Privacy Policy

1. Introduction

Still Mom (“we,” “our,” “us”) is committed to protecting your privacy. This Privacy Policy outlines how we collect, use, store, and share personal data through our website https://still-mom-demo.monobrands.lt, which is built on WordPress and uses third-party plugins such as WooCommerce, Amelia, and Stripe.

This Privacy Policy applies to all users (visitors, Clients, and Specialists) who access or use our services through the website. It complies with the General Data Protection Regulation (GDPR) and other applicable data protection laws.


2. Information We Collect

We may collect and process the following categories of personal data:

2.1. Information You Provide Directly

When interacting with our website (e.g., making a booking, registering, contacting support), you may voluntarily submit:

  • Full name

  • Email address

  • Phone number

  • Billing and shipping address

  • Booking details (services chosen, preferred dates/times, messages to Specialist)

  • Any comments or notes in forms

  • Invoices and payment references (non-sensitive)

2.2. WooCommerce Purchase Data

When you place an order through WooCommerce, we collect:

  • Items purchased

  • Order amount and currency

  • Payment method (via Stripe/PayPal, no card details stored)

  • IP address and geolocation (for tax and fraud prevention)

2.3. Automatically Collected Information

When you browse the site, we may collect via cookies or tracking scripts:

  • IP address

  • Browser type and version

  • Device type and OS

  • Referring URL

  • Pages visited and time on page

  • Booking conversion activity (e.g., abandoned bookings)

  • WooCommerce cart activity

  • Amelia plugin interaction logs (e.g., booking confirmations)

This data helps us improve the site’s functionality and user experience.


3. How We Use Your Information

We use your personal data for the following purposes:

  • To process bookings and manage appointments via Amelia plugin

  • To manage purchases and invoices via WooCommerce

  • To fulfill legal or tax obligations (e.g., invoice archiving)

  • To respond to inquiries or customer service requests

  • To send confirmations, updates, and reminders

  • To communicate about changes to services or terms

  • To send promotional emails (only if you have opted-in)

  • To improve website functionality, detect errors or misuse

  • To maintain backups, perform analytics, and security audits


4. Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA) or the UK, we rely on the following legal grounds for processing:

  • Consent – for marketing communications, cookies, and newsletters

  • Contractual necessity – to provide services, process orders, and issue invoices

  • Legal obligation – to comply with accounting, tax, or regulatory requirements

  • Legitimate interest – for analytics, fraud prevention, customer support, platform optimization


5. Third-Party Data Sharing

We do not sell or rent your data. We may share it with trusted third parties, only when necessary:

Provider Purpose GDPR Compliance
Stripe Secure payment processing ✅
PayPal Alternative payment gateway ✅
Amelia Booking system ✅
WooCommerce E-commerce system ✅
Google Analytics Website usage analytics ✅ (IP anonymization enabled)
Email service (e.g., MailerLite or Brevo) Marketing/newsletters (opt-in only) ✅
Web hosting provider (e.g., SiteGround, Hostinger) Hosting, backup & performance ✅

All partners and providers are bound by Data Processing Agreements (DPAs) and must comply with strict confidentiality, security, and GDPR rules.


6. Cookies and Tracking Technologies

We use cookies and tracking tools to:

  • Enable essential site functions (e.g., login, bookings, cart)

  • Track analytics and performance (Google Analytics)

  • Remember your preferences

  • Improve UX and A/B test features

You can:

  • Manage cookie preferences via our cookie banner

  • Disable cookies through your browser (may impact functionality)

For full details, please see our Cookie Policy.


7. Data Retention

We retain your data for the following periods:

  • Account & order data: 10 years (accounting/tax law)

  • Inactive user profiles: Deleted after 2 years of inactivity

  • Booking records: 1 year from last activity (extendable for recurring sessions)

  • Marketing opt-in data: Until consent withdrawn

  • Contact form entries: 12 months for support tracking

You may request deletion of your data at any time unless we’re legally required to retain it.


8. Data Security

We implement technical and organizational measures including:

  • SSL encryption for all traffic

  • Firewall & anti-malware protection

  • Secure data centers (via hosting provider)

  • WordPress security hardening

  • Regular plugin/theme updates

  • 2FA & access control for admin area

Despite all efforts, no system is 100% secure. If a breach occurs, we will notify users within 72 hours as required by GDPR.


9. Your GDPR Rights

You have the right to:

  • Access the personal data we hold about you

  • Request correction of inaccurate or incomplete data

  • Request erasure (“right to be forgotten”)

  • Object to processing or request restriction

  • Withdraw consent at any time (e.g., newsletter opt-out)

  • Data portability (receive your data in .CSV or .JSON format)

  • Lodge a complaint with your local Data Protection Authority

To exercise any of these rights, email us at: info@still-mom-demo.monobrands.lt


10. Children’s Privacy

Still Mom is not intended for children under 13 years of age. We do not knowingly collect or store data from minors. If you believe we have collected such data, please contact us and we will delete it immediately.


11. Third-Party Links

Our website may include links to third-party services (e.g., Instagram, Stripe). We are not responsible for their privacy practices. Please review their privacy policies before using their platforms.


12. Automated Decision-Making and Profiling

Still Mom does not use any automated decision-making or profiling that has legal or significant effects on users.


13. Data Transfers Outside the EU

If any of your data is transferred to non-EU countries (e.g., via email or payment processors), we ensure adequate safeguards via:

  • Standard Contractual Clauses (SCCs)

  • DPA agreements

  • Data minimization and encryption


14. Changes to This Privacy Policy

We may revise this Privacy Policy to reflect changes in our practices or legal obligations. Updates will be posted on this page with a new “Effective Date”. We recommend reviewing this page regularly.


15. Contact Us

For any privacy-related concerns, requests, or questions, please contact:

Still Mom
Email: info@still-mom-demo.monobrands.lt
Website: https://still-mom-demo.monobrands.lt