We want to give you an amazing purchasing experience on the Shopify platform. For us, an amazing experience means at the same time, to protect your personal data at the best. In order to achieve that, we want to be as transparent as possible and give you the chance to see how, why and where we process your data. This policy gives you an overview of: what information we keep on file, how long we intend to keep your information, why are we keeping your information, what are your rights as a data subject, who the data controller is, where you can file a complaint and if we share your information with third parties.
If you require additional information or have any concerns about the processing of your personal data please contact us by email, please contact us by sending an email to [insert email].
Privacy is your right and you have the choice
As a customer you have the choice which information you would like to share with us. Of course we need some information for the fulfillment of our contract. However, this does not always require all the data which you can make available to us.
You can take the following steps to disclose less information about yourself:
Cookies: You can install additional add-ons in your browser that block unnecessary cookies. By doing so, you will not see any interest-based advertisements.
Advertising: If you do not want to receive email marketing from us, you can unsubscribe at any time.
You can also make use of the following rights at any time:
Right to access
You have the right to be informed which data we store about you and how we process this data.
Right to rectification
If you notice that stored data is incorrect, you can always ask us to correct it.
Right to erasure
You can ask us at any time to delete the data we have stored about you.
Right to object to the processing of your data
You can revoke your consent at any time or object to the further processing of your data. This also includes objecting to our processing, which we process without your consent but based on our legitimate interest. This applies, for example, to direct marketing. You can object to receiving further newsletters at any time.
If you do not agree with one of our processing purposes based on our legitimate interest or wish to object to it, you may object to the processing at any time on grounds relating to his or her particular situation. Please write an email to [insert email]. In this case we will review the processing activity again and either stop processing your data for this purpose or explain to you our reasons worth protecting and why we will continue with the processing.
Right of complaint
If you believe that we have done something wrong with your personal data or your rights, you can complain to the appropriate supervisory authority at any time.
If you would like to exercise your rights as a data subject, you can contact [insert email] at any time.
What data we process
In the following description of our processing activities, we refer in each case to categories of personal data. A category includes several personal data, which are usually processed together for the purposes.
Personal data is information that can identify you or even make you identifiable.
Categories of personal data:
As part of the buying and selling process, we will collect the following information:
- name (first and last)
- phone number
- email address
- payment information
- shipping and/or billing address
When you browse our store, we also automatically receive your computer’s internet protocol (IP) address in order to provide us with information that helps us learn about your browser and operating system.
Consent. If any process relies on consent as a legal basis, we want hereby to inform you about your right to withdraw your consent anytime in the future.
How do I withdraw my consent?
If after you opt-in and you change your mind, you can contact us anytime at [insert email] for this purpose.
If you have provided us with your email address when purchasing goods, we reserve the right to send you regular offers of similar goods or services to those already purchased from our range by email. You can unsubscribe from these marketing emails anytime.
Categories of personal data:
- name (first and last)
- email address
Data processing in this respect takes place solely on the basis of our legitimate interest in personalised direct marketing. If you have initially objected to the use of your email address for this purpose, we will not send you an email for marketing purposes. You are entitled to object to the use of your email address for the aforementioned advertising purposes at any time with effect for the future by notifying the person responsible named at the beginning. Upon receipt of your objection, the use of your email address for advertising purposes will be discontinued immediately.
Targeting / Retargeting
In principle, targeting means the switching and fading in of advertising banners on websites that are tailored to specific target groups. The aim is to display the most attractive banners as individually as possible for the user and our potential customers. Firstly, we define a target group and secondly, we commission our service providers to show our advertising to the defined target group. We do not process any personal data, as these are initially made anonymous. To better define the target group, we segment customer types and place different ads on different portals.
As soon as you have visited our website and, for example, have already placed an order in your shopping cart, we store this information in cookies. If you continue to surf other websites, our advertising partners will remind you on our behalf that you have not yet completed your order. We don't want you to miss out on our amazing experience.
You can disable retargeting by installing appropriate add-ons for your browser. Furthermore, you can and should also regularly delete the cookies stored in the browser you are using.
Categories of personal data:
Legitimate interest is the purpose described above
In order to make the visit of our website attractive and to enable the use of certain functions, we use so-called cookies on various pages. These are small text files that are stored on your device. Some of the cookies we use are deleted after the end of the browser session, i.e. after closing your browser (so-called session cookies). Other cookies remain on your device and allow us or our affiliate to recognize your browser on your next visit (persistent cookies). You can set your browser so that you are informed about the setting of cookies and individually decide on their acceptance or exclude the acceptance of cookies for specific cases or in general. Failure to accept cookies may limit the functionality of our website/app.
Categories of personal data:
We do not have any processes in that context where decisions are made in an automated way with a legal effect or similar affects you.
Who we work with and where we process your data
We use different data processors for different purposes in our data processing. A data processor is a third party that processes personal data on our behalf, based on our instructions and guidelines.
In this context, we use Shopify to host our online shop. Your data is stored by Shopify on its data storage databases and general Shopify Application. You may find out more about Shopify and its privacy practices at https://www.shopify.com/legal/privacy.
However, certain third-party service providers, such as payment gateways and other payment transaction processors, have their own privacy policies in respect to the information we are required to provide to them for your purchase-related transactions.
Because we use different data processors and change them from time to time, it is not appropriate to identify specific recipients of personal information. However, if you are interested, we will be happy to disclose the name of the processor(s) in use at that time upon request.
Processing in third countries
We process your data mainly within the European Union (EU) and the European Economic Area (EEA). However, some of our service providers mentioned above are based outside the EU and the EEA.
Before we transfer your personal data to any third parties, we carefully assess if these companies have adequate security measures in place and if they meet the requirements outlined by the applicable laws.
Only if they can demonstrate an adequate level of data protection will they be shortlisted for service providers.
Regardless of whether our service providers are located within the EU/EEA or in third countries, each service provider must sign a data processing agreement with us. Service providers outside the EU/EEA must meet additional requirements. According to Art. 44 ff. GDPR personal data may be transferred to service providers that meet at least one of the following requirements:
Commission has decided that the third country ensures an adequate level of protection (e.g. Israel and Canada)
- Standard data protection clauses adopted:
These are contractual clauses which cannot be modified by the contracting parties and in which they undertake to ensure an adequate level of data protection.
- Approved certification mechanism:
Under international agreements, companies can be certified according to defined criteria. One of these certifications is the EU-US Privacy Shield Agreement.
On the following link you can see certified companies: https://www.privacyshield.gov/welcome.
We will only transfer your data to service providers who meet at least one of these requirements. If we transfer data to third countries, these are mainly companies based in the USA or Israel.Prosecuting Authorities and Legal Proceedings
Unfortunately, it can happen that a few of our customers and service providers do not behave fairly and want to harm us. In these cases, we are not only obliged to hand over personal data due to legal obligations, it is also in our interest to prevent damage and to enforce our claims and to reject unjustified claims.
In addition to data processors, we also work with third parties, to whom we also transmit your personal data, but who are not bound by our instructions. These are, for example, our consultants, lawyers or tax consultants who receive your data from us on the basis of a contract and process your personal data for legal reasons or to protect our own interests.
We do not sell or rent your personal data to third parties under any circumstances. This will never take place without your explicit consent.
How long do we keep your data
We will need to store your data in order to be able to deliver the products and to complete your purchase. We will not keep your data for a longer period that is needed for the purpose of processing and to comply with applicable law.
If you wish for your personal data to be deleted, please let us know at [insert email].
However, despite your request for deletion of your data, we may still have to store some of the stored data due to legal regulations. For example, tax data must be kept for a period of between six and ten years or even longer in some cases. These special retention periods vary according to local legal requirements. In this case, however, we will restrict data from further processing.
Furthermore, we will continue to store your data if we have a right to do so in accordance with applicable local laws. This applies in particular if we need your personal data for the establishment, exercise or defence of legal claims.
Changes to this Privacy Notice
We reserve the right to modify this privacy notice at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on the website. If we make material changes to this policy, we will notify you here that it has been updated, so that you are aware of what information we collect, how we use it, and under what circumstances, if any, we use and/or disclose it.
If our store is acquired or merged with another company, your information may be transferred to the new owners so that we may continue to sell products to you.
Questions and Contact Information
If you would like to: access, correct, amend or delete any personal information we have about you, register a complaint, or simply want more information contact us at firstname.lastname@example.org.
Last updated: 17.05.2021