Loading
Loading
[TODO: review with counsel before launch]
Legal
This page describes what we collect, why, and what we throw away on purpose. It is a working draft prepared internally and has not been reviewed by an attorney.
At the access gate. Your name, your email address, and your date of birth. The name and date of birth are used in memory to run the age check and are not written to our database. What we keep is a one-way hash of your email address, whether the check passed, the fact that you acknowledged the research-use restriction, a hashed form of your IP address, and the time.
At checkout. Your email address, shipping name and address, the items ordered, and the amounts charged. We need these to fulfil and support the order.
When you sign in. If you sign in with Google, we receive the basics your Google account exposes: your name, your email address, and your profile image. We never receive your Google password. There is no password on this site to lose.
Automatically. Standard server request data such as IP address, timestamp, and user agent, used to keep the site running and to rate-limit abuse.
We do not store your date of birth. It is used to calculate an age, the age is compared against the minimum of 18, and the date is discarded. Only the pass-or-fail result survives. We do not store the name you enter at the gate, and we do not store your gate email address in readable form — only its SHA-256 hash, which lets us apply the result consistently without holding the address itself.
We do not store full payment card numbers. Those go directly to our payment processor; we see only a token, the last four digits, and the result.
The reason for all of this is simple: data we never hold cannot be leaked, subpoenaed, or misused.
We use a small number of first-party cookies and no advertising cookies. The access cookie records that you completed the gate; it is signed so that it cannot be forged, is readable only by the server, and expires after 30 days. A session cookie keeps you signed in. A cart cookie keeps a guest basket attached to your browser. Blocking these will prevent the site from working.
Stripe and PayPal process payments and receive the details needed to take one. Google provides sign-in if you choose it. Shipping carriers receive the delivery address. Each handles your data under its own policy. We do not sell personal information, and we do not share it for advertising.
Order records are kept for as long as tax and accounting rules require — generally seven years. Gate verification records are kept for two years, because the age result has to remain enforceable. Account data is kept until you ask us to delete it. Server logs are kept for 90 days.
You can ask for a copy of what we hold about you, ask us to correct it, or ask us to delete it. Write to privacy@lonestarpeptide.co from the address on the account and we will respond within 30 days.
Two limits are worth stating plainly. We cannot delete order records we are legally required to retain. And deleting an account does not erase the age-check result attached to your hashed email, because removing it would let a failed check be retried — that record is kept for its full retention period regardless.
Traffic is encrypted in transit. Access to production data is limited to people who need it. No system is perfectly secure, which is the practical reason we hold as little as we do.
This site is not directed to anyone under 18 and we do not knowingly collect information from them. If you believe a minor has given us information, write to the address above and we will remove it.
Questions about this policy: privacy@lonestarpeptide.co