The controller of personal data is company iTrade Global, spletna trgovina, d.o.o., Pod Grintovcem 7A, 1370 Logatec, Slovenia, Registration number: 8430829000
By opening and using the Website, various information and data is exchanged between your device and the server, including personal data under the EU General Data Protection Regulation (Regulation (EU) 2016/670 hereinafter referred to as the General Regulation). Below we present you the exchange of information and define precisely the use, interest and reasons.
The website is accessible on the HTTPS secure protocol, which provides encrypted connection and data exchange, and our servers are updated to the latest versions, which increases the level of security.
PERSONAL DATA AND PROCESSING
- Basic customer information that is collected when placing an order in an online store (first name, last name, address, email address and telephone number) and when registering as a user on this website (username, email address and password for access)
- Information on user purchases and invoices issued
- Device IP address
- Date, time and a partial physical location of access
- Website URL and referring URL (channel and campaign – how the visitor was acquired or the source through which the visitor came to the site)
- Website retention time, number and URLs of pages visited, and total visit time
- The type of browser you are using, language of the browser and the operating system used
The controller does not collect or process your personal information except when you enable or consent to it or there is a legal basis for it and the controller has a legitimate interest in the processing.
DATA PROCESSING BY LAW OR CONTRACTUAL RELATIONS
PURCHASE ON THE ONLINE SHOP
In the case of concluding and executing a contract with the controller (in case of online purchase), you must provide personal data for the purpose of conclusion of contract. It is not possible to process an order in an online store without provision of personal data.
When processing your order, we transfer your information to an EU-registered accounting program that demonstrated appropriate technical and organizational measures consistent with the General Regulation for the secure processing of your personal data.
We transmit your personal information to a delivery service which is registered in the EU and demonstrated appropriate technical and organizational measures in accordance with the General Regulation for the secure processing of your personal data.
SENDING PROMOTIONAL MESSAGES
The controller can send you emails about sales campaigns or news to your e-mail address, which you specified at the time of your order. The Controller does not forward your email to a third party under any circumstances, and you always have the option to unsubscribe from receiving promotional messages by clicking the link in the message itself. The Controller always respects your decision and the opt-out is automated and takes effect immediately.
PROCESSING OF PERSONAL DATA ON THE BASIS OF LEGAL INTEREST
In accordance with the General Regulation, the controller may also process data on the basis of a legitimate interest. The Controller strives that the rights and freedoms of the individual or the visitor of the website prevail over said interests. If you do not want the data processed or want to delete or cancel the processing, you can send us an e-mail at firstname.lastname@example.org.
GENERAL STATISTICAL PROCESSING
For the purpose of optimizing the website, monitoring the proper functioning of the website, analysing sales, re-purchases and customer behaviour, and for business optimization purposes and measuring business performance, we use the Google Analytics tool. The tool monitors sales by sales channels, how many buyers make repurchases, and in what quantity and value, we monitor responses to advertising campaigns and general visitor statistics. We use IP address anonymization so that your IP address is never forwarded. Once your IP address becomes anonymous, your identification is no longer possible, so Google Analytics cannot in any way associate your device with other Google data.
ACCESS TO HISTORY OF ORDERS AND OTHER DATA
Controllers staff can access your order history if you provide personal data for identification or order number. Upon access, they can offer you a better service or offers and effectively resolve any complaints.
CUSTOMIZED COMMUNICATION WITH EXISTING AND POTENTIAL BUYERS
Personalized communication (via email, browser notifications or social networks) is used to present a suitable offer, communicating discounts and provision of other content that may be of interest to you based on your past interactions with our site. We use your demographics (gender, age and location), your purchase history (purchased products, number of purchases), product responses and views (opening messages, clicks on links), and behavioural conduct to initiate this type of communication.
SENDING PERSONALIZED MESSAGES
When using personalized communication, we never create user profiles, nor do we profile you or analyse your personal data, we only perform processing on a large group basis, which makes it impossible for you to be identified as an individual.
The Controller may process and collect your personal information, subject to your consent, for the purposes of verifying and enabling your online account created by registering on the Website and for sending promotional messages and other content by email in case there is no other legal basis for this and you have given us your explicit consent. The controller may also process and collect your personal data for other purposes, but only if you have been accurately informed of these purposes and given explicit consent.
If you do not want the data processed or want to delete or cancel the processing, you can send us an e-mail at email@example.com.
There are different ways to control and manage cookies through your browser’s developer tools. The method depends on the browser you are using when accessing this website. Keep in mind that removing or blocking cookies may adversely affect your user experience and accessibility to certain pages of our online store.
Most browsers automatically accept cookies, but you can choose whether to accept cookies through the browser control, which is usually found in the browser’s Tools or Settings menu. For more information on how to change your browser settings or how to block, manage, or filter cookies, visit: www.allaboutcookies.org.
PERSONAL DATA RETENTION
The controller retains your personal data for as long as is necessary to accomplish the purpose for which the personal data was collected and processed. In case a special law prescribes the retention of data for a specified period, then the controller processes that data in accordance with said law.
If you place an order, complete it and accept the delivery of goods, then we keep the order information on the server for 2 years from the delivery. If you make a request to delete your data from our databases, we can delete the data beforehand, except for the data on the invoice, which is not allowed to be deleted in accordance with the legislation and must be kept by the Controller for 5 years.
Data in Google Analytics is deleted after 26 months.
PERFORMANCE OF CONTRACT
By using the Website, you are aware that the controller may also entrust other contractors (processors) with your personal data solely on behalf of the controller and within the limits of the controller’s authorization. The controller employs the following contractors (processors):
- Provider of accounting and customer relationship management program,
- Accounting Service,
- Email provider (e.g., Google Mail, Mailchimp)
- Online advertising solution provider (e.g., Facebook, Google)
- Delivery service
Your privacy means a lot to us; therefore your personal data will never be transferred to third parties, and the controller chooses only verified contractors who have the software regulated in accordance with the General Regulation. Users of personal data do not send personal data to third countries outside the EU except in the USA. All contractors located in the US are self-certified under the International Privacy Shield Agreement.
For more information on data processing and additional questions, you can contact us via firstname.lastname@example.org.