PRIVACY POLICY
Handling of personal data
On 25 May 2018 a new law came into force, GDPR. It is a common law that will make the same rules apply throughout Europe. GDRP replaces the Personal Data Act. With GDRP, all organizations, traders and companies must have greater responsibility for controlling their clients' tasks.
Kiama Sophia is responsible for processing your personal information that you share with me as a customer and I want to make sure you feel safe. I need to collect certain personal information from you to complete an agreement with you as a customer. Kiama Sophia does not disclose personal data to third parties other than those mentioned below.
What information is saved, and for what purpose?
When you shop at Kiama Sophia, I collect the following personal information: Name, Address, Email, Order History, Phone Number, IP Address, and Payment Information.
When you visit my site: I use Cookies and collect some information.
I do not share this information except for the following;
In order for me to deliver your order and complete our agreement, I need to share certain information with the shipping company. What is shared with the shipping company is first name, last name, address, mobile number and e-mail address. This in order for the freight supplier to deliver your order to your address and phone number / e-mail address is used to send you an AVI. My shipping partners are: BPost & DHL.
Payment Provider. When making purchases, information is shared with my payment provider. What is stored is first name, last name, address, e-mail address and phone number. The information is stored in order to complete the purchase and to protect the parties for fraud. My partners are: Stripe Commerce and PayPal.
Cookies: I use cookies and other web analytics tools, such as Google Analytics, Facebook pixel and Hotjar, to automatically collect information about you to deliver a better experience on my wesbite.
How long do you save my personal information?
I will never save your personal information longer than is necessary for each purpose. In the most common cases, I will remove your personal information after your intended purpose. The only case where I may keep the data longer than is necessary is when I am going to comply with legal obligations. (for example, according to the Accounting Act)
Rights
You are always entitled to extract any information I have about you and may also ask me to update incorrect information or to supplement information that is inadequate.
You are also entitled to be forgotten. You can at any time request that the information relating to you be deleted. There are few exceptions to the right to delete, such as, for example, that it should be retained in order for me to fulfill a legal obligation. (for example, according to the Accounting Act)
If you have any questions or complaints. If you wish to exercise any of the above rights or if you have questions regarding personal information held by ume, please get in touch.