Privacy Policy – Scarlet Therapy

Last Updated: 18.08.2025

At Scarlet, your privacy is our priority. This Privacy Policy outlines how we collect, use, store, and protect your data when you visit and interact with our website (www.scarlettherapy.com). We are fully committed to compliance with the General Data Protection Regulation (GDPR) and Croatian data protection laws.


1. Data Controller

1.1 INFORMATION ABOUT THE POINT OF SALE

  • Full company name: COLGRAPH d.o.o. for services

  • Company registration number and register: MBS 040007247, Commercial Court in Pazin

  • Tax number (VAT ID): HR40463425902

  • Registered office address: Strane 7, Banjole, Republic of Croatia

  • Telephone number and e-mail address for customer inquiries: +385 99 435 6022, therapyscarlet@gmail.com


2. What Data We Collect

We collect only essential personal data required to fulfill your order and enhance your user experience:

  • Name

  • Email address

  • Phone number

  • Shipping and billing address

  • Payment details (processed securely through third-party gateways)

  • IP address and device/browser data


3. How We Use Your Data

  • To process and deliver orders

  • To provide customer support

  • To notify you of order status and updates

  • To improve site functionality and user experience

  • For marketing (with your explicit consent)


4. Cookies and Analytics

Our site uses cookies and analytics tools (e.g., Google Analytics) to:

  • Understand how users navigate the website

  • Improve site performance

  • Enable essential website functions

You may disable cookies via your browser settings, although some features may not function correctly.


5. Third-Party Services

We use the following third-party services:

  • Monri Payment Gateway – for secure payments

  • DPD – for order shipping and tracking

These third parties may process your data in accordance with their own privacy policies.


6. Security of Your Data

Credit Card Purchase Security Statement
Confidentiality of your information is protected and secured by using the latest TLS encryption. Pages for online payments are secured using SSL with 128-bit encryption.

Monri WebPay uses VPN and is certified PCI DSS Level 1. Scarlet does not store your credit card details and they are not accessible to unauthorized personnel.


7. Your Rights Under GDPR

  • Right to access your data

  • Right to rectify inaccurate data

  • Right to erase data (“right to be forgotten”)

  • Right to restrict or object to processing

  • Right to data portability

  • Right to file a complaint with the Croatian Personal Data Protection Agency (AZOP)

To exercise your rights, contact us at: therapyscarlet@gmail.com


8. Data Retention

We retain your data only as long as necessary for:

  • Fulfilling your order

  • Legal or accounting purposes


9. Credit card purchase security statement

Confidentiality of your information is protected and secured by using latest TLS encryption. Pages for web payment are secured by using Secure Socket Layer (SSL) protocol with 128-bit data encryption. SSL encryption is a data coding procedure for prevention of unauthorized access during data transfer. This enables a secure data transfer and prevents unauthorized data access during communication between user and Monri WebPay Payment Gateway and vice versa. Monri WebPay Payment Gateway and financial institutions exchange data by using their virtual private network (VPN) which is also protected from unauthorized access. Monri Payments is PCI DSS Level 1 certified payment service provider. Credit card numbers are not stored by Merchant and are not available to unauthorized personnel. All payments will be affected in Croatian currency. The charged amount on your credit card account is converted into your local currency according to the exchange rate of credit card associations.


10. Personal data gathering and protection statement

We are committed to provide service of protection of our customer’s personal data in a way that we collect only essential basic information about our buyers that are necessary for fulfilling our obligations. We also inform our customers about the way we collect information and regularly give customers an option about how their information will be used, including the possibility to decide whether their name should be included or omitted from the lists used for marketing campaigns. All user information is strictly guarded and are available only to the employees who need that information for completing the job. All our employees and business partners are responsible to follow the principles of confidentiality protection.


11. Changes to This Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated effective date.


0
    0
    Your Cart
    Your cart is emptyReturn to Shop