Privacy Policy
Last updated: May 13, 2026
1. Who We Are
ANISSOU is a body care brand operated by ANISSOU ("we", "us", "our"). Our website is located at https://anissou.com. We are the data controller for personal data collected through this website.
For privacy-related inquiries, contact us at: [email protected]
2. What Data We Collect
We collect only the data necessary to operate our waitlist and communicate with you:
- Email address: Provided when you join the waitlist. Used to notify you about product launches and brand updates.
- Usage data: Anonymous analytics about how visitors interact with our website (pages visited, time on site, referral source). Collected via Google Tag Manager and associated analytics tools.
- Device and browser information: Automatically collected by our hosting infrastructure for security and performance purposes.
We do not collect payment data directly. Any purchases made through our store are processed by Shopify, which operates under its own privacy policy.
3. Legal Basis for Processing (GDPR)
For users in the European Economic Area (EEA) and United Kingdom, we process your data under the following legal bases:
- Consent (Art. 6(1)(a) GDPR): When you submit your email to join our waitlist, you consent to receive communications from ANISSOU. You may withdraw consent at any time by unsubscribing.
- Legitimate interests (Art. 6(1)(f) GDPR): We process anonymous usage data to understand how our website is used and to improve it.
4. How We Use Your Data
- To send you launch notifications and updates about ANISSOU products
- To respond to inquiries you send us directly by email
- To analyze website usage and improve our content and user experience
- To comply with our legal obligations
We do not sell your data. We do not share your data with third parties for their own marketing purposes.
5. Third-Party Services
We use the following third-party services to operate this website. Each operates under its own privacy policy:
- Google Tag Manager / Google Analytics: Website analytics and tag management.
- Vercel: Website hosting and content delivery.
- Cloudflare: DNS management and email routing.
- Shopify: E-commerce platform for product sales (when available).
6. Cookies
This website uses cookies and similar tracking technologies for analytics purposes (via Google Tag Manager). These are non-essential cookies.
By continuing to use this website, you consent to our use of analytics cookies. You can disable cookies in your browser settings at any time without affecting your ability to use our site.
We do not use advertising, retargeting, or third-party tracking cookies.
7. Data Retention
We retain your email address for as long as you remain on our waitlist. If you unsubscribe or request deletion, we will remove your data within 30 days.
Anonymous analytics data is retained according to the data retention settings of our analytics tools (typically 14 months for Google Analytics).
8. Your Rights
Under GDPR and other applicable privacy laws, you have the following rights:
- Right of access: Request a copy of the personal data we hold about you.
- Right to rectification: Request correction of inaccurate or incomplete data.
- Right to erasure: Request deletion of your personal data ("right to be forgotten").
- Right to restrict processing: Request that we limit how we use your data.
- Right to data portability: Request your data in a structured, machine-readable format.
- Right to withdraw consent: Withdraw consent at any time where processing is based on consent. This does not affect the lawfulness of processing before withdrawal.
- Right to object: Object to processing based on legitimate interests.
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days. You also have the right to lodge a complaint with your local data protection authority.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. Our website is served over HTTPS. Access to data is restricted to authorized personnel only.
10. International Data Transfers
Your data may be processed in countries outside your own, including the United States, where our third-party service providers operate. We ensure such transfers comply with applicable data protection laws, including through the use of Standard Contractual Clauses where required under GDPR.
11. Children's Privacy
This website is not directed at children under the age of 16. We do not knowingly collect personal data from anyone under 16. If you believe we have inadvertently collected such data, contact us and we will delete it promptly.
12. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. We encourage you to review this page periodically. Continued use of this website after changes constitutes acceptance of the updated policy.
13. Contact
For any questions about this Privacy Policy or how we handle your data, contact us at: [email protected]