Privacy Policy
Last updated: January 6, 2026
At Lamonko (operated by Purisain s.r.o.), we respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website lamonko.com and make purchases from us. This policy complies with the EU General Data Protection Regulation (GDPR) and other applicable data protection laws.
1. Information We Collect
We collect the following types of personal data:
- Contact Information: Name, email address, phone number (optional), and message content when you submit our contact form or reach out via email.
- Transaction Data: Billing address, shipping address, payment information (processed securely by Stripe), order details, and purchase history.
- Technical Data: IP address, browser type and version, time zone setting, browser plug-in types, operating system and platform, and other technology on the devices you use to access our website.
- Cookie Data: We use only essential cookies necessary for website functionality. See our Cookie Policy for details.
2. How We Use Your Personal Data
We process your personal data for the following purposes:
- To process and fulfill your orders, including payment processing, shipping, and customer notifications
- To respond to your inquiries, provide customer support, and communicate with you about your orders
- To improve our website functionality, user experience, and security
- To comply with legal obligations, such as tax and accounting requirements
- To send you marketing communications (only with your explicit consent, which you can withdraw at any time)
3. Legal Basis for Processing
We process your personal data based on the following legal grounds under GDPR:
- Consent: For marketing communications and non-essential cookies (where applicable), we rely on your explicit consent.
- Performance of Contract: Processing is necessary to fulfill our contract with you when you place an order.
- Legal Obligation: We process data to comply with legal requirements (e.g., tax laws, accounting regulations).
- Legitimate Interests: We may process data based on our legitimate business interests (e.g., fraud prevention, website security), provided your rights and interests do not override these interests.
4. Data Sharing and Third-Party Service Providers
We may share your personal data with trusted third-party service providers who assist us in operating our website and conducting our business:
- Payment Processing (Stripe): We use Stripe to process payments securely. Your payment information is encrypted and transmitted directly to Stripe; we do not store credit card details.
- Website Hosting (Vercel): Our website is hosted on Vercel, which provides secure infrastructure and complies with GDPR.
- Email Communications: We may use email service providers to send order confirmations and customer service emails.
We do not sell, trade, or rent your personal data to third parties for marketing purposes.
5. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy and comply with legal obligations.
When data is no longer needed, we securely delete or anonymize it. Order and transaction data may be retained for 7-10 years to comply with tax and accounting regulations.
6. Your Rights Under GDPR
Under the GDPR, you have the following rights regarding your personal data:
- Right of Access: You can request a copy of the personal data we hold about you.
- Right to Rectification: You can request correction of inaccurate or incomplete data.
- Right to Erasure ('Right to be Forgotten'): You can request deletion of your personal data, subject to certain legal exceptions.
- Right to Restriction of Processing: You can request that we limit how we use your data in certain circumstances.
- Right to Data Portability: You can request a copy of your data in a structured, machine-readable format.
- Right to Object: You can object to processing based on legitimate interests or for direct marketing purposes.
- Right to Withdraw Consent: Where processing is based on consent, you can withdraw it at any time.
- Right to Lodge a Complaint: You can file a complaint with your local data protection authority.
To exercise any of these rights, please contact us at hello@lamonko.com. We will respond within 30 days.
7. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include encryption (SSL/TLS), secure payment processing via Stripe, access controls, and regular security audits.
8. Children's Privacy
Our website and services are not directed to individuals under the age of 16. We do not knowingly collect personal data from children.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the updated policy on this page with a new 'Last Updated' date.
10. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us: