Privacy Policy

Last updated: May 2026

This Privacy Policy explains how EuropeanPeptides collects, uses, stores, and protects personal data when you use our website, place an order, contact us, create an account, or interact with our services.

1. Controller and Contact

The controller responsible for the processing of personal data on this website is Benjamin Frömcke, operating EuropeanPeptides, Vorgartenstraße 126/266, 1020 Vienna, Austria.

For privacy-related questions, requests, or objections, please contact us by email at support@europeanpeptides.eu.

2. Scope of This Policy

This Privacy Policy applies to the website EuropeanPeptides.eu, the online shop, customer accounts, checkout, order processing, support communication, affiliate registration, back-in-stock requests, and related technical services.

Our products are intended strictly for laboratory research purposes only. The website is not directed at children or persons under 18 years of age.

3. Personal Data We Process

Depending on how you use the website, we may process the following categories of personal data:

Contact and identity data, such as name, billing address, shipping address, email address, phone number, and country.

Order and transaction data, such as ordered products, order number, order status, payment method, payment confirmation, invoice data, refund information, shipping method, and tracking information.

Account and affiliate data, such as username, login data, affiliate application details, payout email, main social link, and information submitted in affiliate forms.

Communication data, such as messages sent through the contact form, support requests, and email correspondence.

Technical and usage data, such as IP address, browser type, device information, timestamps, cookie identifiers, pages visited, cart activity, and security logs.

Marketing and notification data, such as newsletter consent, back-in-stock requests, and related opt-in or source information.

4. Purposes and Legal Bases

We process personal data only where there is a lawful basis under applicable data protection law, including the GDPR.

Contract performance: to process orders, payments, invoices, shipping, returns, refunds, customer accounts, and support requests related to your order.

Legal obligations: to comply with tax, accounting, consumer protection, record-keeping, customs, fraud prevention, and other legal obligations.

Legitimate interests: to operate, secure, maintain, improve, and protect the website and business, prevent misuse, respond to inquiries, document transactions, and manage affiliate applications.

Consent: to send promotional communication where consent is required, to store non-essential cookies where required, and to process optional information that you voluntarily provide.

You may withdraw consent at any time with effect for the future. Withdrawal does not affect the lawfulness of processing based on consent before withdrawal.

5. Website Hosting and Technical Operation

Our website is operated using WordPress and WooCommerce and is hosted by external hosting and technical service providers. These providers process technical data required to display the website, operate the shop, protect the website, maintain backups, and ensure reliable performance.

Server log files may include IP address, time of access, requested URL, browser and device information, referrer URL, and similar technical information. This processing is necessary for security, troubleshooting, and reliable website operation.

6. Orders, Checkout, Payment, and Shipping

When you place an order, we process the data required to accept, confirm, fulfill, ship, document, and support your order.

Payment processing depends on the payment method selected. For SEPA bank transfer, we process information necessary to identify and match your payment to your order. If additional payment providers are activated, relevant payment and transaction data may be processed by those providers according to their own terms and privacy notices.

For shipping, we may share the required delivery and contact data with shipping carriers, fulfillment partners, shipment tracking tools, and related service providers.

7. Customer Accounts and Affiliate Program

If you create an account or apply for the affiliate program, we process the data required to create, secure, review, and manage that account or application.

Affiliate applications may include name, email address, username, payout email, promotional method, main social link, agreement confirmation, and related information submitted through the affiliate registration form.

Affiliate data is used to assess applications, operate the affiliate dashboard, attribute referrals, calculate commissions, and process approved payouts where applicable.

8. Contact Forms and Support

When you contact us, we process the information you provide in order to review, respond to, and document your inquiry.

This may include your name, email address, phone number, order number, message category, message content, and related correspondence.

9. Email Notifications and Marketing

We send transactional emails that are necessary for order processing, such as payment instructions, payment confirmations, shipment notifications, refund notifications, invoices, and support replies.

Promotional emails or newsletters are sent only where permitted by law and, where required, based on your consent. You can withdraw consent or object to promotional communication at any time by contacting support@europeanpeptides.eu or using the unsubscribe method provided in the email where available.

Back-in-stock requests are used to notify you about availability of the requested product and may also be stored in our subscriber list with the relevant source information.

10. Cookies and Similar Technologies

We use cookies and similar technologies to operate the website, keep the shopping cart functional, remember preferences, improve performance, provide security, and understand how the website is used.

Some cookies are technically necessary for the website and shop to function. Non-essential cookies are used only where permitted by law and, where required, based on consent.

Further details may be provided in our Cookie Policy and cookie settings banner where available.

11. Recipients and Service Providers

We may disclose personal data to service providers and recipients where necessary for the purposes described in this Privacy Policy.

Relevant categories may include hosting providers, WordPress and WooCommerce service providers, payment providers, banks, shipping carriers, shipment tracking providers, email delivery providers, analytics and security tools, accounting or tax advisors, legal advisors, authorities, and other providers required to operate the business.

Service providers process personal data only as required for their services and where a suitable legal basis or data processing arrangement applies.

12. International Data Transfers

Some service providers may process personal data outside Austria or outside the European Economic Area.

Where personal data is transferred to a country without an adequacy decision, we rely on appropriate safeguards such as Standard Contractual Clauses, supplementary measures, or another lawful transfer mechanism where required.

13. Retention Periods

We retain personal data only for as long as necessary for the purposes for which it was collected, unless longer retention is required or permitted by law.

Order, invoice, payment, and tax-relevant records are retained for the statutory retention periods required under applicable accounting and tax law.

Account data is generally retained while the account exists and for a reasonable period afterwards where required for legal claims, fraud prevention, or record-keeping.

Support messages are retained for as long as needed to handle the request and document the communication. Marketing consent or subscriber data is retained until consent is withdrawn, objection is made, or the data is no longer required.

14. Security

We use appropriate technical and organizational measures to protect personal data against unauthorized access, loss, misuse, alteration, or disclosure.

No website, email system, or online transmission can be guaranteed to be completely secure. Please avoid sending sensitive information through unsecured channels unless necessary.

15. Your Rights

Subject to the legal requirements, you may have the right to request access to your personal data, correction of inaccurate data, deletion of data, restriction of processing, data portability, objection to processing based on legitimate interests, and withdrawal of consent.

To exercise your rights, please contact support@europeanpeptides.eu. We may need to verify your identity before responding to a request.

You also have the right to lodge a complaint with a data protection supervisory authority. In Austria, the competent authority is the Austrian Data Protection Authority, Barichgasse 40-42, 1030 Vienna, Austria.

16. No Automated Individual Decision-Making

We do not use personal data for automated individual decision-making that produces legal effects concerning you or similarly significantly affects you within the meaning of the GDPR.

17. Changes to This Privacy Policy

We may update this Privacy Policy when our website, services, providers, legal requirements, or data processing practices change.

The current version is published on this website and identified by the month shown above.

Scroll to Top