Last updated: August 2025
Controller
Rifumo Sp. z o.o.
ul. Półwiejska 17/26, 61-888 Poznań, Poland
Email: info@rifumo.eu
What this policy covers
This policy explains how we process personal data when you visit and shop on kucheriki.com (the “Store”). It applies to consumers in the EU/EEA.
Data we process and why (GDPR Art. 6)
- Orders & customer accounts (Art. 6(1)(b) contract): name, postal address, email, phone (optional), ordered items, order notes, and payment status—so we can process and deliver your order and provide customer service.
- Payments (Art. 6(1)(b)): payments are processed by our payment providers. We receive confirmation and status (success/failed/refund) but do not receive full card details. See the provider’s terms shown at checkout.
- Shipping (Art. 6(1)(b)): we share delivery details with carriers/postal services to ship your order and handle delivery issues.
- Support & communications (Art. 6(1)(b) or (f) legitimate interests): messages you send us (e.g., via email or forms) to respond to your request and improve our service.
- Security & logs (Art. 6(1)(f)): our hosting provider processes server logs (IP address, date/time, URL, referrer, user agent) to keep the Store secure and stable.
- Cookies & consent (Art. 6(1)(a) for optional cookies; Art. 6(1)(f) or (b) for strictly necessary cookies): the Store uses necessary cookies to function (cart, checkout, login). Analytics/marketing cookies, if any, load only after your consent via the cookie banner. You can change your choices at any time in “Cookie settings”.
Recipients / processors
We share data only as necessary with:
- Hosting and IT service providers (Store operation and security)
- Payment providers (payment processing)
- Carriers / postal services (shipping and returns)
- Customer support tools (if used)
All processors are bound by contracts under Art. 28 GDPR.
International transfers
Some providers may process data outside the EEA. Where this occurs, we rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses and additional technical/organizational measures.
Retention
- Order and invoice data: kept for the periods required by tax and commercial laws.
- Customer accounts: kept until you delete your account or ask us to delete it (unless legal retention applies).
- Support communications: kept as long as needed to handle your request and for our legitimate interests (e.g., to improve service), then deleted or anonymized.
- Server logs: kept for a short period (typically up to 30 days) unless longer retention is needed for security or legal reasons.
Your rights
You have the rights of access, rectification, erasure, restriction, portability, and objection, as well as the right to withdraw consent at any time (without affecting prior processing). You also have the right to lodge a complaint with a supervisory authority (for example, the President of the Personal Data Protection Office, Poland, or your local authority).
Children
Our Store is directed to adults. We do not knowingly collect personal data from children. If you believe a child has provided us data, please contact us so we can delete it.
Security
We protect data with industry-standard technical and organizational measures, including TLS/HTTPS encryption.
Updates to this policy
We may update this policy from time to time. The latest version is always available on this page.
Contact
For any privacy questions or requests, contact: info@rifumo.eu
