Privacy Policy

Effective Date: 02.01.2026

Introduction

Welcome to Entertainment products Noor Karim (“we”, “our”, or “us”). Your privacy is important to us. This Privacy Policy explains how we collect, use, and protect your personal information when you visit our website or purchase our digital tarot-style personality reports (one-time purchase, no login required). We are committed to complying with the EU General Data Protection Regulation (GDPR) and applicable U.S. privacy laws (such as the California Consumer Privacy Act). This policy describes what information we collect, why we use it, and your rights regarding your data.

Data Controller

Entertainment products Noor Karim (Sternallee 62, 68723 Schwetzingen, Germany) is the Data Controller for this website. This means we determine how and why your personal data is processed. If you have any questions about this Privacy Policy or our data practices, you can contact us at the address above or via email (see “Contact Information” below).

What Personal Data We Collect

We only collect the personal information necessary to deliver our products and operate our site. Specifically: - Email address: You provide this at checkout so we can send your digital report and purchase receipt. - Payment data: We do not collect or store your credit card or bank details. When you make a payment (PayPal, credit card via Stripe, or SEPA bank transfer), that information is handled securely by the payment processor. We never see or keep your full payment details. We may receive confirmation of payment (for example, transaction ID, payer name, email) so we know the order is complete. - Analytics data: We use Google Analytics to understand site usage. This only collects non-identifiable technical data (such as pages visited, browser type, device, and an anonymized IP address) to improve our website. Google Analytics 4 does not log or store your full IP address; any EU-based IP is anonymized before processing. We do not collect personal data through analytics and we cannot identify you from this data. - Cookies and tracking: We do not use advertising, marketing, or social-media tracking cookies. The only cookies our site uses are from Google Analytics for anonymous usage statistics. You can disable cookies in your browser at any time; this will not affect your ability to shop or use our site (but it will prevent anonymous analytics data from being collected).

We do not require you to create an account or log in, and we do not collect any additional personal information (such as your name or postal address) unless you provide it voluntarily in a message or feedback.

How and Why We Use Your Data

We use your personal data only for the purposes described below:

- Order processing and delivery: We use your email and payment details to process your

purchase and deliver the digital report to you. This is necessary to fulfill the contract for the

product you bought. We may also send you a confirmation email or receipt.

- Customer service: If you contact us with questions or issues, we will use your information to

respond and assist you.

- Website analytics and improvement: We analyze how visitors use our site to improve

performance and usability. The data collected is aggregated and does not identify you

personally. These analytics are based on our legitimate interest in understanding and improving

our website.

- Legal compliance and fraud prevention: We keep necessary information for accounting and

tax purposes, as required by law (for example, retaining basic order records for bookkeeping).

We also use data internally to prevent and detect fraud or abuse of our services.

We do not use your email for marketing or advertising unless you have explicitly agreed (for

example, to join a newsletter, which we currently do not offer). We never sell, rent, or share

your personal information with third parties for their own marketing. Any sharing of data is

limited to what is necessary to provide the service (such as passing information to our payment

providers to complete a transaction).

Payment Processing

We accept payments via PayPal, credit cards (through secure payment gateways like Stripe),

and SEPA bank transfer. During checkout, your payment details are securely collected by the

payment processor you choose:

- PayPal: If you use PayPal, you may log in or pay by credit/debit card. PayPal handles your

financial information (card number or bank details) under strict PCI compliance. Entertainment

products Noor Karim only receives notification that the payment was completed.

- Credit Card / Stripe: If paying by card, we use a secure payment gateway (such as Stripe). This

gateway collects your card information on its secure servers. We do not see or store your full

card number, CVV, or similar sensitive details.

- SEPA Bank Transfer: For direct bank transfers, your payment information goes to the banking

network; we do not collect or keep your IBAN or bank credentials.

After payment, we receive limited details (like payment confirmation and the email you

provided) so we can finalize your order. Each payment provider has its own privacy policy and is

responsible for protecting your payment data. They also use standard safeguards for

international data transfers (for example, PayPal employs EU-approved Binding Corporate Rules

and Stripe is certified under the EU-US Data Privacy Framework).

Analytics

We use Google Analytics (specifically Analytics 4) to monitor website usage and traffic patterns.

Google Analytics collects data such as which pages are visited, how long users stay, and

device/browser information. Importantly, Analytics 4 does not log or store your full IP address;

any IP address is anonymized on EU-based servers before it is processed. We do not use Google Analytics to track personal profiles or for advertising; the data is used only to improve our site’s content and user experience.

No personal information from Google Analytics is shared with us beyond aggregate reports. You can opt out of Google Analytics by using browser privacy tools or the Google Analytics Opt-out extension.

No advertising or marketing tracking: We do not use any advertising cookies, remarketing pixels, or social media plugins on this site. You will not see targeted ads from us based on your browsing here.

Data Retention

We retain your personal data only as long as necessary for the purposes described: - Order information: We keep a record of your purchase (including your email and order details) for as long as needed to comply with financial record-keeping laws (for example, accounting/tax regulations in Germany) and to fulfill warranty or support obligations. Once retention obligations expire (typically up to 10 years for tax purposes in Germany), we securely delete or anonymize this data. - Email: Your email address is kept so long as it is needed to deliver the product and any updates or support you request. We will remove it when it is no longer required. - Analytics: Google Analytics data is kept in aggregate form only. No personal identifiers are stored. Google provides controls on retention periods; we limit data retention to the minimum needed for analysis. - Cookies: Analytics cookies used by Google expire after a set period (usually 2 years) but no personal data is tied to them.

Once your data is no longer needed, we securely erase or irreversibly anonymize it. Please note that payment processors will maintain their own records of transactions as required by law, but those records are not accessible to us.

Your Rights

Depending on where you live, you have certain rights regarding your personal data:

• Under EU GDPR (for EU/EEA residents): You have the right to know what personal data we hold about you and why, and to request access to it. You can ask us to correct any inaccurate or incomplete data, or to delete your data (when it is no longer needed for legal or business purposes). You can request that we restrict or stop processing your data in certain situations, or that we transfer your data to another controller (“data portability”) if technically feasible. You also have the right to object to processing based on our legitimate interests (for example, objecting to analytics processing). If you ever gave consent for processing, you can withdraw it at any time. Finally, you have the right to lodge a complaint with a data protection authority if you believe your rights have been violated.

• Under California/US privacy laws (for California residents): You have similar rights under the CCPA/CPRA. You have the right to know what categories of personal information we have collected about you and how it is used or shared. You can request deletion of your personal information (subject to certain exceptions). You also have the right to opt out of the sale of your personal information; please note that we do not sell personal data. You must be informed of these rights and not be discriminated against for exercising them.

To exercise any of these rights, please contact us (see “Contact Information” below). We will respond to your request in accordance with the applicable law (typically within one month). We may require proof of your identity before granting requests (for example, matching the email you used). If you have any questions about your rights, we will happily explain them in plain language.

Data Security

We take data security seriously. We implement appropriate technical and organizational measures to protect your personal data. For example, our website uses HTTPS/SSL encryption to secure data in transit. Access to your data is restricted to authorized personnel who need it to perform their duties. We regularly review our security practices and only work with reputable third-party service providers (who also follow industry-standard security controls).

Despite these measures, please understand that no method of data transmission or storage is 100% secure. We cannot guarantee absolute security, but we continuously strive to protect your information from unauthorized access, disclosure, or alteration.

International Data Transfers

Our servers and systems are located in the European Union (Germany). However, some of our third-party service providers operate or store data outside the EU. When your personal data is transferred outside the EU/EEA, we ensure it is protected by suitable safeguards: - Google Analytics: Google processes data globally but is certified under the EU-US and Swiss-US Data Privacy Frameworks. This means Google commits to handle EU data in accordance with EU standards even when transferred to the U.S. or other countries. - Stripe (Credit Card Processor): Stripe, Inc. is self-certified under the EU-US Data Privacy Framework. They also use Standard Contractual Clauses for any EU data transfers not covered by the framework. - PayPal: PayPal uses EU-approved Binding Corporate Rules (BCR) and, where needed, EU Standard Contractual Clauses for international transfers. These are legal mechanisms approved by EU authorities to ensure your data stays protected. - Other Services: Any additional third-party service we might use (e.g. email service providers) will also be reviewed to ensure they provide adequate protection (for example, they may be in countries with an adequacy decision or use contractual safeguards).

In all cases, we require our partners to maintain a level of data protection equivalent to that required by EU law. You can ask us for more information about the safeguards in place for any specific transfer.

Contact Information

If you have any questions, concerns, or requests regarding your personal data or this Privacy Policy, please contact us:

Entertainment products Noor Karim Data Protection Contact Sternallee 62, 68723 Schwetzingen, Germany Email: noor.karim@gmx.de (or use our website’s contact form)

We will do our best to address your inquiries promptly and in accordance with applicable law. If necessary, you may also contact our local data protection authority in Germany.

Updates to This Policy

We may update this Privacy Policy from time to time (for example, to reflect changes in the law or our services). The “Effective Date” at the top will indicate when it was last revised. If we make material changes, we will notify you by posting the revised policy on this page and updating the date. We encourage you to review this Privacy Policy periodically to stay informed about how we protect your data.

Thank you for trusting Entertainment products Noor Karim with your personal information.