2. WHAT & WHY WE PROCESS
When using the website, we process personal data pertaining to you. Such personal data include:
WHAT: Technical information associated with the device you use; Information concerning your browsing behavior; Your contact data; Communication metadata (e.g.: counterparty, data, time); Your preferences regarding receiving our e-mail communications, such as newsletters, promotions, advertisements, etc.; Any other personal data you choose to provide to us
DETAILS: Full Name; Email; Phone; Address; Country of residence; Date of birth; IP address; MAC address; Browser type; Geographical position; Operating system.How long you visit a page; What links you click on; What pages you visit; How many times you visit a page.
PURPOSE:Order and delivery fulfilment and sending the newsletter if the customer has required to do so.
LEGAL BASIS:Data subject consent given by the data subject for one or more specific purposes
Performance of a contract to which the subject is party.
In principle we obtain the above mentioned personal data directly from you. In addition to the purposes mentioned above, we may process your personal data:
To provide you in a personalized and efficient way with the information, products and services you request, either via the Website, e-mail, telephone or social media channels. For direct marketing purposes, i.e. to be able to provide you with targeted communications, promotions, offerings and other advertisements from us or our selected partners. Note, however, that we will obtain your prior consent before doing so.
To perform statistical analyses so that we may improve our website, or to develop new products and/or services.
To transfer to the financial institution or payment service provider to allow your financial institution and the payment service provider to comply with their legal obligations.
To transfer to the police or the judicial authorities as evidence or if there are justified suspicions of an unlawful act or crime committed by you through your registration with or use of the website.
For informing any third party in the context of a possible merger with, acquisition from/by or demerger by that third party, even if that third party is located outside EEA.
If and when your registration with or use of the website can be considered (a) a violation of the terms or the intellectual property rights or any other right of a third party, (b) a threat to the security or integrity of the Services, (c) a danger to the website or any of our or our subcontractors’ underlying systems due to viruses, Trojan horses, spyware, malware or any other form of malicious code, or (d) in any way hateful, obscene, discriminating, racist, slanderous, spiteful, hurtful or in some other way inappropriate or illegal, we may process your personal data for the preservation of the legitimate interest of us, our partners or a third party.
3. TO WHOM WE SEND
We will share your personal data only with the following categories of recipients: BPOST/DPD/PAYPAL/STRIPE. We may rely on third party processors to provide you the website. We will ensure that third party processors are only allowed to process your personal data on behalf of us upon written instruction of us. We warrant that all third-party processors are selected with due care and are trained to be aware of the safety and integrity of your personal data.
We may send anonymized and/or aggregated data to other organizations that may use those data for improving products and services as well as tailor the marketing, displaying and selling of those goods and services.
4. WHERE WE PROCESS
We and our third-party processors will only process your identifiable personal data in the EEA. We may transfer your anonymized and/or aggregated data to organizations outside of the EEA. Should such transfer take place, we will ensure that there are appropriate safeguards in place to ensure the safety and integrity of your personal data as well as all rights with respect to personal data you might enjoy under applicable mandatory law.
We will take the appropriate technical and organizational measures to keep your personal data safe from unauthorized access or theft as well as accidental loss, tampering or destruction. Access by our personnel or personnel of our third-party processors will only be on a ‘need-to-know’ basis and subject to strict confidentiality obligations. You understand, however, that safety and security are best efforts obligations only which can never be guaranteed.
4. YOUR RIGHTS
You have the right to request access to all personal data processed by us pertaining to you. Subsequent requests for access addressed to us that are manifestly submitted for causing nuisance or harm to us, will not be dealt with.
You have the right to ask that any personal data pertaining to you that are inaccurate, are corrected free of charge. If you have registered with our website, you can correct a lot of these data yourself via your profile. If a request for correction is submitted, such request shall be accompanied of proof of the flawed nature of the data for which correction is asked.
You have the right to withdraw your earlier given consent for processing your personal data. You can withdraw your consent at any time by sending an email sent to the company (privacy) email address.
Instead of deletion you can also ask that we limit the processing of your personal data if and when (a) you contest the accuracy of that data, (b) the processing is illegitimate or (c) the data are no longer needed for the purposes listed but you need them to defend yourself in judicial proceedings.
You have the right to oppose the processing of personal data if you are able to proof that there are serious and justified reasons connected with his particular circumstances that warrant such opposition. However, if the intended processing qualifies as direct marketing, you have the right to oppose such processing free of charge and without justification.
If you wish to submit a request to exercise one or more of the rights listed above, you can send an e-mail to firstname.lastname@example.org. Such request should clearly state which right you wish to exercise and the reasons for it if such is required. It should also be dated, signed and accompanied by a digitally scanned copy of your valid identity card proving your identity.
We will promptly inform you of having received this request. If the request proves valid, we shall honor it as soon as reasonably possible and at the latest thirty (30) days after having received the request.
If you have any complaint regarding the processing of your personal data by us, you may always contact us via the e-mail address email@example.com. If you remain unsatisfied with our response, you are free to file a complaint with the competent data protection authority (List of DPA per country: http://ec.europa.eu/newsroom/article29/item-detail.cfm?item_id=612080).
Where your personal data is processes based on consent or on a contract and the processing is carried out by automated means, you will have the right to receive the personal data concerning yourself, which you provided to us, in a structured, commonly used and machine-readable format and, where technically feasible, you will have the right to directly transmit those data to another service provider.