1. Who is responsible
- Company
- BGFOX Kft. (a Hungarian limited liability company)
- Registered office
- Aranyhomok u. 58, 6044 Kecskemét, Hungary
- Customer service and returns address
- Klapka utca 10/B, 6000 Kecskemét, Hungary
- Company registration number
- 03 09 137820
- EU VAT number
- HU32404805
- Represented by
- Attila Szvorény, Managing Director
- Phone
- +36 30 599 8362
- [email protected]
- Website
- https://jumpandhide.com
We are a Hungarian company. Your personal information is stored on servers inside the European Union and is protected by the EU General Data Protection Regulation, which is generally stricter than US law. For any privacy question, write to [email protected].
2. Information we collect
- Identifiers
- name, email address, phone number, shipping and billing address
- Commercial information
- products ordered, order value, order history, returns
- Payment information
- transaction ID, amount and status — card numbers are handled by Stripe and never reach us
- Account information
- email address, hashed password, saved addresses
- Internet activity
- IP address, browser and device data, server request logs
- Customer messages
- the content of emails and contact-form messages you send us
We do not collect biometric information, precise geolocation, or any of the categories US law treats as sensitive personal information. We do not knowingly collect information from children under 13; if you believe a child has given us information, write to us and we will delete it.
3. How we use it
- To fulfill your order — processing payment, printing and packing, shipping, customs paperwork, and sending you order and delivery updates.
- To provide customer service — answering your questions, handling returns and warranty claims.
- To run your account — if you create one, so your addresses and order history are there next time.
- To meet legal obligations — invoicing and accounting records, which Hungarian law requires us to keep for 8 years.
- To keep the store secure — detecting fraud and abuse, and protecting the site from attack.
- To send you marketing — only if you subscribed to our newsletter, and only until you unsubscribe.
4. We do not sell your information
We do not sell your personal information, and we do not share it for cross-context behavioral advertising. We have not done so in the past 12 months, including for consumers under 16.
We disclose personal information only to the service providers we need to run the store, and only for that purpose:
- Hetzner Online GmbH (Germany)
- server hosting
- Cloudflare, Inc. (USA)
- content delivery and attack protection
- Stripe Payments Europe, Ltd. (Ireland)
- payment processing
- Resend, Inc. (USA)
- sending order and shipping emails
- Carriers and customs brokers
- name, address and phone number needed to deliver and clear the parcel
- Accounting provider
- invoice records required by law
We may also disclose information where the law or a valid legal process requires it.
5. How long we keep it
- Order and customer records
- 5 years from the sale
- Invoicing and accounting data
- 8 years (required by Hungarian accounting law)
- Account data
- until you delete your account
- Customer service messages
- 1 year after the matter is closed
- Newsletter subscription
- until you unsubscribe
- Server logs
- 30 days
6. Your California privacy rights
If you are a California resident, the California Consumer Privacy Act as amended by the CPRA gives you the following rights:
- Right to know — what personal information we collected about you, where it came from, why we collected it, and who we disclosed it to.
- Right to delete — ask us to delete the personal information we hold about you, subject to our legal obligation to keep invoicing records.
- Right to correct — have inaccurate personal information corrected.
- Right to opt out of sale or sharing — we do not sell or share personal information, so there is nothing to opt out of.
- Right to limit the use of sensitive personal information — we do not collect sensitive personal information.
- Right to non-discrimination — we will never charge you a different price or give you a lesser service for exercising these rights.
To exercise any of these rights, email [email protected] from the address on your order, or write to our postal address. We respond within 45 days and may extend once by another 45 days if the request is complex. We verify your identity by matching the details you give us against the order record; we do not ask for a copy of any ID.
You may designate an authorized agent to make a request on your behalf; we will ask the agent for written proof of authorization.
7. Rights in other states
Residents of Colorado, Connecticut, Virginia, Utah, Oregon, Texas, Montana and other states with comprehensive privacy laws have comparable rights of access, correction, deletion, portability and opt-out. We apply the same process to every request regardless of where you live, so simply email [email protected].
Where a state law provides an appeal from our decision, you may appeal by replying to our response; we will answer the appeal within 45 days and tell you how to contact your state attorney general if you remain dissatisfied.
8. Cookies and tracking
We use only strictly necessary cookies: your cart, your login session, the country and language you chose, and your cookie preference. We do not use advertising or analytics cookies, and there are no third-party trackers or advertising pixels on the store.
Because we do not track you across sites, we have nothing to do in response to a Global Privacy Control or “Do Not Track” signal — there is no cross-site tracking to switch off.
9. International transfer
Your information is stored in the European Union. When you order from the United States, the information you enter is transferred to and processed in the EU. Our US-based providers (Cloudflare, Resend) receive data under the EU–US Data Privacy Framework or standard contractual clauses.
10. Security
The store runs over an encrypted HTTPS connection. Data is held on access-restricted servers in the EU, passwords only as one-way hashes, and card numbers never touch our systems. No method of transmission or storage is completely secure, but we keep our systems patched and limit access to what each task requires.
11. Changes to this policy
We may update this policy. The current version is always on this page with the date shown in the header, and we notify registered customers by email of material changes.