Privacy & Policy
Last updated: 17 June 2026
Milano Straps operates this shop and the website, including the information, content, features, tools, products and services, in order to provide you, the customer, with an appropriate shopping experience (the "Services"). Milano Straps is supported by Shopify, which enables us to provide you with the Services. This Privacy Policy describes how we collect, use and disclose your personal data when you visit, use, make a purchase or any other transaction through the Services or when you communicate with us. In the event of any conflict between our Terms of Service and this Privacy Policy, the Privacy Policy shall prevail in relation to the collection, processing and disclosure of your personal data.
Please read this Privacy Policy carefully. By using and accessing the Services you confirm that you have read this Privacy Policy and understood what is described in relation to the collection, use and disclosure of your information.
The personal data we collect or process
When we use the term "personal data" we are referring to information that identifies or is reasonably linked to you or to another person. Personal data does not include information collected anonymously or anonymised, so that it cannot identify you or be linked to you. We may collect or process the following categories of personal data, including inferences drawn from such personal data, based on your interaction with the Services, where you live and as permitted or required by applicable laws:
- Contact details including name, address, billing address, shipping address, telephone number and email address.
- Financial data including credit card, debit card and financial account numbers, card payment data, financial account data, transaction details, form of payment, payment confirmation and other payment details.
- Account data including username, password, security questions, preferences and settings.
- Transaction data including items you view, add to cart, add to wishlist or purchase, return, exchange or delete, and past transactions.
- Communications with us including the information you include in communications with us, for example if you submit a dispute to customer service.
- Device information including information about your device, browser or connection network, IP address and other unique identifiers.
- Usage information including information regarding your interaction with the Services, as well as how and when you interact with or explore the Services.
Sources of personal data
We may collect personal data from the following sources:
- Directly from you including when you create an account, visit or use the Services, communicate with us or provide us with your personal data;
- Automatically through the Services including through your device when you use our products or services or visit our websites, and through the use of cookies and similar technologies;
- From our service providers including when we engage them to implement a particular technology and when they collect or process your personal data on your behalf;
- From our partners or third parties.
How we use your personal data
Depending on how you interact with us or which Services you use, we may collect your personal data for the following purposes:
- Providing, personalising and improving the Services. We use your personal data to provide you with the Services, as well as to enforce our contract with you; process your payments; fulfil your orders; remember your preferences and the items you are interested in; send you account-related notifications; process purchases, returns, exchanges or other transactions; create, maintain and manage your account; arrange shipping; facilitate returns and exchanges; enable you to post reviews and to create a personalised shopping experience, for example with product recommendations linked to your purchases. This may include using your personal data to personalise and improve the Services.
- Marketing and advertising. We use your personal data for marketing and advertising purposes, for example to send you marketing, advertising and promotional communications via email, text message or post, and to show you online advertisements for products and services within our Services or on other websites, also based on items you have previously purchased or added to cart and other activity within the Services.
- Security and fraud prevention. We use your personal data to authenticate your account; provide a secure payment and shopping experience; identify, investigate or take action against any fraudulent, illegal, unsafe or harmful activities; protect public safety and our services. By choosing to use the Services and register an account you take responsibility for protecting your credentials. We advise you not to share your username, password and other login details with anyone.
- Communications with you. We use your personal data to provide you with customer service; provide you with responses; offer you effective services and maintain our business relationships with you.
- Legal reasons. We use your personal data in compliance with applicable laws or in response to valid legal procedures, including requests from authorities or government agencies; to investigate or participate in testimonies, potential or ongoing lawsuits, or other legal procedures; to enforce or investigate potential breaches of our terms or policies.
How we disclose personal data
In certain circumstances we may disclose your personal data to third parties for legitimate purposes subject to this Privacy Policy. Such circumstances may include:
- With Shopify, vendors and other third parties who perform services on our behalf (for example, IT management, payment processing, data analysis, customer service, storage space, fulfilment and shipping).
- With business and marketing partners to provide you with services and marketing advertisements. For example, we use Shopify to deliver personalised advertisements with third-party services based on your online activity with different merchants and websites. Our business and marketing partners will use your data in accordance with their own privacy policies. Depending on where you reside, you may have the right to ask us not to share your data to show you personalised and marketing advertisements based on your online activity with different merchants and websites. You can exercise the right to explicitly refuse such uses here
- When you ask us or authorise us to disclose certain information to third parties, for example to ship your products, or when you use social media widgets or login integrations.
- With our affiliates or within our corporate group.
- In connection with a business transaction such as a merger or bankruptcy; in compliance with any legal obligations (including responses to subpoenas, search warrants and similar requests); to enforce terms of service or policies, and to protect or defend the Services, our rights and those of our users or other persons.
Relationship with Shopify
The Services are supported by Shopify, which collects and processes personal data relating to your access to and use of the Services in order to deliver and improve the Services for you. In order to deliver and improve the Services for you, the data you submit to the Services will be transmitted to and shared with Shopify and third parties that may reside in countries other than yours. In addition, to help you protect, grow and improve your business, we use certain advanced Shopify features that incorporate the data and information received from you through your interactions with our shop, as well as with other merchants and with Shopify. To provide such advanced features, Shopify may use personal data collected from your interactions with our shop, as well as with other merchants and with Shopify itself. In such circumstances, Shopify is responsible for the processing of your personal data, including responding to your requests to exercise your rights relating to the use of your personal data for those purposes. For more information on how Shopify uses your personal data and on the rights you may have, you can consult the Shopify Consumer Privacy Policy . Depending on where you reside, you may exercise certain rights relating to your personal data here Shopify Privacy Portal Link.
Third-party websites and links
The Services may present links to websites or other online platforms operated by third parties. If you open links to sites not affiliated with or controlled by us, you may need to accept their privacy and security policies and other terms and conditions. We do not guarantee, nor are we responsible for, the privacy and security of such sites, nor for the accuracy, truthfulness and reliability of the information contained therein. The information you provide in public or semi-public contexts, including what you share on third-party social platforms, may also be viewed by other users of the Services and/or by users of the aforementioned third-party platforms, without restrictions on their use by us or by third parties. The fact that we include such links does not imply any endorsement by us of the contents of such platforms nor of their owners or operators, except as disclosed in the Services.
Minors' data
The Services are not suitable for use by minors and we do not knowingly collect personal data of children below the age of majority in your jurisdiction. If you are a parent or guardian of a minor who has provided us with their personal data, you can contact us using the details indicated below to request its deletion. As of the effective date of this Privacy Policy, we are not aware of any "sharing" or "sale" (depending on how such terms are defined in applicable laws) of personal data of subjects under the age of 16.
Data security and retention
Please note that no security measure is perfect or impenetrable and that we cannot guarantee "absolute security". Furthermore, the data you send us may not be secure during transmission. We advise you to use only secure channels to communicate confidential or sensitive information to us.
The retention period for personal data depends on various factors, such as whether we need such data to maintain your account, to provide you with the Services, fulfil legal obligations, resolve disputes or enforce other contracts and policies.
Rights and choices available to you
Depending on where you reside, you may enjoy one or more rights relating to personal data, among those listed below. However, such rights are not absolute and may only apply in certain circumstances and we may refuse your request to the extent permitted by law.
- Right of access/to know. You may have the right to request access to your personal data held by us.
- Right of deletion. You may have the right to request the deletion of your personal data held by us.
- Right of correction. You may have the right to request the correction of your personal data held by us.
- Right of portability. You may have the right to receive a copy of your personal data held by us and to ask us to transfer it to a third party, in certain circumstances and with certain exceptions.
- Right to explicitly refuse the sale or sharing for targeted advertising. Depending on where you reside, you may have the right to explicitly refuse the "sale" or "sharing" of your personal data or its processing for purposes falling within "targeted advertising", as indicated in applicable privacy laws. You can exercise the right to explicitly refuse such uses here. Please note that, if you visit our website and the explicit refusal preference for Global Privacy Control is enabled, we will automatically treat it as a request for explicit refusal for the device and browser you use to visit the website. If we are able to associate the device sending the signal with a Shopify account, we will also apply the explicit refusal request to the account. For more information on Global Privacy Control you can visit https://globalprivacycontrol.org/. Apart from Global Privacy Control, we do not recognise other "Do Not Track" signals that your browser or device may send.
- Management of communication preferences. We may send you promotional emails and you can explicitly refuse to receive them at any time using the unsubscribe option present in our emails. If you explicitly refuse, we may still send you non-promotional emails, such as those relating to your account or to orders you have placed.
If you reside in the United Kingdom or in the European Economic Area, and subject to the restrictions and limits imposed by local laws, you may exercise the following rights in addition to those mentioned above:
- Objection to processing and restriction of processing: You may have the right to ask us to stop or restrict the processing of personal data for certain purposes.
- Withdrawal of consent: Where your consent is necessary to process your personal data, you have the right to withdraw it. If you withdraw such consent, this will not affect the lawfulness of the processing based on your consent before the withdrawal.
You may exercise any of these rights where indicated in the Services or by contacting us through the details indicated below. For more information on how Shopify uses your personal data and your possible rights, including those relating to data processed by Shopify itself, you can visit https://privacy.shopify.com/en.
You will not suffer any discrimination for having exercised such rights. Before processing your requests it may be necessary to verify your identity, to the extent permitted by applicable laws. In accordance with applicable laws, you may appoint an authorised agent to make requests on your behalf in order to exercise your rights. Before accepting a request from an agent, we will ask them to provide us with proof that they have been authorised by you and we may ask you to directly verify your identity. We will respond to your request within the reasonable time frames provided for by applicable laws.
Complaints
In the event of complaints about how we process your personal data, contact us through the details indicated below. Depending on where you reside, you may have the right to appeal against our decision by contacting us through the details indicated below, or to refer your complaint to the local authority responsible for data protection. For the EEA, you can find a list of the data protection supervisory authorities responsible here.
International transfers
Please note that we may transfer, store and process your personal data outside the country in which you reside.
In the event of transfer of your personal data outside the European Economic Area or the United Kingdom, we will rely on reliable transfer mechanisms, such as the European Commission's Standard Contractual Clauses, or equivalent contracts issued by the competent authorities of the United Kingdom, unless the data transfer is to a country that is deemed to provide an adequate level of protection.
Changes to this Privacy Policy
We will update this Privacy Policy from time to time, including to reflect changes to our practices or for other operational, legal or regulatory purposes. We will publish the updated Privacy Policy on the website, change the "Last updated" date and issue a notice as established by applicable law.
Contacts
If you have any questions about our privacy practices or about this Privacy Policy, or if you intend to exercise any right to which you are entitled, call the number , send an email to info@milanostraps.it or contact us at Via Spezia 20, Milan, MI, 20142, IT. For the purposes of applicable data protection laws, we are the data controller of your personal data.