Privacy Policy
Privacy Policy
Information We Collect
To deliver a safe, tailored shopping experience for your kids’ essentials (Building Blocks, Early Education Machine, Mystery Box) and ensure order accuracy, we collect personal information in strict compliance with the General Data Protection Regulation (GDPR) and UK data protection laws (Data Protection Act 2018):
- Contact & Shipping Details: Full name, email address, phone number, and shipping address (including access notes for large items like Early Education Machines). This enables timely delivery and critical updates (e.g., shipping confirmations for Building Blocks, delivery windows for Mystery Boxes).
- Payment Information: Processed exclusively through secure third-party gateways (Visa, Mastercard, PayPal, Apple Pay). We never store full credit card numbers, CVV codes, or sensitive financial data—your payment details are protected by end-to-end encryption and PCI DSS compliance (all transactions in U.S. Dollars/USD).
- Product-Specific Data: Voluntarily provided details like child’s age (for Building Blocks complexity recommendations, e.g., “large blocks for toddlers vs. small blocks for 5+”), learning goals (e.g., “math-focused vs. language Early Education Machine”), and gift preferences (e.g., “themed Mystery Box for birthdays”). This helps personalize suggestions (e.g., Montessori-style Building Blocks) and improve our product lineup.
- Website Usage Data: Browsing activity (e.g., views of Early Education Machine features, Mystery Box themes) and cookie data (to save preferred Building Block sizes or gift options for future visits). Cookies are optional—see “Your Privacy Choices” for opt-out details.
How We Use Your Information
Your data is used solely for legitimate, transparent purposes tied to your kids’ product purchase—no unapproved use:
- Order Fulfillment: Process, pack, and ship items; share user guides (for Early Education Machine setup or Building Blocks safety) and tracking links via email.
- Customer Support: Respond to inquiries (e.g., missing Building Block pieces, Early Education Machine connectivity issues, Mystery Box theme questions) and resolve defects via recoil_fright_2n@icloud.com.
- Personalized Updates: Send kid-focused news (e.g., new STEM Building Blocks, updated Early Education Machine content, limited-edition Mystery Boxes) only if you opt in—unsubscribe anytime via email links.
- Legal Compliance: Maintain order records for tax purposes, adhere to UK/US toy safety standards (e.g., non-toxic Building Block materials, age-appropriate Early Education Machine content), and comply with consumer protection laws.
Data Security
We prioritize protecting your sensitive information—especially details related to your family—with industry-leading measures:
- All data transmitted between your device and our platform is encrypted via SSL/TLS protocols (indicated by “https://” and the browser padlock icon).
- Personal data is stored on UK-based, password-protected servers with firewalls and regular security audits—only authorized team members (trained in GDPR and family data privacy) can access necessary details (e.g., delivery addresses for birthday Mystery Boxes).
- Third-party partners (payment processors, carriers like USPS or UPS for U.S. shipments) are contractually bound to keep your data confidential, comply with GDPR, and only use it to fulfill their service (e.g., delivering an Early Education Machine).
Your Data Rights (Under GDPR)
You have legally protected rights regarding your personal information, which we facilitate free of charge:
- Access: Request a copy of all data we hold about you (e.g., Mystery Box order details, saved child age for Building Block recommendations).
- Correction: Update inaccurate information (e.g., a changed shipping address for Building Blocks).
- Erasure: Request permanent removal of your data (“right to be forgotten”)—we retain minimal records only for tax/legal compliance (e.g., order invoices in USD).
- Restriction: Ask us to limit data use (e.g., pause promotional emails while keeping order updates active).
- Data Portability: Request your data in a machine-readable format (e.g., CSV) to share with another retailer.
To exercise these rights, email our support team at recoil_fright_2n@icloud.com—we respond within 1 month (per GDPR requirements) and may ask for proof of identity to protect your privacy.