PRIVACY policy
Last updated: August 14, 2025
This Privacy Policy explains how [Hestia Tobacco Company, LLC] (“Hestia Tobacco,” “we,” “us,” or “our”) collects, uses, discloses, and protects your personal information when you visit [https://hestiatobacco.com] (the “Site”), make a purchase, create an account, subscribe to our marketing, contact us, or otherwise interact with us online or offline. It also describes your privacy rights and choices.
Age Restricted Products: We sell tobacco products. You must be 21+ in the United States to access, purchase, or receive our products. We use third‑party age‑verification services and may request additional information to verify your age and identity before fulfilling orders.
Who We Are & Contact
Controller: The Tobacco Company
Address:
12600 HILL COUNTRY BLVD
SUITE R-275
BEE CAVE, TX 78738
Email: hestia@hestiatobacco.com
Phone: 844-T0BACC0
Scope
This Policy applies to personal information we collect about consumers and visitors of our Site, e‑commerce store, brand pages, emails, SMS, and other online services that link to this Policy. It does not apply to job applicants, employees, or B2B partners (which may be covered by separate notices).
A. Information We Collect
We collect information from you directly, automatically, and from third parties.
A. Information You Provide
- Identity & Contact: name, email, phone, billing and shipping addresses, date of birth (for age verification), last 4 digits of SSN (only if requested for verification), and similar identifiers.
- Account Data: username, password, preferences, saved addresses, order history.
- Payment & Transaction: order details, purchase amounts, last 4 digits of card; we do not store full card numbers—payments are processed by PCI‑compliant processors.
- Communications: messages to customer support, survey responses, product reviews, brand collaborations.
- Marketing Consents: email/SMS opt‑ins and related preferences.
B. Information Collected Automatically
- Device/Usage: IP address, device and browser type, operating system, language, referring URLs, pages viewed, time on page, links clicked, approximate location (derived from IP), and other analytics.
Cookies & Similar Technologies: cookies, pixels, tags, SDKs, and web beacons to operate the Site, remember preferences, analyze use, and personalize ads. See Cookies below.
C. Information from Third Parties
- Age/Identity Verification Providers (e.g., vendors that validate you are 21+).
- Payment Processors (confirmation of payment status).
- Shipping & Logistics Partners (delivery updates).
- Advertising & Analytics Partners (aggregated insights, ad campaign performance).
- Social Networks if you connect or interact with our pages or use social login.
How We Use Information
We use personal information to:
- Provide our products and services, process orders and returns, fulfill deliveries, and provide customer support.
- Verify age and prevent fraud, unauthorized transactions, and misuse of our Site.
- Operate and improve the Site, user accounts, and e‑commerce experience.
- Personalize content, recommendations, and marketing.
- Communicate about orders, updates, and promotional offers (with your consent where required).
- Comply with legal obligations, including tobacco retail regulations and tax/record-keeping.
- Legal bases (EEA/UK): performance of a contract, legitimate interests (e.g., site security, analytics, marketing to existing customers), consent (for certain cookies/marketing), and legal obligations.
Cookies & Tracking Technologies
We use:
- Essential cookies to enable core functionality (checkout, security, privacy choices).
- Performance/analytics (e.g., Google Analytics) to understand how our Site is used.
- Advertising/retargeting (e.g., Meta Pixel, Google Ads) to deliver and measure ads.
You can manage preferences through our [Cookie Settings] link or your browser settings. Where required, we present a cookie banner to obtain consent. Blocking some cookies may impact Site performance.
Do Not Track: We do not respond to browser DNT signals. You may use the opt‑out mechanisms described below.
Disclosure of Information
We disclose personal information to:
- Service Providers/Processors: e‑commerce platform, payment processors, age‑verification vendors, fraud prevention, warehousing and shipping, email/SMS providers, analytics, advertising, IT/security, and customer support. They may access information only to perform services for us.
- Advertising & Analytics Partners: to measure and improve our ads and Site. See Your Privacy Choices for opt‑outs.
- Business Transfers: if we explore or complete a merger, acquisition, financing, or sale of assets.
- Legal & Safety: when required by law, regulation, subpoena, or to protect our rights, customers, or the public.
We do not disclose full payment card numbers to any third party other than our payment processors.
“Sale” or “Sharing” of Personal Information
Some U.S. state privacy laws define “sell” or “share” to include disclosure of identifiers and internet activity to advertising partners for cross‑context behavioral advertising. We may engage in such activities. You can opt out via [Do Not Sell or Share My Personal Information] or through the Global Privacy Control (GPC) signal where recognized.
Your Privacy Rights
Depending on your location, you may have the following rights:
United States (e.g., CA/VA/CO/CT/UT/TX and similar laws)
- Know/Access the categories and specific pieces of personal information we have collected.
- Delete personal information, subject to legal exceptions (e.g., order/transaction and age‑verification records we must retain).
- Correct inaccurate information.
- Opt out of sale or sharing of personal information and targeted advertising.
- Limit use of sensitive personal information (where applicable).
- Appeal a decision regarding your request.
Submit a request at [privacy request webform] or email [hestia@hestiatobacco.com]. We will verify your identity and respond within the timeframe required by law. You may designate an authorized agent to act on your behalf (we may ask for proof of authorization).
EEA/UK/Switzerland (GDPR)
- Access, Rectify, Erase, Restrict, Object, Portability, and Withdraw Consent where applicable.
- To exercise rights, contact us at [hestia@hestiatobacco.com]. You may lodge a complaint with your local supervisory authority.
Data Retention
We retain personal information for as long as needed to fulfill the purposes described in this Policy, including:
- Orders & transactions: retained to meet tax, accounting, and legal requirements.
- Age verification & compliance: retained as required by applicable tobacco and e‑commerce regulations.
- Marketing records: retained until you opt out or until no longer necessary for the purpose collected. We also consider the amount, nature, and sensitivity of data, potential risk of harm from unauthorized use or disclosure, and applicable legal obligations.
Security
We implement administrative, technical, and physical safeguards designed to protect personal information (e.g., encryption in transit, access controls). No method of transmission or storage is 100% secure.
International Transfers
We may transfer, store, and process your information outside your country of residence, including in the United States. Where required, we use appropriate safeguards such as Standard Contractual Clauses for EEA/UK data transfers.
Children’s Privacy
Our Site and products are not for minors. We do not knowingly collect personal information from individuals under 21 in the United States. If you believe a minor has provided information to us, contact [hestia@hestiatobacco.com] so we can delete it.
Financial Incentives (California)
If we offer a program like a discount in exchange for your email/SMS (e.g., “10% off for subscribing”), we may provide a financial incentive related to the collection and retention of personal information. Participation is voluntary. You may opt out at any time. We evaluate the incentive’s value based on good‑faith estimates of the anticipated benefit.
SMS Disclosures (If You Opt In)
By providing your mobile number and opting in, you consent to receive marketing texts from Hestia Tobacco. Message and data rates may apply. Message frequency varies. Reply STOP to cancel, HELP for help. We may share phone numbers with our SMS service provider solely to send messages; no other third‑party sharing for their own purposes.
Third‑Party Links & Social Features
Our Site may link to third‑party websites or services. We are not responsible for their privacy practices. Review their policies before providing personal information. Social features (e.g., Instagram, TikTok, X/Twitter) may collect information per their own terms.
Notice at Collection (California
Below is a summary of the categories of personal information we may collect, the purposes, and whether the information is “sold” or “shared” (as defined by California law):
CategoryExamplesSourcesBusiness/Commercial PurposesSold/Shared?Identifiersname, email, phone, IP, DOB, device IDyou; automatic; verification vendorsaccount setup, orders, customer service, age verification, security, marketingShared for ads; not sold for moneyCustomer Recordsbilling/shipping address, order historyyou; processorsfulfill orders, returns, support, complianceNoProtected Classificationage (21+)you; verification vendorslegal compliance (age-gating)NoCommercial Infoproducts viewed/purchasedyou; automaticpersonalize, analytics, marketingShared for adsInternet Activitybrowsing, clicks, pages viewedautomatic; cookiesanalytics, security, targeted adsShared for adsGeolocation (approx.)derived from IPautomaticcontent localization, fraud preventionNoInferencespreferences/segmentsderivedpersonalization, marketingShared for ads. Retention periods vary by category as described in Data Retention above.
Your Privacy Choices
- Cookie/Ad Preferences: Adjust via [Cookie Settings] and/or use Global Privacy Control (GPC) in a supported browser.
- Email Marketing: Click Unsubscribe in any email or contact [hestia@hestiatobacco.com].
- SMS Marketing: Reply STOP.
- Do Not Sell or Share: Use [Do Not Sell or Share My Personal Information].
Changes to This Policy
We may update this Policy periodically. The “Last updated” date indicates the latest revision. Material changes will be posted on this page and may be communicated by additional notice where required.
How to Contact Us
Questions or requests regarding this Policy can be sent to:
Email: hestia@hestiatobacco.com
Mail:
12600 HILL COUNTRY BLVD
SUITE R-275
BEE CAVE, TX 78738