Privacy policy

The controller of personal data is responsible for its processing:
Maciej Rogulski
Jana Kasprowicza 12d
Łódź 92-781
rodo@kokietki.pl

Telephone: 790-601-790

Thank you for your interest in our online shop. Protecting your privacy is very important to us. Below you will find detailed information on the handling of your data.

1 Access data and hosting

You can visit our websites without providing personal information. Each time a website is called up, the server automatically saves only the so-called server logs, e.g. the name of the requested file, your IP address, the date and time of the call, the amount of data transmitted and the Internet service provider submitting the request (so-called access logs) and documents the call.

This data is only analysed for the purpose of ensuring the proper functioning of our website and improving our offer. The purpose of this is to safeguard our legitimate interest in the optimal, correct presentation of our website and our offer in accordance with Article 6, paragraph 1, letter f TODO. All access data is deleted within seven days after your visit to the website.

Hosting

The hosting and website display services are partly provided on our behalf by our service providers within the framework of data processing entrustment. Unless otherwise stated in this privacy policy, all access data and data collected in the forms provided for this purpose on our website will be processed on their servers. If you have any questions about our service providers and the basis of cooperation with them, please contact us. You will find our contact details under "Our contact details and your rights".

2) Collection and processing of data for the purpose of contract fulfillment, contact and creation of a customer account

We only collect personal data if you voluntarily provide it to us by placing an order or contacting us (e.g. by means of a contact form or by e-mail). Mandatory fields are marked as such because the data they contain is necessary for the performance of the contract or the handling of the case in which you are contacting us. Without them you cannot complete the order or contact us. What data is collected results directly from the forms into which the data is entered. We use the data you provide us in accordance with Article 6(1)(b) of the GDR in order to fulfil the contract and to answer your enquiries. In addition, if you give your consent to set up a customer account pursuant to Article 6(1)(a) of the GPO, we will process the personal data you require for this purpose. You will find further information on the processing of your data, in particular on the transfer of data to our service providers for order processing, payment and dispatch, in the following sections of this privacy policy.

Once the contract has been fully executed or your customer account has been deleted, the processing of your data will be restricted and, after the expiry of the retention periods laid down in tax and accounting legislation, your data will be deleted (Article 6.1.c of this Privacy Policy), unless you expressly consent (Article 6.1.a of this Privacy Policy) to the continued use of your data or we reserve the right to continue using your data for purposes in accordance with the applicable legal provisions, in which case we inform you in this Privacy Policy. Your customer account may be deleted at any time. To do so, please send a message to our contact address as indicated under "Our contact details and your rights" or use the appropriate function in your customer account settings.

Commodity management system

We also use an external goods management system to handle orders and execute the contract. Our service providers provide services for us in this respect within the framework of an entrustment contract. If you have questions about our service providers and the basis of our cooperation with them, please contact us. You will find the contact details under "Our contact details and your rights".

3. transmission of data for delivery

In order to perform the contract (art. 6 paragraph 1 letter b of the FYROM), we provide your data to the forwarding company chosen by you in the process of placing the order, which was ordered to deliver the ordered products.

4th Data processing for payment execution

In order to process your payment in our online shop, we cooperate with external service providers handling electronic online payments and pass your data to the payment service provider of your choice during the ordering process. This serves the purpose of fulfilling the contract (article 6 paragraph 1 letter b of the TALIA).

Data processing for fraud prevention and payment optimization

In some situations, we may provide our service providers with additional information which may be used by them together with the information necessary to complete the payment. These service providers then act as processors on our behalf and provide us with fraud prevention and payment process optimisation services (e.g. invoicing, analysis of disputed payments, accounting support). In accordance with Article 6(1)(f) of the TYPE, this serves our legitimate interests in the protection against fraud and abuse and in the efficient management of payments.

5 Marketing channels: e-mail (e.g. newsletter)

Advertising sent by e-mail after subscribing to the newsletter

If you subscribe to our newsletter, we will use the data you provide us with for the purpose of sending you our newsletter regularly by electronic means on the basis of your consent (Article 6, paragraph 1, letter a of the GDR). You can unsubscribe from the newsletter at any time by sending us a message at our contact address indicated under "Our contact details and your rights" or by using the appropriate link in the newsletter. After you have de-registered, we will delete your e-mail address unless you expressly agree to the further use of your data for other purposes or unless we reserve the right to further use this data in legally permitted cases, in which case we will inform you in this privacy policy.

Sending the newsletter

The newsletter is sent as part of the entrustment of data processing on our behalf by an external service provider. If you have questions about our service providers and the basis of our cooperation with them, please contact us. You will find your contact details under "Our contact details and your rights".

Sending an invitation to give an opinion on your purchase

If, during or after placing an order, you have given your consent to this (Article 6(1)(a) TYPE), we will use your e-mail address to send you an electronic invitation to evaluate the purchase made in our shop. The opinion/evaluation is done through the feedback system we use. You can withdraw your consent at any time by sending an appropriate message to our contact address indicated under "Our contact details and your rights" or by using the appropriate link in the invitation to issue an opinion.

Invitations to submit ratings may be sent by our service provider Trusted Shops on our behalf and on our behalf. Trusted Shops works with subcontractors based in the USA for this purpose. An appropriate level of data protection is ensured in this cooperation. You can find further information on the data protection rules at Trusted Shops here. If you have any questions about the basis of our cooperation with this service provider, please contact us. You will find contact details under "Our contact details and your rights".

6 Cookies and similar technologies

General information

To make your visit to our website more attractive and enable you to use its key features, we use technological tools, including so-called cookies. Cookies are small text files that are automatically saved on your terminal device. Some of the cookies we use are deleted after the end of a web browser session, i.e. after it is closed (so-called session cookies). Other cookies are stored on your terminal device and allow us to recognize your browser the next time you enter the site (so-called persistent cookies). We use technologies that are absolutely necessary to ensure proper and optimal use of the necessary functions of our website (e.g. shopping cart function). These technologies process data such as your IP address, the time you visit the site, information about your device and browser, as well as information about the use of our website (e.g. the contents of your shopping cart). This serves, in accordance with Article 6, paragraph 1, letter f of the TYPE, to realise our legitimate interest in the optimal presentation of our offer.

In the help menu of your browser, you will find explanations for changing your cookie settings. These are available under the following links: Microsoft Edge™ / Safari™ / Chrome™ / Firefox™ / Opera™

Other providers of analytical and marketing tools

Live-Chat Tawk.This

When you use the Tawk.To chat tool to contact us, the data you voluntarily provide (name, email address, message content) will be processed by us to respond to your inquiry. This serves our legitimate interest (Article 6(1)(f) of the TOP) in ensuring that you can effectively contact us. The live chat tool is a service provided for us by an external service provider - https://www.tawk.to/, which ensures that the tool and its functionality are kept ready. All data that is collected as part of using this tool is stored on the servers of this service provider. The processing of data in connection with the services provided by the Userlike takes place within the framework of the concluded data entrustment agreement.

7 Integration with Trusted Shops Trustbadge

The Trusted Shops Trustbadge is integrated into our website in order to display our Trusted Shops Trustmark as well as the customer reviews collected and the Trusted Shops offer available to buyers after the order has been placed.

The integration into Trusted Shops Trustbadge serves to fulfil our legitimate interest (Art. 6(1)(f) of the Trust Register) in optimising the marketing of our offer by enabling secure purchases. The Trustbadge and the services advertised through it are offered by Trusted Shops GmbH, Subbelrather Str. 15C, 50823 Cologne, Germany. The Trustbadge is made available to us through the CDN (Content-Delivery-Network). Trusted Shops GmbH uses suppliers from the USA, among others, for this purpose. An appropriate level of data protection is ensured. You can find more information about the data protection rules at Trusted Shops GmbH here.

When you call the Trustbadge, the server automatically saves so-called server logs (log files), which contain, for example, your IP address, the date and time of the call, the amount of data transferred and the Internet service provider submitting the request (access data/server logs) and documents the call. Server logs are stored for security gap analysis and are automatically deleted at the latest 90 days after their creation. Other personal data will only be transferred to Trusted Shops GmbH if you voluntarily decide to use Trusted Shops products after placing an order with us or if you have already registered for use. In such cases, a contractual agreement between you and Trusted Shops applies. For this purpose, your personal data is automatically retrieved from your order data. Whether you are already registered as a buyer for the use of Trusted Shops products is checked automatically on the basis of a neutral parameter - the e-mail address is encrypted using cryptographic one-way encryption. The e-mail address is encrypted with a password value before it is transmitted so that it cannot be decrypted by Trusted Shops. After a compatibility check, the parameter is automatically deleted. This is necessary in order to fulfil our and Trusted Shops' legitimate interests (Article 6(1)(f) of the TYPE) in the performance of the services associated with each individual order, i.e. the Buyer Protection Service (Trusted Shops Guarantee) and the Rating Service. Other information, including your rights, is contained in the Trusted Shops privacy policy available above and via the Trustbadge tool.

8 Social media

Social media plug-ins: Facebook, Instagram

Our website uses so-called social networking plugins (buttons). These plugins are available via an HTML link, which ensures that when you visit our website containing such plugins (buttons), no automatic, direct connection to the servers of the social network operator is established. When you click on one of the buttons (plug-in), a new window of your browser will open, displaying the page of the social network concerned, where you can approve the use of the button, e.g. "Like" or "Share".

Our activity on social networking sites: Facebook, Twitter, Instagram, Youtube

If you have given your consent in this respect to the social networking site in question (Article 6.1.a GDR), when you visit our account/profile on the aforementioned social networking sites, your data will automatically be collected and stored for web analytics and marketing purposes. From this data, pseudonymised user profiles are created. These can be used, for example, to place so-called personalised advertisements within and outside the social networking sites which are likely to be of interest to you. Cookies are usually used for this purpose.
Detailed information on the processing and use of your data by individual social networks, as well as information on your rights and the configuration of your privacy settings and contact details for the purpose of making an enquiry are described in the privacy policies of the individual social networks linked below. If you need assistance in this regard, you can also contact us.

Facebook is a social networking service offered by Facebook Ireland Ltd., 4 Grand Canal Square, Dublin 2, Ireland ("Facebook Ireland"). Automatically processed information about your activities and how you use our Facebook fanpage is generally transmitted to and stored by Facebook, Inc., 1601 Willow Road, Menlo Park, California 94025, USA. In relation to the USA, the European Commission has not issued a decision stating an adequate level of data protection. Our cooperation is based on standard data protection clauses adopted by the European Commission. The processing of data within the framework of a Facebook fanpage visit is carried out in accordance with Article 26 of the TYPE on the basis of the joint agreements of the joint controllers, which are available here. Further information on the processing of your personal data in the context of a visit to the Facebook fanpage (information on the functions of page statistics) is available here.

Twitter is a social network offered by Twitter International Company, One Cumberland Place, Fenian Street, Dublin 2, D02 AX07, Ireland ("Twitter"). Automatically processed information about your activities and how you use our Twitter profile is generally transmitted to and stored on Twitter, Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103 in the USA. The European Commission has not issued a decision on the adequacy of data protection in relation to the USA. Our cooperation is based on standard data protection clauses adopted by the European Commission.

Instagram is a social networking service offered by Facebook Ireland Ltd., 4 Grand Canal Square, Dublin 2, Ireland ("Facebook Ireland"). Automatically processed information about your activities and how to use our Instagram fanpage account is generally transmitted to and stored on Facebook, Inc., 1601 Willow Road, Menlo Park, California 94025 in the USA. The European Commission has not issued an adequacy decision in relation to the USA. Our cooperation is based on standard data protection clauses adopted by the European Commission. The processing of data in the framework of visits to the Instagram fanpage account is carried out in accordance with Article 26 of the GDR on the basis of joint arrangements between the joint controllers. Further information on the processing of your personal data in the context of a visit to a Facebook fanpage (information on the website statistics function) is available here.

YouTube is a social networking site offered by Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland ("Google"). Automatically processed information about your activities and how you use our profile on YouTube is generally transferred to the Google LLC server, 1600 Amphitheatre Parkway Mountain View, CA 94043 in the USA and stored there. The European Commission has not issued a decision on the adequacy of data protection in relation to the USA. Our cooperation is based on standard data protection clauses adopted by the European Commission.

9. our contact details and your rights

The persons whose data are processed have the following rights:

  • in accordance with Article 15 of the COUNCIL: the right to be informed about the processing of data to the extent specified in this Article;
  • according to Article 16 of the TYPE: the right to rectify your incorrect or incomplete personal data;
  • According to Article 17 PCOs: the so-called "right to be forgotten", i.e. the right to delete your personal data saved with us, unless further processing is necessary:
    • to exercise your right to freedom of expression and information;
    • to comply with a legal obligation;
    • for reasons of public interest;
    • to establish, assert or defend claims;
  • in accordance with Article 18 of the TYPE: the right to restrict the processing of your personal data, if any:
    • the accuracy of these personal data is questioned by you;
    • the processing is unlawful and you object to its deletion;
    • we no longer need your personal data, but you need it to establish, pursue or defend your claim;
    • you have objected to the processing of the data pursuant to Article 21;
  • according to Article 20 of the TYPE: the right to receive the data supplied to us in a structured, commonly used machine-readable format and to send it to another controller;
  • according to Article 77 of the GDB: the right to lodge a complaint with the supervisory authority (the President of the Office for Personal Data Protection "UODO").

In case of any questions concerning the collection, processing and use of your personal data, as well as in case of requests for information, rectification, restriction of processing or deletion of data, and in order to revoke granted consents or to express objections to the use of certain data, please contact the data controller indicated at the beginning of this privacy policy directly.

Right to object
If we process personal data in the manner described in this privacy policy in order to safeguard our legitimate interests, then you may object to the processing of your data for this purpose. with effect for the future. If the processing takes place for direct marketing purposes, you can exercise your right to object at any time. If the processing takes place for other purposes, you only have the right to object on the basis of your specific situation.

Once you have exercised your right of objection, we will not continue to process your personal data unless we can demonstrate that there are compelling legitimate grounds for processing and that these take precedence over your interests and rights, or if the processing is to investigate, exercise or defend legal claims.

This sentence does not apply if the data processing is carried out for direct marketing purposes. In this case, we will always discontinue further processing of your personal data after you have expressed your objection.