Legal
Privacy Policy
Last updated: May 10, 2026
GlimmerGuides ("we", "us", "our") respects your privacy. This Privacy Policy explains what personal data we collect when you visit https://www.glimmerguides.life, how we use it, who we share it with, and the rights you have. If you have any questions, email hello@glimmerguides.life.
1. Data we collect
- Account data: email address, full name (optional), and a securely hashed password if you choose to set one.
- Order data: items purchased, amount, currency, order timestamp, and a Stripe payment reference.
- Communications: messages you send via our contact form (name, email, message).
- Newsletter: your email address if you opt in.
- Technical data: IP address, browser type, device info, and basic request logs collected automatically by our hosting provider for security and abuse prevention.
- Cookies / local storage: see our Cookie Policy.
We do not see, collect, or store your full payment-card number — that is handled entirely by Stripe.
2. Why we use your data (legal bases)
- To deliver your order — performance of a contract.
- To provide your account, library, and download links — performance of a contract.
- To send transactional emails (receipts, sign-in links, password resets) — performance of a contract.
- To send marketing emails (only if you opted in) — your consent, withdrawable at any time.
- To prevent fraud, abuse, and chargebacks; to keep the Site secure — our legitimate interests.
- To meet tax, accounting, and legal obligations — legal obligation.
3. Who we share data with (sub-processors)
We share the minimum data required with trusted providers who act on our instructions:
- Stripe — payment processing, fraud detection, tax calculation.
- Lovable Cloud / Supabase — managed hosting for our database, authentication, and file storage.
- Cloudflare — content delivery, DDoS protection, edge runtime.
- Email delivery provider — transactional and (if opted in) marketing emails.
We do not sell your personal data and we do not share it with advertising networks.
4. International transfers
Some of our providers process data outside your country of residence. Where required, transfers are covered by appropriate safeguards such as the EU Standard Contractual Clauses or the UK International Data Transfer Addendum.
5. How long we keep data
- Account data: as long as your account exists, plus a short grace period after deletion.
- Order & tax records: typically up to 7 years to comply with tax laws.
- Newsletter: until you unsubscribe.
- Contact messages: up to 3 years.
- Server / security logs: typically up to 90 days.
6. Your rights
Depending on where you live, you may have the right to: access your data, correct it, delete it, restrict or object to processing, port it to another provider, and withdraw consent. EU/UK users have these rights under the GDPR / UK GDPR. California residents have rights under the CCPA/CPRA, including the right to know, delete, correct, and opt out of "sale" or "sharing" of personal information (we do neither).
To exercise any of these rights, email hello@glimmerguides.life from the address on your account. You also have the right to lodge a complaint with your local data-protection authority.
7. Children
The Site is not directed at children under 16, and we do not knowingly collect their data.
8. Security
We use HTTPS, encrypted storage, role-based database access (Row-Level Security), and signed time-limited download URLs. No system is perfectly secure — please use a strong, unique password and tell us immediately if you suspect a breach.
9. Changes to this policy
We will update the "Last updated" date when we change this policy. Material changes will be announced on the Site or by email.
10. Contact
Controller: GlimmerGuides. Email: hello@glimmerguides.life.
