Women's fashion store Hamburg – Ethical European Handmade Clothing
Women’s Fashion Store Hamburg – Privacy Policy & Cookies
Privacy Policy & Cookies
Last updated: August 2026
1. Controller
The controller responsible for processing personal data on this website is:
DANLE DING / Danle Ding
Lübecker Straße 102
22087 Hamburg, Germany
Email: info@danles-lab.com
Phone: +49 174 5674880
2. Personal Data We Process
Depending on how you use our website and services, we may process:
• Contact and account details, such as your name, email address, telephone number and postal address.
• Order and contract data, such as products ordered, delivery details, returns and customer-service communications.
• Payment transaction information. Payments are processed by the payment provider selected at checkout; we do not store full payment-card details.
• Technical and usage data, such as IP address, browser, device, access time, visited pages and log data.
• Newsletter, marketing and consent information, where you have chosen to subscribe or consent.
• Cookie and preference information.
3. Purposes and Legal Bases
We process personal data:
• To process orders, payments, deliveries, returns and customer enquiries (Article 6(1)(b) GDPR).
• To comply with tax, accounting and other legal obligations (Article 6(1)(c) GDPR).
• To operate, secure and improve our website and services, prevent misuse and protect our legal interests (Article 6(1)(f) GDPR).
• For newsletters, non-essential cookies and marketing only where you have given consent (Article 6(1)(a) GDPR). You may withdraw consent at any time with effect for the future.
4. Recipients and Service Providers
Where necessary, personal data may be shared with service providers used to operate our business, including Wix as our website and e-commerce infrastructure provider, payment providers selected at checkout, shipping and logistics providers, and IT, email, newsletter or analytics providers where used. Data may also be disclosed to public authorities where required by law.
Service providers may process data only as necessary for the relevant service and in accordance with applicable data-protection requirements.
5. International Data Transfers
If personal data is transferred outside the European Economic Area, we use an applicable legal safeguard, such as an adequacy decision by the European Commission, Standard Contractual Clauses or another legally recognised transfer mechanism.
6. Retention
We keep personal data only for as long as necessary for the purpose for which it was collected and as required by contractual, tax, accounting or other legal retention periods. Data based solely on consent is deleted or no longer used for that purpose after consent is withdrawn, unless another legal basis or retention obligation applies.
7. Cookies and Consent
Our website uses essential cookies required for functions such as security, navigation, shopping-cart and checkout services. Non-essential analytics or marketing cookies are used only after you have given consent, where consent is legally required.
You can change or withdraw your cookie choices at any time through the cookie settings or consent banner available on the website. You may also manage cookies in your browser, although disabling essential cookies may affect website functions.
8. Your Rights
Subject to the conditions of the GDPR, you may request access, rectification, erasure, restriction of processing and data portability. You may object to processing based on legitimate interests and withdraw consent at any time with effect for the future.
To exercise your rights, contact info@danles-lab.com.
You also have the right to lodge a complaint with a data-protection supervisory authority. The competent authority in Hamburg is the Hamburg Commissioner for Data Protection and Freedom of Information (Hamburgische Beauftragte für Datenschutz und Informationsfreiheit): https://datenschutz-hamburg.de
9. Security
We use appropriate technical and organisational measures to protect personal data against accidental or unlawful loss, alteration, disclosure or access. No internet transmission or storage system can be guaranteed to be completely secure.
10. Changes to This Policy
We may update this policy when our services, legal requirements or data-processing practices change. The current version and update date will be shown on this page.