Legal
Last updated: May 2026 • Shadow Lotus, Minot, ND
The short version 🦝: We collect your email and order info when you buy stuff or sign up. We use Meta Pixel for advertising. We don't sell your data. You can ask us to delete everything. The full version is below.
We use the information we collect to:
We do not use your information for automated decision-making or profiling beyond basic marketing segmentation.
Our site uses the following types of cookies and tracking mechanisms:
You can disable cookies in your browser settings. Note that disabling cookies will break cart and wishlist functionality.
We use Meta Pixel (ID: 850198527547486) on our website. Meta Pixel is an advertising tool operated by Meta Platforms, Inc. (Facebook/Instagram).
The Meta Pixel loads a small piece of JavaScript on each page. This script:
Meta's use of data collected via the Pixel is governed by Meta's Privacy Policy.
All payments are processed by Stripe, Inc. When you check out, you're submitting your payment information directly to Stripe's servers. We never see, transmit, or store your card number, CVV, or full billing information. Stripe's privacy policy is at stripe.com/privacy.
We use a third-party email service to send transactional and marketing emails. This service processes your email address to deliver messages on our behalf. They act as a data processor under our instructions.
Our database is hosted on Neon, a PostgreSQL cloud provider. Customer data (orders, emails, quiz responses) is stored on Neon's infrastructure in the US.
Our website is hosted on Render. Standard server logs (IP addresses, request data) are collected by Render as part of hosting operations.
We do not share your personal information with any other third parties except as required by law.
We send the following types of emails:
Every marketing email includes an unsubscribe link as required by CAN-SPAM. Our physical address is: Shadow Lotus, Minot, ND. Requests to opt out are honored within 10 business days.
Our affiliate program uses cookies to track referrals. When you visit our site via an affiliate link, we store the affiliate's tracking code in a session cookie. If you make a purchase during that session (or within the cookie's validity window), the purchase is attributed to that affiliate for commission purposes.
We record: the affiliate tracking code, your IP address at time of click, and whether you converted to a purchase. We do not share your personal information with the affiliate — they only see aggregate conversion data in their portal.
We retain your data for the following periods:
You can request deletion of your data at any time. See Section 9 and 10 for your rights.
If you are located in the European Union or United Kingdom, you have the following rights under GDPR:
Our legal basis for processing your data is primarily contract performance (to deliver your order) and legitimate interests (marketing to existing customers). For marketing to new leads (quiz signups, newsletter), we rely on consent.
To exercise your rights, contact us at /contact or email us directly. We will respond within 30 days. You also have the right to lodge a complaint with your local data protection authority.
If you are a California resident, the California Consumer Privacy Act (CCPA) gives you specific rights regarding your personal information:
To submit a verifiable request, contact us and include your email address. We will verify your identity before processing the request. Response within 45 days.
Our website and products are intended for adults 18 and older. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, contact us immediately and we will delete it.
We take reasonable technical and organizational measures to protect your data:
No system is 100% secure. If we become aware of a data breach that affects your personal information, we will notify you as required by applicable law.
We may update this Privacy Policy from time to time. We will post the updated policy on this page with a new "last updated" date. For material changes, we will notify customers via email. Continued use of our site after changes constitutes acceptance of the updated policy.
For privacy-related questions, data access requests, or deletion requests:
We respond to all privacy inquiries within 10 business days.