Privacy Policy
Last updated: December 09, 2025
This Privacy Policy describes how Hairborn Products ("Hairborn," the "Site," "we," "us," or "our") collects, uses, and discloses your personal information when you visit our website, use our services, or make a purchase from hairbornproducts.nl (the "Site") or otherwise interact with us about the Site (collectively, the "Services").
For the purpose of this Privacy Policy, "you" and "your" refer to you as a user of the Services, whether you are a customer, website visitor, or any other individual whose information we have collected pursuant to this Privacy Policy.
Please read this Privacy Policy carefully. By using our website or sharing data with us, you agree to this policy.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time, including to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will post the updated Privacy Policy on the Site, adjust the "Last updated" date, and take all other steps required by applicable law.
How We Collect and Use Your Personal Information
To provide the Services, we collect personal information about you from various sources, as outlined below. The information we collect and use depends on your interactions with us.
In addition to the specific uses set forth below, we may use the information we collect about you to communicate with you, provide or improve the Services, comply with any applicable legal obligations, enforce applicable terms of service, and to protect or defend the Services, our rights, and the rights of our users or others.
What Personal Data We Collect
The type of personal data we obtain about you depends on your interactions with our Site and your use of our Services. When we use the term "personal data," we mean data that identifies, relates to, describes, or can be associated with you.
Information We Collect Directly From You
Information you provide directly to us through our Services may include:
-
Contact details, including your name, address, phone number, and email address.
-
Order details, including your name, billing address, shipping address, payment confirmation, email address, and phone number.
-
Account details, including your username, password, security questions, and other information used for account security.
-
Shopping details, including the items you view, add to your cart, save to your account, loyalty points, reviews, referrals, gift cards, or purchases.
-
Customer support information, including the information you share with us when you send a message via email, chat, or other channels.
-
Optional information you voluntarily share with us, such as your age, product preferences, or social media profiles if you interact with us through those platforms.
-
Photos you voluntarily share with us, for example, to show your hairline progression for our money-back guarantee or to provide feedback on our products. We use these photos exclusively for customer service, quality control, or – if you give separate and explicit consent – marketing communications.
Some features of the Services may require you to directly provide us with certain information about yourself. You may choose not to provide this information, but in that case, you may not be able to use or access these features.
Information We Collect About Your Usage
We may also automatically collect certain information about your interaction with the Services ("Usage Data"). For this purpose, we may use cookies, pixels, and similar technologies ("Cookies"). Usage Data may include information about how you access and use our Site and your account, including device information, browser information, network connection information, your IP address, session duration, page usage, click behavior, and other information about your interaction with the Services.
For this, we use, among others, Shopify's own tracking, Google Analytics, Meta Pixel, and Klaviyo. These parties help us to make the site work, measure performance, optimize advertisements, and show you more relevant content.
Information We Obtain From Third Parties
Finally, we may obtain information about you from third parties, including from vendors and service providers who may collect information on our behalf, such as:
-
Companies that support our Site and Services, such as Shopify.
-
Our payment processors (e.g., iDEAL providers, Klarna, PayPal), who collect payment data (such as bank account, credit card, or debit card details and billing address) to process your payment and fulfill your orders.
-
Fulfillment and shipping partners (such as Max Fulfillment, PostNL, DHL, DPD) who receive your name, address, and contact details to deliver your order and handle returns.
-
Anti-fraud partners and IT service providers who help us with security, error detection, and performance.
-
Marketing and advertising partners (such as Meta and Klaviyo) for email campaigns, newsletters, and ad targeting, to the extent that you have given your consent or we have a legitimate interest in doing so.
All information we obtain from third parties will be treated in accordance with this Privacy Policy. See also the "Third-Party Websites and Links" section below.
How We Use Your Personal Data
Delivery of Products and Services
We use your personal data to provide you with the Services in accordance with the agreement we have with you. This includes, among other things:
-
processing your payments;
-
fulfilling and delivering your orders;
-
sending notifications and updates regarding your account, purchases, returns, exchanges, or other transactions;
-
creating, maintaining, and managing your account;
-
facilitating returns, money-back guarantee, and other service processes.
When you voluntarily submit photos for our money-back guarantee, we use them solely to assess your request and improve our service. These photos are retained for a maximum of six months (see also "Security and Retention of Your Data").
Marketing and Advertising
We may use your personal data for marketing and promotional purposes, such as sending marketing, advertising, and promotional communications via email, SMS, or postal mail, and to show you advertisements for products or services. This may mean that your personal data is used to better tailor the Services and advertisements on our Site and other websites to you, for example, through newsletters, personalized recommendations, or retargeting via social media.
We only do this when we have a legal basis for it (such as your consent or our legitimate interest in promoting our products). You can unsubscribe from marketing at any time via the unsubscribe link in our emails or by contacting us.
Security and Fraud Prevention
We use your personal data to detect, investigate, or take action against possible fraudulent, illegal, or malicious activities. If you choose to use the Services and register an account, you are responsible for securely maintaining your account login credentials. We strongly advise you not to share your username, password, and other access data with anyone else. If you believe your account has been compromised, please contact us immediately.
Communication and Service Improvement
We use your personal data to provide you with customer support, process feedback, and improve our Services and products. This is in our legitimate interest to communicate with you, provide you with effective services, and maintain our business relationship with you.
Cookies
Like many other websites, we use Cookies on our Site. Specific information about the Cookies we use in connection with supporting our store with Shopify can be found at https://www.shopify.com/legal/cookies.
We use Cookies to support and improve our Site and our Services (including to remember your actions and preferences), to perform analyses, and to gain more insight into user interaction with the Services. Cookies also enable us and our advertising partners to show you more relevant advertisements on our Site and beyond.
You can set your preferences via our cookie banner and remove or block Cookies in many browsers. Please note that removing or blocking Cookies may negatively affect your user experience and may cause some Services, including certain features and general functionality, to not work correctly or to no longer be available.
How We Disclose Personal Data
In certain circumstances, we may disclose your personal data to third parties for contract performance, legitimate purposes, and other reasons covered by this Privacy Policy. Such circumstances may include:
-
With vendors or other third parties who perform services on our behalf (e.g., IT management, payment processing, data analysis, customer support, cloud storage, fulfillment, and shipping).
-
With business and marketing partners to provide services and show you advertisements. Our business and marketing partners will use your data in accordance with their own privacy statements.
-
When you instruct us, request us, or otherwise give us permission to disclose certain data to third parties, for example, through your use of social media widgets, login integrations, or when you explicitly consent to the use of your photos for marketing.
-
With our affiliates or otherwise within our corporate group, in our legitimate interests to run a successful business.
-
In connection with a business transaction, such as a merger or bankruptcy, to comply with applicable legal obligations (including responding to subpoenas, search warrants, and similar requests), to enforce applicable terms of service, and to protect or defend the Services, our rights, and the rights of our users or others.
We do not sell your personal data to third parties in the sense that we trade customer data as a separate product. However, the use of advertising cookies and tracking may be considered "sharing" data for advertising purposes under some privacy laws. In that case, you can use our cookie settings and, where applicable, local rights to object or opt-out.
Third-Party Websites and Links
Our Site may contain links to websites or other online platforms operated by third parties. If you follow links to sites not affiliated with or controlled by us, it is important that you read their privacy and security policies and other terms.
We do not guarantee and are not responsible for the privacy or security of such sites, including the accuracy, completeness, or reliability of the information on these sites. Information you provide in public or semi-public locations, including information you share on third-party social networks, may also be visible to other users of the Services and/or users of these third-party platforms, without limitation as to its use by us or by a third party.
The inclusion of such links on our Site does not in itself imply an endorsement of the content on such platforms or of their owners or operators, except as explicitly stated in the Services.
Children's Data
The Services are not intended for use by children, and we do not knowingly collect personal data about children. Our products and marketing target individuals aged 18 and older.
If you are the parent or guardian of a child who has provided us with personal data, you can contact us via the contact information below to request that it be deleted.
Security and Retention of Your Data
Please note that no security measure is perfect or impenetrable, and we cannot guarantee "perfect security." However, we use appropriate technical and organizational measures to protect your personal data, such as:
-
encrypted connections (SSL/HTTPS);
-
secure servers;
-
strict access restrictions;
-
data minimization and internal procedures for data security.
How long we retain your personal data depends on various factors, such as whether we need the data to maintain your account, to provide the Services, to comply with legal obligations, to resolve disputes, or to comply with other applicable contracts and policies.
In general, we apply the following retention periods:
-
Order and administration data: 7 years (statutory tax retention period).
-
Customer service data (such as emails and chat history): up to a maximum of 2 years after handling your request, unless a longer period is legally required.
-
Photos you submit for the money-back guarantee: maximum of 6 months after the assessment is completed.
-
Newsletter and marketing data: until you unsubscribe or we no longer need the data for this purpose.
-
Analytics data: anonymized where possible so that it cannot be traced back to you as a person.
Your Rights
Depending on where you live, you may have some or all of the rights below regarding your personal data. These rights derive in particular from the GDPR (General Data Protection Regulation).
-
Right to access / know: you may ask what personal data we hold about you and how we use and share it.
-
Right to rectification: you may request to have inaccurate or incomplete data corrected.
-
Right to erasure ("right to be forgotten"): you may, in certain cases, request to have your data deleted.
-
Right to restriction of processing: you may, in certain situations, request to temporarily restrict (part of) the processing.
-
Right to data portability: in some cases, you may request to receive your data in a structured, commonly used format or to have it transferred by us to another party.
-
Right to object: you may object to certain forms of processing, such as direct marketing.
-
Right to withdraw consent: when we process your data based on your consent, you may withdraw that consent at any time. This does not affect the lawfulness of processing prior to the withdrawal.
You can exercise any of these rights by contacting us using the contact details below. We may ask you for additional information to verify your identity before processing your request. We will respond within the timeframes prescribed by applicable law (usually within 30 days).
We will not discriminate against you if you exercise any of these rights.
Complaints
If you have any complaints about how we process your personal data, you can contact us using the contact details below.
If you are not satisfied with our response, you have the right to file a complaint with the Dutch Data Protection Authority (or your local data protection supervisory authority).
International Users
Please note that we may transfer, store, and process your personal data outside the country in which you reside. Your personal data will also be processed by personnel and external service providers and partners in these countries.
If we transfer your personal data outside the European Economic Area (EEA), we rely on recognized transfer mechanisms, such as the European Commission's standard contractual clauses (Standard Contractual Clauses) or the EU-US Data Privacy Framework, unless the data is transferred to a country that has been deemed to provide an adequate level of protection.
Contact
If you have any questions about our privacy practices or this Privacy Policy, or if you wish to exercise any of the rights available to you, please contact us at:
Hairborn Products
Email: info@hairbornproducts.nl
Address: Foeliedwarsstraat 60C, 1011 TP Amsterdam, Netherlands
Under applicable data protection law and unless explicitly stated otherwise, we are the data controller for your personal data.