Legal
Privacy Policy
How Keepers Club collects, uses, and protects your personal data.
1. Who we are
This privacy policy explains how Gribalsky IK (reg. No. 42102040182) ("we", "us", "our") collects, uses and protects your personal data when you use our website or our services under the Keepers brand.
We act as the data controller for the personal data collected via our website and in our contact with customers.
Registered address: Slokas iela 59, Rīga, LV-1007, Latvia.
Contact: [email protected]
2. What personal data we collect
We may collect the following personal data:
- Contact details: name, email address, phone number.
- Order information: type of retainer, 3D scan status, delivery address (where applicable).
- Product-related information: confirmation that you already use retainers, availability of a 3D scan, and tooth-position details you provide — only with your consent.
- Communication: emails, forms and support requests.
- Technical data: IP address, browser type, page views. Collected via cookies and analytics tools with your consent — see our Cookie Policy.
We do not store card or payment details. Payments are processed by our payment provider Klix.
3. How and why we use your data
We process your personal data to:
- Manage and deliver your order (legal basis: contract).
- Assess whether a Keepers product can be made from your 3D scan or dental models, with review by a qualified specialist (legal basis: consent).
- Contact clinics on your behalf (only with your consent).
- Provide customer support and manage your membership (legitimate interest).
- Comply with legal obligations (e.g. accounting).
- Develop and improve our website (consent or legitimate interest).
Use of artificial intelligence. We may process personal data — including form responses, 3D scans and related information — using automated tools and artificial intelligence (AI) to assess suitability, plan and provide the service, ensure quality, and improve our products and services. Such processing supports, but does not replace, review by a qualified specialist. We do not use AI to make solely automated decisions that produce legal or similarly significant effects on you without a lawful basis. All data-protection rights set out in this policy also apply to this processing.
4. Handling of 3D scans
We never request or access 3D scans without your explicit consent. You can upload the scan yourself, authorise us to request it from your clinic, or have a new scan taken via our partner clinics. Scans are stored securely and used to assess suitability and to manufacture your custom retainers.
5. Who we share your data with
We do not sell your personal data. We only share data with trusted parties when necessary:
- Dental laboratories within the EU — production of your retainers.
- Payment provider: Klix — to process your payment.
- Cloud providers such as Gmail / Google Workspace and Cloudflare — for email and website operation.
- Analytics and marketing tools: Google Analytics 4, Microsoft Clarity, Meta Pixel — only after consent via the cookie banner.
All recipients comply with GDPR.
6. Retention
We keep personal data for as long as needed for its purpose:
- Order and membership data: up to 7 years (legal requirement).
- 3D scans: as long as you are an active customer, or up to 3 years after your last order.
- Email and communication: up to 5 years after your last contact, or longer if you are an active member.
- Analytics data: per the tools' standard (usually anonymised after 14–26 months).
You can request erasure at any time (see section 8).
7. Cookies
We use cookies for essential website functions, analytics and performance, and marketing (if you consent). You can manage your choices in our cookie banner. Read more in our Cookie Policy.
8. Your rights
Under GDPR you have the right to:
- request access to your personal data;
- request rectification or erasure;
- withdraw consent at any time;
- object to certain processing;
- request data portability.
To exercise your rights: [email protected]
9. International transfers
We aim to process and store personal data within the EU/EEA. Where a transfer is required (e.g. via cloud services) we use Standard Contractual Clauses (SCCs) and other statutory safeguards.
10. Security
We use technical and organisational security measures, such as encrypted servers, access controls and data minimisation. Only authorised personnel may access customer data.
11. Complaints
If you suspect your personal data has been mishandled, you can contact us at [email protected] or the Data State Inspectorate (Datu valsts inspekcija, DVI): dvi.gov.lv
12. Changes to this policy
We may update this policy from time to time. The latest version is always published here.
Gribalsky IK · Reg. no. 42102040182 · Slokas iela 59, Rīga, LV-1007, Latvia · [email protected] · Last updated: 2026-08-28