RootKind Privacy Policy
Effective date: August 31, 2025
Doing business as: RootKind (“RootKind,” “RookKindBeauty" we,” “us,” “our”)
Legal entity: RootKind Beauty DBA
Contact: info@rootkind.com
We respect your privacy. This policy explains what we collect, how we use it, and the choices you have.
1) What we collect
We collect information in three ways: you provide it, it’s collected automatically, or we receive it from partners.
Information you provide
- Identifiers & contact: name, email, phone, shipping/billing address.
- Account & orders: login details, past orders, subscriptions, returns.
- Payments: handled by our payment processors (e.g., Shopify Payments/Stripe/PayPal). We don’t store full card numbers.
- Support & UGC: messages to support, product reviews, quiz answers, survey responses, uploaded photos.
- Marketing preferences: email/SMS opt-ins, cookie choices.
Information collected automatically
- Device & usage: IP address, browser, device type, pages viewed, time stamps, referral URLs, approximate location (city/region).
- Cookies & pixels: to keep you logged in, remember cart, measure performance, and personalize ads.
Information from partners
- Fulfillment & logistics: order and shipping updates from our warehouses and carriers.
- Analytics & ads: insights from analytics, social, and ad platforms (e.g., Google, Meta, TikTok).
- Customer tools: email/SMS tools (e.g., Klaviyo), reviews (e.g., Judge.me/Okendo), help desk (e.g., Zendesk/Gorgias).
2) How we use information
- To operate the store: process orders, payments, shipping, returns.
- Customer support: respond to questions, fix problems.
- Personalize & improve: remember your preferences, recommend products, run A/B tests.
- Marketing (with your consent where required): emails, SMS, ads, and retargeting.
- Security & fraud prevention: detect and prevent misuse.
- Legal compliance: tax, accounting, and required disclosures.
- We use cosmetic-safe messaging and never make medical claims.
3) Cookies, analytics & ads
We use cookies and similar tech for:
- Essential (required for the site to work)
- Analytics (how the site is used)
- Personalization (remember settings)
- Advertising (including retargeting)
You can manage preferences via our cookie banner or your browser settings. Blocking some cookies may affect site features.
4) When we share information
We don’t sell personal information for money. We share limited data with service providers who help us run the business, under contracts that restrict their use:
- E-commerce & payments: Shopify/Stripe/PayPal
- Fulfillment & shipping: warehouses, Supliful (on-demand private label fulfillment), carriers (USPS/UPS/FedEx/DHL)
- Marketing & analytics: email/SMS tools, analytics providers, ad platforms (for aggregated insights and targeted advertising)
- Customer tools: reviews, help desk, survey/quiz tools
- Legal/security: if required by law or to protect rights and safety.
Targeted advertising (“sale/share”) notice (US state laws): We may “share” identifiers and internet activity with ad partners via cookies/pixels for cross-context behavioral advertising. You can opt out via our “Do Not Sell or Share My Personal Information” link (if available in your region) or the cookie banner. We honor certain browser-based opt-out signals where required (e.g., Global Privacy Control).
5) Your choices
- Email: Unsubscribe anytime via the link in our emails.
- SMS: Reply STOP to opt out; HELP for help. Msg & data rates may apply.
- Cookies: Update preferences in the banner or browser settings.
- Ads: Limit personalized ads via platform settings (Google, Meta, TikTok) and device ad controls.
6) Your privacy rights
Depending on where you live (e.g., CA, CO, CT, VA, UT; EU/UK), you may have rights to:
- Access the data we hold about you
- Correct inaccurate data
- Delete your data
- Portability (get a copy)
- Opt out of targeted advertising, “sale/share,” or certain profiling
- Limit use of sensitive information (we don’t use sensitive data to infer characteristics)
- Withdraw consent (if processing is based on consent)
- Object/Restrict certain processing (GDPR)
How to exercise: email info@rootkind.com with your request and “Privacy Request” in the subject. We’ll verify your identity and respond within the timeline required by law. If we decline, you may appeal by replying with “Privacy Appeal” (applicable in certain US states). You can also use an authorized agent where permitted.
7) Children’s privacy
Our site is not intended for children under 13. We do not knowingly collect data from children. If you believe a child has provided data, contact us to delete it.
8) Data retention
We keep personal information only as long as needed for the purposes described, to comply with legal obligations, resolve disputes, and enforce agreements. Typical retention:
- Orders & taxes: up to 7 years
- Accounts & support messages: while active and for a reasonable period after
- Marketing preferences: until you unsubscribe/opt out
9) Security
We use administrative, technical, and physical safeguards (e.g., encryption in transit, tokenized payments, access controls). No method is 100% secure; please use strong passwords and keep account details confidential.
10) International transfers
If you are outside the United States, your data may be processed in the U.S. and other countries with different laws. Where required, we rely on standard contractual clauses or similar safeguards.
11) Do Not Track
Some browsers send Do Not Track signals; there’s no common standard. We treat them as opt-out signals only where required by law and otherwise rely on our cookie preferences tools.
12) Third-party links & social features
Our site may link to third-party sites or offer social login/sharing. Their privacy practices are their own—review their policies.
13) User-generated content (UGC)
If you post reviews or photos, they may be public. Don’t share information you wouldn’t want visible to others.
14) Changes to this policy
We may update this policy from time to time. We’ll post the new version with a new Effective date. Material changes may be highlighted on-site or emailed when appropriate.
15) Contact us
Questions or requests?
Email: info@rootkind.com
Region-specific notices
California (CPRA) — We collect the following categories (as defined by law): identifiers (A), customer records (B), commercial information (D), internet activity (F), geolocation (approximate) (G), and inferences (K) to improve your experience. We do not collect or use sensitive personal information to infer characteristics. You can request access/deletion/correction and opt out of “sale/share” via our cookie banner or Do Not Sell or Share link (if available). We do not knowingly sell/share children’s data.
EU/UK GDPR —
- Controller: RootKind Beauty
- Legal bases: performance of a contract (orders), legitimate interests (site security, analytics), consent (marketing cookies/SMS/email where required), legal obligation (tax).
- Data subject rights: access, rectification, erasure, restriction, portability, objection, and withdrawal of consent.
- Supervisory authority: you may lodge a complaint with your local authority.
SMS terms (if you use SMS marketing)
By opting into SMS, you consent to receive marketing texts from RootKind at the number provided. Consent is not a condition of purchase. Message frequency varies. Msg & data rates may apply. Reply STOP to cancel, HELP for help. We may use an autodialer. Your data will be used per this Privacy Policy.