Privacy Policy & GDPR
Effective Date: September 19, 2022 Last Updated: March 01, 2025
REXPRESS S.R.L. takes the privacy of our customers and those who visit our website and procure our products and services seriously. This privacy policy describes how and why we collect certain information and how we will help protect your privacy within our website. Our commitment to you is that we will not use or disclose information collected from you other than as described in this policy.
By visiting our website and utilizing our services, you are agreeing to the terms of this privacy policy and you are expressly consenting to the collection, use, and disclosure of your Personal Information in accordance with this privacy policy.
Where we need to collect personal data to provide our services or as required by law, and you fail to provide that data when requested, we will not be able to provide services to you.
This Privacy Policy has been updated to comply with the General Data Protection Regulation (GDPR) for individuals located in the European Economic Area (EEA). If you are an EEA resident, additional rights and obligations apply as outlined below.
What Information Do We Collect?
In order to provide this website and our services, we collect and process certain Personal Information and Non-Personal Information. Personal Information refers to a type of data that allows someone to identify or contact you, including, for example, your name, address, phone number, text (SMS, MMS), email address, as well as any other non-public information about you that is associated with or linked to any of the foregoing data. Non-Personal Information refers to a type of data that is not associated with or linked to your Personal Information; Non-Personal Information does not, by itself, permit the identification of individual persons. We collect Personal Information and Non-Personal Information, as described below.
We collect Personal Information as required to offer our services, as described in the Terms and Conditions, as voluntarily provided by you in the course of correspondence or registration, and as otherwise identified below. In addition, we collect Non-Personal Information such as anonymous, aggregate, or statistical data to improve our website and services.
In order to use certain services, you will be requested to register online and create an online account. Some services may not require registration. We collect and maintain a record of all data provided when you create the online account and use our services, including but not limited to:
Contact information, including name, phone number, and postal and email addresses
Username and password (Please note that password information is encrypted in our systems and we are not able to see its content)
Billing or payment information such as the last 4 digits of your credit card number, name, and zip code (Please note we do not store full credit card numbers in our systems)
Device information such as operating system and version
Purchase history
Online activity such as the pages you visited, content reviewed
Communication preferences
We may also collect and maintain records of information that you voluntarily provide to us. For example, we may ask you to participate in a survey and may ask you to provide statistical information such as age, gender, or other demographic data. However, unless such information is necessary for the Service or required by the Terms and Conditions, we do not require you to provide such information to us. If you enter into a contest or promotion on our website, we will collect the information you provide to participate in such contest or promotion. If you provide us feedback or contact us via email, we will collect your name and email address, as well as any other content included in the email, in order to send you a reply.
We may also collect aggregate, summary, or other anonymous data, which may include, by way of example, statistics regarding the popularity of particular pages within the website or information regarding types of Internet browsers used to access the website.
Lawful Basis for Processing (GDPR)
For individuals in the EEA, we process your personal data based on the following lawful bases under GDPR: – Contractual Necessity: We process your personal data where necessary to perform a contract with you (e.g., to provide our services as outlined in our Terms and Conditions). – Consent: Where you have given us explicit consent to process your personal data (e.g., for marketing communications or optional surveys). You may withdraw your consent at any time (see “Your GDPR Rights” below). – Legitimate Interests: We process your data where it is in our legitimate interest to do so (e.g., improving our services or preventing fraud), provided your rights and freedoms do not override these interests. – Legal Obligation: We process your data where required to comply with applicable laws or regulations.
Do We Use Cookies or Other Tracking Technologies?
Cookies are small files placed on a user’s computer by a website in order to facilitate use of that website. For example, a cookie may contain information about a user’s preferences, so that the website automatically complies with those preferences whenever the user visits that website. Tracking pixels are small HTML code snippets that collect information about user behavior and conversions. When you visit our website or open an email from us, we may create cookies and/or place tracking pixels for the purposes of facilitating and maintaining your current user session, and to collect information about how you interact with us, including your browsing and purchasing behavior. We may combine various information we collected about you and use them to improve our website and your online experience.
For EEA residents, we will only use non-essential cookies or tracking technologies with your explicit consent, in line with GDPR requirements. Essential cookies necessary for the operation of the website do not require consent.
If you wish to disable the cookies or tracking function, you may change the settings on your computer or internet browser accordingly. Please note that some of the functionality of this website may be compromised by blocking this function.
Special Notice Regarding Children
This website is not directed to children and children are not eligible to use our services. Protecting the privacy of children is very important to us. We do not collect or maintain Personal Information from people we actually know are under 18, and no part of our Site or Service is designed to attract people under 18 years of age. If we later learn that a user is below 18 years old or younger, we will take steps to remove that user’s Personal Information from our databases and to prevent that user from utilizing the website and the service. For EEA residents, this aligns with GDPR’s emphasis on protecting children’s data.
Where Do We Store Your Information?
We provide our services in the United States. If you are located outside the United States, including in the EEA, please be aware that any information you provide to us may be transferred to, and stored in, the United States. By using our service or otherwise providing us your information, you are expressly consenting to this transfer. For EEA residents, we ensure that any international data transfers comply with GDPR requirements, such as through the use of Standard Contractual Clauses (SCCs) or other approved mechanisms.
How Do We Use Your Information?
We use the information collected to provide our services and to improve our website. We do not sell or disclose your information, except with third parties specifically necessary to provide the service you purchased or as required by law.
We may also use the information collected to communicate with you to provide promotional materials about us, if you elected to receive such communication. You can change your communication preferences and type of information you receive from us by using the unsubscribe function within our emails sent to you or by contacting us by mail or email. As a necessary part of providing services, we may disclose information collected from you as described in this policy. For example, we may disclose certain Personal Information about you to our third-party service providers (e.g., our third-party payment processors), so long as they are only using the Personal Information to provide services to us. These providers are bound by contractual obligations to protect your data in line with GDPR where applicable.
Under certain limited circumstances, we may cooperate with legal investigations and/or we may be subject to legal requirements to disclose information collected through the Site or Services, such as, by way of example, to a court or a governmental agency, and our policy is to provide such cooperation and comply fully with all such legal requirements. We may also disclose Personal Information to protect or defend our customers’ rights or property and/or to investigate any violation or potential violation of the law, this privacy policy, or our Terms and Conditions.
You may elect to receive text messages from us. When you sign up to receive text messages, we will send you information about promotional offers and more. These messages may use information automatically collected based on your actions while on our sites and may prompt messaging such as cart reminders. To the extent you voluntarily opt to have SMS notifications sent directly to your mobile phone, we receive and store the information you provide, including your telephone number or when you read a text message. You may opt out of receiving text messages at any time by texting “STOP” to our text messages. For more information about text messages, see our Terms and Conditions.
We may use third-party advertising companies to serve ads when you visit our website. These companies may use non-personal information about your visits to this and other websites in order to provide advertisements about goods and services of interest to you. If you would like more information about this practice and to know your choices about not having this information used by these companies, please go to www.networkadvertising.org/managing/opt_out.asp. For EEA residents, such advertising will only occur with your consent.
If you enter and win a contest or other promotion, your consent to the disclosure of your personal information described below is a condition precedent to receiving the award or promotional products: (a) to the third party providing the prize for the contest or other promotion, solely to provide you such prize, and (b) announcing your name, city, state, and the fact that you won the contest or promotion. If we will be disclosing additional personal information in connection with a contest or other promotion, we will disclose that to you in a separate notice prior to your entering the contest or other promotion. By entering such contest or other promotion, you expressly consent to such disclosures.
Your GDPR Rights (EEA Residents)
If you are located in the EEA, you have the following rights under GDPR regarding your personal data: – Right to Access: You may request a copy of the personal data we hold about you. – Right to Rectification: You may request correction of inaccurate or incomplete data. – Right to Erasure (“Right to be Forgotten”): You may request deletion of your personal data under certain conditions. – Right to Restrict Processing: You may request that we limit the processing of your data. – Right to Data Portability: You may request your data in a structured, commonly used, and machine-readable format. – Right to Object: You may object to the processing of your data based on legitimate interests or for direct marketing purposes. – Right to Withdraw Consent: Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing. – Right to Lodge a Complaint: You may lodge a complaint with a supervisory authority in your country of residence (e.g., the Romanian National Supervisory Authority for Personal Data Processing, ANSPDCP, if in Romania).
To exercise these rights, please contact us as outlined in the “Questions and Feedback” section below. We will respond to your request within one month, though this may be extended by two additional months for complex requests, with prior notification.
What Choices Can I Make About My Information?
Because we respect your privacy, we may from time to time provide certain opportunities for you to indicate your preferences regarding how we use and/or disclose your information.
We may give you the option of declining any future offers or information about new products, promotions, or services, and our emails have procedures within them to cancel the receipt of any future mailings. To modify your email and text subscriptions, please let us know by contacting us via mail, email, or phone (see “Questions And Feedback” section below). Please include your full name and email address associated with your Account and a detailed description of your data request. In some cases, we may not be able to delete your information and will retain and use your information as necessary to comply with our legal obligations, resolve disputes, and enforce our agreements. Please note that you may continue to receive such communication for several days after you contact us, as some emails or texts may have been in production and queued before the changes took effect.
We require our third-party service providers to promise not to use such information except as necessary to provide the relevant services to us. For EEA residents, these providers are also required to comply with GDPR. Nonetheless, we do not maintain responsibility for the manner in which third parties use or further disclose Personal Information collected from you through the website or services, after we have disclosed that information to those third parties. If you do not want REXPRESS S.R.L. to use or disclose Personal Information collected about you in the manners identified in this policy as Necessary Communications and/or Necessary Disclosures, you may not use the Site or any Service.
The website may contain links to other third-party websites. Please be aware that we are not responsible for the privacy practices or the content of such other websites. We encourage you to read the privacy statements of each and every website you visit. This privacy statement applies solely to information collected by us.
As a registered user, you may access or update your account by accessing your Account Profile, or by contacting us via mail, email, or phone (please see “Questions And Feedback” section below for contact information). You may also close your account by contacting us via mail, email, or phone. Please include your full name and email address associated with your Account and a detailed description of your request. If you choose to close your account, we may retain some information associated with your account for internal purposes such as backups, fraud prevention, investigations, or legal compliance for a period necessary for that purpose.
How Do We Secure Your Information?
We implement a variety of security measures to maintain the safety of your personal information. Your personal information is contained behind secured networks and is only accessible by a limited number of persons who have special access rights to such systems and are required to keep the information confidential. When you place orders or access your personal information, we offer the use of a secure server. All sensitive/credit information you supply is transmitted via Secure Socket Layer (SSL) technology and then encrypted into our databases to only be accessed as stated above.
Furthermore, access to personal information is restricted within our own offices, so that only certain of our employees are granted access to information as appropriate to perform specific jobs and tasks (e.g., performing customer service). For EEA residents, these measures align with GDPR’s requirement to implement appropriate technical and organizational measures to protect personal data.
Please be aware that, although we endeavor to provide security for information in our possession and control, no security system can prevent against all potential security breaches, and we bear no liability for uses or disclosures of information arising in connection with the theft thereof. Likewise, Registered Users are responsible for safeguarding the confidentiality of usernames and passwords, and we bear no liability for access to, or use or disclosure of, personal information, if such access, use, or disclosure arises in connection with the theft or disclosure (whether intentional or negligent) of a password.
If you have any questions about our security measures, please contact us at support@r.express.
Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy, including to provide our services, comply with legal obligations, resolve disputes, and enforce our agreements. For EEA residents, this complies with GDPR’s data minimization and storage limitation principles. Specific retention periods depend on the type of data and purpose (e.g., billing data may be retained for 7 years to comply with tax laws). Upon request, we can provide more details about retention periods applicable to your data.
Data Protection Officer (GDPR)
For EEA residents, we have appointed a Data Protection Officer (DPO) to oversee GDPR compliance. You may contact our DPO at: Email: [dpo@r.express](mailto:dpo@r.express) Address: REXPRESS S.R.L., Bucureşti Sectorul 1, Intrarea GHEORGHE SIMIONESCU, Nr. 19, Ap. B26
Questions And Feedback
REXPRESS S.R.L. Bucureşti Sectorul 1, Intrarea GHEORGHE SIMIONESCU, Nr. 19, Ap. B26 Tel: +40 31 631 53 42 Email: [support@r.express](mailto:support@r.express)
Please include your full name, phone number, and email address associated with your Account and a detailed description of your data request. We will need to verify your identity to enable us to process your request and may call you. We will not discriminate in response to your exercise of your privacy rights and we will respond to your request within 45 days of receipt of your request, unless we need additional time. We will let you know if additional time is needed.