MISANZA

Privacy Policy

Last updated: 11 May 2026 · GDPR Compliant

1. Data Controller

Misanza ("we", "us", "our") is the data controller responsible for personal data collected through this website and our services. Contact: privacy@misanza.com.

2. Personal Data We Collect

  • Account data: email, password (hashed), account preferences.
  • Inquiry data: name, company, country, phone, message content, attachments.
  • Communication data: messages exchanged with our team.
  • Technical data: IP address, browser type, device, cookies, usage analytics.

3. Legal Bases for Processing (GDPR Art. 6)

  • Contract: processing your orders and inquiries.
  • Consent: marketing communications, optional cookies.
  • Legitimate interests: improving our products, fraud prevention, security.
  • Legal obligation: tax records, regulatory compliance.

4. How We Use Your Data

We use your data to: process orders and wholesale inquiries; send transactional emails (account confirmation, password reset, order updates); respond to your messages; comply with legal obligations; and, with your consent, send occasional product news.

5. Data Retention

We retain personal data only as long as necessary for the purposes set out above, or as required by law. Account data is kept while your account is active and for up to 24 months after deletion. Inquiry data is retained for up to 5 years for commercial recordkeeping.

6. Your Rights Under GDPR

If you are in the EU, UK, or EEA, you have the right to:

  • Access the personal data we hold about you.
  • Rectify inaccurate or incomplete data.
  • Erasure ("right to be forgotten") — request deletion of your data.
  • Restrict or object to certain processing.
  • Data portability — receive your data in a machine-readable format.
  • Withdraw consent at any time, where processing is based on consent.
  • Lodge a complaint with your local supervisory authority.

To exercise any of these rights, email privacy@misanza.com. We will respond within 30 days.

7. Sharing Your Data

We share data only with: hosting and infrastructure providers (under data processing agreements), email delivery providers, payment processors, and authorities where legally required. We do not sell your personal data.

8. International Transfers

Where data is transferred outside the EU/EEA, we rely on Standard Contractual Clauses or other safeguards approved under GDPR Art. 46.

9. Cookies

We use strictly necessary cookies for authentication and site functionality. Analytics or marketing cookies are loaded only with your consent.

10. Security

We implement appropriate technical and organisational measures to protect your data, including encryption in transit, hashed passwords, role-based access, and row-level database security.

11. Email Preferences

You can unsubscribe from marketing emails at any time using the link in any email or by visiting our unsubscribe page. Transactional emails (account, orders) cannot be opted out of while you have an active account.

12. Updates

We may update this Privacy Policy. Material changes will be communicated by email or via the website.