Legal
Privacy Policy
Last updated: 6 June 2026 · Effective immediately
About this Policy
This Privacy Policy describes how Clarion Peptides (“we”, “us”, “our”) collects, uses, discloses, and safeguards personal information when you visit our website or place an order. We are committed to protecting your privacy and processing your data lawfully, fairly, and transparently. Please read this policy carefully. By using our website or services you acknowledge the practices described below.
1.Who We Are — Data Controller
Clarion Peptides is the data controller responsible for your personal information. We determine the purposes and means by which your personal data is processed.
If you have any questions about this policy or your data, you can contact our privacy team at privacy@clarionpeptides.com. We aim to respond to all legitimate requests within 30 days of receipt.
2.Information We Collect
We collect the following categories of personal information:
Order and Transactional Data
Your full name, email address, telephone number, billing address, and shipping address. We also retain a record of your order — which products you purchased, quantities, and the price paid. We do not store payment card numbers or CVV codes. Payment is handled exclusively by PCI-DSS-compliant third-party processors who are bound by their own security standards.
Communications Data
If you contact us by email or through our contact form, we retain copies of that correspondence, including your name, email, and the content of your message, in order to respond to your enquiry and maintain a record of our interactions.
Technical and Usage Data
When you browse our website, our servers automatically record certain information including your IP address, browser type and version, operating system, referring URL, pages visited, and time and date of visits. This data is used solely for security, fraud prevention, and the performance of our website. It is not linked to identifiable individuals without cause.
Testimonial and Review Data
If you voluntarily submit a research testimonial through our website, you provide your name, professional role, and written review. By submitting, you grant us permission to display that content publicly on our website. You may request removal at any time by contacting us.
3.Legal Basis for Processing
We process personal data only where we have a lawful legal basis to do so. Depending on the context, we rely on one or more of the following:
- Contractual necessity: Processing your order, arranging delivery, and responding to order-related enquiries.
- Legitimate interests: Fraud prevention, website security, server log analysis, and improving our services — provided these interests do not override your fundamental rights.
- Legal obligation: Retaining financial and tax records as required by applicable law.
- Consent: Sending non-transactional communications (e.g. newsletters) — only if you have explicitly opted in. You may withdraw consent at any time.
4.How We Use Your Information
Your personal data is used exclusively for the following purposes:
- To process, fulfil, and confirm your orders
- To dispatch and track your shipment and communicate delivery updates
- To respond to customer service enquiries, complaints, or support requests
- To investigate and prevent fraudulent transactions or unauthorised access
- To comply with our legal and regulatory obligations, including financial record-keeping
- To send transactional communications such as order confirmations and shipping notifications
- To maintain the security and operational performance of our website and infrastructure
- To enforce our Terms of Service and other agreements
We will never use your information for unrelated marketing without your explicit consent, and we will never sell, rent, or otherwise commercially exploit your personal data to third parties.
5.Cookies and Tracking Technologies
Our website uses a minimal number of cookies strictly necessary for its operation. We do not use advertising, retargeting, or cross-site tracking cookies.
Session Cookies
Temporary cookies used to maintain the state of your shopping cart during a single session. These expire when you close your browser.
LocalStorage (Cart Persistence)
Your cart contents are stored in your browser's local storage so items persist between visits. This data never leaves your device and is never transmitted to our servers until you place an order.
Authentication Cookies
Secure, httpOnly session cookies used exclusively for our internal administrative area. These are not set for regular site visitors and expire after 8 hours.
You can disable cookies in your browser settings. Disabling session cookies may impair cart functionality but will not prevent you from browsing the site.
6.How We Share Your Information
We share personal data only with the following categories of third parties, and only to the extent necessary to fulfil our services:
Shipping and Fulfilment Partners
Your name, address, and contact details are shared with our logistics and courier partners to arrange delivery of your order. These partners process your data solely for delivery purposes and are prohibited from using it for any other purpose.
Payment Processors
Payment transactions are handled by PCI-DSS-compliant third-party processors. We do not receive or store your full card details. The payment processor may retain transaction records in accordance with their own privacy policies.
Email Service Providers
Transactional emails (order confirmations, shipping notifications) are sent via a third-party email delivery provider. Your email address and order details are transmitted to that provider solely for this purpose.
Cloud Infrastructure
Our database and file storage are hosted on Supabase, a cloud infrastructure provider operating in compliance with SOC 2 and other security standards. Your data is stored on their encrypted servers.
Legal and Regulatory Authorities
We may disclose personal data if required to do so by law, court order, or a legitimate request from a competent regulatory authority. We will notify you of any such disclosure where we are legally permitted to do so.
We do not sell, rent, lease, or otherwise commercially share your personal data with any third party for their own marketing or commercial purposes.
7.International Data Transfers
Our infrastructure providers may process data in jurisdictions outside your country of residence. Where personal data is transferred internationally, we ensure that appropriate safeguards are in place — such as Standard Contractual Clauses approved by relevant data protection authorities — to maintain the same level of protection required under applicable privacy law.
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland and have concerns about international transfers of your data, please contact us at privacy@clarionpeptides.com.
8.No Customer Accounts
Clarion Peptides operates exclusively on a guest checkout model. We do not create, maintain, or require persistent customer accounts. You are not required to register with us to browse products or place an order.
Order records are stored in our secure database for fulfilment and legal record-keeping only. There is no publicly accessible profile, login portal, or user dashboard for customers. This design decision minimises the amount of personal data we hold and reduces the risk surface associated with account-based systems.
9.Data Retention
We retain personal data for the minimum period necessary for the purpose for which it was collected, subject to the following:
- Order records: Retained for 7 years to comply with tax, accounting, and financial regulation requirements.
- Customer service correspondence: Retained for 3 years or until the matter is resolved, whichever is shorter.
- Server and access logs: Retained for 90 days for security and diagnostic purposes, then deleted.
- Testimonial submissions: Retained indefinitely while displayed on the site; removed upon written request.
When data is no longer required, it is securely deleted or anonymised in accordance with our data retention schedule.
10.Your Rights
Subject to applicable data protection law, you have the following rights regarding your personal data:
Access
Request a copy of the personal data we hold about you.
Rectification
Request correction of inaccurate or incomplete data.
Erasure
Request deletion of your data, subject to legal retention obligations.
Restriction
Request that we limit processing of your data in certain circumstances.
Portability
Request your data in a structured, machine-readable format.
Objection
Object to processing based on legitimate interests.
Withdraw Consent
Withdraw consent for any processing based on consent, at any time.
Complaint
Lodge a complaint with your local data protection supervisory authority.
To exercise any of these rights, contact us at privacy@clarionpeptides.com. We will respond within 30 days. We may need to verify your identity before processing a request.
11.Security Measures
We implement a range of technical and organisational measures to protect your personal data against unauthorised access, loss, destruction, or alteration:
- All data transmitted between your browser and our servers is encrypted using TLS 1.2 or higher (HTTPS).
- Our database enforces row-level security (RLS) policies ensuring that only authorised processes can access customer records.
- Administrative access to the backend is protected by a secure session cookie and password authentication, with no public-facing registration.
- Database credentials and service keys are stored as environment variables and are never committed to source code.
- We conduct periodic reviews of our security practices and update our infrastructure in response to known vulnerabilities.
- Payment data is never stored on our servers — it is transmitted directly to our PCI-DSS-compliant payment processor.
No method of electronic transmission or storage is 100% secure. While we use commercially reasonable precautions, we cannot guarantee absolute security. In the event of a data breach that is likely to result in a risk to your rights, we will notify you as required by applicable law.
12.Children's Privacy
Our products are research compounds intended solely for use by qualified scientific professionals. Our website and services are not directed at, and we do not knowingly collect personal data from, individuals under the age of 18. If we become aware that we have inadvertently collected personal data from a minor, we will delete it promptly.
13.Third-Party Links
Our website may contain links to third-party websites, including laboratory report portals, research databases, or partner organisations. This Privacy Policy does not apply to those external sites. We are not responsible for the privacy practices of third-party websites and encourage you to review their privacy policies before providing any personal information.
14.Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or service offerings. When we do, we will revise the “Last updated” date at the top of this page. For material changes, we will take reasonable steps to notify affected users — for example, by placing a notice on our website.
Your continued use of our website after any changes constitutes your acceptance of the updated policy. We encourage you to review this page periodically.
15.Contact and Complaints
For any privacy-related questions, requests, or concerns, please contact us:
Email: privacy@clarionpeptides.com
General enquiries: support@clarionpeptides.com
If you are based in the UK or EEA and are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority — for example, the Information Commissioner's Office (ICO) in the UK at ico.org.uk.