
Privacy Policy
​
1. Scope
This Policy explains how we collect, use, disclose and protect personal data when you visit our website, place orders (digital/physical), rent equipment, create an account, or subscribe to marketing.
​
2. Data We Collect
​
-
Identity & contact: name, billing/shipping address, email, phone.
-
Account data: login, preferences, order history.
-
Order & payment data: items purchased/rented, totals, invoice details, payment status (card details are processed by our payment providers; we do not store full card numbers).
-
Rental verification (if applicable): basic ID verification and deposit details (minimal data, no copies unless legally required).
-
Support & communications: messages, notes, attachments.
-
Device & usage: IP address, device/browser, pages viewed, cookies/analytics.
-
Marketing preferences: opt-ins/opt-outs, consent logs.
​
3. Purposes & Legal Bases (GDPR)
​
-
Order fulfilment & customer service (Art. 6(1)(b) contract).
-
Billing, taxation, compliance (Art. 6(1)(c) legal obligation).
-
Fraud prevention, security, service improvement, analytics (Art. 6(1)(f) legitimate interests).
-
Marketing emails & non-essential cookies (Art. 6(1)(a) consent; you can withdraw at any time).
​
4. Cookies & Analytics
We use cookies and similar technologies to operate our site, analyse usage, and (with consent) personalise marketing. Manage choices via our cookie banner or your browser settings. See our Cookie Notice for details.
​
5. Sharing & Processors
We share data only as needed to run our services:
-
Website & hosting: Wix (site platform, CRM, automations).
-
Payments: Wix Payments, card networks and/or other gateways (e.g., PayPal).
-
Fulfilment & logistics: shipping carriers/couriers (e.g., PostNL/DHL).
-
Email & marketing: email service providers, automation tools.
-
IT/security & analytics: infrastructure, logging, analytics providers.
​
These parties act as processors under GDPR or as independent controllers (e.g., payment networks). We require appropriate safeguards and contracts.
​
6. International Transfers
If data is transferred outside the EEA, we rely on GDPR-approved safeguards (e.g., EU Standard Contractual Clauses) and additional measures where appropriate.
​
7. Retention
We keep data only as long as necessary for the purposes above and to meet legal obligations:
-
Orders, invoices & tax records: 7 years (Dutch law).
-
Account data: while the account is active; deleted after inactivity or request (subject to legal holds).
-
Support tickets: typically 24 months after closure.
-
Marketing data: until you unsubscribe or 24 months of inactivity.
-
Web logs/security: typically 12 months.
​
8. Your Rights (EU/EEA)
You can request access, rectification, erasure, restriction, portability, or object to processing based on legitimate interests, and you can withdraw consent at any time (this does not affect prior processing).
Contact: info@truespiritentertainment.com
You also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).
​
9. Children
Our services are not directed to children under 16. We do not knowingly process children’s data without appropriate consent.
​
10. Security
We implement administrative, technical, and physical measures to protect personal data (access controls, encryption in transit, least-privilege). No method is 100% secure; we work to continually improve.
​
11. Automated Decision-Making
We do not use automated decision-making producing legal or similarly significant effects without human involvement.
​
12. Changes
We may update this Policy from time to time. Material changes will be highlighted on our website. The version date appears at the top.
​
Contact
True Spirit Entertainment
Kippenburg 2, 8926 KX
Leeuwarden, The Netherlands
KvK: 91931886 • VAT: NL004925566B46
Email: info@truespiritentertainment.com
​
​