GDPR – Privacy Policy

Effective Date: 01.07.2025
Website: https://www.thesewingbarrel.com
Data Controller: Eirini Varela
Email: thesewingbarrel@gmail.com


1. Introduction

This Privacy Policy explains how The Sewing Barrel, operated by Eirini Varela (“we”, “our”, “us”), collects, uses, and protects personal data when you visit or make a purchase from www.thesewingbarrel.com (the “Website”).

We are committed to protecting your personal data in accordance with:

  • The General Data Protection Regulation (EU) 2016/679 (GDPR)
  • The EU ePrivacy Directive
  • The UK GDPR (where applicable)
  • The California Consumer Privacy Act (CCPA) as amended by CPRA

2. Data Controller

The data controller responsible for your personal data is:

Eirini Varela
Email: thesewingbarrel@gmail.com
Website: https://www.thesewingbarrel.com


3. Personal Data We Collect

We may collect and process the following categories of personal data:

3.1 Information You Provide Directly

  • Name
  • Billing and shipping address
  • Email address
  • Phone number
  • Account login details
  • Order history
  • Messages sent via contact forms

3.2 Automatically Collected Information

  • IP address
  • Browser type
  • Device information
  • Pages visited
  • Referring URLs
  • Cookies and tracking data

3.3 Payment Information

Payments are processed via third-party payment providers. We do not store full credit card information on our servers.


4. How We Use Your Data

We process personal data for the following purposes:

  • To process and fulfill orders (WooCommerce)
  • To manage customer accounts
  • To provide customer support
  • To improve Website performance and usability
  • To comply with legal obligations
  • To send marketing communications (only with consent)

5. Legal Basis for Processing (GDPR)

Under GDPR, we rely on the following legal bases:

  • Contractual necessity – to fulfill purchases and services
  • Legal obligation – tax and accounting compliance
  • Legitimate interest – website security and fraud prevention
  • Consent – marketing communications and non-essential cookies

You may withdraw consent at any time.


6. Cookies and Tracking Technologies

Our Website uses:

  • WordPress system cookies
  • WooCommerce session cookies
  • LiteSpeed performance cookies
  • Analytics cookies (if enabled)
  • Marketing cookies (if enabled)

For full details, please see our Cookies Policy.


7. Data Retention

We retain personal data only as long as necessary:

  • Order data: retained for tax and accounting obligations (typically 5–10 years depending on jurisdiction)
  • Account data: retained until account deletion
  • Marketing data: retained until consent is withdrawn
  • Analytics data: retained according to provider settings

8. Data Sharing

We may share personal data with:

  • Payment processors
  • Hosting providers
  • Analytics providers
  • Shipping providers
  • IT service providers

All third parties process data under contractual safeguards.

We do not sell personal data.


9. International Data Transfers

Some service providers may process data outside the European Economic Area (EEA).

Where applicable, we rely on:

  • Standard Contractual Clauses (SCCs)
  • Adequacy decisions
  • Other lawful transfer mechanisms under GDPR

10. Your GDPR Rights

If you are located in the EU/EEA or UK, you have the right to:

  • Access your personal data
  • Rectify inaccurate data
  • Request erasure (“Right to be forgotten”)
  • Restrict processing
  • Object to processing
  • Data portability
  • Withdraw consent at any time
  • Lodge a complaint with a supervisory authority

To exercise these rights, contact:
thesewingbarrel@gmail.com


11. California Privacy Rights (CCPA / CPRA)

If you are a California resident, you have the right to:

  • Know what personal information we collect
  • Request deletion of personal information
  • Correct inaccurate personal information
  • Opt out of the sale or sharing of personal information
  • Limit the use of sensitive personal information

We do not sell personal information in the traditional sense.
Some advertising cookies may constitute “sharing” under CPRA.

To exercise your California rights, contact:
thesewingbarrel@gmail.com

We will not discriminate against you for exercising your rights.


12. Data Security

We implement appropriate technical and organizational measures to protect personal data, including:

  • Secure hosting
  • SSL encryption
  • Access controls
  • Regular updates of WordPress, plugins, and security tools

However, no online transmission is completely secure.


13. Children’s Privacy

Our Website is not directed to children under 16.
We do not knowingly collect personal data from children.


14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time.
The latest version will always be published on this page with the updated effective date.


15. Contact Information

For questions regarding this Privacy Policy or your data protection rights:

Eirini Varela
Email: thesewingbarrel@gmail.com
Website: https://www.thesewingbarrel.com