Effective Date: January 1, 2026
Last Updated: January 1, 2026
Overview
HandStep ("we," "our," or "us") is committed to protecting your privacy and complying with applicable data protection laws. This Privacy Policy describes how we collect, use, share, and protect your personal information when you visit our website, purchase our products, or interact with our services.
Information We Collect
Personal Information: We collect information you provide directly, including:
- Name, email address, phone number
- Shipping and billing addresses
- Payment information (processed securely through third-party processors)
- Account credentials and preferences
- Customer service communications
Automatic Information: We automatically collect certain information when you visit our website:
- IP address, browser type, device information
- Pages visited, time spent, referral sources
- Cookies and similar tracking technologies
How We Use Your Information
We use your information for legitimate business purposes, including:
- Processing and fulfilling orders
- Providing customer support
- Sending transactional emails (order confirmations, shipping updates)
- Improving our products and services
- Marketing communications (with your consent)
- Fraud prevention and security
- Compliance with legal obligations
Legal Basis for Processing (GDPR Compliance)
We process your personal information based on:
- Contract performance: To fulfill orders and provide services
- Legitimate interests: To improve our business and customer experience
- Consent: For marketing communications and non-essential cookies
- Legal compliance: To meet regulatory requirements
Information Sharing and Disclosure
We do not sell your personal information. We may share information with:
- Service providers: Payment processors, shipping companies, email services
- Business partners: For joint marketing activities (with consent)
- Legal requirements: When required by law or to protect our rights
- Business transfers: In case of merger, acquisition, or asset sale
All third parties are contractually obligated to protect your information and use it only for specified purposes.
Cookies and Tracking Technologies
We use cookies and similar technologies for:
- Essential website functionality
- Analytics and performance measurement
- Personalization and user preferences
- Advertising and marketing (with consent)
You can manage cookie preferences through your browser settings. Some features may not function properly if cookies are disabled.
Data Retention
We retain your personal information for as long as necessary to provide services and fulfill legal obligations. Specific retention periods:
- Account information: Until account deletion or 3 years of inactivity
- Order history: 7 years for tax and warranty purposes
- Marketing preferences: Until you unsubscribe
- Website analytics: 26 months maximum
Data Security
We implement industry-standard security measures including:
- SSL/TLS encryption for data transmission
- Secure payment processing (PCI DSS compliant)
- Access controls and employee training
- Regular security assessments
While we strive to protect your information, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.
Your Rights and Choices
You have the following rights regarding your personal information:
- Access: Request copies of your personal information
- Rectification: Correct inaccurate or incomplete information
- Erasure: Request deletion of your personal information
- Portability: Receive your data in a structured format
- Restriction: Limit how we process your information
- Objection: Object to processing for marketing purposes
- Withdraw consent: Revoke previously given consent
To exercise these rights, contact us at support@handstep.blog. We will respond within 30 days.
Children's Privacy
Our services are not directed to children under 13. We do not knowingly collect personal information from children under 13. If we discover we have collected such information, we will delete it immediately.
International Data Transfers
Your information may be transferred to and processed in countries other than your residence. We ensure adequate protection through:
- Standard Contractual Clauses (SCCs)
- Adequacy decisions by relevant authorities
- Appropriate safeguards and security measures
California Privacy Rights (CCPA)
California residents have additional rights:
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt-out of sale (we do not sell personal information)
- Right to non-discrimination for exercising privacy rights
Marketing Communications
We may send you marketing communications with your consent. You can unsubscribe at any time using the link in our emails or by contacting us directly. Unsubscribing will not affect transactional communications related to your orders.
Policy Updates
We may update this Privacy Policy periodically. Material changes will be communicated via email or prominent website notice. The "Last Updated" date indicates the most recent revision. Continued use of our services after updates constitutes acceptance of the revised policy.
Third-Party Links
Our website may contain links to third-party websites. This Privacy Policy does not apply to those sites. We encourage you to review their privacy policies before providing personal information.
Contact Information
For questions about this Privacy Policy or to exercise your rights, contact us:
- Email: support@handstep.blog
- Phone: (561) 586-0121
- Address: 1764 N Congress Ave, West Palm Beach, FL 33409
- Business Hours: Monday-Friday, 9 AM - 5 PM EST
Supervisory Authority
If you believe we have not addressed your privacy concerns adequately, you have the right to lodge a complaint with your local data protection supervisory authority.
Google Ads & Business Compliance: This privacy policy is designed to comply with Google Ads policies and Google Business policies. We are committed to transparency, user control, and data protection in all our advertising and business practices.