GDPR Compliance

At Glowing Vault, we are committed to complying with the General Data Protection Regulation (GDPR) (EU) 2016/679. If you are located in the European Economic Area (EEA), this notice applies to you in addition to our Privacy Policy.


1. Legal Basis for Processing

Under the GDPR, we process your personal data only when we have a legal basis to do so. This includes:

  • Consent – You have given us clear permission.

  • Contract – Processing is necessary to fulfill a contract with you (e.g., order fulfillment).

  • Legal Obligation – We are legally required to process your data.

  • Legitimate Interests – Processing is necessary for our legitimate business interests, unless overridden by your rights.


2. Your Rights Under GDPR

As an EU/EEA resident, you have the following rights:

  • Right to Access – You can request access to your personal data.

  • Right to Rectification – You can request that we correct or update inaccurate data.

  • Right to Erasure ("Right to be Forgotten") – You can request that we delete your data under certain conditions.

  • Right to Restrict Processing – You can request we limit how we use your data.

  • Right to Data Portability – You can request that we transfer your data to you or another service provider.

  • Right to Object – You can object to how we use your data (e.g., for direct marketing).

  • Right to Withdraw Consent – If processing is based on your consent, you can withdraw it at any time.

To exercise any of these rights, please contact us at support@glowingvault.com.


3. Data Retention

We retain personal data only as long as necessary for the purposes for which it was collected, unless a longer retention is required by law (e.g., tax or accounting purposes).


4. Data Transfers Outside the EU

We are based in the United States. By using our services or submitting your personal information, you agree to the transfer and storage of your data in the United States. We ensure all such transfers are compliant with GDPR through mechanisms such as:

  • Standard Contractual Clauses (SCCs) approved by the European Commission

  • Use of secure cloud providers with GDPR-compliant data processing terms


5. Data Protection Officer (DPO)

We are not currently required to appoint a formal Data Protection Officer. However, you may contact us with GDPR-related inquiries at:

Email: support@glowingvault.com
Mailing Address: 7770 Willowcove CT, Dublin, OH, 43016, US


6. Complaints

If you believe your data rights have been violated, you have the right to lodge a complaint with your local Data Protection Authority in the EEA.


Summary

We are fully committed to protecting your privacy and respecting your data rights under GDPR. If you have any questions or concerns, don’t hesitate to contact us at support@glowingvault.com.