Shipping across EU — usually 3–7 days
en
EUR
AUTOPARTS EU

PRIVACY POLICY

How we collect, use, store and protect your personal data under the EU General Data Protection Regulation (GDPR).

Draft note: This is a structural draft. Before going live, have a GDPR-qualified lawyer (БГ + DE) review for completeness, specifically Art. 13/14 information, processors list and DPA addendum links.

DATA CONTROLLER

AutoParts EU OOD, registered in Bulgaria, is the data controller for personal data collected through this site.

WHAT WE COLLECT

  • Order details — your name, email, optional phone, country, optional VAT number, the message you typed in the order form.
  • Communication — emails and messages you send us about your order.
  • Technical data — IP address, browser type and pages viewed, used for security and to detect abuse. Not used for advertising profiles.

WHY WE USE IT

  • To process and ship your order (legal basis: contract).
  • To issue an invoice and meet tax / accounting obligations (legal basis: legal obligation under EU VAT and Bulgarian accounting law).
  • To answer your questions (legal basis: contract / consent).
  • For B2B VAT numbers — to validate against VIES so we can apply reverse-charge VAT (legal basis: legal obligation).

HOW LONG WE KEEP IT

Order and invoice data: 10 years, as required by Bulgarian accounting law. Communication logs: 24 months. Server access logs: 90 days.

YOUR RIGHTS

You have the right to:

  • Ask us what personal data we hold about you (Art. 15 GDPR).
  • Ask us to correct mistakes (Art. 16).
  • Ask us to delete your data, where we no longer need it for legal reasons (Art. 17).
  • Object to processing (Art. 21).
  • Lodge a complaint with your national data protection authority.

COOKIES

We use only strictly necessary cookies for sign-in to the staff admin area and for cart/session state. No tracking cookies, no third-party analytics, no advertising pixels. You can clear cookies any time from your browser settings without breaking the site.

CONTACT FOR PRIVACY QUESTIONS

Email [email protected] with subject "Privacy request". We respond within 30 days as required by Art. 12 GDPR.