Privacy policy

Privacy and Data Protection Policy

Effective Date: April 2026

Entity: ELYAZIA (Trading Name)

Correspondence: legal@elyazia.com

1. INTRODUCTION AND SCOPE

ELYAZIA ("we," "us," or "our") is committed to protecting the privacy and security of our global clientele. This Privacy Policy describes how we collect, use, and share personal information when you visit or make a purchase from Elyazia.com (the "Site").

ELYAZIA operates as the "Data Controller" for your personal data and is committed to compliance with applicable international data protection standards, including the UK GDPR and EU GDPR. By using our Site, you consent to the data practices described in this policy.

2. INFORMATION WE COLLECT

We collect personal information to provide a bespoke luxury shopping experience and to fulfill our legal obligations as a dealer in precious metals.

  • Order Information: When you make a purchase, we collect your name, billing address, shipping address, payment information (processed via encrypted third-party gateways), email address, and phone number.
  • Identity Verification Data: Due to the high value of solid 18K-24K gold, we may collect government-issued identification for transactions exceeding $2,500 USD to comply with Anti-Money Laundering (AML) regulations.
  • Technical Data: We automatically collect information about your device, including your IP address, time zone, and browser cookies. This is used for fraud prevention and to optimize Site performance.

3. HOW WE USE YOUR PERSONAL INFORMATION

We process your information based on the following legal grounds: Contractual Necessity, Legal Obligation, and Legitimate Interest.

  • Order Fulfillment: To process payments, arrange shipping via insured couriers, and provide you with invoices and order confirmations.
  • Security and Fraud Prevention: To screen orders for potential risk or fraud, which is a vital component of trading in high-purity gold and silver.
  • Communication: To provide customer support and, where you have provided explicit consent, to send you updates regarding new ELYAZIA collections.

4. SHARING YOUR PERSONAL INFORMATION

To provide our services, we must share your information with select third-party partners who adhere to strict confidentiality standards:

  • Service Providers: We use Shopify to power our online store and Stripe/PayPal for secure payment processing. We do not store full credit card details on our servers.
  • Logistics & Manufacturing: We share your shipping details with our manufacturing partners and international couriers (e.g., DHL, FedEx) to fulfill your orders directly from our production facilities.
  • Compliance & Legal: We may share your information to comply with applicable laws, to respond to a subpoena, or to protect our rights.

5. INTERNATIONAL DATA TRANSFERS

As ELYAZIA is a UK entity utilizing a global supply chain, your personal information will be transferred outside of the UK and the European Economic Area (EEA), specifically to:

  • China: For manufacturing and direct fulfillment.
  • USA: For hosting services (Shopify) and payment processing.
  • UAE: For local delivery coordination.

We ensure that all cross-border transfers are protected by Standard Contractual Clauses (SCCs) or equivalent safeguards to ensure your data remains protected.

6. YOUR RIGHTS (UK GDPR & CCPA)

Depending on your location, you have the following rights regarding your personal data:

  • Right to Access: You may request a copy of the personal data we hold about you.
  • Right to Rectification: You may request that we correct any inaccurate information.
  • Right to Erasure: You may request that we delete your personal data (subject to legal retention requirements for tax and AML purposes).
  • Right to Opt-Out: You may unsubscribe from marketing communications at any time.

7. DATA RETENTION

We retain your Order Information for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements (typically 6 years under UK Tax Law).

8. SECURITY

ELYAZIA employs industry-standard security measures, including SSL (Secure Sockets Layer) encryption, to protect your data during transmission. While no method of transmission over the Internet is 100% secure, we follow all PCI-DSS requirements and implement additional generally accepted industry standards.

9. CONTACT US

For more information about our privacy practices, or if you would like to make a complaint or exercise your rights, please contact our Data Protection Officer at:

LEGAL DEPARTMENT

Email: legal@elyazia.com

All formal correspondence should be directed to the email above.