Privacy policy
This policy describes how we handle your personal data when you visit our site or make a purchase. It is drafted in accordance with EU Regulation 2016/679 (GDPR), which applies to our processing because we serve customers residing in the European Union.
Last updated: 2026-05-27
1. Data controller
The data controller is Hybrid Athletes Gear LLC, with registered office at 30 N Gould St Ste R, Sheridan, WY 82801, USA. You can contact us at info@hybridathletesgear.com for any matter relating to your personal data.
2. What data we collect
We collect only the data strictly necessary to provide you the service. In particular:
• Contact and shipping data: first name, last name, shipping address, email, phone (optional). Required to process and deliver the order.
• Payment data: card details are not processed directly by us. They are transmitted encrypted to Stripe, which returns them to us only as tokens (e.g. last 4 digits of card) for accounting purposes.
• Navigation data: IP address, browser type, pages visited, time spent on site. Collected automatically for technical and statistical purposes.
• Communications: content of emails you send us, customer service requests, any newsletter subscription.
3. Why we process your data (legal basis)
We process your data for the following purposes and legal bases:
• Contract performance: order management, payment, shipping, post-sale assistance, returns and refunds (Art. 6(1)(b) GDPR).
• Legal obligations: retention of accounting and tax data for the period required by applicable law (Art. 6(1)(c) GDPR).
• Legitimate interest: fraud prevention, site security, aggregated statistical analysis to improve service (Art. 6(1)(f) GDPR).
• Consent: sending newsletters or promotional communications (Art. 6(1)(a) GDPR). You may withdraw consent at any time.
4. Who we share your data with
Your data is processed by our authorized personnel and external suppliers providing services essential to site operation, appointed as data processors under Art. 28 GDPR:
• Stripe Payments Europe Ltd. — payment processing • Resend Inc. — transactional email delivery • Vercel Inc. — site hosting • Carriers (DHL, UPS, GLS or equivalent) — goods delivery
Some of these providers are based in the United States. In such cases the transfer takes place on the basis of Standard Contractual Clauses approved by the European Commission or adequacy decisions, as provided by Chapter V GDPR.
We do not sell, rent or transfer your personal data to third parties for marketing purposes.
5. How long we keep them
We keep data for as long as strictly necessary for the purposes collected:
• Order and invoicing data: 10 years from order date (civil and tax obligation). • Customer service contact data: 24 months from last contact. • Newsletter subscription: until consent withdrawal or unsubscription via the link in each email. • Navigation data: maximum 14 months.
At the end of retention periods, data is deleted or irreversibly anonymized.
6. Your rights
As a data subject you have the following rights, exercisable at any time by writing to info@hybridathletesgear.com:
• Access to your data (Art. 15 GDPR) • Rectification of inaccurate data (Art. 16) • Erasure, where applicable (Art. 17) • Restriction of processing (Art. 18) • Portability in structured format (Art. 20) • Objection to processing based on legitimate interest (Art. 21) • Withdrawal of consent at any time, without affecting the lawfulness of prior processing • Complaint to the supervisory authority of your country (in Italy: Garante per la Protezione dei Dati Personali, www.garanteprivacy.it)
We respond to requests without undue delay and in any case within one month.
7. Cookies
Our use of cookies is described in the dedicated Cookie Policy.
8. Changes to this policy
We may update this policy to reflect regulatory changes or service developments. The current version is always available on this page with the date of the last update.