At Aurealis, we respect your privacy and are committed to protecting your personal data. This Privacy Policy explains what data we collect, why we collect it, how we use it, and your rights under the General Data Protection Regulation (GDPR) and Romanian data protection law. This policy applies to all visitors and customers of aurealisspirituality.com .Please read these Terms and Conditions carefully before purchasing or using any products or content offered through the Aurealis website (the "www.aurealisspirituality.com"). By accessing the Website or completing a purchase, you agree to be bound by these Terms.
1. About Us
Aurealis is a spiritual knowledge brand offering digital products including workbooks and guided meditations. The Website is owned and operated by , Marux Design Studio SRL, a company registered in Romania under registration number 45081951 , you can reach us at: aurealis.spirituality@gmail.com.
2. What Data We Collect
2.1 Data you give us directly
When you make a purchase: your name, email address, and billing details (processed securely by Stripe, we never see or store your full card details).When you sign up to our email list or download a free resource: your name and email address.When you contact us: your name, email address, and the content of your message.
2.2 Data collected automatically
When you browse the Website, we collect standard technical data including your IP address, browser type, device type, pages visited, and time spent on the site. This is collected through Google Analytics and Webflow's built-in analytics.
3. Why We Collect It & Legal Basis
We only collect data we actually need. Here is what we use it for and our legal basis under GDPR:
Processing your purchase: to fulfil your order and send you your digital product. Legal basis: Contract performance (Art. 6(1)(b) GDPR).
Sending you emails you signed up for: Lnewsletters, new product announcements, free resources. Legal basis: Your consent (Art. 6(1)(a) GDPR). You can unsubscribe at any time via the link in every email.
Improving the Website: understanding how visitors use the site so we can make it better. Legal basis: Legitimate interests (Art. 6(1)(f) GDPR).
Legal compliance: keeping purchase records as required by Romanian tax and accounting law. Legal basis: Legal obligation (Art. 6(1)(c) GDPR).
4. Third Parties We Share Data With
We do not sell your data. We only share it with the following trusted third-party services that help us operate:
Stripe, Inc.- payment processing. Your payment data is handled directly by Stripe under their own privacy policy (stripe.com/privacy). Stripe is certified under the EU-US Data Privacy Framework.
Mailchimp (Intuit Inc.)- email marketing. Your name and email are stored in Mailchimp when you subscribe to our list. Mailchimp is certified under the EU-US Data Privacy Framework. You can view their privacy policy at mailchimp.com/legal/privacy.
Google Analytics (Google LLC)- website analytics. Google collects anonymised browsing data to help us understand site traffic. You can opt out via Google's opt-out browser add-on. Google is certified under the EU-US Data Privacy Framework. See policies.google.com/privacy.
Webflow, Inc.- website hosting. Our Website is hosted on Webflow's infrastructure. See webflow.com/legal/privacy for their policy.
All third parties listed above are either based in the EU or operate under approved data transfer mechanisms (EU-US Data Privacy Framework or Standard Contractual Clauses), ensuring your data is protected to EU standards.
5. Cookies
The Website uses cookies- small text files stored on your device- for the following purposes:
Essential cookies: required for the Website to function (e.g. remembering your session).Analytics cookies: Google Analytics uses cookies to collect anonymised data about how visitors use the site.
You can control cookies through your browser settings at any time. Disabling analytics cookies will not affect your ability to use the Website or make purchases.
6. How Long We Keep Your Data
Purchase records: 10 years, as required by Romanian accounting and tax law.Email subscribers: until you unsubscribe, after which your data is deleted from Mailchimp within 30 days.Analytics data: up to 26 months as per Google Analytics default settings.Contact enquiries: up to 2 years from the date of last contact
7. Your Rights Under GDPR
As an EU resident, you have the following rights regarding your personal data:
Right of access — you can request a copy of the personal data we hold about you.
Right to rectification — you can ask us to correct inaccurate data.
Right to erasure — you can ask us to delete your data, subject to legal retention obligations.
Right to restrict processing — you can ask us to limit how we use your data.
Right to data portability — you can request your data in a machine-readable format.
Right to object — you can object to processing based on legitimate interests or for direct marketing.
Right to withdraw consent — where processing is based on consent (e.g. email marketing), you can withdraw it at any time without affecting prior processing.
To exercise any of these rights, contact us at aurealis.spirituality@gmail.com. We will respond within 30 days.
You also have the right to lodge a complaint with Romania's data protection authority: Autoritatea Nationala de Supraveghere a Prelucrarii Datelor cu Caracter Personal (ANSPDCP) at anspdcp.ro.
8. Data Security
We take appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse. Payments are encrypted via Stripe's secure infrastructure. We do not store payment card data on our servers.
9. Children's Privacy
Our Website and products are not directed at children under the age of 16. We do not knowingly collect personal data from anyone under 16. If you believe a child has provided us with their data, please contact us and we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with a revised date. We encourage you to review it periodically.
11. Contact
For any privacy-related questions or to exercise your rights, please contact us:
Email: aurealis.spirituality@gmail.com
Website: aurealisspirituality.com
Company: MARUX DESIGN STUDIO SRL registered in Romania