Last updated: 11/24/2025
This Privacy Policy describes how Lion And Lamb Studios (“we,” “us,” or “our”) collects, uses, and protects your personal information when you visit our website https://lionandlambstudio.com, make a purchase, or interact with our services. This policy is designed to comply with applicable data protection laws including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act / California Privacy Rights Act (CCPA/CPRA).
1. Information We Collect
1.1 Information Collected When You Make a Purchase (WooCommerce)
When you place an order on our site, WooCommerce collects the information needed to process your purchase, including:
- Full name
- Billing and shipping addresses
- Email address
- Phone number
- Payment information (processed securely via our payment providers)
- Order details (products purchased, quantities, order total, order ID)
We do not store your full credit card details. Payments are processed securely through third-party payment gateways such as Stripe, PayPal, or others you may choose at checkout.
WooCommerce also uses cookies to maintain your shopping cart, remember your session, and help our store function properly.
1.2 Information Collected When You Create an Account
If you choose to create an account on our site, we may collect:
- Username
- Password (stored in encrypted form)
- Email address
- Order history
- Saved billing and shipping addresses
1.3 Information Collected When You Leave a Comment
When visitors leave comments on the site, WordPress collects the data shown in the comments form, as well as the visitor’s IP address and browser user agent string to help spam detection. This may include:
- Name
- Email address
- Website (optional)
- IP address
- Browser user agent string
- The comment text or content
An anonymized string (also called a hash) created from your email address may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available at: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
1.4 Information Collected Automatically
We may automatically collect certain information about your device and browsing activity when you visit our site, such as:
- IP address
- Browser type and version
- Operating system
- Referring URLs
- Pages viewed and time spent on the site
- Approximate location (city/region)
This information is used for analytics, security, and to improve the performance and usability of our website.
1.5 Information Collected for Print-on-Demand Fulfillment (e.g., Printify)
We use print-on-demand partners such as Printify to produce and ship certain products. To fulfill your order, we may share relevant order details with these partners, including:
- Your name
- Shipping address
- Products ordered (including product details and variants)
- Contact email or phone number (if required for delivery or order issues)
Our print-on-demand partners do not receive your payment details. They use this information solely for the purpose of producing and shipping your order. For more information on how Printify handles your data, please see their privacy policy at: https://printify.com/privacy-policy/.
2. How We Use Your Information
We use the information we collect to:
- Process and fulfill your orders
- Provide and manage your account
- Communicate with you regarding your orders, account, or customer support inquiries
- Improve our website, products, and services
- Detect and prevent fraud, abuse, and security incidents
- Comply with legal and regulatory obligations
We do not sell your personal information.
3. How We Share Your Information
3.1 Service Providers and Third Parties
We may share your personal information with trusted third-party service providers who assist us in operating our website, conducting our business, or servicing you, including:
- Payment processors (e.g., Stripe, PayPal)
- Print-on-demand partners (e.g., Printify)
- Shipping carriers
- Website hosting providers
- Email and marketing platforms (if used)
- Analytics and security services
These providers have access to the personal information they need to perform their services but are not permitted to use it for other purposes.
3.2 Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court or government agency), or when necessary to protect our rights or the safety of us or others.
4. Cookies and Tracking Technologies
Our website uses cookies and similar technologies to:
- Enable core site functionality (such as your shopping cart)
- Remember your preferences
- Analyze site traffic and usage patterns
- Improve performance and user experience
You can control or disable cookies through your browser settings. If you choose to disable cookies, some features of our website may not function properly.
If you are located in the European Union or EEA, you may see a cookie consent banner allowing you to manage your cookie preferences in compliance with GDPR.
5. Data Retention
We retain personal data only as long as necessary for the purposes described in this policy, including:
- Order information: kept for 6–10 years to comply with tax, accounting, and legal obligations.
- Customer accounts: kept until you request deletion or the account is no longer needed.
- Comments: kept indefinitely so we can recognize and approve follow-up comments automatically, unless you request removal.
- Analytics data: retained according to our analytics provider’s settings.
6. Your Rights Under GDPR (EU/EEA Residents)
If you are located in the European Union or EEA, you have certain rights regarding your personal data, including:
- The right to access the personal data we hold about you
- The right to request correction of inaccurate or incomplete data
- The right to request deletion of your personal data (“right to be forgotten”) in certain circumstances
- The right to restrict or object to our processing of your data
- The right to data portability
- The right to withdraw consent at any time where processing is based on consent
To exercise any of these rights, please contact us at [Your Contact Email]. We will respond to your request in accordance with applicable laws, typically within 30 days.
You also have the right to lodge a complaint with your local Data Protection Authority if you believe your rights have been violated.
7. Your Rights Under CCPA/CPRA (California Residents)
If you are a California resident, you may have the following rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
- The right to know what personal information we collect, use, disclose, and/or sell
- The right to request access to your personal information
- The right to request deletion of your personal information, subject to certain exceptions
- The right to correct inaccurate personal information
- The right to limit the use and disclosure of sensitive personal information (if applicable)
- The right to be free from discrimination for exercising any of your privacy rights
We do not sell your personal information. We also do not share your personal information for cross-context behavioral advertising.
To submit a CCPA/CPRA-related request, please contact us at [Your Contact Email]. We will verify and respond to your request as required by law, typically within 45 days.
8. Data Security
We take reasonable technical and organizational measures to protect your personal information, including:
- Using SSL/HTTPS to encrypt data transmitted between your browser and our website
- Using secure, reputable payment gateways
- Keeping our software and plugins up to date
- Restricting access to personal data to authorized personnel only
However, no method of transmission over the Internet or electronic storage is completely secure, and we cannot guarantee absolute security.
9. International Data Transfers
Your information may be transferred to and processed in countries other than your own, including where our service providers and hosting servers are located. Where required by law, we ensure appropriate safeguards are in place to protect your data in accordance with applicable data protection laws.
10. Children’s Privacy
Our website and services are not directed to children under the age of 13, and we do not knowingly collect personal information from children. If we become aware that we have collected personal data from a child under 13, we will take steps to delete such information promptly.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, or legal requirements. When we do, we will revise the “Last updated” date at the top of this page. We encourage you to review this page periodically for the latest information on our privacy practices.
12. Contact Us
If you have any questions about this Privacy Policy, our data practices, or if you would like to exercise your privacy rights, please contact us at:
Lion And Lamb Studios
Email: support@lionandlambstudio.com
