Privacy Policy

Effective Date: June 1, 2026

At One to Another Vintage, we are committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website at https://www.onetoanothervintage.com, make a purchase through our website, or interact with us through Whatnot or other sales channels (collectively, the "Service"). By using the Service, you acknowledge that you have read and understood this Privacy Policy.

This policy is designed to comply with applicable privacy laws, including the California Consumer Privacy Act (CCPA/CPRA), the General Data Protection Regulation (GDPR), and other applicable global regulations. If there is a conflict between this Privacy Policy and our Terms of Service, this Privacy Policy controls with respect to the collection and processing of personal information. Please note that purchases made through Whatnot are also subject to Whatnot's own privacy policy.

Personal Information We Collect

Depending on how you interact with the Service, we may collect the following categories of personal information:

a) Information You Provide Directly

  • Contact details: name, email address, phone number, billing address, and shipping address.

  • Account information: username, password, and account preferences.

  • Financial information: payment card details and transaction information - processed securely by our payment processor; we do not store full card numbers.

  • Transaction information: items viewed, added to cart, purchased, or subject to an authenticity claim, and your order history.

  • Authenticity claim information: expert assessments, photographs, serial numbers, and condition documentation submitted in connection with a COA guarantee claim.

  • Communications: messages, inquiries, or other content you send us.

b) Information Collected Automatically

  • Device and browser information, including IP address and unique device identifiers.

  • Usage data: pages visited, time spent, clicks, and navigation paths on our website.

  • Referring URLs and search terms used to find our website.

  • Cookie and tracking technology data (see Section 5 below).

Sources of Personal Information

We collect personal information:

  • Directly from you, when you create an account, make a purchase, submit an authenticity claim, or contact us.

  • Automatically through your device and browser when you use the Service.

  • From sales platforms such as Whatnot, in connection with purchases made through those channels.

  • From service providers who process data on our behalf (e.g., payment processors, shipping carriers, analytics providers).

How We Use Your Personal Information

We use your personal information to:

  • Process and fulfill your orders, including payment, shipping, returns, and authenticity guarantee claims.

  • Create and manage your account and provide customer support.

  • Send transactional communications such as order confirmations, shipping updates, and claim status notifications.

  • Send marketing and promotional emails if you have opted in (you may opt out at any time).

  • Improve our website, product offerings, and overall customer experience.

  • Detect, investigate, and prevent fraudulent or unauthorized activity.

  • Comply with applicable legal obligations and enforce our Terms of Service.

How We Share Your Personal Information

We do not sell your personal information. We may share it in the following circumstances:

  • With payment processors (e.g., Stripe, PayPal, Shop Pay) to complete transactions securely.

  • With shipping carriers (e.g., UPS, USPS, DHL) to fulfill and deliver your orders and process shipping claims.

  • With third-party authentication providers (e.g., Entrupy or similar services) in connection with item certification and authenticity guarantee claims.

  • With analytics providers (e.g., Google Analytics) to understand website usage.

  • With email service providers to send transactional and marketing communications.

  • With sales platforms such as Whatnot, in connection with transactions on those platforms, subject to their own privacy policies.

  • With legal authorities when required by law, court order, or to protect our legal rights.

  • In connection with a business transaction such as a merger, acquisition, or sale of assets, in which case we will notify you before your information is transferred.

All third-party service providers are required to handle your personal information in accordance with applicable privacy laws and our instructions.

Cookies & Tracking Technologies

We use cookies and similar technologies to enhance your experience on the Service.

These include:

  • Essential cookies: Necessary for core site functions such as your shopping cart and login session.

  • Analytics cookies: Help us understand how visitors use our site (e.g., Google Analytics).

  • Marketing cookies: May be used to serve relevant advertising.

You can manage your cookie preferences through your browser settings. Disabling certain cookies may affect site functionality. We honor the Global Privacy Control (GPC) opt-out preference signal. To learn more, visit https://globalprivacycontrol.org/.

International Data Transfers

Your personal information may be transferred to and processed in the United States or other countries where our service providers operate. If you are located in the European Economic Area (EEA) or United Kingdom (UK), we ensure that any such transfers are made using appropriate safeguards, such as the European Commission's Standard Contractual Clauses, unless the destination country has been determined to provide an adequate level of data protection.

Data Retention

We retain your personal information for as long as necessary to fulfill the purposes described in this policy, including to maintain your account, comply with legal obligations, resolve disputes, and enforce our agreements. Authenticity claim records may be retained for the duration of the applicable guarantee period and beyond as required by law. You may request deletion of your data at any time (see Your Rights below).

Security

We implement reasonable technical and organizational measures to protect your personal information from unauthorized access, loss, or misuse, including SSL/TLS encryption for data transmission and restricted internal access to personal data. However, no method of internet transmission or electronic storage is 100% secure. We recommend that you use secure channels when communicating with us and maintain strong, unique passwords for your account.

Your Privacy Rights

Depending on your location, you may have the following rights:

California Residents (CCPA/CPRA)

  • Right to Know: Request information about the categories and specific pieces of personal information we have collected about you.

  • Right to Delete: Request deletion of personal information we hold about you, subject to certain exceptions.

  • Right to Correct: Request correction of inaccurate personal information.

  • Right to Opt Out: Opt out of the sale or sharing of your personal information for targeted advertising. (We do not sell personal information.)• Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights.

EEA / UK Residents (GDPR)

  • Right of Access: Request a copy of the personal information we hold about you.

  • Right to Rectification: Request correction of inaccurate or incomplete data.

  • Right to Erasure: Request deletion of your personal information.

  • Right to Restriction: Request that we limit the processing of your data in certain circumstances.

  • Right to Data Portability: Receive your data in a structured, machine-readable format.

  • Right to Object: Object to processing based on legitimate interests or for direct marketing.

  • Right to Withdraw Consent: Where processing is based on consent, withdraw it at any time without affecting the lawfulness of prior processing.

How to Exercise Your Rights

To exercise any of the above rights, please contact us at onetoanothervintage@gmail.com. We will respond within 30 days (or as required by applicable law). We may need to verify your identity before processing your request. You may designate an authorized agent to make requests on your behalf, provided you supply proof of authorization. If you are in the EEA or UK and are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.

Managing Communication Preferences

We may send you promotional emails if you have opted in. You can unsubscribe at any time by clicking the unsubscribe link in any email or contacting us at onetoanothervintage@gmail.com. Opting out of marketing messages will not affect transactional emails related to your orders or account.

Children's Privacy

The Service is not directed to children under the age of 13 (or the applicable age of majority in your jurisdiction). We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us and we will promptly delete it. We do not knowingly sell or share the personal information of individuals under 16 years of age.

Third-Party Links & Platforms

Our website may contain links to third-party websites. We also operate on third-party platforms such as Whatnot. We are not responsible for the privacy practices, security, or content of those sites or platforms. We encourage you to review the privacy policies of any third-party sites or platforms you use.

Complaints

If you have a complaint about how we handle your personal information, please contact us at onetoanothervintage@gmail.com. We will do our best to address your concerns. If you are in the EEA or UK and are not satisfied with our response, you may lodge a complaint with your national data protection supervisory authority.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. Changes will be posted on this page with an updated effective date. Your continued use of the Service after changes are posted constitutes your acceptance of the revised policy.

Contact Us

If you have any questions or requests regarding this Privacy Policy or your personal data, please contact us at:

One to Another Vintage

8605 Santa Monica Blvd, #679455

West Hollywood, CA 90069

Email: onetoanothervintage@gmail.com

For the purposes of applicable data protection laws, we are the data controller of your personal information.