Privacy Policy (GDPR & CCPA Compliant)
Last updated: June 1, 2026
Issued by KanakoMaeshiba
KanakoMaeshiba (“we,” “us,” or “the Company”) is committed to protecting the privacy and security of our customers’ personal information.
This Privacy Policy explains how we collect, use, store, and protect your personal data and outlines your rights under applicable laws, including the EU General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA/CPRA), and relevant Japanese privacy laws.
By using our online store, you agree to the terms outlined in this Privacy Policy.
1. Information We Collect
We may collect the following categories of personal information:
1.1 Contact Information
-
Name
-
Address
-
Phone number
-
Email address
1.2 Order & Account Information
-
Purchased products
-
Order history
-
Shipping details
-
Return or exchange information (used only for processing such requests)
1.3 Payment Information
Processed securely by third-party payment processors.
We do not store full credit card numbers.
1.4 Cookies & Usage Data
-
IP address
-
Browser type
-
Device identifiers
-
Access logs
-
Cookie identifiers and activity (see Section 9)
1.5 Children’s Data
We do not knowingly collect personal information from children under 13 (or under 16 in the EU).
2. Purpose of Use
We use personal information for the following purposes:
-
To process and deliver orders
-
To handle returns, refunds, and exchanges
-
To verify customer identity for order or return-related inquiries
-
To communicate with customers regarding inquiries or support
-
To manage and improve our website, services, and user experience
-
To comply with tax, accounting, and legal obligations
-
(If applicable) To send marketing communications, only with your consent
We do not use cookies or analytics data for return-processing or customer identity verification.
We do not sell or share personal information as defined under CCPA/CPRA.
3. Legal Basis for Processing (GDPR)
For users in the European Union/EEA, we process personal data based on the following legal grounds:
-
Contract performance: fulfilling and managing orders, returns, and customer support
-
Legal obligation: accounting, tax, and regulatory compliance
-
Legitimate interests: service improvement, security monitoring, fraud prevention
-
Consent: use of optional cookies or marketing communications
You may withdraw consent at any time.
4. Disclosure to Third Parties
We do not disclose personal information to third parties except under the following circumstances:
-
With your explicit consent
-
To delivery carriers and logistics providers necessary for shipping products
-
To payment processors to complete transactions
-
To service providers acting on our behalf (IT support, analytics, hosting)
-
When required by law, legal processes, or government authorities
These third parties act as service providers or processors under applicable privacy laws and are contractually obligated to protect your information.
We do not sell or share personal information for advertising purposes.
5. International Data Transfers
Your personal data may be transferred to and processed on servers outside your country, including Japan.
For EU/EEA users, we implement safeguards such as:
-
Standard Contractual Clauses (SCCs)
-
Data Processing Agreements (DPAs)
-
Technical and organizational security measures ensuring adequate protection
6. Security Measures
We implement technical and organizational safeguards to protect personal information against unauthorized access, loss, alteration, or disclosure.
These include:
-
SSL/TLS encryption
-
Access controls
-
Secure servers and monitoring
-
Employee privacy training
7. Your Rights (GDPR)
EU/EEA users have the following rights:
-
Right of access – request a copy of your personal data
-
Right to rectification – correct inaccurate data
-
Right to erasure (“right to be forgotten”)
-
Right to restriction of processing
-
Right to data portability
-
Right to object to certain processing
-
Right to withdraw consent at any time
-
Right to lodge a complaint with your supervisory authority
To exercise these rights, contact us via the form below.
8. Your Rights Under the CCPA/CPRA
California residents have the right to:
-
Request disclosure of collected or disclosed personal information
-
Request deletion of personal information
-
Request information on whether personal data is sold or shared
-
Opt-out of the sale or sharing of personal information
-
Not be discriminated against for exercising privacy rights
We do not sell or share personal information as defined under the CCPA/CPRA.
9. Cookies
We use cookies for essential site functions, analytics, and to enhance user experience.
-
GDPR (EU/EEA): Non-essential cookies require your prior consent.
-
CCPA/CPRA: You may opt-out of sharing or tracking used for cross-context behavioral advertising.
-
Cookies are not used for order verification or return processing.
You may manage cookie preferences through your browser or our cookie settings banner (where applicable).
10. Data Retention
We retain personal information only as long as necessary to:
-
Fulfill the purposes described in this policy
-
Process orders, returns, and refunds
-
Comply with tax, accounting, and legal requirements
-
Resolve disputes and enforce agreements
When data is no longer required, we securely delete or anonymize it.
11. EU Consumer Rights (14-Day Withdrawal Right)
For customers located in the EU/EEA:
Where applicable, you may have the right to withdraw from a purchase contract within 14 days of receiving your order, in accordance with the EU Consumer Rights Directive.
Requests related to withdrawals may require us to process your personal data to verify your identity and order details.
12. Requests, Inquiries, or Complaints
If you wish to access, correct, delete, or request information about your personal data—or exercise your GDPR/CCPA rights—you may contact us at any time.
We may request identity verification before responding.
13. Changes to This Privacy Policy
We may update this policy from time to time.
All updates will be posted on this page with a revised “Last updated” date.
14. Contact Information
If you have questions about our privacy practices or your personal data rights, please contact us via the form below:
Legal Disclaimer
All products and information provided on this website are offered “as is” without any guarantees or warranties, either express or implied. We are not responsible for any inaccuracies, shipping delays, product variations, or damages resulting from the use of our products or services. Customers are responsible for verifying product details and suitability before purchase.