Your Data, Your Rights

Who we are

Privacy Policy

Effective date: July 2025

This Privacy Policy explains how we collect, use, and protect your personal data when you visit https://hypabox.com, place an order, or contact us.


1. Controller

HYPABOX c/o Bächer Bergmann GmbH
Sebastian Bächer
Bonner Wall 27
50677 Cologne, Germany

Email: info@hypabox.com


2. What data we collect

We may collect and process the following data:

  • Personal data you provide: name, email, billing and shipping address, phone number, company name (if applicable)
  • Order data: purchased products, payment method, shipping preferences
  • Payment data: via third-party providers (e.g. PayPal, Stripe)
  • Technical data: IP address, browser information, device type, via cookies and tracking tools
  • Messages you send to us (contact forms, email)

3. How we use your data

  • To process and fulfill your orders
  • To communicate with you (e.g. order confirmations, support)
  • To comply with legal obligations (e.g. tax law, commercial retention)
  • To prevent fraud and improve security
  • To improve our services and website

4. Legal basis for processing (Art. 6 GDPR)

  • Performance of contract (e.g. when you buy a product)
  • Legal obligation (e.g. tax law)
  • Legitimate interests (e.g. website performance, fraud prevention)
  • Consent, if required (e.g. marketing cookies)

5. Data sharing

We share data only when necessary and only with trusted service providers:

  • Payment providers: Stripe, PayPal
  • Shipping partners: e.g. DHL, UPS, freight companies
  • Web hosting and IT: Webflow, WordPress, WooCommerce, plugins
  • Accounting & tax services (if applicable)

All third parties are GDPR-compliant or located in jurisdictions with adequate data protection (e.g. Switzerland).


6. Cookies & tracking

We use cookies to:

  • Save your cart and preferences
  • Provide secure login
  • Analyze website traffic

You can manage cookie preferences via your browser or opt-out tools (e.g. YourOnlineChoices).


7. Your rights under the GDPR

You have the right to:

  • Access your personal data
  • Correct or delete your data
  • Object to processing
  • Request data portability
  • Lodge a complaint with a data protection authority

Please contact us at info@hypabox.com to exercise your rights.


8. Retention period

We retain your data only as long as necessary:

  • Order data: 10 years (legal requirement)
  • Contact forms: 12 months
  • Technical logs: 6 months

9. International data transfers

Data may be processed outside the EU (e.g. by Stripe or PayPal) but only in jurisdictions with adequate data protection or under standard contractual clauses (SCCs).


10. Contact

If you have any questions about your data, please contact:

Email: info@hypabox.com