Privacy Policy
Policy version and last updated: 2026-07-23
This operational draft requires qualified legal review before commerce or optional marketing is activated.
Information we handle
We handle contact and delivery details submitted during enquiries and checkout. If you create an account, we also store your Identity login record, email-verification state, profile, saved addresses, policy consent versions, account-security events, and linked order history. Optional marketing subscriptions are separate records containing the email, consent wording/version/source and a history of confirmation or unsubscribe actions.
Orders and payments
Order records contain item and price snapshots, contact details, delivery and billing addresses, fulfilment history, and customer notes. Stripe processes payment details; Ichor Jewels receives payment status and provider references rather than full card details.
Email, hosting, and staff access
Account and order email may be delivered through Azure Communication Services. Application data is stored in private Azure Database for PostgreSQL, and product media is stored in Azure Blob Storage. Authorised staff may access customer and order information for support and fulfilment; sensitive staff actions are audited.
Cookies
Essential cookies protect account and staff sessions, antiforgery requests, and shopping carts. See the cookie notice for details. GA4 loads only after Analytics consent and configuration. Advertising scripts are not configured.
Optional marketing email
Marketing signup requires an explicit checkbox and email confirmation. Confirmation is delivered through the transactional email outbox; no bulk campaign sender is enabled. Re-subscribing after an unsubscribe creates new consent evidence. Account creation never implies marketing consent, and transactional account, security, and order messages are unaffected by marketing preferences.
Retention
Expired guest carts, guest-access links, checkout attempts, operational email records, and security audit records are removed or minimised on configurable schedules. Order snapshots are not removed by automated cleanup and may need to be retained for tax, accounting, fraud-prevention, dispute, or other legal obligations. Final retention periods require legal review for the jurisdictions served.
Access, export, correction, and deletion
Contact support to request access to, export of, correction of, or deletion of personal information. We will verify the request before acting. Account deletion removes the customer login and profile where permitted, but legally required order snapshots may be retained and de-identified where appropriate. Account export includes linked marketing consent history. Account deletion unsubscribes and detaches the marketing record while retaining the minimum suppression and consent evidence needed to honour the request.
Contact
Submit privacy and account requests through the contact page. The support workflow records the request, verifies identity, and documents any information that must be retained.