Privacy policy

Last Updated: March 21, 2026

At Luca & Leni (www.lucaandleni.com), we are committed to protecting the privacy and security of our customers. This Privacy Policy describes how we collect, use, and disclose your personal information when you visit, use our services, or make a purchase from our store. Our practices are governed by applicable United States federal and state privacy laws.

1. Personal Information We Collect

To provide a curated shopping experience, we collect the following categories of information:

  • Contact Information: Name, shipping address, billing address, and email address.

  • Financial Information: Payment details processed securely via PCI-compliant partners (e.g., Shopify Payments). We do not store your full credit card numbers on our servers.

  • Order History: Products viewed, items in your cart, purchase history, and return/exchange data.

  • Technical Data: IP address, device type, browser information, and usage data collected automatically via cookies to improve your shopping experience.

2. How We Use Your Information

We use your data to provide a seamless and secure service:

  • Order Fulfillment: To process payments, arrange shipping (DDP - Delivered Duty Paid), and manage returns or exchanges.

  • Marketing & Advertising: To send promotional offers (only with your consent) and show you relevant advertisements for our products via Google Ads.

  • Security & Fraud Prevention: To verify transactions, protect our customers from fraudulent activity, and maintain a secure shopping environment.

  • Customer Support: To respond to your inquiries and maintain our business relationship with you.

3. International Data Transfers

Luca & Leni is operated internationally. As our administrative headquarters is located in Canada, your personal information will be transferred to, stored, and processed in Canada and the United States (via Shopify). We ensure that all international transfers comply with recognized data protection standards to keep your information secure.

4. Disclosure to Third Parties

We do not sell your personal information. We share data only with trusted service providers necessary for our operations:

  • Shopify: Our e-commerce platform provider.

  • Shipping Partners: To deliver your orders directly to your door in the United States.

  • Marketing Partners: To provide personalized advertising and analytics (e.g., Google Analytics).

5. Your Rights (U.S. State Privacy Rights)

Depending on where you reside in the United States (including California (CCPA/CPRA), Virginia (VCDPA), or Colorado (CPA)), you may have specific rights regarding your personal information, including:

  • Right to Access: Request a copy of the personal information we hold about you.

  • Right to Deletion: Request that we delete your personal data.

  • Right to Correction: Request that we update or correct inaccurate information.

  • Right to Opt-Out: Request that we do not "sell" or "share" your personal information for targeted advertising.

To exercise these rights, please contact us at info@lucaandleni.com.

6. Security & Retention

We use industry-standard security measures, including SSL encryption, to protect your data. We retain your personal information only as long as necessary to fulfill your orders, comply with legal obligations (such as U.S. tax laws), or resolve disputes.

7. Children's Privacy

Our services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children.

8. Contact Information

For questions about our privacy practices or to exercise your rights:

  • Store Name: Luca & Leni

  • Website: www.lucaandleni.com

  • Email: info@lucaandleni.com

  • Administrative Address (Non-Return Address): 2210 Bank Street 1034 Ottawa, ON K1V 1J5 Canada