1. Introduction
Rayduin ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services. We operate in full compliance with the General Data Protection Regulation (GDPR) and Bulgarian data protection laws.
As a hardware wallet manufacturer, we understand the critical importance of privacy in the cryptocurrency space. This policy reflects our commitment to transparency and data minimization.
2. Information We Collect
2.1 Information You Provide
- Contact Information: Name, email address, phone number when you contact us
- Communication Data: Messages, inquiries, and correspondence with our support team
- Order Information: Shipping address and contact details for product delivery
2.2 Automatically Collected Information
- Website Usage Data: IP address, browser type, pages visited, time spent on site
- Device Information: Device type, operating system, screen resolution
- Cookies: Essential cookies for website functionality (see our Cookie Policy)
2.3 Information We Do NOT Collect
- Private keys or seed phrases from your hardware wallet
- Cryptocurrency addresses or transaction data
- Financial information or payment details (handled by third-party processors)
- Unnecessary personal data not required for our services
3. How We Use Your Information
We use your information only for legitimate business purposes:
- Product Support: Providing technical assistance and customer service
- Order Fulfillment: Processing and shipping hardware wallet orders
- Communication: Responding to inquiries and providing product updates
- Legal Compliance: Meeting regulatory requirements in Bulgaria and the EU
- Website Improvement: Analyzing usage patterns to enhance user experience
- Security: Protecting against fraud and ensuring website security
4. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information. We may share your data only in these limited circumstances:
4.1 Service Providers
- Shipping companies for product delivery
- Payment processors for transaction handling
- Website hosting and technical service providers
4.2 Legal Requirements
- When required by Bulgarian or EU law
- To protect our legal rights or comply with legal processes
- To prevent fraud or security threats
4.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the business transaction.
5. Data Security
We implement appropriate technical and organizational measures to protect your personal data:
- Encryption: All data transmissions are encrypted using industry-standard protocols
- Access Controls: Limited access to personal data on a need-to-know basis
- Regular Audits: Periodic security assessments and vulnerability testing
- Data Minimization: We collect and retain only necessary information
- Secure Storage: Personal data is stored on secure servers with appropriate safeguards
6. Your Rights Under GDPR
As an EU resident, you have the following rights regarding your personal data:
- Right of Access: Request copies of your personal data
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your personal data
- Right to Restrict Processing: Request limitation of data processing
- Right to Data Portability: Request transfer of your data
- Right to Object: Object to processing of your personal data
- Right to Withdraw Consent: Withdraw consent for data processing
To exercise these rights, contact us at privacy@rayduin.com
7. Data Retention
We retain personal data only as long as necessary for the purposes outlined in this policy:
- Contact Inquiries: 3 years from last contact
- Order Information: 7 years for tax and legal compliance
- Website Analytics: 26 months maximum
- Marketing Communications: Until you unsubscribe
8. International Data Transfers
Your data is primarily processed within the European Union. If we transfer data outside the EU, we ensure appropriate safeguards are in place, including:
- Adequacy decisions by the European Commission
- Standard Contractual Clauses (SCCs)
- Binding Corporate Rules where applicable
9. Children's Privacy
Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that we have collected personal data from a child, we will delete such information promptly.
10. Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of material changes by:
- Posting the updated policy on our website
- Updating the "Last updated" date
- Sending email notifications for significant changes
11. Contact Information
If you have questions about this Privacy Policy or our data practices, please contact us:
You also have the right to lodge a complaint with the Bulgarian Commission for Personal Data Protection or your local data protection authority.