Skip to content

Cart

Your cart is empty

Privacy policy

Last updated: 31 May 2026

Santorelli Milano manages this website, www.santorellimilano.com, and all related services, tools, and products (the "Services"). This Privacy Policy explains how we collect, use, and disclose personal information when you visit our website, make a purchase, or otherwise communicate with us.

By accessing or using the Services, you acknowledge that you have read and understood this Privacy Policy.

For the purposes of applicable data protection laws, Santorelli Milano is the data controller of your personal information.

01. Personal Information We Collect

We collect information that identifies you or can reasonably be linked to you. Depending on how you interact with the Services and where you live, this may include:

  • Identity & Contact Data: name, email address, phone number, shipping address, and billing address.

  • Order Data: purchased items, transaction history, payment confirmations, returns, and refunds.

  • Account Data: account preferences, saved addresses, and marketing preferences.

  • Communications: messages exchanged with our customer support team.

  • Device & Usage Data: IP address, browser type, device identifiers, pages visited, browsing behavior, and information collected through cookies and similar technologies.

We do not collect or store complete payment card details. Payments are processed directly by our payment service providers (see Section 04).

02. How We Collect Information

We collect information:

Directly From You

When you:

  • Create an account

  • Place an order

  • Subscribe to newsletters or marketing communications

  • Contact customer support

Automatically

Through your device while using our Services via cookies, analytics tools, and similar technologies.

From Service Providers

Payment providers, shipping companies, analytics providers, and marketing partners may share information with us when necessary to provide our Services.

03. How We Use Information & Legal Bases

Under the General Data Protection Regulation (GDPR), we process personal information on the following legal bases:

Contract Performance

To:

  • Process and deliver orders

  • Manage payments, returns, and refunds

  • Provide customer support

Legitimate Interest

To:

  • Detect and prevent fraud

  • Protect the security of our Services

  • Improve website performance

  • Personalize product recommendations

Consent

To:

  • Send marketing emails and promotional communications

  • Place non-essential cookies on your device

You may withdraw your consent at any time.

Legal Obligation

To:

  • Retain accounting and transaction records as required by law

  • Comply with legal requests from public authorities

04. Sharing of Information

We share personal information only when necessary to provide our Services.

Our service providers may include:

  • Shopify — e-commerce platform, hosting, and order management

  • Shopify Payments / Stripe — payment processing

  • Klaviyo — email marketing and customer communications

  • Triple Whale — analytics and performance measurement

  • Logistics and Shipping Partners — including DHL, DPD, FedEx, and local postal services

  • Cookie Consent Providers — managing cookie preferences

  • Legal and Government Authorities — when required by law

International Data Transfers

Some service providers may process personal data outside the European Economic Area (EEA).

Where personal data is transferred internationally, we rely on appropriate safeguards, including:

  • Standard Contractual Clauses (SCCs)

  • European Commission adequacy decisions

  • Other legally approved transfer mechanisms

to ensure an equivalent level of data protection.

05. Marketing & Preferences

You will only receive marketing communications if you have explicitly opted in.

You may unsubscribe at any time by:

Opting out of marketing communications does not affect essential service emails relating to orders, returns, or account management.

06. Cookies & Analytics

We use cookies and similar technologies to operate our website, analyze performance, and improve user experience.

Essential Cookies

Required for website functionality, including:

  • Checkout

  • Shopping cart functionality

  • Security measures

These cookies cannot be disabled.

Analytics Cookies

Used to understand how visitors interact with the website and improve performance.

These cookies are only placed with your consent.

Marketing Cookies

Used to deliver personalized advertising and measure campaign effectiveness.

These cookies are only placed with your consent.

You may manage your cookie preferences at any time through our cookie banner or your browser settings.

07. Data Retention

We retain personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy or as required by applicable law.

  • Order and transaction data: retained for 7 years in accordance with applicable accounting and tax laws.

  • Account data: retained until you request deletion or after 3 years of inactivity.

  • Marketing data: retained until you unsubscribe or request deletion.

  • Cookie data: retained according to the lifespan of each cookie as specified in our cookie banner.

  • Customer service communications: retained for up to 3 years after the last interaction.

When retention is no longer required, personal information will be securely deleted or anonymized.

08. Security

Santorelli Milano implements appropriate technical and organizational security measures to protect your personal information, including:

  • SSL/TLS encryption for data transmitted through our website

  • Restricted access controls

  • Secure hosting infrastructure

  • Continuous monitoring and fraud prevention measures

While we take reasonable steps to protect your information, no online transmission or storage system can be guaranteed to be completely secure. You are responsible for maintaining the confidentiality of your account credentials.

09. Your Rights

If you reside in the European Economic Area (EEA) or the United Kingdom, you have the right to:

  • Access the personal information we hold about you

  • Correct inaccurate or incomplete information

  • Delete your personal information ("Right to be Forgotten")

  • Restrict or object to specific processing activities

  • Request data portability and receive your information in a structured, machine-readable format

  • Withdraw consent at any time for marketing communications or non-essential processing

To exercise any of these rights, please contact us at:

info@santorellimilano.com

We may request verification of your identity before processing your request. We will respond to valid requests within the timeframe required by applicable law.

Supervisory Authorities

If you believe your privacy rights have been violated, you may file a complaint with your local data protection authority.

For customers within the European Union, complaints may be submitted to the relevant supervisory authority in your country of residence.

10. Children's Data

Our Services are not intended for individuals under the age of 16.

We do not knowingly collect personal information from children under 16 years of age.

If you believe that a child has provided us with personal information, please contact us at info@santorellimilano.com and we will take appropriate steps to delete the information promptly.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our business practices, legal requirements, or operational processes.

Any updates will be published on this page together with a revised "Last Updated" date.

Where required by law, we will provide additional notice of significant changes.

12. Contact Information

Santorelli Milano

Website: www.santorellimilano.com

Email: info@santorellimilano.com

For any questions regarding this Privacy Policy or the processing of your personal information, please contact us using the details above.