Privacy policy

Last updated: 12 August 2026.

Note

This is a standard privacy policy template, designed to be easy to adapt. Before publishing the site with your real business details (legal name, tax ID, address, data protection officer where applicable), we recommend having it reviewed by a professional to ensure full GDPR compliance.

1. Data controller

[Legal name of the owner / company], registered at [address], contact email [contact email], is the controller responsible for processing personal data collected through this website.

2. What data we collect

3. What we use your data for

We do not sell or share your personal data with third parties for commercial purposes.

4. Legal basis

Processing is based on performance of the sales contract (delivering the product) and, where applicable, compliance with legal obligations.

5. Payment platforms

Payment is processed directly by the sales platform (for example, Gumroad or Stripe), which acts as a data processor and has its own privacy policy. We do not store payment card details on our own servers.

6. Your rights

You can exercise your rights of access, rectification, erasure, objection, restriction and portability by writing to [contact email]. You can also lodge a complaint with your national data protection authority (in the UK, the ICO) if you feel your rights haven't been respected.

7. Data retention

We keep your data for as long as necessary for the purpose of the purchase and for the period required by applicable tax and commercial law.

8. Changes to this policy

We may update this policy to reflect legal or service changes. The date of the last update appears at the top of this page.