1. Introduction
NextChems (“we,” “us,” or “our”) operates the website located at nextchems.com (the “Site”). This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our Site or place an order with us.
By using our Site, you agree to the collection and use of information as described in this policy. If you do not agree with any part of this policy, please do not use our Site.
All products sold through nextchems.com are for laboratory research and analytical testing purposes only. They are not intended for human consumption.
2. Information We Collect
2.1 Information You Provide Directly
We collect information you provide when you:
- Create an account or register on our Site
- Place an order for research compounds
- Contact our customer support team
- Subscribe to our email communications
- Complete forms on our Site
This information may include:
- Full name
- Email address
- Billing and shipping address
- Phone number
- Payment information (processed securely — we do not store full card details)
- Order history and transaction records
- Communications with our support team
2.2 Information Collected Automatically
When you visit our Site, we may automatically collect certain technical information, including:
- IP address and approximate geographic location
- Browser type and version
- Operating system
- Pages visited and time spent on each page
- Referring website or source
- Device identifiers
- Cookie data (see Section 7)
2.3 Information from Third Parties
We may receive information about you from third-party services we use to operate our Site, including payment processors, shipping carriers, and analytics providers. This information is used solely to fulfil your order and improve our services.
3. How We Use Your Information
We use the information we collect for the following purposes:
- Order fulfilment — Processing, shipping, and delivering your orders; sending order confirmation and tracking information.
- Account management — Creating and managing your account; verifying your identity.
- Customer support — Responding to enquiries, resolving disputes, and troubleshooting issues.
- Payment processing — Processing transactions securely through our payment partners.
- Legal compliance — Complying with applicable laws, regulations, and export control requirements.
- Fraud prevention — Detecting and preventing fraudulent transactions and unauthorized access.
- Site improvement — Analysing usage patterns to improve our Site, products, and services.
- Communications — Sending transactional emails and, where you have opted in, marketing communications.
4. Legal Basis for Processing (GDPR)
If you are located in the European Economic Area (EEA) or United Kingdom, we process your personal data under the following legal bases:
- Contract performance — processing necessary to fulfil your order and provide our services
- Legal obligation — processing required to comply with applicable laws and regulations
- Legitimate interests — processing for fraud prevention, security, and improving our services where these interests are not overridden by your rights
- Consent — where you have explicitly opted in to marketing communications (you may withdraw consent at any time)
5. How We Share Your Information
We do not sell your personal information. We may share your information with:
- Payment processors — Processing your payment securely. Payment processors operate under their own privacy policies and PCI-DSS compliance standards.
- Shipping carriers — Fulfilling and delivering your order. Name, address, and contact details are shared as required for delivery.
- Service providers — Third-party vendors who help us operate our Site (hosting, analytics, email delivery). These providers are contractually obligated to handle data securely and only for the purposes we specify.
- Legal authorities — Where required by law, court order, or regulatory authority, or to protect the rights, property, or safety of NextChems, our customers, or others.
- Business transfers — In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you before your information is subject to a different privacy policy.
6. Data Retention
We retain your personal information for as long as necessary to fulfil the purposes for which it was collected, including:
- Order records: retained for a minimum of seven (7) years for tax, accounting, and legal compliance purposes
- Account information: retained for the duration of your account and for a reasonable period thereafter
- Support communications: retained for up to three (3) years
- Marketing consent records: retained until you withdraw consent plus a reasonable period for compliance documentation
When personal information is no longer required, we securely delete or anonymise it.
7. Cookies and Tracking Technologies
Our Site uses cookies and similar tracking technologies to improve your browsing experience and analyse Site usage. Cookies are small text files stored on your device.
- Essential — Required for the Site to function (shopping cart, session management, security). Cannot be disabled.
- Analytics — Understanding how visitors use the Site — pages visited, time on site, traffic sources. Can be disabled via cookie preferences.
- Functional — Remembering your preferences such as language, currency, and previously viewed products. Can be disabled via cookie preferences.
- Marketing — Tracking interactions for retargeting and advertising purposes. Can be disabled via cookie preferences.
You can manage cookie preferences through your browser settings or our cookie consent tool. Note that disabling certain cookies may affect the functionality of the Site.
8. Data Security
We implement appropriate technical and organisational measures to protect your personal information against unauthorised access, alteration, disclosure, or destruction. These measures include:
- SSL/TLS encryption for all data transmitted between your browser and our Site
- Encrypted storage of sensitive information
- Access controls limiting who within our organisation can access personal data
- Regular security reviews of our systems and processes
No method of transmission over the internet or electronic storage is 100% secure. While we use commercially reasonable measures to protect your information, we cannot guarantee absolute security.
9. International Data Transfers
NextChems is based in the United States. If you are accessing our Site from outside the United States, your information may be transferred to and processed in the United States or other countries where our service providers operate.
Where we transfer personal data from the EEA or United Kingdom to countries not recognised as providing adequate data protection, we rely on appropriate safeguards such as Standard Contractual Clauses approved by the European Commission.
10. Your Privacy Rights
Depending on your location, you may have the following rights regarding your personal information:
- Access — Request a copy of the personal information we hold about you.
- Correction — Request correction of inaccurate or incomplete information.
- Deletion — Request deletion of your personal information, subject to legal retention obligations.
- Restriction — Request that we restrict processing of your information in certain circumstances.
- Portability — Receive your personal data in a structured, machine-readable format.
- Objection — Object to processing based on legitimate interests or for direct marketing purposes.
- Withdraw consent — Withdraw consent for marketing communications at any time without affecting prior processing.
To exercise any of these rights, contact us at support@nextchems.com. We will respond within 30 days. We may need to verify your identity before processing your request.
If you are located in the EEA or UK and are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.
11. California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA):
- Right to know what personal information we collect, use, disclose, and sell
- Right to delete personal information we have collected from you
- Right to correct inaccurate personal information
- Right to opt out of the sale or sharing of personal information — we do not sell personal information
- Right to non-discrimination for exercising your privacy rights
To submit a California privacy rights request, contact support@nextchems.com with “California Privacy Request” in the subject line.
12. Children’s Privacy
Our Site is not directed to individuals under the age of 18. We do not knowingly collect personal information from anyone under 18. If you believe we have inadvertently collected information from a minor, please contact us at support@nextchems.com and we will take steps to delete it promptly.
13. Third-Party Links
Our Site may contain links to third-party websites. We are not responsible for the privacy practices of those websites and encourage you to review their privacy policies before providing any personal information.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. When we make material changes, we will update the “Last Updated” date at the top of this page and, where appropriate, notify you by email.
Your continued use of the Site after any changes constitutes your acceptance of the updated policy.
15. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email: support@nextchems.com
Subject line: Privacy Request — [Your Name]
Response time: Within 30 days of receipt
LEGAL REVIEW NOTE: This draft covers standard privacy policy requirements for a US-based e-commerce business serving international customers (GDPR, CCPA/CPRA). Before publishing, have this reviewed by a qualified attorney familiar with:
• US federal and state privacy laws (CCPA/CPRA, CAN-SPAM)
• GDPR and UK GDPR requirements if selling to EEA/UK customers
• Any jurisdiction-specific requirements based on your customer base
• Export control and regulatory compliance requirements specific to research compound suppliers