Privacy Policy

Last updated: May 17, 2026

Olympica Stores ("we", "us", or "our") operates https://olympicastores.com. This Privacy Policy explains what personal information we collect, how we use it, who we share it with, and your rights regarding it. By using our website, you agree to the practices described in this policy.

1. Information We Collect

Information You Provide Directly

When you create an account, place an order, or contact us, we collect: • Full name and email address (required for your account) • A securely hashed password — we store only a one-way bcrypt hash, never your plain-text password • Shipping address (first name, last name, street, city, state/region, ZIP/postcode, country) • Phone number (optional, used for shipping carrier notifications) • Order history including items purchased, quantities, prices, and order status

Information Collected Automatically

When you visit our website, our servers may log your IP address, browser type, and pages visited. Your shopping cart is stored locally in your browser (localStorage) and is not transmitted to our servers until you begin checkout.

Payment Information

We do not store, process, or have access to your payment card details. All payments are processed securely by our payment partners: • Stripe — for credit/debit card payments (Stripe Privacy Policy: stripe.com/privacy) • PayPal — for PayPal wallet payments (PayPal Privacy Policy: paypal.com/privacy)

2. How We Use Your Information

We use your personal information to: • Create and manage your account • Process, fulfil, and deliver your orders via Printify • Send order confirmation and shipping notification emails • Respond to your customer support enquiries • Detect and prevent fraud or unauthorised account access • Comply with applicable legal obligations (e.g., tax records, dispute resolution)

3. Cookies and Session Data

We use a minimal set of cookies: • Authentication session cookie — set by our auth system (NextAuth) when you log in. This is an essential cookie required to keep you signed in. It expires when your session ends or after 30 days. • Payment processor cookies — Stripe and PayPal may set cookies when you interact with their payment elements. These are governed by their respective privacy policies. We do not use advertising or cross-site tracking cookies. See our Cookie Policy for full details.

4. Sharing of Your Information

We share your data only with the following service providers, strictly to fulfil your order or operate the service: • Printify, Inc. — our print-on-demand production and fulfilment partner. We send them your order details (items, quantities) and shipping address so they can produce and dispatch your order. Printify Privacy Policy: printify.com/privacy-policy • Stripe — payment processing. We share your order total and a unique order reference. • PayPal — payment processing. Same scope as Stripe. • Shipping carriers (e.g., USPS, FedEx, UPS, DHL) — receive your shipping address via Printify to deliver your package. We do not sell, rent, or trade your personal information to any third party for marketing purposes.

5. Data Retention

We retain your data for as long as necessary to provide our services and comply with legal obligations: • Account data: retained while your account is active. You may request deletion at any time. • Order records: retained for 7 years to comply with accounting and tax regulations. • Payment transaction records: retained by Stripe and PayPal per their own policies.

6. Your Rights

Depending on your location, you may have the following rights: • Access — request a copy of the personal data we hold about you • Correction — request that inaccurate data be corrected • Deletion — request that we delete your account and personal data (subject to legal retention obligations) • Portability — request your data in a machine-readable format • Objection — object to certain uses of your data To exercise any of these rights, please email us at support@olympicastores.com

7. Security

We take reasonable technical and organisational measures to protect your data, including: • HTTPS encryption on all pages • Passwords stored as bcrypt hashes (never in plain text) • Payment data handled exclusively by PCI-DSS compliant processors (Stripe, PayPal) • Access to the admin panel restricted by role-based authentication

8. Children

Our website is not directed at children under the age of 13. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

9. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date at the top of this page. We encourage you to review this policy periodically.

10. Contact Us

If you have any questions or concerns about this Privacy Policy, please contact us at: support@olympicastores.com