Privacy policy

Last updated: January 4, 2026

Controller & Contact

Scope

This Policy applies to personal information collected through norxclinic.com, customer support, marketing, and related business operations. It does not create contractual rights beyond those in your purchase agreement.

Information We Collect

  • Identity & contact: name, email, phone, shipping and billing addresses.
  • Order & transaction: order history, products purchased, order number, transaction references.
  • Payment: payment method identifiers and transaction references (we do not store full card PANs; crypto transaction IDs where applicable). Payments are processed by third‑party gateways.
  • Device & technical: IP address, browser type, device identifiers, operating system, referrer URL, pages visited, clickstream and performance data.
  • Shipping & fulfillment: carrier, tracking number, customs information, delivery status.
  • Customer service: support tickets, emails, photos/videos you submit for claims.
  • Marketing & preferences: newsletter subscription, communication preferences.
  • Health‑related information: only if you provide it voluntarily (e.g., product usage notes); treated as sensitive and processed only as necessary for order fulfillment or with your consent.

We do not knowingly collect personal information from persons under 18. If we learn we have collected such information without parental consent, we will delete it.

How We Collect Information

  • Directly from you when you place orders, create accounts, subscribe, or contact support.
  • Automatically via cookies and similar technologies.
  • From third parties such as payment processors, carriers, analytics providers, and fraud‑prevention services.

We process personal information to:

  • Fulfill orders and ship products (order processing, customs declarations).
  • Process payments and prevent fraud.
  • Provide customer support and resolve disputes.
  • Send transactional notifications (order confirmations, shipping notices).
  • Send marketing communications where you’ve consented or otherwise permitted.
  • Improve the Service, perform analytics, and detect abuse.
  • Comply with legal obligations (taxation, customs, law enforcement).

Sharing & Disclosures

We share data only as needed with:

  • Payment processors and crypto gateway providers.
  • Fulfillment, logistics, and customs partners.
  • Hosting, email, CRM, and customer support providers.
  • Fraud detection and risk management services.
  • Analytics and marketing platforms.
  • Legal advisors and authorities when required by law.

We require service providers to implement appropriate safeguards and process data only on our instructions.

Use of AI / Third‑Party Models

We may use third‑party AI services for limited internal tasks (e.g., automated support summaries). Prompts or content sent to such services are stripped of identifiable metadata before transmission where feasible. We do not transmit identifiable payment data. Content you submit that includes health or other sensitive details may be processed as part of the support flow; we take steps to minimize exposure.

Cookies & Tracking

We use cookies for essential site functions, analytics, performance, and marketing:

  • Essential cookies: required for checkout and security.
  • Performance/analytics cookies: measure usage and improve the site.
  • Functional cookies: remember preferences.
  • Advertising/targeting cookies: used for personalized ads and retargeting.

Manage cookie preferences via the cookie banner and your browser settings. Disabling non‑essential cookies may affect functionality.

International Transfers

Your information may be transferred to, stored, and processed in countries outside your jurisdiction (including the U.S.). We implement contractual and technical safeguards as appropriate.

Data Retention & Deletion

  • We delete customer personal data related to completed orders within 1 year from order completion, except where a longer retention period is required by law (for example, tax or customs records).
  • Specific retention rules:
    • Order/transaction records: retained as required by applicable law; otherwise deleted within 1 year of order completion.
    • Account data and profiles: deleted within 1 year after order completion or last activity unless you opt to retain your account.
    • Support records and evidence (photos/videos): retained up to 1 year after final resolution of the claim.
    • Marketing consents: deleted within 1 year after order completion unless you remain subscribed or consent separately.
    • Anonymized/aggregated data: retained indefinitely and is not subject to deletion as it cannot identify individuals.
  • Deletion process: personal identifiers are removed from active systems; backups are purged in accordance with our backup retention cycle. Residual encrypted copies may persist in backups for a limited time but will not be used for active processing.

Your Rights & Choices

Depending on your jurisdiction, you may have rights to:

  • Access, correct, or delete personal information.
  • Object to or restrict certain processing.
  • Opt out of marketing communications.
  • Withdraw consent where applicable.

To exercise rights or update preferences, contact [email protected]. We may require identity verification. For U.S. residents, certain state laws (e.g., CCPA/CPRA) may provide additional rights; we will respond consistent with applicable law.

Security

We use commercially reasonable technical and organizational measures (encryption in transit, access controls, secure hosting) to protect personal information. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.

Refunds, Returns & Evidence

When you submit photos, videos, or other evidence for damaged, missing, or incorrect items, we process and retain that content to investigate claims per the retention rules above. Cryptocurrency refunds, when applicable, may be issued in fiat at our discretion and subject to processing times.

Third‑Party Sites

Our Service may link to third‑party sites. We are not responsible for their privacy practices. Review third‑party privacy policies before providing personal information.

Children’s Privacy

Our products and services are intended for adults. We do not knowingly collect information from persons under 18. If you believe we have collected a child’s data, contact us to request deletion.

Changes to This Policy

We may update this Policy. Material changes will be posted with a new “Last updated” date. Continued use after changes constitutes acceptance.

Contact & Complaints

For questions, requests, or complaints contact: [email protected].

If you are a resident of a jurisdiction with a data protection authority and remain unsatisfied after contacting us, you may lodge a complaint with the relevant authority.