Privacy policy

How Royallium collects, uses, and protects your personal data (GDPR).

1. Data controller

Royallium, 5 Rue Michel Carré, 95100 Argenteuil, France — contact@royallium.com — is the controller of data collected on royallium.com and during your interactions with our customer service team.

For privacy enquiries, use the same email address with the subject line "Privacy request" so your message is routed promptly.

2. Data collected

We collect data necessary to process orders: identity, contact details, delivery address, purchase history, and support communications. During browsing, technical data (IP address, browser, pages visited) may be recorded through cookies subject to your consent.

We do not collect more data than needed for the stated purposes. Optional fields on forms are clearly marked.

3. Purposes

Your data is used to fulfil orders, arrange delivery, respond to enquiries, prevent fraud, improve the site, and — with your consent — send newsletters. We do not sell your data to third parties.

Aggregated, anonymised statistics may be used to understand site performance without identifying individuals.

4. Legal basis

Processing relies on contract performance (orders), legitimate interest (security, service improvement), and your consent (non-essential cookies, marketing). You may withdraw consent at any time without affecting the lawfulness of prior processing.

Where legal obligations apply — for example tax record-keeping — we process data as required by law.

5. Recipients

Some data is shared with strictly necessary processors: hosting provider, carriers, payment service, email tool. They are contractually bound to protect it and not use it for other purposes.

Transfers outside the European Economic Area, if any, rely on appropriate safeguards such as standard contractual clauses.

6. Retention

Order data is kept for accounting and legal obligations (generally 10 years for commercial records in France). Inactive accounts may be anonymised after 3 years without a purchase, unless you object.

Marketing consent records are retained to demonstrate compliance for the applicable limitation period.

7. Your rights

You have the right of access, rectification, erasure, restriction, objection, and portability. Exercise them at contact@royallium.com; we respond within one month. You may lodge a complaint with the CNIL (cnil.fr) or your local supervisory authority.

We may request proof of identity before fulfilling sensitive requests to protect your account from unauthorised access.

8. Cookies

Our cookie banner lets you accept or refuse non-essential trackers. Technical cookies essential to the cart and session remain active for the site to function.

You can change your preferences at any time through the cookie settings link in the site footer.

9. Security

We implement appropriate technical and organisational measures: encrypted connections (HTTPS), restricted data access, regular backups. No internet transmission is however guaranteed 100% secure.

If a breach likely to affect your rights is detected, we will notify you and the relevant authority as required by law.

10. Changes

This policy may be updated; the last revision date appears at the bottom of the page. Material changes will be highlighted by a notice on the site.

Continued use of the site after an update constitutes acceptance of the revised policy where permitted by law.