Privacy policy
Privacy Policy
Last updated: March 2, 2026
Magiskabutiken AB, org.nr [851107-8837], Lärkgatan 12, 343 35 Älmhult, Sweden (“we”, “us”, “our”) is the data controller for the processing of your personal data in accordance with this privacy policy.
We protect your personal privacy and process your personal data in accordance with the EU General Data Protection Regulation (GDPR) and applicable Swedish law.
This privacy policy explains how we collect, use, store and share your personal data when you visit our website, shop with us or otherwise come into contact with us.
1. What personal data we collect
We may collect the following categories of personal data:
Contact details
Name
Personal identification number (if required, e.g. invoice)
Address
Delivery address
Email address
Telephone number
Payment details
Payment method
Transaction details
Payment confirmations
Please note that card details are handled by our payment provider and are not stored by us.
Account information
Username
Password (encrypted)
Order history
Purchase information
Products you have purchased
Order history
Returns and complaints
Technical information
IP address
Device information
Browser type
Cookies and usage data
Communication
Messages you send to us via email or contact form
2. How we collect personal data
We collect personal data:
Directly from you when you make a purchase, create an account or contact us
Automatically via cookies and similar technologies when you use our website
From payment providers and logistics partners
From Shopify, which provides our e-commerce platform
3. Legal basis for processing
We process your personal data based on the following legal grounds:
Performance of contracts
To be able to process and deliver your order and handle payment, returns and customer service.
Legal obligation
To comply with requirements under the Accounting Act, tax legislation and other applicable law.
Legitimate interest
To:
Prevent fraud
Improve our services
Manage customer relationships
Respond to customer inquiries
Consent
For:
Marketing via email and SMS
Non-essential cookies
You can withdraw your consent at any time.
4. How we use your personal data
We use your data to:
Process and deliver orders
Manage payments
Send order confirmations
Provide customer support
Comply with legal requirements
Improve our website and user experience
Send marketing (if you have consented)
5. Cookies
We use cookies to improve your experience on our website.
Cookies can be:
Essential cookies – required for the website to function
Analysis cookies – help us understand how the website is used
Marketing cookies – used for targeted advertising
You can change or withdraw your consent at any time via our cookie banner.
For more information, please see our [Cookie Policy].
6. Sharing of personal data
We share your personal data with:
Shopify
Our e-commerce platform is provided by Shopify International Ltd. Shopify processes personal data in accordance with its personal data processing agreement and privacy policy.
Payment providers
To be able to process payments.
Shipping companies
To deliver your orders.
IT and system providers
To operate and maintain our systems.
We do not sell your personal data.
7. International transfers
Some of our suppliers (including Shopify) may process personal data outside the EU/EEA.
When transferring to a country outside the EU/EEA, we ensure that:
The EU Commission's standard contractual clauses are used, or
The country has an adequacy decision
8. Storage of personal data
We store your personal data for as long as necessary for the purpose.
Purchase data is stored for 7 years according to the Accounting Act.
Account data is stored as long as the account is active.
Marketing consent is stored until you revoke it.
When the data is no longer needed, it is deleted or anonymized.
9. Your rights
Under the GDPR, you have the right to:
Request access to your personal data
Request correction of inaccurate data
Request deletion ("right to be forgotten")
Request restriction of processing
Object to processing
Request data portability
Withdraw consent
To exercise your rights, please contact us using the details below.
You also have the right to file a complaint with the Swedish Data Protection Authority (IMY).
10. Security
We take technical and organizational security measures to protect your personal data against unauthorized access, loss or misuse.
11. Children
Our website is not directed at persons under the age of 18. We do not knowingly collect personal data from children.
12. Changes to the policy
We may update this privacy policy as necessary. The latest version is always published on our website.
13. Contact information
Magiskabutiken AB
Org.nr: [851107-8837]
Address: Lärkgatan 12, 343 35 Älmhult, Sweden
E-mail: info@magiskabutiken.se
