Skip to content

Privacy

Privacy Policy

This policy explains how G.R.E. Cosmetics Limited uses personal information when you browse Rejuvenum, shop, create an account, register for training, join our marketing list or contact us.

Last updated: 14 July 2026

1. Who is responsible for your information

G.R.E. Cosmetics Limited is the data controller for the personal information described in this policy. We are an Irish private company limited by shares, company number 712452, with an address at 51 Bracken Road, Sandyford, Dublin, Ireland.

This policy applies to the Rejuvenum website, online store, customer and professional accounts, training registration, marketing subscriptions, salon enquiries, reviews and customer support. A third-party service may provide its own privacy information where it acts as a separate controller.

2. Information we collect

The information we collect depends on how you use Rejuvenum and may include:

  • Identity and contact information: name, email address, telephone number, billing and delivery addresses.
  • Professional information: salon or business details, professional status, qualifications or evidence supplied for verification, insurance and salon-locator information.
  • Order and transaction information: products ordered, order value, payment status, discounts, delivery method, returns and purchase history. Payment providers process full payment credentials; we do not normally receive your full card details.
  • Account and training information: username, securely stored password data, account type, registrations, webinar activity, training progress, submissions and certification records.
  • Communications and content: support messages, enquiries, feedback, survey responses, product reviews and any photographs or files you choose to submit.
  • Marketing information: subscription status, consent record, preferences, source of signup and engagement with messages.
  • Technical and usage information: IP address, browser and device type, operating system, referring page, pages visited, timestamps, cookie identifiers, security logs and similar diagnostic information.

3. How we collect information

  • Directly from you when you place an order, create an account, register as a professional, join training, subscribe to marketing, submit a review or contact us.
  • Automatically from your browser or device when you use the website, subject to your cookie choices and applicable law.
  • From service providers involved in your interaction with us, such as payment providers, couriers, eWebinar, WooCommerce and Notifuse.
  • From records created when we provide a service, verify professional access, issue training certification, respond to support or administer an order.

Where information is required to complete a contract or meet a legal requirement, we will indicate that it is required. If it is not provided, we may be unable to process an order, create the requested account, verify professional access or provide training.

4. How and why we use information

We use personal information only where we have a lawful basis. Depending on the activity, this includes:

  • Contract: to take payment, fulfil and deliver orders, manage returns, provide requested accounts and training, issue certificates and respond to service enquiries.
  • Legal obligation: to maintain tax and accounting records, respond to lawful requests, meet consumer and product-safety duties and handle data-protection requests.
  • Consent: for marketing where consent is required, optional cookies and any other processing for which we specifically ask permission. Consent can be withdrawn at any time.
  • Legitimate interests: to operate and improve the website and business, provide customer service, protect accounts, prevent fraud and misuse, understand product and training performance, manage professional access and establish or defend legal claims. We balance those interests against your rights and reasonable expectations.

We do not make decisions that produce legal or similarly significant effects about you based solely on automated processing.

5. Marketing and Notifuse

When you actively select a marketing checkbox or submit a marketing signup form, we send the supplied contact details, signup source, consent status and relevant engagement information to Notifuse so we can manage our lists and send Rejuvenum news, webinars, events and offers.

We may also use limited customer and order-event information in Notifuse to operate relevant service and customer-journey communications. Marketing consent is separate from registration, training and purchasing, and leaving a marketing checkbox unticked will not prevent you from using those services.

You can withdraw marketing consent or object to direct marketing at any time by using the unsubscribe link in a message or contacting us. We will stop marketing messages, although we may retain a minimal suppression record so that we continue to respect your choice. Service messages about an order, account or training you requested are not marketing.

6. Who we share information with

We do not sell personal information. We share only what is reasonably necessary with:

  • WooCommerce and providers supporting website hosting, maintenance, security, backups and account operation.
  • Payment providers, banks, fraud-prevention services, couriers and fulfilment providers involved in an order.
  • eWebinar and related training systems used to register and deliver training, and Notifuse for the communications described above.
  • Professional advisers, insurers, auditors and service providers that help us operate, support customers or meet our legal obligations.
  • Regulators, courts, law-enforcement bodies or other authorities where disclosure is required or permitted by law.
  • A buyer, investor or successor in connection with a genuine sale, merger, restructuring or transfer of the business, subject to appropriate confidentiality and data-protection safeguards.

A review, photograph, salon profile or testimonial is made public only where you submit it for publication or otherwise authorise us to publish it. Public content may be seen and copied by others.

7. International transfers

Some providers may process information outside Ireland or the European Economic Area. Where personal information is transferred outside the EEA, we use a lawful transfer mechanism where required, such as an adequacy decision or European Commission Standard Contractual Clauses, together with appropriate supplementary safeguards.

You may contact us for more information about the safeguards relevant to your information.

8. How long we keep information

We keep information only for as long as needed for the purpose for which it was collected, including legal, accounting, safety, support and dispute-resolution requirements. Retention depends on the record:

  • Order, invoice and related accounting records are normally kept for at least six years to meet Irish tax and record-keeping requirements.
  • Account information is kept while the account remains active and for a reasonable period afterwards where needed for support, fraud prevention or legal claims.
  • Professional-verification, training and certification records are kept while they remain relevant to access, certification, insurance enquiries, service support or legal claims.
  • Marketing information is kept until you unsubscribe, withdraw consent or we determine it is no longer active, with a minimal suppression record retained to honour opt-outs.
  • Support, review, security and technical records are kept for periods proportionate to their purpose and then deleted or anonymised.

9. Cookies and similar technology

The website uses cookies and similar storage needed for core functions such as checkout, basket contents, account sessions, security and preferences. These technologies may store an identifier or remember an action on your device.

Where optional analytics, advertising or other non-essential technologies are used, we request consent where required. You can change browser settings to block or delete cookies, but blocking necessary cookies may prevent checkout, account or training features from working correctly.

10. Your data-protection rights

Subject to the conditions and exceptions in applicable law, you may have the right to:

  • request access to and a copy of your personal information;
  • have inaccurate or incomplete information corrected;
  • request deletion or restriction of processing;
  • object to processing based on legitimate interests and object at any time to direct marketing;
  • receive certain information in a structured, commonly used and machine-readable format or have it transmitted to another controller;
  • withdraw consent at any time, without affecting processing carried out before withdrawal; and
  • lodge a complaint with the Irish Data Protection Commission or another competent supervisory authority.

To exercise a right, email us using the address below and describe your request. We may ask for information needed to verify your identity. We normally respond within one month, although the law allows an extension for complex or numerous requests.

11. Security, children and external links

We use proportionate technical and organisational measures designed to protect personal information against accidental loss, unauthorised access, alteration or disclosure. No online system is completely secure, so please use a unique password and contact us if you believe your account has been compromised.

Rejuvenum’s store and professional training are intended for adults and are not directed to children under 16. We do not knowingly collect personal information from a child under 16 through these services. Please contact us if you believe this has occurred.

Links to external websites and services are governed by their own privacy policies. We encourage you to review those policies before providing information.

12. Contact, complaints and updates

For a privacy question, request or complaint, contact G.R.E. Cosmetics Limited:

G.R.E. Cosmetics Limited
Company number 712452
51 Bracken Road, Sandyford, Dublin, Ireland
support@rejuvenum.com
+353 1 575 6999
+44 20 8044 9884

You may also complain to the Irish Data Protection Commission at 6 Pembroke Row, Dublin 2, D02 X963, Ireland. Visit dataprotection.ie.

We may update this policy when our services, providers or legal obligations change. We will publish the revised version here, update the date above and provide additional notice where a change materially affects how we use personal information.

Read our Terms & Conditions