Official Policy Document ~5 min read Updated October 08, 2026

Privacy Policy

How Polar Red Light LED collects, safeguards, and utilizes customer data under GDPR, CCPA, and global privacy standards.

Need Clarification?

We're here to assist you.

If you have questions about our policies, returns, or technical specifications, contact our team directly.

1300 738 134 Email Support
Unit 8, 6 Enterprise Drive, Rowville, VIC 3178, Australia

1. Introduction & Privacy Commitment

At Polar Red Light LED, we are committed to respecting and protecting your personal privacy. This Privacy Policy details the types of personal data we collect when you visit polarredlight.com, purchase our red light therapy panels and devices, or interact with our customer support team, as well as how we use, disclose, and protect that information in compliance with the Australian Privacy Principles (APPs), the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and applicable international data protection standards.

2. Personal Information We Collect

We collect information in three ways: directly from you, automatically through your device, and from trusted third-party service providers.

  • Customer Identification & Contact Data: Full name, email address, telephone number, shipping address, and billing address provided when placing an order or registering an account.
  • Payment & Transaction Information: Financial transactions are processed directly by our PCI-DSS Level 1 compliant payment processor, Stripe. To authenticate transactions, conduct Address Verification Service (AVS) checks, combat payment fraud, and fulfill statutory tax and financial compliance, customer details (including full name, email address, telephone number, billing address, and shipping address) are transmitted to and processed by Stripe. Polar Red Light LED does not store or process your full credit card number or CVV on our servers; we only receive transaction confirmation tokens, card brand, and the last 4 digits of the card.
  • Technical & Log Data: Internet Protocol (IP) address, browser type and version, device operating system, time zone settings, referral sources, and pages viewed during your visit.
  • Communications: Records of inquiries, warranty support requests, and correspondence sent to our support desk.

3. How We Use Your Information

We use your personal data strictly for lawful, legitimate business purposes, including:

  • Order Fulfillment: Processing transactions, validating billing, packaging products, generating commercial invoices, and arranging courier shipping.
  • Customer Communication: Sending order confirmations, shipping tracking numbers, automated delivery notifications, and responding to support inquiries.
  • Account Administration: Managing your secure customer portal, password resets, and order history.
  • Fraud Prevention & Security: Detecting and mitigating fraudulent orders, unauthorized account access, and cyber security threats.
  • Legal Compliance: Complying with tax requirements, accounting records, and lawful government requests.

4. Legal Grounds for Processing (GDPR Compliance)

For individuals residing in the European Economic Area (EEA) and the United Kingdom, our processing of your personal data is grounded on:

  • Contractual Necessity: Processing necessary to fulfill your order and deliver products.
  • Legitimate Interests: Improving website security, combating fraud, and providing prompt customer service.
  • Legal Obligation: Maintaining transaction archives for statutory tax and financial reporting.
  • Consent: Sending voluntary promotional updates or newsletters (which you may withdraw at any time).

5. Information Sharing & Third-Party Processors

We never sell, rent, or trade your personal information to third parties for advertising or commercial purposes. We share data only with trusted service providers necessary to operate our business under strict confidentiality agreements:

  • Payment Gateways & Fraud Prevention (Stripe): We share transaction, contact, and fulfillment details—including full name, email address, telephone number, billing address, and shipping address—with our payment processor, Stripe. This data enables encrypted transaction processing, cardholder authentication, Address Verification Service (AVS) validation, fraud screening, and regulatory tax compliance. Complete payment card numbers and security codes are captured directly by Stripe under PCI-DSS Level 1 security standards.
  • Shipping & Logistics: International couriers (e.g., DHL, FedEx, Australia Post) to deliver your equipment.
  • Transactional Infrastructure: Secure cloud servers and SMTP email dispatch services for order receipts and notifications.
  • Legal Authorities: Where mandatory by applicable subpoena, warrant, or court order.

6. International Data Transfers

Because Polar Red Light LED serves a global customer base, your personal information may be transferred to, stored, and processed in Australia, the United States, or other jurisdictions where our cloud infrastructure and third-party partners operate. We implement Standard Contractual Clauses and encryption standards to ensure your data receives equivalent protection regardless of location.

7. Data Retention & Security Architecture

We deploy robust technical and organizational security controls to protect your data. All traffic between your browser and our servers is encrypted using modern Transport Layer Security (TLS 1.3 / HTTPS). Database records are protected behind firewalls with role-based access restrictions.

We retain transaction records for a minimum of 7 years to satisfy corporate accounting, tax, and consumer warranty obligations. Inactive account data is securely purged in accordance with our retention policy.

8. Your Rights Under Global Privacy Regulations

Depending on your geographic location, you may exercise the following rights regarding your personal data:

  • Right to Access: Request a copy of the personal information we hold about you.
  • Right to Rectification: Request correction of inaccurate or incomplete information.
  • Right to Erasure (“Right to Be Forgotten”): Request deletion of your account and personal data, subject to legal tax retention mandates.
  • Right to Restrict or Object: Restrict or object to the processing of your data under specific conditions.
  • Right to Data Portability: Obtain your personal data in a structured, machine-readable format.
  • Right to Opt Out (CCPA): California consumers have the right to opt out of the sale or sharing of personal data (Polar Red Light LED does not sell personal information).

9. Children’s Privacy

Our website and products are designed for adults. We do not knowingly collect personal data from individuals under 18 years of age. If you believe a child has provided us with personal information, please notify us immediately for prompt deletion.

10. Contact Us Regarding Your Privacy

To exercise any of your privacy rights, ask questions about this policy, or submit a data inquiry, please contact our Privacy Team:

Polar Red Light LED
Unit 8, 6 Enterprise Drive, Rowville, VIC 3178, Australia
Phone: 1300 738 134
Email: [email protected]

Verified by Polar Red Light LED Compliance Team
Last revised: October 08, 2026