Privacy Policy

We are committed to protecting your personal data and respecting your privacy rights.

Effective Date: 3 February 2026 | Version: 3.0

1. Introduction

AgenticStore ("we", "us", or "our") is committed to protecting and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal data when you use our website, purchase our products, or interact with us.

We are the data controller for the personal data we process. Our registered office is at 123 Innovation Street, London, EC1A 1BB, United Kingdom.

If you have any questions about this Privacy Policy or our data practices, please contact our Data Protection Officer using the details provided at the end of this policy.

2. Data We Collect

We collect and process the following types of personal data:

Information You Provide:

  • Name, email address, postal address, and telephone number
  • Payment information (processed securely by our payment providers)
  • Account login credentials
  • Order history and preferences
  • Communications with our customer service team
  • Product reviews and feedback you submit

Information We Automatically Collect:

  • IP address and device information
  • Browser type and version
  • Operating system
  • Referral source and pages visited
  • Time spent on pages and interactions
  • Geographic location (country/region level)

3. How We Use Your Data

We use your personal data for the following purposes:

  • Order Processing: To fulfil your orders, process payments, arrange delivery, and provide customer support.
  • Account Management: To create and manage your account, authenticate your identity, and maintain your preferences.
  • Communication: To send order confirmations, shipping updates, and respond to your enquiries.
  • Marketing: To send promotional offers and newsletters (with your consent, which you can withdraw at any time).
  • Website Improvement: To analyse usage patterns and improve our website functionality and user experience.
  • Legal Obligations: To comply with legal requirements, prevent fraud, and enforce our terms.

We process your data on the following legal bases: contractual necessity, legitimate interests, consent, and legal obligation.

4. Cookies and Tracking

Our website uses cookies and similar technologies to enhance your browsing experience. Cookies are small text files stored on your device that help us recognise you and remember your preferences.

Types of Cookies We Use:

  • Essential Cookies: Required for the website to function properly (e.g., shopping basket, checkout).
  • Functional Cookies: Remember your preferences and settings.
  • Analytics Cookies: Help us understand how visitors interact with our website.
  • Marketing Cookies: Used to deliver relevant advertisements and track their effectiveness.

You can manage your cookie preferences through our cookie banner or your browser settings. Please note that disabling certain cookies may affect website functionality.

5. Third-Party Sharing

We do not sell your personal data. We may share your data with trusted third parties who assist us in operating our business:

  • Payment Processors: Stripe, PayPal, and other payment providers to process transactions securely.
  • Shipping Partners: Royal Mail, DPD, and DHL to deliver your orders.
  • Service Providers: IT support, hosting providers, analytics services (Google Analytics), and marketing platforms.
  • Legal Authorities: When required by law or to protect our rights.

All third-party service providers are contractually bound to process your data only for specified purposes and in accordance with data protection laws.

6. Your Rights

Under UK data protection law, you have the following rights:

  • Right to Access: Request a copy of the personal data we hold about you.
  • Right to Rectification: Request correction of inaccurate or incomplete data.
  • Right to Erasure: Request deletion of your personal data in certain circumstances.
  • Right to Restrict Processing: Request limitation on how we use your data.
  • Right to Data Portability: Receive your data in a structured, machine-readable format.
  • Right to Object: Object to processing based on legitimate interests or direct marketing.
  • Rights Related to Automated Decision-Making: Not to be subject to decisions based solely on automated processing.

To exercise these rights, please contact us using the details below. We will respond within one month of receiving your request.

7. Data Security

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. These measures include:

  • SSL/TLS encryption for data transmission
  • Secure server infrastructure with firewalls
  • Regular security assessments and updates
  • Restricted access to personal data on a need-to-know basis
  • Staff training on data protection

While we strive to protect your data, no internet transmission is completely secure. We encourage you to use strong passwords and keep your account credentials confidential.

8. Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, or reporting requirements.

  • Order and transaction data: 7 years (for tax and accounting purposes)
  • Account information: Until account closure, plus 2 years
  • Marketing consent records: Until consent is withdrawn
  • Customer service communications: 3 years

9. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us:

  • Data Protection Officer: dpo@agenticstore.com
  • Postal Address: Data Protection Officer, AgenticStore, 123 Innovation Street, London, EC1A 1BB
  • Telephone: 020 7946 0958

If you are not satisfied with our response, you have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.

This Privacy Policy is governed by the laws of England and Wales and complies with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.