Privacy Policy
Last updated: April 5, 2026
Huntin Cards ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, and your rights regarding that information when you visit our website and make purchases.
1. Information We Collect
Information You Provide Directly
- Contact form: When you submit a contact or inquiry form, we collect your name, email address, phone number (if provided), and the message content.
- Purchase information: When you place an order, your billing name, shipping address, and email are collected by Stripe to process and fulfill your order.
Information Collected Automatically
- Shopping cart: Your cart contents are stored locally in your browser (localStorage) and are not transmitted to our servers unless you proceed to checkout.
- Standard web data: Like most websites, our hosting provider may log IP addresses, browser type, and pages visited for security and performance purposes.
2. Payment Processing โ Stripe
๐ Your payment data is handled exclusively by Stripe
Huntin Cards uses Stripeto process all payments. When you enter your payment information at checkout, that data is sent directly to Stripe's secure servers โ it never passes through or gets stored on Huntin Cards' servers.
- We do not store your credit card number, CVV, or full card details on our servers at any time.
- Stripe stores payment data in compliance with PCI-DSS (Payment Card Industry Data Security Standard).
- Stripe may collect and process your payment method, billing address, IP address, and device information to detect fraud and process payments.
- Your use of Stripe's services is also subject to Stripe's Privacy Policy.
3. Data We Store
Huntin Cards uses Supabase (a secure cloud database) to store the following data:
Contact Form Submissions
When you submit a contact form, we store: your name, email address, phone number (if provided), inquiry type (sell/general), and message. This data is used solely to respond to your inquiry.
Order Metadata
After a successful Stripe payment, we receive a webhook notification containing basic order metadata (which products were purchased, quantities). This is used to update our inventory. We do not receive or store your payment card details from these webhooks.
Product Images
Product images uploaded by the store owner are stored in Supabase Storage. These are publicly accessible for display on the website.
4. How We Use Your Information
- To process and fulfill your orders
- To send order confirmation and shipping notifications
- To respond to your contact form inquiries
- To manage our product inventory
- To improve our website and customer experience
- We do not sell your personal information to third parties.
- We do not use your information for advertising or marketing without your consent.
5. Cookies & Local Storage
Our website uses minimal browser storage:
- Shopping Cart (localStorage): Your cart items are saved locally in your browser so they persist between visits. This data stays on your device and is cleared when you complete a purchase or clear your browser data.
- Admin Session (cookie): If you are the site administrator, a secure HTTP-only session cookie is set upon login. This cookie is used only to authenticate admin access and expires after 24 hours.
- We do not use tracking cookies, advertising cookies, or analytics cookies at this time.
6. Data Security
- All data is transmitted over HTTPS (SSL/TLS encryption).
- Our database (Supabase) implements row-level security to protect data access.
- Admin access to our backend is protected by a secure password and JWT-signed session tokens.
- Despite these measures, no internet transmission or electronic storage is 100% secure. We take all reasonable precautions but cannot guarantee absolute security.
7. Data Retention
- Contact form submissions are retained as long as necessary to respond to your inquiry and are periodically reviewed and deleted.
- Order metadata is retained for business records and inventory management purposes.
- You may request deletion of your personal data by contacting us through the Contact page.
8. Children's Privacy
Huntin Cards is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe a child has submitted personal information to us, please contact us and we will delete it promptly.
9. Third-Party Services
We use the following third-party services that may process your data:
Stripe
Payment processing
Supabase
Database and file storage
Vercel
Website hosting
10. Your Rights
You have the right to:
- Request access to personal data we hold about you
- Request correction of inaccurate personal data
- Request deletion of your personal data
- Opt out of any future marketing communications
To exercise any of these rights, contact us through our Contact page.
11. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last Updated" date. Continued use of our website after changes constitutes acceptance of the revised policy.
12. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us through our Contact page.