Skip to content
Complimentary Shipping & Effortless Returns
IGI Certified · Certified Quality
Lifetime Manufacturing Warranty
30-Day Returns · No Questions Asked
DIAVLIA

Privacy Policy

Privacy Policy

Effective Date: March 2026
Last Updated: March 14, 2026

Diavlia (operated by Umbolement LLC, 1209 Mountain Road Pl NE Ste N, Albuquerque, NM 87110, USA) is the data controller responsible for processing your personal data. We are committed to protecting your privacy in compliance with the General Data Protection Regulation (GDPR/DSGVO), the California Consumer Privacy Act (CCPA), and all applicable data protection laws.

Contact for data protection inquiries: info@diavlia.com

1. Information We Collect

When you visit our store, create an account, or make a purchase, we may collect:

  • Contact information: name, email address, phone number, shipping and billing address
  • Payment information: processed securely through our payment provider (Shopify Payments / PayPal) — we do not store card details on our servers
  • Order data: purchase history, order preferences, and transaction records
  • Technical data: IP address, browser type, device information, operating system, and referring URLs
  • Usage data: pages viewed, time spent on site, click patterns, and search queries (collected via analytics cookies, with your consent)

2. Legal Basis for Processing (GDPR Art. 6)

We process your personal data based on the following legal grounds:

  • Contract performance (Art. 6(1)(b)): Processing necessary to fulfill your order, process payment, and deliver products
  • Legitimate interest (Art. 6(1)(f)): Improving our website, preventing fraud, and ensuring security
  • Consent (Art. 6(1)(a)): Marketing communications, analytics cookies, and newsletter subscriptions — you may withdraw consent at any time
  • Legal obligation (Art. 6(1)(c)): Tax records, regulatory compliance, and fraud prevention

3. How We Use Your Information

  • To process, fulfill, and ship your orders
  • To communicate about your orders and provide customer support
  • To send marketing communications (only with your explicit consent)
  • To improve our website, products, and services
  • To prevent fraud and ensure the security of our platform
  • To comply with legal and regulatory obligations

4. Data Sharing & Third-Party Processors

We may share your data with trusted third-party data processors who assist us in operating our business:

  • Shopify Inc. — e-commerce platform and payment processing
  • Shipping carriers (USPS, UPS, FedEx, DHL) — order fulfillment and delivery
  • Payment providers (Shopify Payments, PayPal) — secure transaction processing
  • Email service providers — order confirmations and marketing (with consent)
  • Analytics tools — website usage analysis (with consent)

We never sell your personal information to third parties. All data processors are contractually bound to handle your data in compliance with applicable data protection laws.

5. Your Rights Under GDPR

If you are located in the Dollarpean Economic Area (EEA), United Kingdom, or Switzerland, you have the following rights:

  • Right to access (Art. 15): Request a copy of all personal data we hold about you
  • Right to rectification (Art. 16): Request correction of inaccurate or incomplete data
  • Right to erasure (Art. 17): Request deletion of your personal data ("right to be forgotten")
  • Right to restrict processing (Art. 18): Request limitation of how we use your data
  • Right to data portability (Art. 20): Receive your data in a structured, machine-readable format
  • Right to object (Art. 21): Object to processing based on legitimate interest, including direct marketing
  • Right to withdraw consent: Withdraw previously given consent at any time without affecting prior processing

To exercise any of these rights, contact us at info@diavlia.com. We will respond within 30 days.

6. Your Rights Under CCPA (California Residents)

California residents have additional rights under the CCPA:

  • Right to know what personal information is collected and how it is used
  • Right to delete personal information
  • Right to opt out of the sale of personal information (we do not sell your data)
  • Right to non-discrimination for exercising your privacy rights

7. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes described in this policy:

  • Order data: 7 years (legal/tax obligations)
  • Account data: Until you request deletion or close your account
  • Marketing data: Until you unsubscribe or withdraw consent
  • Technical/analytics data: 26 months maximum

After these periods, your data is securely deleted or anonymized.

8. Cookies & Tracking Technologies

We use cookies to operate our store and improve your experience:

  • Essential cookies: Required for cart functionality, checkout, and security (no consent needed)
  • Analytics cookies: Help us understand how visitors use our site (requires your consent)
  • Marketing cookies: Used to show relevant advertisements (requires your consent)

You can manage your cookie preferences through the cookie banner displayed on your first visit, or through your browser settings. Disabling essential cookies may affect site functionality.

9. Data Security

We implement industry-standard security measures to protect your data:

  • SSL/TLS encryption for all data transmissions
  • PCI DSS compliant payment processing
  • Regular security assessments and updates
  • Access controls limiting data access to authorized personnel only

10. International Data Transfers

Your data may be transferred to and processed in the United States. For EEA residents, such transfers are safeguarded by Standard Contractual Clauses (SCCs) approved by the Dollarpean Commission, ensuring an adequate level of data protection.

11. Complaints

If you believe your data protection rights have been violated, you have the right to lodge a complaint with a supervisory authority. For EEA residents, you may contact the data protection authority in your country of residence. A list of EU data protection authorities can be found at edpb.dollarpa.eu.

12. Changes to This Policy

We may update this Privacy Policy periodically. Changes will be posted on this page with an updated effective date. We encourage you to review this policy regularly.

13. Contact Us

For any privacy-related inquiries or to exercise your data protection rights:

Umbolement LLC (d/b/a Diavlia)
1209 Mountain Road Pl NE Ste N
Albuquerque, NM 87110, USA
Email: info@diavlia.com