Last Updated: March 9, 2026
This Privacy Policy describes how nutrieya.com (the “Site”, “we”, “us”, or “our”) collects, uses, and discloses your personal information when you visit, use our services, or make a purchase from the Site.
1. DATA CONTROLLER AND PROCESSOR
The entity responsible for your personal data under the EU/UK General Data Protection Regulation (GDPR) is:
Company Name: CRESTHOUND LTD. Company Number: 16862735. VAT Number: 509922671. Registered Address: 128 City Road, London, United Kingdom, EC1V 2NX. Contact Email: info@nutrieya.com
2. LEGAL BASIS FOR PROCESSING
We process your personal data based on the following legal grounds:
- Performance of a Contract: To process and ship your orders.
- Legal Obligation: To comply with tax, accounting, and anti-fraud regulations.
- Consent: When you sign up for our newsletter or accept non-essential cookies.
- Legitimate Interests: To improve our services, ensure website security, and conduct basic business analytics.
3. DATA WE COLLECT
We may collect and process the following categories of data:
- Identity Data: Name, surname.
- Contact Data: Billing address, shipping address, email address, and phone number.
- Financial Data: Payment details (processed by secure third-party providers like Stripe/PayPal). We do not store full credit card numbers on our servers•
- Transaction Data: Details about products purchased and payments made.
- Technical Data: IP address, browser type, device information, and usage patterns collected via cookies.
4. RECIPIENTS OF YOUR DATA (THIRD PARTIES)
To provide our services, we share your data with trusted third-party service providers:
Logistics: Couriers and fulfillment partners to deliver your goods.
- Payment Processors: To facilitate secure transactions.
- IT & Hosting: Cloud service providers and website maintenance tools.
- Marketing & Analytics: Tools like Google Analytics or email platforms (only with your consent).
5. INTERNATIONAL DATA TRANSFERS
As we are based in the United Kingdom, your data may be processed outside the European Economic Area (EEA). We ensure that such transfers comply with GDPR by utilizing:
• Adequacy Decisions: Recognizing countries with equivalent data protection.
• Standard Contractual Clauses (SCCs): To ensure your data remains protected to the same standards as within the EU/UK.
6. YOUR RIGHTS UNDER GDPR
You have the following rights regarding your personal data:
1. Right of Access: Request a copy of the data we hold.
2. Right to Rectification: Ask us to correct inaccurate data.
3. Right to Erasure (“Right to be Forgotten”): Request deletion of your data where applicable.
4. Right to Restriction: Limit how we use your data.
5. Right to Data Portability: Receive your data in a structured, machine-readable format.
6. Right to Object: Object to direct marketing or processing based on legitimate interests.
7. Withdrawal of Consent: You can withdraw consent for marketing at any time.
To exercise these rights, contact us at info@nutrieya.com.
7. DATA RETENTION
We keep your personal data only for as long as necessary to fulfill the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements (typically 6-10 years for tax purposes in the UK).
8. COOKIES
We use cookies to enhance your experience. You can set your browser to refuse all or some browser cookies, or to alert you when websites set or access cookies. If you disable cookies, some parts of this Site may become inaccessible.
9. COMPLAINTS
If you are not satisfied with how we handle your data, you have the right to lodge a complaint with a supervisory authority:
• In the UK: Information Commissioner’s Office (ICO) – www.ico.org.uk.
• In the EU: Your local Data Protection Authority.
