GDPR Data Privacy Requests & Cookies

USA: US Privacy Requests, Do Not Sell or Share My Personal Information
CANADA:  Canadian Privacy Rights (PIPEDA & Quebec Law 25)
AUSTRALIA & NEW ZEALAND: Privacy Rights (Australia & New Zealand)
BRAZIL: Central de Privacidade (LGPD)
JAPAN: Japanese Privacy Rights (APPI)
THAILAND: PDPA Compliance
SOUTH AFRICA: POPIA Compliance
REST OF THE WORLD: Personal Data Requests

EU:

We respect your privacy. If you are located in the European Economic Area (EEA), you have certain rights under the General Data Protection Regulation (GDPR). Use the following options to exercise your rights regarding the personal data we hold about you.

How we process your request If you submit a Data Subject Access Request (DSAR) through our compliance page, our compliance provider Consentmo will process your IP address and email solely for the purpose of fulfilling your request. For more details, please refer to Consentmo's Data Processing Policy.


Access to Personal Data

Through the link below, you can request a report containing all the personal information we store about you. We will respond within 30 days.

Response time: We will respond within one month. If your request is complex, we may extend this period as permitted by law and will inform you accordingly.


Data Rectification

If your account details are inaccurate, update or correct them via the link below.


Right to be Forgotten

Use this option if you want to remove your personal and other data from our store. Please note that this process will delete your account, so you will no longer be able to access or use it.

Important: Some information may be retained if required by law or for legitimate purposes (e.g., taxes, fraud prevention, and security).


Manage Privacy Settings

You can customize your experience by specifying exactly what types of cookies and technologies we are allowed to use (e.g., enable analytics, disable marketing). You can update these specific settings at any time.


Withdraw Consent

You have the right to withdraw your Shopify marketing consent for tracking technologies at any time. This applies to your future use of our store and will stop data collection for optional purposes.


Right to Restriction of Processing / Right to Object

You can request the restriction or temporary suspension of the processing of your personal data under certain circumstances. Please contact us at You have the right to object to certain types of data processing, including direct marketing or processing based on legitimate interests. Contact us to submit your objection at

You can request the restriction or temporary suspension of the processing of your personal data under certain circumstances. Please contact us at {dpo_email} for assistance.

📧 info@purhair.de


Contact Information

For questions about your personal data or privacy rights, please contact our Data Protection Officer (DPO) at:

Email: info@purhair.de

Address: Max-Reger-Straße 170, 90571 Schwaig bei Nürnberg , Germany


Right to Lodge a Complaint

If you believe that we have not addressed your concerns, you have the right to lodge a complaint with your national data protection authority.

Cookie List and Privacy Policy Table

Name Description Category Provider Duration
cookieconsent_status This cookie is associated with the Consentmo GDPR Compliance app and is used to store the customer's consent. Necessary Consentmo 1 year
cookieconsent_preferences_disabled This cookie is associated with the Consentmo GDPR Compliance app and is used to store the customer's consent. Necessary Consentmo 1 day
_ab Used to control when the admin bar is displayed on the storefront. Necessary Shopify 1 year
_abv Persistently stores the collapsed state of the admin bar. Necessary Shopify 1 year
_checkout_queue_token Used when there is a queue during the checkout process. Necessary Shopify 1 year
_identity_session Merchant authentication: main session cookie for Identity authentication. This is the underlying Rails session cookie. Contains the SID. Necessary Shopify 2 years
_master_udr Permanent device identifier. Necessary Shopify Session
_merchant_essential Contains essential information for the correct functioning of merchant interfaces such as the admin area. Necessary Shopify 1 year
_pay_session The Rails session cookie for Shopify Pay. Necessary Shopify Session
_shopify_country Used for Plus stores where currency/country is determined via GeoIP, to avoid further GeoIP queries. Necessary Shopify 30 minutes
_shopify_essential Contains essential information for the correct functioning of a store, such as session and checkout information, as well as anti-tampering data. Necessary Shopify 1 year
_shopify_essential_ Contains an opaque token used to identify a device for all essential purposes. Necessary Shopify 1 year
_shopify_test Used to test cookie functionality on the client. Necessary Shopify 1 minute
_storefront_u Used to facilitate the updating of customer account data. Necessary Shopify 1 minute
_tracking_consent Used to store a user's preferences when a merchant has defined privacy policies in the visitor's region. Necessary Shopify 1 year
auth_state_* Stores authentication status before redirecting customers to third parties for authentication. Necessary Shopify 25 minutes
cart Contains information about the user's shopping cart. Necessary Shopify 2 weeks
cart_currency Used after checkout to initialize a new empty cart with the same currency. Necessary Shopify 2 weeks
checkout Used by the checkout to identify the user. Necessary Shopify 21 days
checkout_token Used by the checkout to identify the user. Necessary Shopify Session
customer_account_locale Used to track the customer domain locale during redirects. Necessary Shopify 1 year
discount_code Stores a discount code received via URL parameter to apply it at the next checkout. Necessary Shopify Session
hide_shopify_pay_for_checkout Set when a buyer closes the Shop Pay login window during checkout. Necessary Shopify Session
identity-state Stores a hash of the OAuth flow state between redirects. Necessary Shopify 1 day
identity_customer_account_number Stores an identifier to facilitate login between customer account and storefront domains. Necessary Shopify 12 weeks
in_checkout_profile_preview Used to determine if the merchant is in a checkout user profile preview. Necessary Shopify Session
keep_alive Used when international domain redirection is enabled to determine if the request is the first of the session. Necessary Shopify Session
localization Used to localize the cart to the correct country. Necessary Shopify 2 weeks
login_with_shop_finalize Used to facilitate login with Shop. Necessary Shopify 5 minutes
master_device_id Merchant authentication: permanent device identifier, public version. Necessary Shopify 1 year
order Used to provide access to the buyer's order details page. Necessary Shopify 3 weeks
profile_preview_token Used to preview checkout customizations. Necessary Shopify 5 minutes
shop_pay_accelerated Indicates whether a buyer is eligible to use accelerated Shop Pay checkout. Necessary Shopify 1 year
shopify_pay Used to log a buyer into Shop Pay when they return to the same shop to check out. Necessary Shopify 1 year
shopify_pay_redirect Used to speed up the checkout process if the buyer has a Shop Pay account. Necessary Shopify 1 year
skip_shop_pay Disables Shop Pay as a payment method in checkout. Necessary Shopify 1 year
storefront_digest Stores a digest of the storefront password so merchants can view their storefront in password protection mode. Necessary Shopify 1 year
theme Used to set the storefront's theme. Necessary Shopify 1 week
user Used in connection with Shop login. Necessary Shopify 1 year
user_cross_site Used in connection with Shop login. Necessary Shopify 1 year
_shop_app_essential Contains essential information for the correct operation of Shop.app. Necessary Shopify 1 year
shopify_client_id Used by the website's Shopify platform to enable e-commerce functions. Necessary Shopify 1 year
_landing_page Captures the visitor's landing page when they come from other websites. Statistics Shopify 2 weeks
_merchant_analytics Contains analytics data for the merchant session. Statistics Shopify 1 year
_orig_referrer Allows the merchant to identify where visitors are coming from. Statistics Shopify 2 weeks
_shopify_analytics Contains analytics data for buyer interfaces such as storefront or checkout. Statistics Shopify 1 year
_shopify_ga Contains Google Analytics parameters to enable cross-domain analysis. Statistics Shopify Session
_shopify_s Used to identify a specific browser session/shop combination. Validity is 30 minutes after last use. Statistics Shopify 30 minutes
_shopify_y Shopify Analytics. Statistics Shopify 1 year
shop_analytics Contains the necessary buyer information for analysis in the shop. Statistics Shopify 1 year
_shopify_marketing Contains marketing data for buyer interfaces such as storefront or checkout. Marketing Shopify 1 year
__kla_id When Klaviyo’s JavaScript is enabled, the __kla_id cookie can track and identify site visitors through an auto-generated ID. This cookie can temporarily hold personally identifiable information. Once Marketing Klaviyo 2 years
shopify_override_user_locale Used as a mechanism to set the user language in the admin. Preferences Shopify 1 year