PRIVACY POLICY
Last Updated: September 19, 2025
Company Information:
Butternut doo Jagodina (doing business as Limelightherb.com)
Address: Kneza Milosa 129, Jagodina, Serbia
Company Registration (Matični broj): 21363898
Tax ID (PIB): 110569493
Activity: Production of electronic components (Code: 2611)
Phone: +381600317601
Email: support@limelightherb.com
Website: www.limelightherb.com
IMPORTANT PAYMENT SECURITY NOTICE: We NEVER collect or store payment card information. All credit/debit card payments are processed exclusively through Banca Intesa ad Beograd's secure NestPay gateway. We never see, store, or have access to your card numbers, CVV codes, or banking details. All payments are processed in Serbian Dinars (RSD).
Thank you for choosing to be part of our community at Butternut doo Jagodina, doing business as Limelightherb.com ("company", "we", "us", or "our"). We are committed to protecting your personal information and your right to privacy. If you have any questions or concerns about our policy, or our practices with regards to your personal information, please contact us at support@limelightherb.com
When you visit our website and use our services, you trust us with your personal information. We take your privacy very seriously. In this privacy notice, we describe our privacy policy. We seek to explain to you in the clearest way possible what information we collect, how we use it and what rights you have in relation to it.
This privacy policy applies to all information collected through our website and/or any related services, sales, marketing or events (we refer to them collectively in this privacy policy as the "Sites").
TABLE OF CONTENTS
1. WHAT INFORMATION DO WE COLLECT?
2. HOW WE PROCESS PAYMENTS
3. WILL YOUR INFORMATION BE SHARED WITH ANYONE?
4. DO WE USE COOKIES AND OTHER TRACKING TECHNOLOGIES?
5. HOW DO WE HANDLE YOUR SOCIAL LOGINS?
6. IS YOUR INFORMATION TRANSFERRED INTERNATIONALLY?
7. WHAT IS OUR STANCE ON THIRD-PARTY WEBSITES?
8. HOW LONG DO WE KEEP YOUR INFORMATION?
9. HOW DO WE KEEP YOUR INFORMATION SAFE?
10. DO WE COLLECT INFORMATION FROM MINORS?
11. WHAT ARE YOUR PRIVACY RIGHTS?
12. CONTROLS FOR DO-NOT-TRACK FEATURES
13. DO CALIFORNIA RESIDENTS HAVE SPECIFIC PRIVACY RIGHTS?
14. DO WE MAKE UPDATES TO THIS POLICY?
15. HOW CAN YOU CONTACT US ABOUT THIS POLICY?
1. WHAT INFORMATION DO WE COLLECT?
Personal information you disclose to us
In Short: We collect personal information that you provide to us such as name, address, contact information, and order details. We do NOT collect or store payment card information.
We collect personal information that you voluntarily provide to us when registering, expressing an interest in obtaining information about us or our products and services, when participating in activities on the website, or otherwise contacting us.
The personal information that we collect can include the following:
• Name and Contact Data: We collect your first and last name, email address, postal address, phone number, and other similar contact data.
• Account Credentials: We collect passwords, password hints, and similar security information used for authentication and account access.
• Order Information: We collect details about products you purchase, order history, and shipping information.
• Communication Data: We collect information from your communications with our customer support.
• Payment Data: We do NOT collect or store credit/debit card information. When you make a purchase, you are redirected to our payment processors:
- Banca Intesa ad Beograd (NestPay) for card payments - processes in RSD
- PayPal for PayPal transactions
- Banking institutions for direct transfers
These processors handle all payment data according to PCI DSS standards. We only receive transaction confirmation and order details.
Information automatically collected
In Short: Some information – such as IP address and/or browser and device characteristics – is collected automatically when you visit our website.
We automatically collect certain information when you visit, use or navigate the website. This information does not reveal your specific identity but may include device and usage information, such as your IP address, browser and device characteristics, operating system, language preferences, referring URLs, device name, country, location, information about how and when you use our website and other technical information.
2. HOW WE PROCESS PAYMENTS
In Short: All payment processing is handled by certified third-party processors. We never handle or store payment card data.
Credit/Debit Card Payments
• Processed by: Banca Intesa ad Beograd
• Gateway: NestPay (EMV 3-D Secure certified)
• Currency: All transactions processed in Serbian Dinars (RSD)
• Security: All transactions use Verified by Visa, Mastercard SecureCode, and 3D Secure authentication
• Data handling: Card details are entered directly on Banca Intesa's PCI DSS compliant page
• What we receive: Only transaction ID, approval status, and order amount
Currency Conversion Notice
All payments will be effected in Serbian currency – dinar (RSD). The amount your credit card account will be charged for is obtained through the conversion of the price in USD into Serbian dinar according to the current exchange rate of the Serbian National Bank. When charging your credit card, the same amount is converted into your local currency according to the exchange rate of credit card associations. As a result of this conversion there is a possibility of a slight difference from the original price stated in our web site.
Other Payment Methods
• PayPal: Processed entirely through PayPal's secure infrastructure
• Bank Transfer: Processed through standard banking channels
• Alternative payments: Handled by certified third-party processors
Refund Policy: In the event of returning goods and refunding the customer who has previously paid with one of the payment cards, either partially or in full, and regardless of the reason for the return, Butternut doo Jagodina is obliged to process the refund exclusively via VISA, EC/MC, Maestro, Amex, and Dina payment methods, which means that the bank, at the seller's request, will carry out the refund to the cardholder's account.
3. WILL YOUR INFORMATION BE SHARED WITH ANYONE?
In Short: We only share information with your consent, to comply with laws, to protect your rights, or to fulfill business obligations.
We may process or share data based on the following legal basis:
• Consent: We may process your data if you have given us specific consent to use your personal information for a specific purpose.
• Legitimate Interests: We may process your data when it is reasonably necessary to achieve our legitimate business interests.
• Performance of a Contract: Where we have entered into a contract with you, we may process your personal information to fulfill the terms of our contract.
• Legal Obligations: We may disclose your information where we are legally required to do so in order to comply with applicable law, governmental requests, a judicial proceeding, court order, or legal process.
More specifically, we may need to process your data or share your personal information in the following situations:
• Payment Processors: We share order information (not card details) with Banca Intesa, PayPal, and other payment service providers to process transactions.
• Vendors and Service Providers: We may share your data with third party vendors, service providers, contractors or agents who perform services for us.
• Business Transfers: We may share or transfer your information in connection with any merger, sale of company assets, financing, or acquisition.
4. DO WE USE COOKIES AND OTHER TRACKING TECHNOLOGIES?
In Short: We may use cookies and other tracking technologies to collect and store your information.
We may use cookies and similar tracking technologies (like web beacons and pixels) to access or store information. Specific information about how we use such technologies and how you can refuse certain cookies is set out in our Cookie Policy.
5. HOW DO WE HANDLE YOUR SOCIAL LOGINS?
In Short: If you choose to register or log in to our websites using a social media account, we may have access to certain information about you.
Our website offers you the ability to register and login using your third party social media account details (like your Facebook or Twitter logins). Where you choose to do this, we will receive certain profile information about you from your social media provider. The profile information we receive may vary depending on the social media provider concerned, but will often include your name, e-mail address, friends list, profile picture as well as other information you choose to make public.
We will use the information we receive only for the purposes that are described in this privacy policy or that are otherwise made clear to you on the website. Please note that we do not control, and are not responsible for, other uses of your personal information by your third party social media provider.
6. IS YOUR INFORMATION TRANSFERRED INTERNATIONALLY?
In Short: We may transfer, store, and process your information in countries other than your own.
Our servers are located in Serbia. If you are accessing our website from outside Serbia, please be aware that your information may be transferred to, stored, and processed by us in our facilities and by those third parties with whom we may share your personal information, in Serbia and other countries.
If you are a resident in the European Economic Area, then these countries may not have data protection or other laws as comprehensive as those in your country. We will however take all necessary measures to protect your personal information in accordance with this privacy policy and applicable law.
7. WHAT IS OUR STANCE ON THIRD-PARTY WEBSITES?
In Short: We are not responsible for the safety of any information that you share with third-party providers who advertise, but are not affiliated with, our websites.
The website may contain advertisements from third parties that are not affiliated with us and which may link to other websites, online services or mobile applications. We cannot guarantee the safety and privacy of data you provide to any third parties. Any data collected by third parties is not covered by this privacy policy. We are not responsible for the content or privacy and security practices and policies of any third parties, including other websites, services or applications that may be linked to or from the website. You should review the policies of such third parties and contact them directly to respond to your questions.
8. HOW LONG DO WE KEEP YOUR INFORMATION?
In Short: We keep your information for as long as necessary to fulfill the purposes outlined in this privacy policy unless otherwise required by law.
We will only keep your personal information for as long as it is necessary for the purposes set out in this privacy policy, unless a longer retention period is required or permitted by law. Our data retention periods are:
• Order records: 10 years (Serbian tax law requirement for financial records)
• Warranty records: 2 years from date of purchase (warranty period)
• Customer communications: 2 years from last interaction
• Marketing preferences: Until consent is withdrawn
• Payment information: Not stored (processed by Banca Intesa/PayPal)
• Account information: Until account deletion is requested
9. HOW DO WE KEEP YOUR INFORMATION SAFE?
In Short: We aim to protect your personal information through a system of organizational and technical security measures.
We have implemented appropriate technical and organizational security measures designed to protect the security of any personal information we process. These measures include:
• SSL/TLS encryption for all data transmission
• Payment processing through PCI DSS certified providers only
• No storage of payment card information on our servers
• Regular security audits and updates
• Restricted access to personal information (authorized personnel only)
• Secure data storage with encryption at rest
• 3D Secure authentication for all card transactions
10. DO WE COLLECT INFORMATION FROM MINORS?
In Short: We do not knowingly collect data from or market to children under 18 years of age.
We do not knowingly solicit data from or market to children under 18 years of age. By using the website, you represent that you are at least 18 or that you are the parent or guardian of such a minor and consent to such minor dependent's use of the website.
11. WHAT ARE YOUR PRIVACY RIGHTS?
In Short: You have rights that allow you greater access to and control over your personal information.
You have certain rights under applicable data protection laws. These may include the right to:
• Request access and obtain a copy of your personal information
• Request rectification or erasure of your personal information
• Restrict the processing of your personal information
• Data portability (receive your data in a portable format)
• Object to the processing of your personal information
• Withdraw consent at any time
Serbian Data Protection Rights
If you are a resident of Serbia, you have the right to lodge a complaint with the Commissioner for Information of Public Importance and Personal Data Protection:
Commissioner for Information of Public Importance and Personal Data Protection
Bulevar kralja Aleksandra 15, 11000 Belgrade, Serbia
Email: office@poverenik.rs
Website: www.poverenik.rs
Account Information
If you would at any time like to review or change the information in your account or terminate your account, you can contact us using the details provided below. Upon your request to terminate your account, we will deactivate or delete your account and information from our active databases. However, some information may be retained in our files to prevent fraud, troubleshoot problems, assist with any investigations, enforce our Terms of Use and/or comply with legal requirements.
Opting out of email marketing: You can unsubscribe from our marketing email list at any time by clicking on the unsubscribe link in the emails that we send or by contacting us using the details provided below.
12. CONTROLS FOR DO-NOT-TRACK FEATURES
Most web browsers and some mobile operating systems and mobile applications include a Do-Not-Track ("DNT") feature or setting you can activate to signal your privacy preference not to have data about your online browsing activities monitored and collected. No uniform technology standard for recognizing and implementing DNT signals has been finalized. As such, we do not currently respond to DNT browser signals or any other mechanism that automatically communicates your choice not to be tracked online.
13. DO CALIFORNIA RESIDENTS HAVE SPECIFIC PRIVACY RIGHTS?
In Short: Yes, if you are a resident of California, you are granted specific rights regarding access to your personal information.
California Civil Code Section 1798.83, also known as the "Shine The Light" law, permits our users who are California residents to request and obtain from us, once a year and free of charge, information about categories of personal information (if any) we disclosed to third parties for direct marketing purposes and the names and addresses of all third parties with which we shared personal information in the immediately preceding calendar year. If you are a California resident and would like to make such a request, please submit your request in writing to us using the contact information provided below.
If you are under 18 years of age, reside in California, and have a registered account with the website, you have the right to request removal of unwanted data that you publicly post on the website. To request removal of such data, please contact us using the contact information provided below.
14. DO WE MAKE UPDATES TO THIS POLICY?
In Short: Yes, we will update this policy as necessary to stay compliant with relevant laws.
We may update this privacy policy from time to time. The updated version will be indicated by an updated "Last Updated" date and the updated version will be effective as soon as it is accessible.
15. HOW CAN YOU CONTACT US ABOUT THIS POLICY?
If you have questions or comments about this policy, you may contact us at:
Butternut doo Jagodina
doing business as Limelightherb.com
Address: Kneza Milosa 129, Jagodina, Serbia
Company Registration (Matični broj): 21363898
Tax ID (PIB): 110569493
Phone: +381600317601
Email: support@limelightherb.com
Alternative Email: maja@limelightherb.com
Data Protection Officer: Maja Karic