Privacy Policy
Last updated: June 24, 2026
Effective date: June 24, 2026
This Privacy Policy ("Policy") describes how Beautttnaturalio.ddd ("Company," "we," "us," or "our") collects, uses, discloses, and protects personal information when you visit our website at https://beautttnaturalio.world (the "Site"). We are headquartered in Lyons, Illinois, United States, and this Policy is designed to comply with applicable U.S. federal and state privacy laws, including but not limited to:
- California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA)
- Virginia Consumer Data Protection Act (VCDPA)
- Colorado Privacy Act (CPA)
- Connecticut Data Privacy Act (CTDPA)
- Utah Consumer Privacy Act (UCPA)
- Texas Data Privacy and Security Act (TDPSA)
- Illinois Personal Information Protection Act (815 ILCS 530/1 et seq.)
- Children's Online Privacy Protection Act (COPPA), 15 U.S.C. § 6501 et seq.
- Federal Trade Commission (FTC) guidance on privacy and data security
Where the General Data Protection Regulation (GDPR) applies to visitors in the European Economic Area (EEA), additional rights are described in Section 12 below.
1. Business / Data Controller Information
The entity responsible for the collection and processing of personal information is:
- Legal / Business Name: Beautttnaturalio.ddd
- Physical Address: T-Float (upstairs studio), 8647 Ogden Ave, Lyons, IL 60534, United States
- Email: admin@beautttnaturalio.world
- Phone: +1 (630) 418-5671
- State of Operation: Illinois, United States
2. Notice at Collection
At or before the point of collection, we inform you of the categories of personal information we collect and the purposes for which they are used. This notice applies to information collected through the Site, contact forms, cookies, and similar technologies.
3. Categories of Personal Information We Collect
In the preceding 12 months, we may have collected the following categories of personal information as defined under California and other U.S. state privacy laws:
- Identifiers — Name, email address, IP address, and similar online identifiers submitted via our contact form or collected automatically.
- Customer Records (California Civil Code § 1798.80(e)) — Name and email address provided when you contact us.
- Internet or Other Electronic Network Activity — Browsing history on our Site, pages viewed, referring URLs, browser type, device type, and interaction data collected through cookies and server logs.
- Geolocation Data — Approximate location derived from IP address (city/region level only).
- Inferences — Preferences inferred from your cookie consent choices and Site interaction patterns, where applicable.
We do not knowingly collect the following categories: Social Security numbers, driver's license numbers, financial account information, precise geolocation, biometric information, health or medical records, or other sensitive personal information as defined under applicable state laws.
4. Sources of Personal Information
We collect personal information from the following sources:
- Directly from you — When you complete our contact form, register interest in workshops, or communicate with us by email or phone.
- Automatically — Through cookies, server logs, and similar technologies when you browse the Site. See our Cookie Policy.
- From your device and browser — Technical data such as operating system, screen resolution, and language preferences.
5. Purposes for Collecting and Using Personal Information
We use personal information for the following business and commercial purposes:
- Responding to your inquiries and fulfilling your requests submitted through the contact form.
- Operating, maintaining, and improving the Site and user experience.
- Analyzing Site traffic and usage patterns (only with your consent for analytics cookies).
- Delivering and measuring relevant content (only with your consent for marketing cookies).
- Complying with applicable legal obligations, court orders, and law enforcement requests.
- Detecting, preventing, and addressing security incidents, fraud, and technical issues.
- Maintaining records of your cookie and privacy consent preferences.
We do not use personal information for purposes materially different from those disclosed in this Policy without providing updated notice.
6. Disclosure and Sharing of Personal Information
We do not sell your personal information. We have not sold personal information in the preceding 12 months and do not have actual knowledge of selling personal information of consumers under 16 years of age.
We do not share personal information for cross-context behavioral advertising unless you have expressly consented to marketing cookies through our cookie banner. You may opt out at any time by rejecting marketing cookies or contacting us directly.
We may disclose personal information to the following categories of third parties for business purposes only:
- Service providers / processors — Web hosting, email delivery, and infrastructure providers bound by contractual obligations to process data only on our instructions and maintain appropriate security.
- Analytics providers — Only when you have consented to analytics cookies (e.g., Google Analytics, if enabled).
- Legal and regulatory authorities — When required by federal, state, or local law, subpoena, court order, or governmental request.
- Professional advisors — Attorneys, accountants, or insurers where necessary to protect our legal rights.
We do not disclose personal information to third parties for their own independent marketing purposes.
7. Data Retention
We retain personal information only for as long as reasonably necessary to fulfill the purposes described in this Policy, unless a longer retention period is required or permitted by law:
- Contact form submissions: Up to 24 months from the date of submission, then securely deleted or anonymized.
- Cookie consent records: Up to 12 months, after which renewed consent is requested.
- Analytics data: Up to 26 months in aggregated or de-identified form, where analytics cookies are enabled.
- Server and security logs: Up to 90 days for security monitoring and troubleshooting.
- Legal holds: Data subject to litigation or regulatory inquiry may be retained until the matter is resolved.
Retention periods are determined based on the nature of the data, the purpose of processing, and applicable legal requirements.
8. Your Privacy Rights (United States)
8.1 Rights Available to All U.S. Residents
Regardless of your state of residence, you may contact us to:
- Request information about the personal information we hold about you.
- Request correction of inaccurate personal information.
- Request deletion of personal information, subject to legal exceptions.
- Opt out of marketing communications at any time.
8.2 California Residents (CCPA / CPRA)
If you are a California resident, you have the following additional rights:
- Right to Know — Request disclosure of the categories and specific pieces of personal information collected, sources, purposes, and third parties with whom information is shared.
- Right to Delete — Request deletion of personal information we collected from you, subject to statutory exceptions.
- Right to Correct — Request correction of inaccurate personal information we maintain about you.
- Right to Opt Out of Sale or Sharing — We do not sell personal information. To opt out of sharing for cross-context behavioral advertising, reject marketing cookies via our Cookie Policy banner or email us.
- Right to Limit Use of Sensitive Personal Information — We do not collect sensitive personal information as defined under CPRA.
- Right to Non-Discrimination — We will not discriminate against you for exercising your privacy rights, including by denying services, charging different prices, or providing a different level of quality.
California residents may submit requests through the contact methods in Section 14. We will verify your identity before processing requests. You may designate an authorized agent to submit requests on your behalf by providing written authorization. We respond within 45 days (extendable by an additional 45 days with notice where reasonably necessary).
Shine the Light (California Civil Code § 1798.83): California residents may request information about disclosure of personal information to third parties for their direct marketing purposes. We do not share personal information with third parties for their direct marketing purposes.
8.3 Virginia, Colorado, Connecticut, Utah, Texas, and Other State Residents
Residents of states with comprehensive privacy laws (including Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, and others) may have rights to access, correct, delete, obtain a copy of, and opt out of targeted advertising, sale of personal data, or profiling in furtherance of decisions with legal or similarly significant effects. We do not engage in sale of personal data or profiling producing legal or similarly significant effects. To exercise applicable rights, contact us using the information in Section 14. You may appeal a denied request by replying to our response with "Appeal" in the subject line.
8.4 Illinois Residents
Under the Illinois Personal Information Protection Act (815 ILCS 530/), we maintain reasonable security measures to protect personal information. In the event of a data breach involving your personal information, we will notify you and the Illinois Attorney General as required by Illinois law, without unreasonable delay and in accordance with applicable statutory timelines.
8.5 Global Privacy Control (GPC)
We honor opt-out preference signals such as the Global Privacy Control (GPC) as a valid request to opt out of the sale or sharing of personal information where technically feasible. When we detect a GPC signal, we treat it as equivalent to rejecting marketing and non-essential analytics cookies.
9. How to Submit a Privacy Request
To exercise your privacy rights, contact us at:
- Email: admin@beautttnaturalio.world (subject line: "Privacy Request")
- Phone: +1 (630) 418-5671
- Mail: T-Float (upstairs studio), 8647 Ogden Ave, Lyons, IL 60534, United States
We may request information reasonably necessary to verify your identity (such as confirming the email address associated with your inquiry). We will not require you to create an account to submit a request. You may make up to two access requests within a 12-month period free of charge, unless requests are manifestly unfounded or excessive.
10. Data Security
We implement reasonable administrative, technical, and physical safeguards designed to protect personal information, consistent with FTC data security guidance and Illinois law, including:
- HTTPS/TLS encryption for data transmitted between your browser and our servers.
- Access controls limiting personal information to authorized personnel on a need-to-know basis.
- Secure storage of contact form submissions with restricted access credentials.
- Periodic review of our hosting and security practices.
No method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security. If you believe your interaction with us is no longer secure, please notify us immediately.
11. Children's Privacy (COPPA)
Our Site is directed to a general audience and is not directed to children under 13 years of age. We do not knowingly collect personal information from children under 13 in violation of COPPA. If you are a parent or guardian and believe your child under 13 has provided us with personal information, please contact us immediately at admin@beautttnaturalio.world and we will promptly delete such information from our records.
12. International Visitors (GDPR Supplement)
If you access the Site from the European Economic Area (EEA), United Kingdom, or Switzerland, the following additional terms apply. Our legal bases for processing under GDPR include consent (Article 6(1)(a)), legitimate interests (Article 6(1)(f)), and legal obligation (Article 6(1)(c)). You have the right to access, rectify, erase, restrict, port, and object to processing, and to lodge a complaint with your local supervisory authority. International data transfers are protected by Standard Contractual Clauses or equivalent safeguards where applicable.
13. Do Not Track Signals
Some browsers transmit "Do Not Track" (DNT) signals. Because there is no uniform industry standard for responding to DNT signals, we do not currently respond to browser DNT signals. We do respond to legally recognized opt-out preference signals such as Global Privacy Control (GPC) as described in Section 8.5.
14. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices, technology, or legal requirements. The "Last updated" date at the top of this page indicates when the Policy was last revised. Material changes will be posted on this page and, where required by law, we will provide additional notice (such as a banner on the Site). Your continued use of the Site after the effective date of changes constitutes acceptance of the updated Policy.
15. Your Privacy Choices (Do Not Sell or Share)
Under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), California residents have the right to opt out of the sale or sharing of personal information for cross-context behavioral advertising.
We do not sell personal information. We do not share personal information for cross-context behavioral advertising unless you have opted in to marketing cookies through our cookie banner.
To exercise your privacy choices, you may:
- Click Reject or disable Marketing and Analytics cookies in our Cookie Policy banner or settings.
- Enable Global Privacy Control (GPC) in your browser — we honor GPC as a valid opt-out signal.
- Email us at admin@beautttnaturalio.world with the subject line "Privacy Choices Request."
Residents of Virginia, Colorado, Connecticut, Utah, Texas, and other U.S. states with comprehensive privacy laws may have similar opt-out rights regarding targeted advertising and the sale of personal data. Contact us using the methods above to submit a request.
16. Contact Us
For questions about this Privacy Policy, to exercise your privacy rights, or to submit a complaint:
- Email: admin@beautttnaturalio.world
- Phone: +1 (630) 418-5671
- Mail: T-Float (upstairs studio), 8647 Ogden Ave, Lyons, IL 60534, United States