Privacy Policy – Arkaia
Effective date: 23.09.2025
1. Introduction
Arkaia (“we”, “us”, “our”) respects your privacy and is committed to protecting your personal data. This Privacy Policy explains what personal data we collect, why we collect it, how we use it, with whom we share it, and your rights in relation to your personal data.
2. Controller
The data controller for the personal data collected via this website is:
Sebastian Schmuck
Email: info@arkaia-experience.com
Website: www.arkaia-experience.com
If you are located in the EU/EEA, Sebastian Schmuck is the controller for the purposes of the GDPR.
3. Data we collect
3.1 Data you provide directly
-
Contact details (name, email, telephone, postal address) when you register, contact us or place an order.
-
Billing and shipping information for purchases (address, VAT/tax details).
-
Payment information processed by our payment provider (we do not store full card details).
-
Account information (username, password) when creating an account / member profile.
-
Messages and content you submit (contact form, support requests, reviews, testimonials — with your consent where required).
-
Newsletter subscription preferences and any other voluntary information.
3.2 Data collected automatically
-
Technical data: IP address, browser type/version, device identifiers, operating system, referrer URL, pages visited, date/time stamps.
-
Usage data: pages visited, clicks, session duration, playback and streaming events (for embedded videos/audio), error logs.
-
Cookies and similar technologies (see section 7).
3.3 Special categories of data
We do not intentionally collect “special categories” of personal data (sensitive data such as health, religion, political opinions). If you submit such data voluntarily (e.g., in a message), we will treat it carefully and will process it only with explicit consent or as otherwise permitted by law.
4. Legal bases for processing
We rely on the following legal grounds to process your personal data:
-
Contract performance: to process and fulfil orders, bookings and subscriptions (Art. 6(1)(b) GDPR).
-
Consent: where you have given consent (e.g., newsletter, testimonials). You may withdraw consent at any time.
-
Legitimate interests: for site operation, fraud prevention, security, analytics, marketing optimization, and improving our products (Art. 6(1)(f) GDPR).
-
Legal obligations: where required to comply with law (e.g., tax, accounting, consumer protection) (Art. 6(1)(c) GDPR).
5. Purposes of processing
We use personal data for the following purposes:
-
To process orders, bookings and payments and to deliver products & services.
-
To manage your account and membership (Arkaia Friends), including subscription billing and access control.
-
To provide customer service and respond to enquiries.
-
To send transactional communications (order confirmations, receipts, account messages).
-
To send marketing communications (with your consent or where permitted), such as newsletters and promotional offers.
-
To display/use testimonials (only with your consent where required).
-
To improve the website and our offerings via analytics and testing.
-
To prevent and detect fraud, enforce our Terms & Conditions and for security purposes.
-
To comply with legal obligations (tax, bookkeeping, consumer rights).
6. Sharing your data / third parties
We may share personal data with the following categories of third parties:
-
Service providers / processors that help us operate (Wix, payment processors such as Wix Payments / Stripe / PayPal, email platforms like Wix ShoutOut / Mailchimp, analytics providers such as Google Analytics or similar).
-
Booking platforms / third-party partners where applicable (e.g., for Experiences booking management).
-
Shipping & fulfilment partners for physical products.
-
Legal & professional advisers (e.g., accountants, lawyers) where necessary.
-
Authorities where disclosure is required by law or to enforce legal rights.
We use reputable third-party providers and require contractual safeguards (data processing agreements) where required.
7. Cookies & tracking technologies
We use cookies and similar technologies to operate the website, remember preferences, and analyze usage. Types of cookies used:
-
Essential cookies: required for website functionality (e.g., cart, login).
-
Performance & analytics cookies: to understand site usage (e.g., Google Analytics).
-
Marketing / targeting cookies: to deliver ads and measure campaigns (e.g., Facebook Pixel).
You can manage cookie preferences via the cookie banner or your browser settings. Disabling certain cookies may affect site functionality.
8. International transfers
Some service providers may process data outside the EU/EEA (e.g., servers in the US). Where we transfer data internationally, we ensure adequate safeguards (EU standard contractual clauses, privacy frameworks, or transfers to countries with adequate protections) as required by law.
9. Data retention
We retain personal data only as long as necessary for the purposes it was collected and to comply with legal obligations (e.g., tax records). Typical retention periods:
-
Order and billing data: generally 7–10 years (depending on local tax laws).
-
Account data: until you delete your account, or as required to comply with legal obligations.
-
Marketing data: until you withdraw consent or unsubscribe.
-
Analytics data: aggregated or anonymized after a reasonable period.
10. Your rights
If you are in the EU/EEA, you have rights regarding your personal data, including:
-
Right of access — request a copy of your personal data.
-
Right to rectification — correct inaccurate or incomplete data.
-
Right to erasure (“right to be forgotten”) — in certain circumstances.
-
Right to restriction of processing.
-
Right to data portability — receive your data in a structured, commonly used format.
-
Right to object — to processing based on legitimate interests or direct marketing.
-
Right to withdraw consent — where processing is based on consent.
To exercise your rights, contact us at info@arkaia-experience.com. We may require verification of identity. We will respond within applicable legal deadlines.
11. Complaints
If you are dissatisfied with our data handling, you may lodge a complaint with a supervisory authority in your EU/EEA Member State. For Italy, you may contact the Garante per la protezione dei dati personali (www.garanteprivacy.it).
12. Security
We implement appropriate technical and organisational measures to protect personal data (encryption, access controls, secure servers). While we strive to protect your data, no internet transmission is completely secure. If we become aware of a data breach putting your rights at risk, we will notify you and relevant authorities as required by law.
13. Data of children
Our services are not intended for children under 16 (or the applicable age in your jurisdiction). We do not knowingly collect personal data from children. If you believe we have collected data of a child, please contact us and we will take steps to delete it.
14. Automated decision-making
We do not carry out automated decision-making or profiling that produces legal effects or similarly significantly affects individuals.
15. Testimonials & reviews
If you provide a testimonial or review, we will publish it with your name and comment (with your consent where required). You may request removal at any time.
16. Links to other websites
Our site may link to third-party sites. This Privacy Policy does not apply to third-party websites — please check their privacy policies.
17. Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated policy on this page with a new effective date.
18. Contact
For questions, data access requests, or privacy concerns contact:
Arkaia
Email: info@arkaia-experience.com
Website: www.arkaia-experience.com