Legal
Privacy Policy
Last updated: 31 May 2026
1. Who runs this site
This site is operated by Harry Miller as part of a personal software-engineering portfolio. It is not a registered company. You can contact the operator at harrytmiller42@gmail.com.
2. What data is collected
The site only collects what is needed to demonstrate an e-commerce flow:
- Account data — email address, name and password (hashed) when you sign up.
- Order data — name, email, shipping address and items placed at demo checkout.
- Contact data — name, email and message if you use the contact form.
- Technical data — IP address, browser type and basic logs created automatically by the hosting platform.
- Payment data — handled entirely by Stripe in test mode. Card numbers never touch this site or its database.
3. Why it is collected
To demonstrate a working e-commerce platform: authentication, order processing, email notifications and an admin panel. The data is not used for marketing, profiling, or sold to anyone.
4. Lawful basis (UK GDPR)
Processing relies on consent (given when you submit a form, accept cookies, or place a demo order) and legitimate interests (operating and securing the site). You can withdraw consent at any time by emailing the address above and requesting deletion.
5. Third-party services
The site uses the following providers, each with their own privacy policy:
- Clerk — authentication and user accounts
- Stripe (test mode) — payment processing simulation
- Resend — transactional emails (order confirmation, shipped, cancelled)
- Vercel — site hosting
- Neon — database hosting (PostgreSQL)
6. Cookies
The site uses strictly necessary cookies (sign-in session, shopping cart). It does not use advertising or analytics cookies. A consent banner is shown on first visit.
7. Your rights
Under UK GDPR you have the right to:
- Access the data held about you
- Have it corrected if inaccurate
- Have it deleted
- Object to or restrict processing
- Receive a copy in a portable format
- Complain to the Information Commissioner's Office (ico.org.uk)
To exercise any of these rights, email harrytmiller42@gmail.com.
8. Retention
Demo data is retained only as long as it is useful for demonstration. You may request deletion at any time. Account and order records may be cleared periodically without notice as this is a development environment.
9. Changes
This policy may be updated at any time. The “Last updated” date at the top reflects the most recent revision.