Your Data, Your Rights
Who we are
Privacy Policy
Effective date: July 2025
This Privacy Policy explains how we collect, use, and protect your personal data when you visit https://hypabox.com, place an order, or contact us.
1. Controller
HYPABOX c/o Bächer Bergmann GmbH
Sebastian Bächer
Bonner Wall 27
50677 Cologne, Germany
Email: info@hypabox.com
2. What data we collect
We may collect and process the following data:
- Personal data you provide: name, email, billing and shipping address, phone number, company name (if applicable)
- Order data: purchased products, payment method, shipping preferences
- Payment data: via third-party providers (e.g. PayPal, Stripe)
- Technical data: IP address, browser information, device type, via cookies and tracking tools
- Messages you send to us (contact forms, email)
3. How we use your data
- To process and fulfill your orders
- To communicate with you (e.g. order confirmations, support)
- To comply with legal obligations (e.g. tax law, commercial retention)
- To prevent fraud and improve security
- To improve our services and website
4. Legal basis for processing (Art. 6 GDPR)
- Performance of contract (e.g. when you buy a product)
- Legal obligation (e.g. tax law)
- Legitimate interests (e.g. website performance, fraud prevention)
- Consent, if required (e.g. marketing cookies)
5. Data sharing
We share data only when necessary and only with trusted service providers:
- Payment providers: Stripe, PayPal
- Shipping partners: e.g. DHL, UPS, freight companies
- Web hosting and IT: Webflow, WordPress, WooCommerce, plugins
- Accounting & tax services (if applicable)
All third parties are GDPR-compliant or located in jurisdictions with adequate data protection (e.g. Switzerland).
6. Cookies & tracking
We use cookies to:
- Save your cart and preferences
- Provide secure login
- Analyze website traffic
You can manage cookie preferences via your browser or opt-out tools (e.g. YourOnlineChoices).
7. Your rights under the GDPR
You have the right to:
- Access your personal data
- Correct or delete your data
- Object to processing
- Request data portability
- Lodge a complaint with a data protection authority
Please contact us at info@hypabox.com to exercise your rights.
8. Retention period
We retain your data only as long as necessary:
- Order data: 10 years (legal requirement)
- Contact forms: 12 months
- Technical logs: 6 months
9. International data transfers
Data may be processed outside the EU (e.g. by Stripe or PayPal) but only in jurisdictions with adequate data protection or under standard contractual clauses (SCCs).
10. Contact
If you have any questions about your data, please contact:
Email: info@hypabox.com