top of page

Credit Card Security
& Data Protection Policy

www.solaceorigins.com (the "Site") is owned and operated by Solace Origins. Solace Origins is the data controller and can be contacted at:

support@solaceorigins.com

3/39 Link Crescent Coolum Beach 4573

Purpose

The purpose of this privacy policy (this "Privacy Policy") is to inform users of our Site of the following:

  1. The personal data we will collect;

  2. Use of collected data;

  3. Who has access to the data collected;

  4. The rights of Site users; and

  5. The Site's cookie policy.

This Privacy Policy applies in addition to the terms and conditions of our Site.

 

GDPR

For users in the European Union, we adhere to the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016, known as the General Data Protection Regulation (the "GDPR"). For users in the United Kingdom, we adhere to the GDPR as enshrined in the Data Protection Act 2018.

We have not appointed a Data Protection Officer as we do not fall within the categories of controllers and processors required to appoint a Data Protection Officer under Article 37 of the GDPR.

 

Consent

By using our Site users agree that they consent to: 1. The conditions set out in this Privacy Policy.

When the legal basis for us processing your personal data is that you have provided your consent to that processing, you may withdraw your consent at any time. If you withdraw your consent, it will not make processing which we completed before you withdrew your consent unlawful.

You can withdraw your consent by: Clicking the “unsubscribe” link in any marketing or promotional email.

Adjusting their cookie preferences via the cookie banner on our website.

Contacting us directly at support@solaceorigins.com to request the removal of their data or to stop receiving communications.

 

Legal Basis for Processing

We collect and process personal data about users in the EU only when we have a legal basis for doing so under Article 6 of the GDPR.

We rely on the following legal bases to collect and process the personal data of users in the EU:

  1. Users have provided their consent to the processing of their data for one or more specific purposes;

  2. Processing of user personal data is necessary for us or a third pary to pursue a legitimate interest. Our legitimate interest is not overriden by the interests or fundamenal rights and freedoms of users. Our legitimate interest(s) are: Fulfilling and managing customer orders.
    Providing customer support and responding to inquiries.
    Improving website performance, functionality, and user experience.
    Preventing fraud or misuse of our services.
    Sending limited marketing communications to existing customers (soft opt-in, where permitted)
    Understanding customer behavior through non-invasive analytics to improve our products
    and services.; and

  3. Processing of user personal data is necessary for us to take, at the request of a user, steps
    before entering a contract or for the performance of a contract to which a user is a party. If a user does not provide the the personal data necessary to perform a contract the consequences
    are as follows: Without an address, we can't process or ship an order. Without an email, we can’t send order confirmations or updates.
    Without consent for marketing, we won’t send promotional content (which is totally okay — it’s optional)..

 

Personal Data We Collect

We only collect data that helps us achieve the purpose set out in this Privacy Policy. We will not collect any additional data beyond the data listed below without notifying you first.

Data Collected Automatically
When you visit and use our Site, we may automatically collect and store the following information:

  1. IP address;

  2. Location;

  3. Hardware and software details;

  4. Clicked links; and

  5. Content viewed.

 

Data Collected in a Non-Automatic Way
We may also collect the following data when you perform certain functions on our Site:

  1. First and last name;

  2. Email address;

  3. Phone number;

  4. Address;

  5. Payment information; and

  6. Auto fill data.

 

This data may be collected using the following methods:

  1. Order Forms & Checkout Pages When users place an order, we collect name, address, contact details, and payment info via secure payment gateways (e.g., Wix Payments, Stripe, PayPal).;

  2. Contact Forms & Inquiries Users provide their name, email, and message details when reaching out for support or questions.;

  3. Newsletter or Email Sign-Ups Collected via opt-in forms for marketing and updates (only with user consent).;

  4. Cookies & Tracking Technologies (with consent) Used to collect analytics, behavior data, and device info automatically (e.g., page visits, time on site).; and

  5. User Accounts (if enabled) If users create an account, we collect login info and preferences to personalize their experience..

 

How We Use Personal Data

Data collected on our Site will only be used for the purposes specified in this Privacy Policy or indicated on the relevant pages of our Site. We will not use your data beyond what we disclose in this Privacy Policy.

The data we collect automatically is used for the following purposes:

  1. Improve website performance and usability (e.g., understanding which pages users visit most often);

  2. Enhance user experience (e.g., saving language or cart preferences with cookies);

  3. Monitor site security and detect potential threats or abuse;

  4. Analyze traffic and user behavior using tools like Google Analytics or Wix Analytics; and

  5. Support marketing efforts, such as tracking campaign effectiveness or retargeting (only with user consent).

 

The data we collect when the user performs certain functions may be used for the following purposes:

  1. To process and fulfill orders (e.g., shipping info, payment confirmation);

  2. To communicate with customers (e.g., order updates, customer service, responses to inquiries);

  3. To send marketing emails or newsletters (only with user consent);

  4. To improve our website and user experience through analytics and feedback;

  5. To detect and prevent fraud or abuse of our site and services; and

  6. To comply with legal or tax obligations.

Who We Share Personal Data With

Employees
We may disclose user data to any member of our organisation who reasonably needs access to user data to achieve the purposes set out in this Privacy Policy.

Third Parties
We may share user data with the following third parties:

  1. Wix Payments / Stripe / PayPal – for secure payment processing;

  2. Wix Analytics / Google Analytics – for website performance tracking;

  3. Wix Email Marketing or Mailchimp – for newsletters or promotional emails; and

  4. Shipping or fulfillment partners (if any) – for delivering orders.

We may share the following user data with third parties:

  1. Contact information (e.g., name, email, phone number);

  2. Shipping details (e.g., address, postcode);

  3. Payment details (processed securely by third-party processors); and

  4. Browsing or purchase behavior (for analytics and service improvement).

We may share user data with third parties for the following purposes:

  1. Processing customer payments securely via trusted providers like Wix Payments, Stripe, or PayPal;

  2. Fulfilling and delivering orders, using shipping partners or logistics platforms;

  3. Sending order confirmations, updates, or marketing emails through platforms like Wix Email

Marketing or Mailchimp (only if the user has given consent);

  1. Improving website performance and user experience using analytics tools like Wix Analytics

or Google Analytics; and

  1. Detecting and preventing fraud or abuse, ensuring the safety of your transactions and

account.

Third parties will not be able to access user data beyond what is reasonably necessary to achieve the given purpose.

Other Disclosures
We will not sell or share your data with other third parties, except in the following cases:

  1. If the law requires it;

  2. If it is required for any legal proceeding;

  3. To prove or protect our legal rights; and

  4. To buyers or potential buyers of this company in the event that we seek to sell the company.

 

If you follow hyperlinks from our Site to another Site, please note that we are not responsible for and have no control over their privacy policies and practices.

 

How Long We Store Personal Data

User data will be stored until the purpose the data was collected for has been achieved.

You will be notified if your data is kept for longer than this period.

 

How We Protect Your Personal Data

At Solace Origins, we take the protection of your personal data seriously and implement multiple safeguards to ensure it remains secure, confidential, and protected from unauthorised access or misuse.

SSL Encryption: Our website is secured with HTTPS encryption to protect all data transmitted between the user and our site.

  • Secure Payment Gateways: Payments are processed through trusted and PCI-compliant providers like Wix Payments, PayPal, or Stripe—we do not store your payment details.

  • Access Controls: Administrative access to user data is limited to authorised personnel only.

  • Wix Data Protection: As our website is hosted on Wix, we benefit from their built-in data security infrastructure, which includes encrypted storage, firewall protection, and regular security monitoring.

  • Routine Monitoring: We actively monitor our site for suspicious activity and take immediate action if any breach is suspected.

  • Privacy-First Practices: We only collect the data we absolutely need, store it securely, and retain it only for as long as necessary.

While we take all reasonable precautions to ensure that user data is secure and that users are protected, there always remains the risk of harm. The Internet as a whole can be insecure at times and therefore we are unable to guarantee the security of user data beyond what is reasonably practical.

 

International Data Transfers

We disclose user personal data to the following countries:

  1. Australia – where Solace Origins is based;

  2. United States – for services like payment processing, email marketing, and analytics;

  3. European Union – for services used within EU jurisdictions; and

  4. Israel – as our website is hosted and managed via Wix, which operates out of Israel.

 

When we transfer user personal data we will protect that data as described in this Privacy Policy and comply with applicable legal requirements for transferring personal data internationally.

If you are located in the United Kingdom or the European Union, we will only transfer your personal data if:

  1. The country your personal data is being transferred to has been deemed to have adequate data protection by the European Commission or, if you are in the United Kingdom, by the United Kingdom adequacy regulations; or

  2. We have implemented appropriate safeguards in respect of the transfer. For example, the recipient is a party to binding corporate rules, or we have entered into standard EU or United Kingdom data protection contractual clauses with the recipient..

 

Your Rights as a User

Under the GDPR, you have the following rights:

  1. Right to be informed;

  2. Right of access;

  3. Right to rectification;

  4. Right to erasure;

  5. Right to restrict processing;

  6. Right to data portability; and

  7. Right to object.

 

Children

The minimum age to use our website is 16 years of age. We do not knowingly collect or use personal data from children under 16 years of age. If we learn that we have collected personal data from a child under 16 years of age, the personal data will be deleted as soon as possible. If a child under 16 years of age has provided us with personal data their parent or guardian may contact our privacy officer.

How to Access, Modify, Delete, or Challenge the Data Collected

If you would like to know if we have collected your personal data, how we have used your personal data, if we have disclosed your personal data and to who we disclosed your personal data, if you would like your data to be deleted or modified in any way, or if you would like to exercise any of your other rights under the GDPR, please contact our privacy officer here:

Support Team Officer support@solaceorigins.com

3/39 Link Crscent Coolum Beach 4573

 

Do Not Track Notice

Do Not Track ("DNT") is a privacy preference that you can set in certain web browsers. We do not track the users of our Site over time and across third party websites and therefore do not respond to browser-initiated DNT signals. We are not responsible for and cannot guarantee how any third parties who interact with our Site and your data will respond to DNT signals.

How to Opt-Out of Data Collection, Use or Disclosure

In addition to the method(s) described in the How to Access, Modify, Delete, or Challenge the Data Collected section, we provide the following specific opt-out methods for the forms of collection, use, or disclosure of your personal data specified below:

  1. Users can opt out of receiving marketing and promotional communications (such as newsletters, product updates, or sales announcements). You can opt-out by clicking the "unsubscribe" link at the bottom of any email.

Adjusting their email preferences if available

Contacting us directly at support@solaceorigins.com to request removal from the marketing list.

Cookie Policy

A cookie is a small file, stored on a user's hard drive by a website. Its purpose is to collect data relating to the user's browsing habits. You can choose to be notified each time a cookie is transmitted. You can also choose to disable cookies entirely in your internet browser, but this may decrease the quality of your user experience.

We use the following types of cookies on our Site:

  1. Functional cookies
    Functional cookies are used to remember the selections you make on our Site so that your selections are saved for your next visits;

  2. Analytical cookies
    Analytical cookies allow us to improve the design and functionality of our Site by collecting data on how you access our Site, for example data on the content you access, how long you stay on our Site, etc;

  3. Targeting cookies
    Targeting cookies collect data on how you use the Site and your preferences. This allows us to personalise the information you see on our Site for you; and

  4. Third-Party Cookies
    Third-party cookies are created by a website other than ours. We may use third-party cookies

to achieve the following purposes:

  1. Track website performance and visitor behavior (e.g., Google Analytics or Wix Analytics);

  2. Enable secure payments (e.g., Stripe, PayPal);

  3. Support marketing and advertising efforts (e.g., Facebook Pixel, Instagram tracking); and

  4. Manage email campaigns (e.g., open rates and engagement from Mailchimp or Wix Email).

 

Additional Clauses

1. Your Data Protection Rights (EU/UK Residents)
If you are located in the European Union or United Kingdom, you have the following rights under the

 

2. General Data Protection Regulation (GDPR):

  • The right to access the personal data we hold about you The right to request correction or deletion of your data

  • The right to restrict or object to certain types of processing

  • The right to data portability

  • The right to withdraw consent at any time (where processing is based on consent) To exercise any of these rights, please contact us at support@solaceorigins.com.

3. Data Retention

  • We retain personal data only for as long as necessary to:

  • Fulfill orders

  • Provide customer service

  • Meet legal, accounting, or regulatory requirements

  • Marketing data is retained until you withdraw consent or unsubscribe. Once data is no longer required, it is securely deleted or anonymized.

4. International Data Transfers
Your data may be transferred to and processed in countries outside your jurisdiction, including Australia, the United States, and Israel. Where such transfers occur, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or working only with service providers that meet GDPR standards.

5. Changes to This Policy
We may occasionally update this Privacy Policy to reflect changes in law, technology, or our services. If material changes are made, we will post a clear notice on our website and, if applicable, notify you by email. Continued use of our site signifies your acceptance of the updated terms.

6. Contact Us
If you have any questions, concerns, or requests related to your personal data or this policy, please reach out:

Email: support@solaceorigins.com
Business Address: Unit 3 / 39 Link Crescent, Coolum Beach QLD 4573 We are here to support you and take your privacy seriously.

 

Modifications

This Privacy Policy may be amended from time to time in order to maintain compliance with the law and to reflect any changes to our data collection process. When we amend this Privacy Policy we will update the "Effective Date" at the top of this Privacy Policy. We recommend that our users periodically review our Privacy Policy to ensure that they are notified of any updates. If necessary, we may notify users by email of changes to this Privacy Policy.

 

Complaints

If you have any complaints about how we process your personal data, please contact us through the contact methods listed in the Contact Information section so that we can, where possible, resolve the issue. If you feel we have not addressed your concern in a satisfactory manner you may contact a supervisory authority. You also have the right to directly make a complaint to a supervisory authority. You can lodge a complaint with a supervisory authority by contacting the If you are loacted in the EU you can find your relevant authority at European Protection Data Board and If you're located in the UK, you may contact the: Information Commissioner’s Office (ICO).

 

Contact Information

If you have any questions, concerns or complaints, you can contact our privacy officer, Support Team Officer, at:

support@solaceorigins.com

3/39 Link Crscent Coolum Beach 4573

bottom of page