Privacy & Compliance

GDPR Privacy Notice

This notice explains how Beauty by Simon Wilby (operated by Simon Wilby Labs) processes the personal data of individuals located in the European Economic Area (EEA) and the United Kingdom, in accordance with the EU General Data Protection Regulation (GDPR) and the UK GDPR. Last updated: June 2026.

1. Data Controller

The data controller responsible for your personal data is Simon Wilby Labs, 840 S Rancho Drive, Suite 4-755, Las Vegas, NV 89106, United States. For any privacy request or question, contact our privacy team at elite@beauty.ml.

2. Personal Data We Collect

We only collect the data we need to operate our store and your account:

  • Account data — your name, email address, and a securely hashed password when you create an account.
  • Order and payment data — items purchased, billing details, and transaction identifiers. Card payments are processed by Stripe; we never store your full card number.
  • Communications — messages you send us by email, such as customer service or partnership inquiries.
  • Technical data — limited session and security information (for example, login session tokens) needed to keep your account secure.

3. Legal Bases for Processing

Under Article 6 GDPR, we rely on the following legal bases:

  • Contract — to create your account, process orders, and provide our products and services.
  • Legitimate interests — to secure our website, prevent fraud, and improve our offering, balanced against your rights.
  • Consent — for optional marketing emails, which you may withdraw at any time.
  • Legal obligation — to comply with tax, accounting, and other applicable laws.

4. Your Rights Under the GDPR

If you are in the EEA or UK, you have the right to access, rectify, erase, restrict, or object to the processing of your personal data, the right to data portability, and the right to withdraw consent. You also have the right to lodge a complaint with your local supervisory authority. We will respond to verified requests within one month.

You can exercise most of these rights directly: sign in to your account to review or update your details, or email elite@beauty.ml to request a copy or deletion of your data.

5. International Transfers

Our infrastructure and service providers (including our hosting, database, and payment partners) may process data in the United States. Where data is transferred outside the EEA or UK, we rely on appropriate safeguards such as the EU Standard Contractual Clauses to protect your information.

6. Data Retention

We keep your account and order data for as long as your account is active or as needed to provide our services and meet legal obligations. When you delete your account, your personal data is removed from our active systems, subject to limited records we are required to retain by law.

7. Data Security

We apply technical and organizational measures to protect your data, including encrypted connections, hashed passwords, scoped access controls, and processing through trusted providers such as Stripe for payments.

8. Contact

To exercise your rights or ask a privacy question, email elite@beauty.ml. See also our CCPA Notice and PIPL Notice.