1. INTRODUCTION

MR-LAB (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website mr-lab.com and make purchases through our e-commerce platform.

Company Information:

  • Legal Name: MR-LAB
  • Email: mrlabendocrinologia@posteo.com

By using our website, you agree to the collection and use of information in accordance with this Privacy Policy.


  1. INFORMATION WE COLLECT

We collect the following types of information:

2.1 Personal Information You Provide
When you create an account or place an order, we collect:

  • Full name
  • Email address
  • Shipping and billing addresses
  • Phone number (optional)
  • Payment information (processed securely by Stripe)

2.2 Automatically Collected Information

  • IP address
  • Browser type and version
  • Device information
  • Pages visited and time spent on pages
  • Referring website addresses

2.3 Cookies and Tracking Technologies
We use essential cookies necessary for the website to function. These include:

  • Session cookies (to maintain your shopping cart)
  • Authentication cookies (to keep you logged in)
  • Security cookies (to prevent fraud)

We DO NOT use:

  • Google Analytics
  • Facebook Pixel
  • Third-party advertising trackers

For more information, see our Cookie Policy.


  1. HOW WE USE YOUR INFORMATION

We use your information to:

  • Process and fulfill your orders
  • Send order confirmations and shipping notifications
  • Respond to your inquiries and customer service requests
  • Maintain and improve our website security
  • Comply with legal obligations (tax reporting, business records)
  • Prevent fraud and unauthorized transactions

  1. LEGAL BASIS FOR PROCESSING (GDPR)

For users in the European Economic Area (EEA), we process your data based on:

  • Contract Performance: To fulfill orders you place with us
  • Legitimate Interests: To improve our services and prevent fraud
  • Legal Obligations: To comply with tax and business record-keeping laws
  • Consent: For optional communications (which you can withdraw at any time)

  1. DATA SHARING AND DISCLOSURE

We share your information only with trusted service providers:

5.1 Payment Processing

  • Stripe, Inc. (payment gateway) – Processes credit card transactions securely. We do not store full credit card numbers.

5.2 Hosting and Infrastructure

  • Server hosting provider (RUVDS) – Stores website data on secure servers located in Russia.

5.3 Email Services

  • Posteo (email provider) – Sends transactional emails (order confirmations, shipping notifications).

5.4 Shipping Partners

  • Mail Boxes Etc. (MBE) or other shipping carriers – Receives shipping information to deliver your orders.

We do NOT sell, rent, or trade your personal information to third parties for marketing purposes.

5.5 Legal Requirements
We may disclose your information if required by law, court order, or government authority.


  1. DATA RETENTION

We retain your personal information for as long as necessary to:

  • Fulfill the purposes outlined in this Privacy Policy
  • Comply with legal obligations (10 years for tax and business records as required by U.S. law)
  • Resolve disputes and enforce our agreements

After this period, we will securely delete or anonymize your data.


  1. YOUR RIGHTS

Depending on your location, you have the following rights:

7.1 General Rights

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate or incomplete data
  • Deletion: Request deletion of your data (subject to legal retention requirements)
  • Objection: Object to processing of your data for specific purposes
  • Data Portability: Receive your data in a structured, commonly used format

7.2 California Residents (CCPA/CPRA)
California residents have additional rights under the California Consumer Privacy Act:

  • Right to know what personal information is collected
  • Right to know if personal information is sold or shared
  • Right to opt-out of the sale of personal information (we do not sell your data)
  • Right to non-discrimination for exercising your rights

7.3 European Residents (GDPR)
EEA residents have additional rights under the General Data Protection Regulation:

  • Right to withdraw consent at any time
  • Right to lodge a complaint with a supervisory authority

To exercise your rights, contact us at: mrlabendocrinologia@posteo.com


  1. DATA SECURITY

We implement appropriate technical and organizational measures to protect your personal information:

  • SSL/TLS encryption for all data transmission
  • Secure server infrastructure with firewall protection
  • Regular security updates and monitoring
  • Restricted access to personal data on a need-to-know basis
  • Secure payment processing through PCI-DSS compliant providers (Stripe)

However, no method of transmission over the Internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.


  1. INTERNATIONAL DATA TRANSFERS

Our servers are located in Russia. If you are accessing our website from outside Russia, your information will be transferred to, stored, and processed in Russia.

For EEA residents: We ensure appropriate safeguards are in place for international data transfers in accordance with GDPR requirements.


  1. CHILDREN’S PRIVACY

Our website and products are intended for use by laboratories and research institutions. We do not knowingly collect information from individuals under 18 years of age. If you believe we have collected information from a minor, please contact us immediately.


  1. PRODUCT USAGE DISCLAIMER

Our products (peptides and research compounds) are sold exclusively for laboratory research purposes. By purchasing from us, you confirm that:

  • You are authorized to purchase research chemicals
  • Products will be used only for legitimate research purposes
  • You comply with all applicable local, state, and federal regulations


  1. CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on this page
  • Updating the “Last Updated” date
  • Sending an email notification for significant changes (if you have an account)

Your continued use of the website after changes constitutes acceptance of the updated policy.


  1. CONTACT US

If you have questions or concerns about this Privacy Policy, please contact us:

MR-LAB
San Francisco, United States

Email: mrlabendocrinologia@posteo.com

For data protection inquiries: mrlabendocrinologia@posteo.com


© 2026 MR-LAB All rights reserved.