Privacy policy

At Loudartzs (“we”, “our”, “us”) we are committed in protecting the privacy of our customers and website visitors (“you”). We will always handle your personal data only for the lawful purposes described in this Policy and in accordance with the European General Data Protection Regulation (GDPR), the Cyprus Data Protection Law 125(I)2018 and  any other privacy related law or regulation.

Please take the time to read this Privacy Policy. We provide important information on how and why we are collecting and processing your personal data, who has access and how long we keep these data.

This website is not intended for children and we do not knowingly collect personal data relating to children.

Loudartzs is the data controller of your personal data which means that we are responsible for determining the purposes and the means of processing.

Types of personal data

In the course of providing our services and information via our website to you, we may process the following types of data:

Contact and identification details, such as full name, address and email address

Transactional data, such as payment details

Technical and authentication data, such as login credentials Internet Protocol (“IP”) address, operating system version.

Marketing and cookies preferences

Legal basis

We may only process your personal data:

  • In order to perform a contract between you and Loudartzs or to take steps at your request prior to entering into a contract.
  • To pursue our legitimate interests, provided that that those interests are not overridden by your fundamental rights and freedoms.
  • When we need to obtain your specific consent to do so.
  • To comply with a legal obligation to which we are subject.

For a more comprehensive view regarding the purposes of processing, please see the table below:

Personal data

 

Legal Basis

 

Purposes / processing activities

Contact and identification details

 

Marketing and cookies preferences

 

 

Consent

·        To contact you for direct marketing purposes. You can withdraw your consent and unsubscribe at any given time.

Contact and identification details,

 

Transactional data

 

Marketing and cookies preferences

 

Performance of a Contract

 

 

·        To manage your purchase orders and arrange the delivery or return of the products.

 

Contact and identification details

 

Technical and authentication data

 

Marketing and cookies preferences

 

Legitimate Interests

 

 

·       To register you as a new customer and create an account for you on the website.

·       To manage your purchase orders and arrange the delivery or return of the products.

·       Contact you directly to discuss any issues regarding your orders and ask any questions you may have about our services.

·       To provide you with information regarding our store, new products and other updates (direct marketing)

 

Contact and identification details,

 

Transactional data

Compliance with Legal Obligation

 

 

·      To comply with various laws and regulations such as the Cyprus Tax law.

 

 


Please note we reserve the right to contact you to provide you with information regarding important changes or developments relevant to our services, such as changes to our terms and conditions, delivery details, changes/updates on our systems etc. This type of communication is not marketing. Therefore, we may send such informative messages/notifications without your consent but rather on the basis of our legitimate interest and our responsibility to perform our obligations.

Sources and recipients of your personal data

We collect your personal data directly from you or the device you use when using our website and services.

We may share some of your personal data with our consultants, legal advisors and other vendors usually in order to secure your data and our systems, to facilitate your orders efficiently and in order to establish, exercise or defend legal claims.

In addition, our store is hosted on Shopify Inc. They provide us with the online e-commerce platform that allows us to sell our products and services to you. Your data is stored in Shopify’s data storage, databases, and the general Shopify application. They store your data on a secure server behind a firewall. If you choose a direct payment gateway to complete your purchase, then Shopify stores your credit card data. It is encrypted through the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction data is stored only as long as is necessary to complete your purchase transaction. After that is complete, your purchase transaction information is deleted.

All direct payment gateways adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, Mastercard, American Express and Discover. PCI-DSS requirements help ensure the secure handling of credit card information by our store and its service providers.  For more details, please read Shopify’s Terms of Service (https://www.shopify.com/legal/terms) and/or Privacy Policy (https://www.shopify.com/legal/privacy).

Data Protection rights

As a data subject you have the following rights in terms of your personal data we hold about you. Please note that these rights are not absolute, are subject to various exceptions and their applicability will depend on our legal basis :

  • The right to be informed about how your personal data are processed and request access to your personal data.
  • The right to correct inaccurate or incomplete personal data.
  • The right to request the erasure of your data, especially when there is no longer any legal basis or purpose for processing or when the processing was illegal.
  • The right to restrict the processing, for example when you object to the processing, but we need to verify if we have legitimate grounds to continue the processing.
  • The right to object to the processing, especially when we rely on our legitimate interests.
  • The right to request that your data is delivered to you in a commonly used form or transferred to another data controller.
  • The right to withdraw consent where the processing was based on your consent. When the purpose is to provide direct marketing to you, your right to withdraw your consent is absolute.
  • The right not to be subject to automated decision-making, including profiling.
  • The right to lodge a complaint with the Office of the Commissioner for Personal Data Protection (commissioner@dataprotection.gov.cy).

You may exercise your rights at any given time by sending your request in writing to our address or email mentioned above.

We will do our best to respond as soon as possible. In any case we have a legal obligation to respond to your request within one month, unless the request is very complex or excessive, in which case we may charge a reasonable administration fee and will require two additional months.

Third-party links

Our website may include links to third-party websites, plug-ins and applications. Please note that, by clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and is not responsible for their privacy policies. When you leave our website, please read the privacy policy of every website you visit.

International transfers

We do not normally transfer your data to third countries (i.e. countries outside the European Economic Area) for the purposes described in this Policy.

In any case, should it become necessary to transfer your data we shall only do so in compliance with GDPR Chapter V, the Cyprus Data Protection Law, and specifically if at least one of the following appropriate safeguards is implemented:

  • The recipient third country has adequate level of protection from the EU Commission;
  • We have specific standard contractual arrangements in place approved by the EU Commission;
  • The recipient organisation/company is part of the Privacy Shield (transfers to the United States of America).

However, in the absence of such appropriate safeguards we may transfer your data where we have obtained your explicit consent; the transfer is necessary for the performance of a contract we have with you; or the transfer is necessary for the establishment, exercise or defence of legal claims.

Data retention

As a general rule we will retain your personal data for no longer than necessary for the purposes described in this Policy. However, we may retain some of your personal data for a minimum period after your purchase has been completed in order to comply with a legislation applicable to us, such as tax and accounting law.

Please note that, when we process you data on the basis of your consent (for example, marketing) , the relevant data will be kept in our systems until you withdraw that consent in which case the data will be immediately deleted in a secure manner.

Contact us

In case you have any questions about this Privacy Policy or how we handle your data, please do not hesitate to contact us by sending us an email, a letter, or by calling us.

Our details are:

Email: info@loudarzts.com