PRIVACY POLICY (GDPR COMPLIANT)

Last Updated: 13/10/2025

Rimolash (“we”, “us”, “our”) respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and protect your information when you visit or purchase from our website.

This policy complies with:

  • New Zealand Privacy Act 2020

  • EU General Data Protection Regulation (GDPR)


1. Information We Collect

We may collect the following personal information:

1.1 Information You Provide

  • Name

  • Email address

  • Phone number

  • Billing & shipping address

  • Payment details (processed securely by third-party providers)

  • Account login details

  • Customer service communications

1.2 Automatically Collected Information

  • IP address

  • Browser type & device information

  • Pages visited and interactions

  • Cookies and similar tracking technologies


2. How We Use Your Information

We use your information to:

  • Process and deliver your orders

  • Communicate order updates

  • Provide customer support

  • Improve our website and services

  • Send marketing emails (only if you opt in)

  • Meet legal and regulatory obligations


3. Legal Basis for Processing (GDPR)

Under GDPR, we process your data based on:

  • Contractual necessity (to fulfil your order)

  • Legal obligations

  • Legitimate interests (site improvement, fraud prevention)

  • Consent (for marketing communications)


4. Cookies & Tracking Technologies

We use cookies to:

  • Enable essential website functions

  • Analyze traffic and performance

  • Improve user experience

You can manage or disable cookies through your browser settings.


5. Sharing Your Information

We do not sell your personal data.

We may share your data with trusted third parties such as:

  • Payment processors

  • Shipping providers

  • Email and marketing platforms

  • Website hosting providers

All third parties are required to handle your data securely and lawfully.


6. International Data Transfers

If you are located in the EU, your data may be transferred outside the EU (including New Zealand). We ensure appropriate safeguards are in place, such as GDPR-compliant agreements.


7. Data Retention

We retain your personal data only as long as necessary to:

  • Fulfil orders

  • Meet legal requirements

  • Resolve disputes


8. Your Rights (NZ & EU Users)

You have the right to:

  • Access your personal data

  • Request correction of inaccurate data

  • Request deletion of your data

  • Object to or restrict processing

  • Withdraw consent at any time

  • Request data portability (EU users)

To exercise these rights, contact us at support@rimolash.co.nz


9. Marketing Communications

You will only receive marketing emails if you opt in.
You may unsubscribe at any time using the link in our emails.


10. Data Security

We implement appropriate technical and organisational measures to protect your personal data against loss, misuse, or unauthorized access.


11. Children’s Privacy

Our website is not intended for individuals under 18 years of age. We do not knowingly collect personal data from children.


12. Changes to This Policy

We may update this Privacy Policy from time to time. Updates will be posted on this page.


13. Contact Us

Email: admin@rimolash.co.nz
Business Location: New Zealand

Table of Contents