Privacy

Privacy Policy.

Last updated: May 16, 2026

Plain-English summary: We collect only what we need to ship your order and answer your emails. We never sell your data. Payments are processed by Stripe — we never see your card number. You can request deletion of your data at any time.

Who we are

Clean Pharma ("we," "us," "our") operates this website and ships research compounds to customers in the United States. Our mailing address is [BUSINESS_ADDRESS_HERE] and our support email is cleanpharma@proton.me.

What information we collect

Information you give us directly

  • Order information: name, shipping address, billing address, email, and (optionally) phone number
  • Email correspondence: the content of any email you send to us
  • Account information (if you sign up for one): email and password (passwords are hashed; we never see the plain text)

Information collected automatically

  • Browser storage: we use your browser's localStorage to remember what's in your cart. This data never leaves your device.
  • Server logs: our hosting provider logs IP addresses and basic request metadata for security and reliability monitoring (typical for any website)

Information we don't collect

  • We do not use third-party advertising trackers, Facebook Pixel, Google Ads tags, or similar
  • We do not use cookies for behavioral profiling
  • We do not store credit card numbers, CVCs, or any payment card data on our servers — Stripe handles all of that

How we use your information

  • To process and ship your orders — your name, address, and email are required for fulfillment
  • To send transactional emails — order confirmations, shipping notifications, tracking updates
  • To respond to your support requests
  • To comply with legal obligations — including tax reporting and law enforcement requests with valid legal process

We never send marketing emails without your explicit opt-in.

Service providers we share data with

To run the store, we share certain data with a small set of providers, each of whom is contractually required to protect it:

  • Stripe — processes payments. Your name, email, billing address, and payment card information go directly to Stripe; we receive only a confirmation. See Stripe's privacy policy.
  • Supabase — hosts our product catalog database. Your name, email, shipping address, and order details are stored here. See Supabase's privacy policy.
  • Netlify — hosts our website. Logs basic request metadata. See Netlify's privacy policy.
  • USPS / UPS — receive your name and shipping address to deliver your order.
  • Email provider (Proton Mail) — receives any email you send us.

How long we keep your data

  • Order records: 7 years (required for tax and accounting)
  • Email correspondence: 2 years after the conversation ends
  • Account data: until you delete your account, then 30 days for security recovery purposes
  • Server logs: 90 days

Your rights

Depending on where you live (California, EU, UK, etc.), you may have additional rights under laws like the CCPA, GDPR, or similar. In general, you can:

  • Access — request a copy of the data we hold about you
  • Correct — ask us to fix anything inaccurate
  • Delete — ask us to delete your data (subject to legal retention requirements like tax records)
  • Object — opt out of marketing communications (we don't send any without consent anyway)
  • Portability — receive your data in a machine-readable format

To exercise any of these rights, email cleanpharma@proton.me with the subject "Privacy Request." We respond within 30 days.

Security

We take reasonable steps to protect your data:

  • All connections to this site use HTTPS encryption
  • Payment data is handled exclusively by Stripe (PCI-DSS Level 1 certified)
  • Database access is restricted by row-level security policies
  • Sensitive operational tooling is access-controlled

No system is perfect. If a breach affecting your data ever occurs, we'll notify you within 72 hours.

Children's privacy

This site is not directed at anyone under 21. We do not knowingly collect information from minors. If you believe we have inadvertently collected information from someone under 21, email us and we'll delete it immediately.

International users

This site is operated from the United States. If you're accessing it from outside the U.S., your data will be transferred to and processed in the United States. By using the site, you consent to this transfer.

Changes to this policy

We may update this policy from time to time. The "Last updated" date at the top reflects the most recent change. Material changes will be communicated via a notice on the website or email if we have your address on file.

Contact us

Privacy questions, data requests, or anything else: cleanpharma@proton.me