Legal

Privacy Policy

What data we collect, how long we keep it, and what your rights are.

Last updated: 28 July 2026 · v1.0

Who we are

Brian X Base LLC, doing business as Peridyn Labs ("Peridyn," "we," "our"), is a limited-liability company operating peridynlabs.com and related subdomains. Registered address: 1201 N. Market Street, Suite 111, Wilmington, DE 19801.

What we collect

Order and account data. Name, email, shipping and billing address, phone (optional), organization (optional), account credentials (hashed), order history, subscription preferences, communication history.

Payment data. Card details are collected by our PCI-DSS-certified payment processor and tokenized at the point of entry. Peridyn stores only the last four digits of the card, expiration month/year, and the processor token — never the full card number, CVV, or PIN.

Website analytics. Standard web-server logs (IP address, user-agent, referrer, timestamp), page-view analytics via a first-party analytics endpoint, and marketing-attribution parameters. Peridyn does not deploy invasive third-party tracking pixels for advertising retargeting.

Age-gate and certification records. A session-scoped indicator that you have completed the age-gate and research-use certification.

How we use it

Retention

Order data is retained for seven years to satisfy tax, accounting, and regulatory recordkeeping requirements. Account data is retained while the account is active plus one year after last activity. Payment tokens are retained only while an active subscription requires them.

Sharing

We share the minimum data required with: (a) our payment processor for card authorization; (b) our fulfillment and shipping carriers; (c) our third-party analytical laboratories only for the COA metadata associated with the lot in your order (never your personal information); (d) a hosted email provider for transactional communications; and (e) our accounting and tax advisors. We do not sell, rent, or share personal data for third-party marketing.

Security

All checkout and account traffic is transported over TLS. Payment data is tokenized at collection and never traverses Peridyn systems in plaintext. Account passwords are stored as salted bcrypt hashes. We maintain a documented incident-response plan and will notify affected users within 72 hours of any confirmed data breach.

Your rights (all US residents)

You may request a copy of the personal data we hold about you, correction of inaccurate data, deletion of your data (subject to regulatory retention requirements), and opt-out of marketing communications. Requests: privacy@peridynlabs.com.

California residents (CCPA / CPRA)

California residents have specific rights including the right to know, delete, correct, and opt out of "sale" or "sharing" of personal information. Peridyn does not sell personal information as defined by CCPA. Verifiable consumer requests may be made to privacy@peridynlabs.com or by mail to the registered address above. Peridyn will respond within 45 days.

Cookies

Peridyn uses functional cookies for session management, cart persistence, and CSRF protection. Analytics cookies are first-party and do not enable cross-site tracking. No third-party advertising cookies are set.

Children

The site enforces a 21+ age gate and is not directed at persons under 18. We do not knowingly collect personal information from minors.

Changes

Material changes to this Policy are notified by email to registered users and are effective 30 days after posting.

Contact

Privacy questions: privacy@peridynlabs.com.