Privacy policy
Last updated: September 30th, 2025
At BaoMao, we take your privacy seriously and are committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR/AVG). This Privacy Policy explains what personal data we collect, how we use it, and your rights regarding your data.
1. Who We Are
BaoMao
- Chamber of Commerce (KVK) Number: 92971318
- VAT Number: NL866234391B01
- Email: hello@bao-mao.com
2. What Personal Data We Collect
We collect and process personal data in order to provide you with our products and services. The data we collect includes:
- Basic Information: Name, address, email, phone number.
- Account Information: When you create an account, we store your login details and preferences.
- Order Information: Billing and shipping address, payment details, order history.
- Payment Information: Payment method (we do not store full payment details; payments are processed securely via third-party payment providers).
- Communication Data: Information you provide when you contact us via email, social media, or other channels.
- Browsing Data: IP address, device type, browser type, and pages visited (collected through cookies and analytics).
We do not collect sensitive personal data (such as race, religion, or health data).
3. How We Use Your Personal Data
We process your data for the following purposes:
- Order Processing and Delivery – To fulfill and ship your orders.
- Customer Support – To respond to your inquiries and provide assistance.
- Account Management – To allow you to access your order history and preferences.
- Marketing and Promotions – To send you personalized offers and updates (only with your consent).
- Fraud Prevention and Security – To detect and prevent fraudulent activities.
- Legal Compliance – To comply with legal obligations, such as tax and financial regulations.
We do not sell or rent your personal data to third parties.
4. Sharing of Your Data
We only share your data with third parties when necessary, such as:
- Shipping Providers (e.g., PostNL, DHL) to deliver your order.
- Payment Providers (e.g., Stripe, PayPal) to process payments securely.
- IT and Analytics Services (e.g., Google Analytics) to improve our website and services.
- Legal Authorities when required by law or to prevent fraud.
We ensure that all third-party partners comply with GDPR regulations.
5. Data Retention
We retain your data only as long as necessary for the purposes described above:
- Order and Transaction Data: 7 years (required by tax laws).
- Account Data: Until you delete your account.
- Marketing Data: Until you withdraw your consent.
- Browsing Data: Up to 2 years (through cookies, unless manually cleared).
After these periods, we securely delete or anonymize your data.
6. Your Rights Under GDPR
As a resident of the EU, you have the following rights regarding your personal data:
- Right of Access – Request a copy of your personal data.
- Right to Rectification – Request correction of inaccurate or incomplete data.
- Right to Erasure (Right to be Forgotten) – Request deletion of your data, unless we are legally required to keep it.
- Right to Restrict Processing – Request that we limit the processing of your data.
- Right to Data Portability – Request a transfer of your data to another service provider.
- Right to Object – Object to the processing of your data, including direct marketing.
To exercise your rights, please email us at hello@bao-mao.com with the subject “GDPR Data Request.”
7. Cookies and Tracking
We use cookies and tracking technologies to enhance user experience.
- Essential Cookies – Required for basic website functionality.
- Analytical Cookies – Help us understand how users interact with our website (e.g., via Google Analytics).
- Marketing Cookies – Used for personalized ads and promotional content.
You can manage or disable cookies in your browser settings.
8. Data Security
We use industry-standard measures to protect your personal data, including:
- SSL encryption for secure transactions.
- Restricted access to personal data.
- Regular security audits and software updates.
In the event of a data breach, we will notify affected users and relevant authorities within 72 hours, as required by GDPR.
9. Third-Party Links
Our website may contain links to external websites. We are not responsible for the privacy practices of these external websites. Please review their privacy policies before sharing your data.
10. Updates to This Privacy Policy
We may update this Privacy Policy from time to time. The latest version will always be available on our website. If significant changes are made, we will notify you by email or through a notice on our website.
11. Contact Us
For any privacy-related inquiries, please contact us:
Email: hello@bao-mao.com
If you believe we have violated your rights under GDPR, you may file a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) via https://autoriteitpersoonsgegevens.nl.
