicable law.
Complaints
If you have complaints about how we process your personal information, please contact us using the contact details provided below. Depending on where you live, you may have the right to appeal our decision by contacting us using the contact details set out below, or lodge your complaint with your local data protection authority. For the EEA, you can find a list of the responsible data protection supervisory authorities here.
Contact
Should you have any questions about our privacy practices or this Privacy Policy, or if you would like to exercise any of the rights available to you, please call or email us at contact@pirosiro.com.
For the purpose of applicable data protection laws, we are the data controller of your personal information.
You may contact our DPO at any time regarding this policy or the processing of your personal data:
Title: Data Protection Officer
Email: contact@pirosiro.com
Postal address: Rue Dieudonné Lefèvre 4, 1020 Brussels