Your cart
Your cart is empty
GDPR Data Privacy Requests & Cookies
USA: US Privacy Requests, Do Not Sell or Share My Personal Information
CANADA: Canadian Privacy Rights (PIPEDA & Quebec Law 25)
AUSTRALIA & NEW ZEALAND: Privacy Rights (Australia & New Zealand)
BRAZIL: Central de Privacidade (LGPD)
JAPAN: Japanese Privacy Rights (APPI)
THAILAND: PDPA Compliance
SOUTH AFRICA: POPIA Compliance
REST OF THE WORLD: Personal Data Requests
EU:
We respect your privacy. If you are located in the European Economic Area (EEA), you have certain rights under the General Data Protection Regulation (GDPR). Use the following options to exercise your rights regarding the personal data we hold about you.
How we process your request If you submit a Data Subject Access Request (DSAR) through our compliance page, our compliance provider Consentmo will process your IP address and email solely for the purpose of fulfilling your request. For more details, please refer to Consentmo's Data Processing Policy.
Access to Personal Data
Through the link below, you can request a report containing all the personal information we store about you. We will respond within 30 days.
Response time: We will respond within one month. If your request is complex, we may extend this period as permitted by law and will inform you accordingly.
Data Rectification
If your account details are inaccurate, update or correct them via the link below.
Right to be Forgotten
Use this option if you want to remove your personal and other data from our store. Please note that this process will delete your account, so you will no longer be able to access or use it.
Important: Some information may be retained if required by law or for legitimate purposes (e.g., taxes, fraud prevention, and security).
Manage Privacy Settings
You can customize your experience by specifying exactly what types of cookies and technologies we are allowed to use (e.g., enable analytics, disable marketing). You can update these specific settings at any time.
Withdraw Consent
You have the right to withdraw your Shopify marketing consent for tracking technologies at any time. This applies to your future use of our store and will stop data collection for optional purposes.
Right to Restriction of Processing / Right to Object
You can request the restriction or temporary suspension of the processing of your personal data under certain circumstances. Please contact us at You have the right to object to certain types of data processing, including direct marketing or processing based on legitimate interests. Contact us to submit your objection at
You can request the restriction or temporary suspension of the processing of your personal data under certain circumstances. Please contact us at {dpo_email} for assistance.
📧 info@purhair.de
Contact Information
For questions about your personal data or privacy rights, please contact our Data Protection Officer (DPO) at:
Email: info@purhair.de
Address: Max-Reger-Straße 170, 90571 Schwaig bei Nürnberg , Germany
Right to Lodge a Complaint
If you believe that we have not addressed your concerns, you have the right to lodge a complaint with your national data protection authority.
Cookie List and Privacy Policy Table
| Name | Description | Category | Provider | Duration |
|---|---|---|---|---|
| cookieconsent_status | This cookie is associated with the Consentmo GDPR Compliance app and is used to store the customer's consent. | Necessary | Consentmo | 1 year |
| cookieconsent_preferences_disabled | This cookie is associated with the Consentmo GDPR Compliance app and is used to store the customer's consent. | Necessary | Consentmo | 1 day |
| _ab | Used to control when the admin bar is displayed on the storefront. | Necessary | Shopify | 1 year |
| _abv | Persistently stores the collapsed state of the admin bar. | Necessary | Shopify | 1 year |
| _checkout_queue_token | Used when there is a queue during the checkout process. | Necessary | Shopify | 1 year |
| _identity_session | Merchant authentication: main session cookie for Identity authentication. This is the underlying Rails session cookie. Contains the SID. | Necessary | Shopify | 2 years |
| _master_udr | Permanent device identifier. | Necessary | Shopify | Session |
| _merchant_essential | Contains essential information for the correct functioning of merchant interfaces such as the admin area. | Necessary | Shopify | 1 year |
| _pay_session | The Rails session cookie for Shopify Pay. | Necessary | Shopify | Session |
| _shopify_country | Used for Plus stores where currency/country is determined via GeoIP, to avoid further GeoIP queries. | Necessary | Shopify | 30 minutes |
| _shopify_essential | Contains essential information for the correct functioning of a store, such as session and checkout information, as well as anti-tampering data. | Necessary | Shopify | 1 year |
| _shopify_essential_ | Contains an opaque token used to identify a device for all essential purposes. | Necessary | Shopify | 1 year |
| _shopify_test | Used to test cookie functionality on the client. | Necessary | Shopify | 1 minute |
| _storefront_u | Used to facilitate the updating of customer account data. | Necessary | Shopify | 1 minute |
| _tracking_consent | Used to store a user's preferences when a merchant has defined privacy policies in the visitor's region. | Necessary | Shopify | 1 year |
| auth_state_* | Stores authentication status before redirecting customers to third parties for authentication. | Necessary | Shopify | 25 minutes |
| cart | Contains information about the user's shopping cart. | Necessary | Shopify | 2 weeks |
| cart_currency | Used after checkout to initialize a new empty cart with the same currency. | Necessary | Shopify | 2 weeks |
| checkout | Used by the checkout to identify the user. | Necessary | Shopify | 21 days |
| checkout_token | Used by the checkout to identify the user. | Necessary | Shopify | Session |
| customer_account_locale | Used to track the customer domain locale during redirects. | Necessary | Shopify | 1 year |
| discount_code | Stores a discount code received via URL parameter to apply it at the next checkout. | Necessary | Shopify | Session |
| hide_shopify_pay_for_checkout | Set when a buyer closes the Shop Pay login window during checkout. | Necessary | Shopify | Session |
| identity-state | Stores a hash of the OAuth flow state between redirects. | Necessary | Shopify | 1 day |
| identity_customer_account_number | Stores an identifier to facilitate login between customer account and storefront domains. | Necessary | Shopify | 12 weeks |
| in_checkout_profile_preview | Used to determine if the merchant is in a checkout user profile preview. | Necessary | Shopify | Session |
| keep_alive | Used when international domain redirection is enabled to determine if the request is the first of the session. | Necessary | Shopify | Session |
| localization | Used to localize the cart to the correct country. | Necessary | Shopify | 2 weeks |
| login_with_shop_finalize | Used to facilitate login with Shop. | Necessary | Shopify | 5 minutes |
| master_device_id | Merchant authentication: permanent device identifier, public version. | Necessary | Shopify | 1 year |
| order | Used to provide access to the buyer's order details page. | Necessary | Shopify | 3 weeks |
| profile_preview_token | Used to preview checkout customizations. | Necessary | Shopify | 5 minutes |
| shop_pay_accelerated | Indicates whether a buyer is eligible to use accelerated Shop Pay checkout. | Necessary | Shopify | 1 year |
| shopify_pay | Used to log a buyer into Shop Pay when they return to the same shop to check out. | Necessary | Shopify | 1 year |
| shopify_pay_redirect | Used to speed up the checkout process if the buyer has a Shop Pay account. | Necessary | Shopify | 1 year |
| skip_shop_pay | Disables Shop Pay as a payment method in checkout. | Necessary | Shopify | 1 year |
| storefront_digest | Stores a digest of the storefront password so merchants can view their storefront in password protection mode. | Necessary | Shopify | 1 year |
| theme | Used to set the storefront's theme. | Necessary | Shopify | 1 week |
| user | Used in connection with Shop login. | Necessary | Shopify | 1 year |
| user_cross_site | Used in connection with Shop login. | Necessary | Shopify | 1 year |
| _shop_app_essential | Contains essential information for the correct operation of Shop.app. | Necessary | Shopify | 1 year |
| shopify_client_id | Used by the website's Shopify platform to enable e-commerce functions. | Necessary | Shopify | 1 year |
| _landing_page | Captures the visitor's landing page when they come from other websites. | Statistics | Shopify | 2 weeks |
| _merchant_analytics | Contains analytics data for the merchant session. | Statistics | Shopify | 1 year |
| _orig_referrer | Allows the merchant to identify where visitors are coming from. | Statistics | Shopify | 2 weeks |
| _shopify_analytics | Contains analytics data for buyer interfaces such as storefront or checkout. | Statistics | Shopify | 1 year |
| _shopify_ga | Contains Google Analytics parameters to enable cross-domain analysis. | Statistics | Shopify | Session |
| _shopify_s | Used to identify a specific browser session/shop combination. Validity is 30 minutes after last use. | Statistics | Shopify | 30 minutes |
| _shopify_y | Shopify Analytics. | Statistics | Shopify | 1 year |
| shop_analytics | Contains the necessary buyer information for analysis in the shop. | Statistics | Shopify | 1 year |
| _shopify_marketing | Contains marketing data for buyer interfaces such as storefront or checkout. | Marketing | Shopify | 1 year |
| __kla_id | When Klaviyo’s JavaScript is enabled, the __kla_id cookie can track and identify site visitors through an auto-generated ID. This cookie can temporarily hold personally identifiable information. Once | Marketing | Klaviyo | 2 years |
| shopify_override_user_locale | Used as a mechanism to set the user language in the admin. | Preferences | Shopify | 1 year |
- Choosing a selection results in a full page refresh.
- Opens in a new window.