Last updated: May 26, 2026
Repose Health, Inc. (“Repose”, “we”, “us”) operates getrepose.com. This policy explains what data we collect, how we use it, who we share it with, and the rights you have.
1. Data we collect
You give us:
- Name, email, shipping/billing address (when you order)
- Payment information (processed by Shopify Payments — we do not store full card details)
- Account credentials if you create an account
- Customer support correspondence
- Quiz responses (anonymously if you don't provide email)
- Newsletter signups
- Reviews, photos, or content you submit
Collected automatically:
- Device and browser info (type, OS, screen size)
- IP address and approximate location
- Pages visited, time on site, click paths
- Referral source (how you found us)
- Cookies and similar tracking technology
2. How we use your data
- Process and fulfil orders
- Manage subscriptions and billing
- Send transactional emails (order confirmation, shipping updates)
- Send marketing emails if you've opted in
- Respond to customer support inquiries
- Improve our website and products
- Detect and prevent fraud
- Comply with legal obligations
3. Legal basis (UK/EU customers)
Under UK GDPR, we process your data based on:
- Contract: to fulfil your orders and provide services
- Consent: for marketing emails and non-essential cookies
- Legitimate interest: for website analytics, fraud prevention, product improvement
- Legal obligation: for tax, accounting, regulatory requirements
4. Who we share your data with
We share necessary data with:
- Shopify — our e-commerce and payments platform
- Klaviyo — our email marketing platform
- Shipping carriers (USPS, Royal Mail, DPD, etc.) — to deliver orders
- Payment processors (Stripe via Shopify Payments, PayPal) — to process payments
- Analytics providers (Google Analytics, Meta Pixel) — aggregated, non-identifying data
- Customer support tools — to handle inquiries
We do not sell your data to third parties for advertising or otherwise.
5. Your rights
Depending on your jurisdiction, you may have the right to:
- Access: request a copy of the data we hold about you
- Correction: ask us to fix inaccurate data
- Deletion: request that we delete your data
- Portability: get a copy in a portable format
- Restriction: limit how we process your data
- Objection: object to certain types of processing (e.g. direct marketing)
- Withdraw consent: for any processing based on your consent
To exercise any of these rights, email hello@getrepose.com. We'll respond within 30 days.
California residents (CCPA): you have the right to know what data we collect, request deletion, opt out of any sale of personal information, and not be discriminated against for exercising these rights. We do not sell your personal information.
6. Data retention
- Account/order data: 7 years (US tax and accounting requirements)
- Marketing data: until you unsubscribe or request deletion
- Customer support: 3 years after the inquiry closes
- Anonymous analytics: indefinitely (cannot identify you)
7. Data security
We use industry-standard security measures including TLS encryption, secure data centres (via Shopify), access controls, and regular audits. No system is 100% secure — we'll notify you and the relevant authorities if a breach affects your data.
8. International transfers
If you're in the UK or EU, your data may be transferred to and processed in the United States. We rely on Standard Contractual Clauses and equivalent safeguards for such transfers.
9. Children
Our products and services are not directed to children under 18. We don't knowingly collect data from anyone under 18. If you believe we have, please email hello@getrepose.com and we'll delete it.
10. Changes to this policy
We may update this privacy policy. The “last updated” date reflects the latest version. Material changes will be communicated by email to account holders.
11. Contact
Privacy questions or requests: hello@getrepose.com
Postal: Repose Health, Inc., Pennsylvania, USA.
