Gizlilik Politikası

We have implemented strict safety and confidentiality protocols to protect your data. Your privacy is our top priority, and we collect personal data only with your explicit consent. This Privacy Policy explains how and why we process your personal data on our Website and outlines your rights as a data subject.

We are committed to processing your personal data lawfully and for legitimate purposes. We prioritize your privacy and take measures to ensure the security of your data. Specifically, we handle your personal data in compliance with Regulation (EU) 2016/679, known as the General Data Protection Regulation (GDPR), which governs the protection of individuals' personal data and its free movement within the European Union. For more information, you can view the full text of the GDPR here.

1. Data Controller

The data controller of your personal data is Erysta Limited a company incorporated in Hong Kong under the number 76111914, and having its registered office at Unit 2A, 17/F, Glenealy Tower, Central, Hong Kong SAR.

Our contact details:

2. Who Does This Privacy Notice Apply To?

This privacy notice applies to individuals who access, browse, and use our Website. Its aim is to inform you how we collect and process your personal data through your use of the Website.

We receive and store any information you enter on our Website or provide to us in other ways, such as browsing our Website, registering an account, purchasing products, contacting us, or posting material. By doing so, you consent to our collection and use of this information for the specified purpose.

If we ask for your personal information for a secondary purpose, such as marketing, we will either ask you directly for your explicit consent or provide you with an opt-out option.

Your personal information will not be shared with third parties without your consent and only within the limits permitted by law.

You can always choose not to provide certain information, even though it might be necessary to make a purchase or use all Erysta services.

3. Types of Personal Data We Process

The information we gather from customers helps us personalize and continually improve your shopping experience at www.erysta.com. Here are the types of information we collect:

3.1. Information You Give Us

This includes personal details you provide when creating an account, browsing product pages, subscribing to newsletters, or making purchases. For example, this may include your name, email address, phone number, and payment information. We use this information to respond to your requests, personalize future shopping experiences, improve our services, and communicate with you. We handle personal data based on your implied or expressed consent, or as required by law.

3.2. Automatic Information

We use "cookies" and collect certain types of information when your web browser accesses www.erysta.com. This includes your IP address, browser type, operating system, and browsing activity. Cookies help us simplify the login process, ensure the security of registered users, facilitate online shopping, and analyze website traffic to enhance user experience.

3.3. Third-Party Data

We may obtain data from third-party sources, including social media platforms, to offer you personalized content and services. For instance, if you log in using a third-party service like Google or Discord, additional data such as your profile information may be collected. We do not share or sell this data without your explicit consent. If you use third-party services to access our Website, be aware that additional data may be stored and subject to their privacy practices.

4. Why We Collect Your Data

We collect your personal data to enhance your experience on our Website and to provide you with a range of services. Specifically, we use your data for the following purposes:

  • - Personalization: To tailor content and recommendations to your preferences and interests, ensuring a more relevant and engaging experience.
  • - Website Improvement: To analyze usage patterns and feedback to continually enhance the functionality and usability of our Website.
  • - Account Management: To manage your account, including registration, profile updates, and customer support.
  • - Purchase Processing: To handle transactions, process orders, and manage payments efficiently.
  • - Communication: To send you important updates, offers, and information related to our services, as well as to respond to your inquiries.

The collection and use of your data are based on the necessity to perform our contractual obligations with you, our legitimate interests, or your explicit consent, as applicable.

5. How long do we keep your data?

The duration for which we retain your personal data depends on various factors, including the type of data, the purpose for which it was collected, and legal or regulatory requirements. Here is a detailed overview of our data retention practices:

  • - Account-Related Data: We retain information related to your account for as long as your account is active. If you request deletion of your account, we will remove your personal data as per your request. However, if your account is registered but not verified within a week, we will delete the associated data to maintain our system's efficiency.
  • - Fraud Prevention, Detection, and Security: To prevent and address fraudulent activities, we may retain certain information even after account deletion. This helps us protect our platform and users from potential fraud. Residual copies of personal information might remain in our backup systems for a limited period as part of our security measures. Data related to fraud detection will be kept for as long as necessary, typically in line with the duration of the associated account. If an account is flagged for potential fraud, we may retain the data longer to prevent future fraudulent activities.
  • - Legal and Tax Obligations: We retain certain data to comply with legal, tax, and auditing requirements. This includes information necessary for legal reporting, compliance with tax laws, and meeting auditing obligations.
  • - Contact Data: If you contact us via email, live chat, or support tickets, we will keep the related contact information for as long as your account remains active. Once your account is closed, we may retain the contact data for a reasonable period for record-keeping and service improvement purposes.
  • - AML (Anti-Money Laundering) Data: Data collected for AML purposes will be retained as long as necessary to comply with relevant legal requirements and regulatory standards.
  • - Newsletter Subscriptions: We retain your contact information for newsletters as long as your account is active and you wish to receive these communications. You can opt in or out of receiving newsletters at any time through your account settings. If you choose to unsubscribe, we will stop sending newsletters and delete your email from our newsletter list.
  • - Handling Abuse Reports: Data related to reports of abuse or infringement of third-party rights is retained for the duration of the investigation or as long as necessary to address the issue reported. Once the investigation is complete, the data may be deleted unless required for legal reasons.
  • - Order History: We maintain a record of all sales transactions indefinitely for historical purposes. For each transaction, we retain only essential details: the country of the user, the IP address, and the email address. This information helps us with long-term analysis and record-keeping.

We ensure that all data retention practices comply with applicable laws and regulations. If you have any questions about our data retention policy or wish to request data deletion, please contact us at [email protected].

6. Your rights

Under data protection laws, you have several important rights regarding your personal data. Here is a summary of these rights:

  • - The Right to Access: You have the right to request access to the personal data we hold about you. This allows you to confirm whether your data is being processed and to receive a copy of your data.
  • - The Right to Rectification: If you believe that any information we hold about you is inaccurate or incomplete, you have the right to request that we correct or update it. You can also exercise this right by logging into your account and updating your information directly.
  • - The Right to Erasure: Also known as the "right to be forgotten," this allows you to request the deletion of your personal data when it is no longer necessary for the purposes for which it was collected, or if you withdraw your consent on which the processing is based.
  • - The Right to Restrict Processing: You can request that we limit the processing of your personal data in certain situations, such as when you contest the accuracy of the data, or if you have objected to its processing.
  • - The Right to Object to Processing: You have the right to object to the processing of your personal data if it is based on legitimate interests or for direct marketing purposes. In such cases, we must stop processing your data unless we have compelling legitimate grounds to continue.
  • - The Right to Data Portability: You can request to receive your personal data in a structured, commonly used, and machine-readable format. You also have the right to transfer this data to another data controller, if technically feasible.
  • - The Right to Complain to a Supervisory Authority: If you believe that we are not complying with data protection laws, you have the right to lodge a complaint with a relevant data protection supervisory authority. This is typically done in the country where you live or work.
  • - The Right to Withdraw Consent: If we are processing your personal data based on your consent, you can withdraw your consent at any time. Withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal.

If you would like to exercise any of these rights, or if you have any questions or concerns about how we process your personal data, please contact us at [email protected]. We will respond to your request as promptly as possible and in accordance with applicable data protection laws.

7. External Data Sources

We may use data obtained from external sources, including social media platforms, to provide you with personalized content and services. However, we do not share this data without your consent. If you use third-party services to log into or access our Website, additional data may be stored.

This data is used to enable or improve the functionality of:

  • - Log-in Experience (e.g. enable log in with Single Sign-On (SSO))
  • - Browsing Experience (e.g. Setting User Language and Prices in Local Currency)

If you use the "Single Sign-On" (SSO) option from services such as Google, Discord, or Steam, additional data will be stored, including:

  • - Profile picture
  • - Username
  • - External Account ID
  • - External Account Provider

8. Third-Party Services

We may use third-party providers, such as payment gateways and transaction processors, who will collect, use, and disclose your information only as necessary to perform the services they provide to us.

We use PayPal for payments and other services. When you use PayPal to make payments on our Website, PayPal may collect personal data you provide, such as payment and identifying information. PayPal uses this information to operate and improve its services, including for fraud detection, harm and loss prevention, authentication, and legal compliance. The processing of this information is subject to the PayPal Privacy Statement.

We recommend reviewing the privacy policies of these providers to understand how your personal information is managed during purchase transactions and other interactions. This will help you understand how your data is handled by these third parties.

We may share your personal data with the following types of recipients:

  • - Payment Operators: To process payments for your purchases or transactions with us.
  • - Service Providers: For technical, IT, and organizational services, including our email provider, Resend, which uses Amazon SES for the purpose of sending emails.
  • - Accounting, Legal, and Advisory Entities: For support related to accounting, legal matters, or advisory services.
  • - Social Media Platforms: If you use social media features available on our Website.
  • - Publishers: To fulfill your purchase orders (e.g. Games, DLC, etc.), we may share non-personally identifiable information such as your country, IP address, and a unique identifier generated by our system with the publishers of the content you purchased. In the case of gift cards, the publisher may request personal information such as your name, surname, address, and date of birth. These details will be requested during payment and will only be shared with your consent.

If you engage with a third-party provider, your information may be subject to the laws of the jurisdiction(s) where the provider operates or where its facilities are located.

9. Cookies

Cookies are small text files placed on your device when you visit a website. They store information about your preferences, settings, and activities on the website, helping to improve and personalize your browsing experience. Our website uses two main types of cookies:

  • - Persistent Cookies: These cookies remain on your device for a set period or until you delete them. They are used to remember your preferences and settings for future visits.
  • - Session Cookies: These are temporary cookies that are deleted once you log out, leave the website, or close your browser. They are used to maintain session information during your visit.

You can manage cookie preferences through your web browser settings. However, disabling cookies may affect some functionalities of www.erysta.com.

10. Cookies We Use

Cookies are essential for the optimal functioning of our Website and enhancing your browsing experience. We use the following types of cookies:

- Necessary cookies are crucial for the basic functionality of our Website and cannot be turned off in our systems. These cookies are set in response to actions you take, such as setting privacy preferences, logging in, or filling out forms. While you can configure your browser to block or alert you about these cookies, doing so may impact the functionality of certain parts of the Website.

- Analytical cookies help us understand how visitors interact with our Website by counting visits and tracking traffic sources. They allow us to measure and improve the performance of our Website, identifying which pages are popular and how users navigate through the site. The data collected by these cookies is aggregated and anonymous. Without these cookies, we will not have insights into your visits and how you use our Website.

- Preference cookies enable our Website to remember information that changes how it behaves or looks, such as your preferred region or language settings. These cookies help provide a more personalized browsing experience by retaining your preferences.

- Marketing cookies may be set through our Website by our advertising partners. These cookies are used to build a profile of your interests and show you relevant advertisements on other sites. They do not store personal information directly but rely on unique identifiers for your browser and internet device. If you choose not to allow these cookies, you may see less targeted advertising.

For more details on how to manage and control cookies, including those used for marketing and analytics, please visit the "Consent Settings" link in the footer of our Website. This will allow you to customize your cookie preferences according to your needs.

For further information on how cookies work and their purposes, please refer to our Privacy Policy.

11. Transfer of Data Outside the EU

Our website operates through a company headquartered in Hong Kong. The company responsible for your privacy is based in Hong Kong. The majority of our services, including our systems and databases, are based in the European Union (EU). This means that your personal data is primarily stored and processed within the EU.

However, some of our service providers and payment processors may be located outside the EU. In such cases, your data may be transferred to, and processed in, countries outside of the EU. This is necessary for the performance of certain services, such as processing payments and providing authentication via third-party platforms.

If you choose to connect to our Website using third-party services such as Google, Discord, or Steam, your data may be transferred to and processed by these third-party providers, which may be located outside of the EU. These providers have their own privacy policies governing how they handle your data.

The main third-party services and their addresses include:

  • - Google: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. For more information, visit Google's Privacy Policy.
  • - Discord: Discord Inc., 444 De Haro St, San Francisco, CA 94107, USA. For more information, visit Discord's Privacy Policy.
  • - Steam: Valve Corporation, 10400 NE 4th Street, Suite 1400, Bellevue, WA 98004, USA. For more information, visit Steam's Privacy Policy.
  • - Twitch: Twitch Interactive, Inc., 350 Bush Street, 2nd Floor, San Francisco, CA 94104, USA. For more information, visit Twitch's Privacy Policy.
  • - Facebook: Meta Platforms Inc., 1 Meta Way, Menlo Park, California, 94025, USA. For more information, visit Facebook's Privacy Policy
  • - X: X Corp., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA. For more information, visit Twitter's Privacy Policy.
  • - PayPal: PayPal, Inc., 2211 North First Street, San Jose, California 95131, USA. For more information, visit PayPal's Privacy Policy.

We ensure that any transfer of your data outside the EU is conducted in compliance with applicable data protection laws, including implementing appropriate safeguards to protect your personal data.

For more details on how your data is protected and handled, please refer to our Privacy Policy.

12. Children’s Personal Data

Our Platform and services are intended solely for individuals who are at least 18 years old or meet the minimum age requirement as defined by the laws of their respective country, which allows them to assume responsibility for contractual obligations and have full legal capacity.

We do not knowingly collect or process personal data from individuals under the age of 18. If we become aware that we have inadvertently collected personal data from a person under this age without the necessary consent from a parent or legal guardian, we will promptly delete such data upon verification.

If you believe that we may have collected personal data from a minor, please contact us at [email protected], and we will take the necessary steps to address the issue.

13. Links

Our Website may contain links to third-party websites, plug-ins, and applications. Clicking on these links or enabling these connections may allow third parties to collect or share data about you. We do not control these third-party sites and are not responsible for their privacy practices or terms and conditions.

When you leave our Website or are redirected to a third-party site or application, we encourage you to review their Privacy Policy and Terms & Conditions, as our policies no longer apply.

14. Changes to this Privacy Policy

This Privacy Policy were last amended on October 10, 2024 and is now effective.

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on our Website and/or sending you a notification. Your continued use of our Website after any changes to this Privacy Policy will constitute your acceptance of the updated Privacy Policy.