Privacy Policy
USE OF COOKIES
The Online Store uses cookies. A cookie is a small text file that a web browser automatically stores on the user’s device. Cookies are used to collect information about how customers use the Online Store in order to provide a better user experience.
The Online Store uses the following types of cookies:
- session cookies, which enable the use of the Online Store;
- persistent cookies, which remember the customer’s choices in the Online Store;
- first-party and/or third-party cookies, which are used to display relevant advertisements and offers to the customer;
- third-party analytics cookies, which are used to optimize marketing communications.
Customers may delete and/or block cookies stored on their devices by changing the relevant settings in their web browser. If cookies are not used, the Online Store may not function as intended and/or some features may not be available to the customer.
In addition to analytics cookies, the Online Store uses pixels (pixel tags, web beacons) to monitor the use of the Seller’s website. In doing so, no data that would enable the identification of an individual is processed.
PROCESSING OF PERSONAL DATA
The data controller of personal data for the Online Store sense3 is Aroma Marketing OÜ (registry code 14114061), located at Tööstuse tn 48, 10416 Tallinn, Estonia, email: info@sense3.eu.
PERSONAL DATA PROCESSED
- name, telephone number, and email address;
- delivery address;
- bank account number;
- cost of goods and services and payment-related data (purchase history);
- customer support data.
PURPOSES OF PROCESSING PERSONAL DATA
Personal data is used to manage customer orders and deliver goods.
Purchase history data (purchase date, goods, quantity, customer details) is used to compile overviews of purchased goods and services and to analyze customer preferences.
Bank account numbers are used to refund payments to customers.
Personal data such as email address, telephone number, and customer name are processed in order to resolve issues related to the provision of goods and services (customer support).
The Online Store user’s IP address or other network identifiers are processed to provide the Online Store as an information society service and to compile website usage statistics.
LEGAL BASIS
Personal data is processed for the performance of a contract concluded with the customer.
Personal data is also processed to comply with legal obligations (e.g. accounting and resolution of consumer disputes).
RECIPIENTS OF PERSONAL DATA
Personal data is transferred to the Online Store’s customer support service for managing purchases and purchase history and for resolving customer issues.
The customer’s name, telephone number, and email address are transferred to the transport service provider chosen by the customer. If the goods are delivered by courier, the customer’s address is also transferred.
Accounting for the Online Store is performed by a service provider, and personal data is transferred to that service provider for accounting purposes.
Personal data may be transferred to information technology service providers if necessary to ensure the functionality of the Online Store or data hosting.
SECURITY AND ACCESS TO DATA
Personal data is stored on ShopRoller.com servers located within the territory of a Member State of the European Union or a country that has joined the European Economic Area. Data may be transferred to countries whose level of data protection has been deemed adequate by the European Commission and to U.S. companies that have joined the Privacy Shield framework.
Access to personal data is granted to Online Store employees who require such access to resolve technical issues related to the use of the Online Store and to provide customer support services.
The Online Store implements appropriate physical, organizational, and information technology security measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorized access, or disclosure.
The transfer of personal data to authorized processors of the Online Store (e.g. transport service providers and data hosting providers) is carried out on the basis of agreements concluded between the Online Store and the authorized processors. Authorized processors are required to ensure appropriate safeguards when processing personal data.
ACCESS TO AND CORRECTION OF PERSONAL DATA
Personal data may be accessed and corrected in the user profile of the Online Store. If a purchase has been made without creating a user account, personal data can be accessed through customer support.
WITHDRAWAL OF CONSENT
If the processing of personal data is based on the customer’s consent, the customer has the right to withdraw such consent by notifying customer support via email.
DATA RETENTION
When a customer account in the Online Store is closed, personal data is deleted unless such data must be retained for accounting purposes or for the resolution of consumer disputes.
If a purchase is made in the Online Store without creating a customer account, the purchase history is retained for three years.
In the event of disputes related to payments or consumer complaints, personal data is retained until the claim is fulfilled or the limitation period expires.
Personal data required for accounting purposes is retained for seven years.
ERASURE OF DATA
To delete personal data, the customer must contact customer support via email. Requests for deletion will be responded to no later than within one month, specifying the period for data deletion.
DATA PORTABILITY
Requests for the transfer of personal data submitted by email will be responded to no later than within one month. Customer support will verify the identity of the requester and inform them of the personal data subject to transfer.
DIRECT MARKETING COMMUNICATIONS
Email addresses and telephone numbers are used to send direct marketing communications if the customer has given the relevant consent. If the customer does not wish to receive direct marketing communications, they may select the relevant link in the footer of the email or contact customer support.
If personal data is processed for direct marketing purposes (including profiling), the customer has the right at any time to object to both the initial and further processing of their personal data, including profiling related to direct marketing, by notifying customer support via email. Such notice must be clear and submitted separately from any other information.
DISPUTE RESOLUTION
Disputes related to the processing of personal data are resolved through customer support at info@sense3.eu. The supervisory authority is the Estonian Data Protection Inspectorate (info@aki.ee).