PRIVACY POLICY (GDPR COMPLIANCE)
1. What Data I Collect When you submit a commission or an original purchase request or finalize a purchase:
I collect the following personal data:
Full Name
Email Address
Shipping and Billing Address
Reference photographs provided by you
Optional: OIB (Personal Identification Number) or VAT number if you are purchasing as an EU business entity.
2. Why I Collect It & How It Is Used Your data is used strictly to fulfill your business transaction.
Communication: To email you sketches, updates, and final photos.
Invoicing: To generate legally compliant Croatian tax invoices (račun).
Fulfillment: To generate shipping labels and customs declarations for courier services (e.g., Hrvatska Pošta, DHL).
3. Where Your Data Lives (Third-Party Processors) I do not sell or share your data for marketing purposes. Your data is processed securely using the following tools:
Google Workspace (Google Forms & Drive): Used to securely collect your initial request, contact info, and reference photos.
Your data used when generating official invoices.
Stripe, PayPal or Bank Transfer: Used to process payments securely. I do not see or store your credit card numbers.
4. Data Retention
Under Croatian tax and accounting laws (Zakon o računovodstvu), I am legally required to retain official invoices (which contain your name and address) for up to 11 years.
General email correspondence and reference photos will be kept securely on Google & Proton services to maintain a record of your commission or purchasing preferences, but you may request the deletion of non-tax-related data at any time by emailing me directly.