Privacy Policy

Last updated: 14.02.2025

PHOL-LABS Kft. (“we”, “us”, “our”) is committed to protecting your personal data and respecting your privacy in accordance with the General Data Protection Regulation (GDPR – EU 2016/679) and applicable Hungarian and EU laws.
This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our website and webshop operated with WordPress and WooCommerce.

1. Data Controller

Company name: PHOL-LABS Kft.
Registered seat: 1095 Budapest, Mester utca 29-31. B. lház. 2. em. 3
E-mail: admin@phol-labs.com


2. What Personal Data We Collect

When you use our website or place an order, we may collect the following data:

a) Account & Order Data

When you create an account or place an order, we collect:

  • Name
  • Billing and shipping address
  • E-mail address
  • Phone number (if provided)
  • Ordered products and quantities
  • Order value, taxes, and invoices
  • Order and delivery history

This data is required to process your orders, fulfill contracts, handle warranties, and comply with legal obligations (e.g. accounting and taxation laws).

b) Website Usage & Technical Data

For functional and statistical purposes, we may process:

  • IP address (anonymized where possible)
  • Browser and device information
  • Visited pages and basic usage statistics
  • UTM-source data

This data helps us improve website performance and user experience. Statistical data is stored only for a limited time.


3. Cookies

Our website uses cookies to ensure proper operation of the webshop, including:

  • Shopping cart functionality
  • Wishlist and session handling
  • User login sessions
  • Basic analytics (if enabled)

Cookies are necessary for WooCommerce to function correctly. Where required by law, we request your consent before using non-essential cookies.
You can manage or disable cookies in your browser settings; however, this may affect webshop functionality.


4. Passwords & Account Security

If you create a customer account:

  • Passwords are stored only in encrypted (hashed) form.
  • We cannot view or recover your password.
  • You can request a password reset at any time.
  • You are responsible for choosing a strong, secure password.

5. Payment Information

We do not store credit card or bank card details.

Payments are processed ONLY by third-party payment providers – by PayPal. Payment data is transmitted securely and handled directly by these providers according to their own privacy policies.


6. Sharing of Personal Data

We do not sell or rent your personal data.
We only share your data with third parties when it is necessary to operate the webshop:

  • Payment providers – to process payments securely
  • Shipping and logistics partners – name and delivery address, phone number, email for shipping your order
  • E-mail service providers – for transactional emails (order confirmations, password resets, etc.)
  • Accounting and invoicing software – for legal and tax compliance
  • Hosting and cloud service providers – for secure data storage and website operation

All partners process data securely and only for the necessary purpose.


7. Data Storage & Security

Your personal data is stored on secure servers. We take appropriate technical and organizational measures to protect your data against unauthorized access, loss, or misuse.
Access to customer data is limited to authorized personnel only.


8. Data Retention

We retain personal data only as long as necessary:

  • Order and invoice data – retained as required by law (e.g. tax and accounting regulations)
  • Customer accounts – stored until you request deletion
  • Website statistics – stored for a limited period and anonymized where possible

9. Your Rights (GDPR)

You have the right to:

  • Access your personal data
  • Request correction of inaccurate data
  • Request deletion of your account and personal data (where legally possible)
  • Request restriction of processing
  • Object to data processing
  • Request data portability
  • Withdraw consent at any time (e.g. newsletter)
  • Lodge a complaint with your local data protection authority

To exercise your rights, contact us at: admin@phol-labs.com


10. The Right to Be Forgotten

  • Website statistical data is anonymized and deleted automatically after a limited time.
  • You may request deletion of your customer account, which will remove stored addresses, wishlists, and cart data.
  • Order history and invoice data cannot be deleted due to legal obligations.

11. Changes to This Policy

We may update this Privacy Policy from time to time to reflect legal or technical changes. The current version will always be available on our website.