This privacy policy explains how Nashua Nutrition collects, uses, and protects your personal information when you visit our website or place an order. We are committed to being transparent about our practices and giving you control over your data. If you have questions, contact us at contact page or email support@nashuanutrition.com.
This policy was last updated April 2026. We will post any changes on this page with a revised date.
Information we collect
We collect information you give us directly and information collected automatically when you use our site.
Information you provide
- Name, email address, phone number, and shipping and billing address when you create an account or place an order
- Payment information processed securely through Shopify Payments - we do not store your card number on our servers
- Messages you send us through contact forms or email
- Reviews and ratings you submit through our review platform
- Subscription preferences if you sign up for email or SMS marketing
Information collected automatically
- IP address and general location data
- Browser type, device type, and operating system
- Pages viewed, time spent on pages, and how you arrived at our site
- Products viewed, added to cart, or purchased
- Cookie identifiers used to maintain your session and shopping cart
Cookies and tracking
Our site uses cookies - small files stored on your device - to keep your shopping cart active, remember your preferences, and understand how visitors use the site. Some cookies are placed by third-party services we use. You can control cookie settings through your browser, though some site features may not work if you disable them. We do not respond to browser "Do Not Track" signals at this time.
How we use your information
- To process and fulfill your orders, including shipping and delivery
- To manage your account and communicate about your purchases
- To send marketing emails or SMS messages you have opted in to receive
- To analyze site traffic and improve our products, content, and customer experience
- To display product reviews and ratings on our site
- To manage subscriptions you have set up for recurring orders
- To comply with legal obligations and protect against fraud
We do not sell your personal information to third parties.
Third-party services
We use the following third-party services to operate our store. Each service receives only the data needed to perform its function.
Shopify
Our store is built on Shopify, which powers our checkout, order management, and customer accounts. Shopify processes your order and payment data as a service provider on our behalf. Your data is stored on Shopify's secure servers. For more information, see Shopify's privacy policy.
Shopify Payments
Payment transactions are processed by Shopify Payments, which is powered by Stripe. Your card number and payment credentials are encrypted and transmitted directly to the payment processor. We do not store or have access to your full card number. Shopify Payments complies with PCI DSS standards. For more information, see Stripe's privacy policy.
Klaviyo - email and SMS marketing
We use Klaviyo to send marketing emails and SMS messages to customers who have opted in to receive them. Klaviyo stores your name, email address, phone number, and purchase history to power our email and SMS programs. Klaviyo acts as a data processor on our behalf and is compliant with GDPR and CCPA requirements. You can unsubscribe from emails by clicking the unsubscribe link at the bottom of any email. You can opt out of SMS messages by replying STOP. For more information, see Klaviyo's privacy notice.
Judge.me - product reviews
We use Judge.me to collect and display product and store reviews. When you submit a review, Judge.me processes your name, email address, purchase verification data, and the content of your review. Judge.me acts as a data processor on our behalf and is SOC 2 Type 2 certified and compliant with GDPR and CCPA. We are required by Judge.me's terms to disclose their role as a sub-processor in this policy. You may request access to, correction of, or deletion of your review data by contacting us or by emailing Judge.me directly at support@judge.me. For more information, see Judge.me's privacy policy.
Google Analytics (GA4)
We use Google Analytics 4 to understand how visitors use our site. Google Analytics collects data about pages visited, time on site, device and browser type, and general location derived from your IP address. This data is aggregated and does not personally identify you. Google Analytics uses cookies to collect this information. Google may also use this data in accordance with its own privacy policy. You can opt out of Google Analytics tracking by installing the Google Analytics opt-out browser add-on. For more information, see Google's privacy policy and how Google uses data from partner sites.
Recharge - subscription management
If you sign up for a Subscribe and Save subscription, your subscription is managed through Recharge. Recharge processes your name, email address, shipping address, and payment method to manage recurring orders on your behalf. Recharge acts as a data processor on our behalf and is compliant with GDPR and CCPA requirements. Recharge collects this data on our behalf - if you have questions about your subscription data, contact us directly. For more information, see Recharge's privacy policy.
UPS - shipping and delivery
We use UPS to ship orders. When your order ships, we share your name, shipping address, and order details with UPS to fulfill delivery. UPS may collect additional data when you track your package or interact with their services. For more information, see UPS's privacy notice.
Data sharing
We share your personal information only in the following circumstances:
- With the third-party service providers listed above, to operate our store
- With payment processors, to complete transactions
- With shipping carriers, to deliver your orders
- When required by law, court order, or to protect the safety of our customers or others
- If our business is sold or merged, in which case your data may transfer to the new owner under the same privacy protections
We do not sell, rent, or trade your personal information to third parties for their own marketing purposes.
Data security
We take reasonable steps to protect your information from unauthorized access, loss, or misuse. Our site uses HTTPS encryption for all data transfers. Payment processing is handled by PCI DSS-compliant processors. We do not store full payment card numbers on our servers. No method of transmission over the internet is 100% secure, and we cannot guarantee absolute security. If you believe your account has been compromised, contact us immediately.
Data retention
We retain your order and account information for as long as your account is active and as long as required to fulfill our legal and business obligations. If you request deletion of your account, we will delete or anonymize your personal data within a reasonable timeframe, except where retention is required by law.
California residents
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
- The right to know what personal information we collect, use, disclose, and sell
- The right to request deletion of your personal information
- The right to correct inaccurate personal information
- The right to opt out of the sale or sharing of your personal information
- The right not to be discriminated against for exercising your privacy rights
To submit a privacy rights request, contact us at support@nashuanutrition.com or use the contact form. We will respond within 45 days. We do not sell personal information as defined by the CCPA. California residents seeking to opt out of any data sharing for advertising purposes can contact us directly.
For California-specific privacy choices related to Shopify's platform, visit Shopify's privacy controls.
Children's privacy
Our site is not directed to children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us and we will delete it promptly.
Links to other sites
Our site may contain links to third-party websites. We are not responsible for the privacy practices or content of those sites. We encourage you to review the privacy policy of any site you visit.
Your choices
- Email marketing: Unsubscribe using the link in any marketing email or contact us to be removed from our list.
- SMS marketing: Reply STOP to any SMS from us to opt out.
- Account data: You can update your account information by logging into your account or contacting us.
- Data access or deletion: Contact us at support@nashuanutrition.com to request a copy of your data or to request deletion.
Changes to this policy
We may update this policy from time to time. When we do, we will post the revised version on this page with an updated date. We encourage you to review this page periodically. Your continued use of our site after changes are posted means you accept the updated policy.
Contact us
If you have questions about this privacy policy or how we handle your data, contact us:
- Email: support@nashuanutrition.com
- Phone: (800) 649-1374
- Address: 77 Northeastern Boulevard, Suite 105, Nashua, NH 03062
- Online: Contact form
