Personal data processing
The responsible processor of personal data of the beautyoffice.eu online store (hereinafter the Online Store) is Beauty Office OÜ (registration code 11979493), located at Solvikinkatu 2 LH 1, 00990 Helsinki 13619, Finland, ph.: +358 401242297, Legal address: Karjavälja tn 4, 12918, Tallinn, Estonia, and e-mail: email@example.com. For making payment operations, the necessary personal data is transferred to the responsible processor of Maksekeskus AS.
What personal data is processed
name, phone number and email address;
Bank account number;
cost of goods and services and data related to payments (purchase history);
data necessary to support customers.
For what purpose is personal data processed
Personal data is used to manage sales orders.
Purchase history data (purchase date, product, quantity, customer data) is used to compile an overview of purchased goods and services, as well as to analyze customer preferences.
Bank account number is used to return funds to the client.
Personal data such as email address, phone number, customer name are processed in order to resolve issues related to goods and the provision of services (customer support).
The IP address of the user of the online store or other network identifiers is processed to provide services by the online store as part of the information society, as well as to conduct statistics on the use of the Internet.
The processing of personal data is carried out in order to fulfill the contract concluded with the client.
The processing of personal data is carried out to fulfill a legal obligation (for example, accounting and resolution of consumer disputes).
Hosts to whom personal data is transmitted
Personal data is transmitted to the customer support service of the online store to manage purchases and purchase history and to resolve customer problems.
If the accounting of the online store is maintained by the provider of the corresponding service, then personal data is transferred to the provider of the corresponding service for conducting accounting operations.
Personal data may be transferred to information technology service providers, if necessary to ensure the functionality of the online store or data storage.
Security and Data Access
Personal data is stored on Zone.ee servers located on the territory of a member state of the European Union or countries that have joined the European Economic Area. Data can be transferred to countries where the European Commission rated the data protection level as sufficient, as well as to US companies that have joined the general concept of a “Data Shield” (Privacy Shield).
Employees of the online store have access to personal data, who can familiarize themselves with personal data in order to solve technical issues related to using the online store and provide customer support services.
The online store uses appropriate physical, organizational and information technology security measures to protect personal data from accidental or illegal destruction, loss, alteration or unauthorized access and disclosure.
The transfer of personal data to authorized processors of the online store (for example, a transport service provider and data storage) is carried out on the basis of agreements concluded with the online store and authorized processors. When processing personal data, authorized processors are required to provide appropriate security measures.
Familiarization and correction of personal data
You can get acquainted with personal data and make corrections to them in the user profile of the online store. If the purchase is made without creating a user account, you can familiarize yourself with personal data by contacting customer support.
Revocation of consent
If the processing of personal data is carried out on the basis of the consent of the client, then the client has the right to withdraw consent by informing the customer support service by e-mail.
When a customer account is closed in the online store, personal data is deleted, unless it is necessary to save such data for accounting or for the resolution of consumer disputes.
If a purchase in an online store is completed without creating a customer account, the purchase history is stored for three years.
In case of disputes related to payments and consumer claims, personal data is stored until the relevant requirement is met, or until the expiration of the statute of limitations on demand.
Personal data required for accounting is stored for seven years.
To delete personal data, please contact customer support by e-mail. A response to the deletion application is sent no later than within a month, and the period of data deletion is also specified.
Direct Marketing Messages
The email address and telephone number are used to send messages as part of direct marketing, if the client has given the appropriate consent. If the client does not want to receive messages as part of direct marketing, then you should click on the appropriate link at the bottom of the email or contact customer support.
Disputes related to the processing of personal data are resolved through the customer support service (ph.: +358 401242297, email address: firstname.lastname@example.org). The supervisor is the The Office of the Data Protection Ombudsman (tietosuoja.fi).