Privacy policy
1. For the Owner of this website, the protection of Users' personal data is a matter of utmost importance. They make every effort to ensure that Users feel safe when entrusting their personal data while using the website.
2. A User is a natural person, legal entity, or organizational unit without legal personality, to whom the law grants legal capacity, using electronic services available within the website.
3. This Privacy policy explains the principles and scope of processing the User's personal data, their rights, as well as the duties of the administrator of this data, and also informs about the use of cookies.
4. The administrator uses latest technical and organizational solutions to ensure a high level of protection for processed personal data and to secure against unauthorized access.
1. Administrator of personal data
1. The administrator of personal data is the company Prekrasy Maryna Zaslavska, registered under the tax identification number (NIP): 9512581105, REGON: 526774941, hereinafter referred to as the Owner.
2. Purpose of personal data processing
1. The administrator processes the User's personal data for the purpose of:
- proper execution of sales agreements concluded within the online store via the website www.prekrasy.com (and its mirrors www.prekrasy.pl, www.prekrasy.com.ua);
- undertaking marketing activities with the prior consent of the User.
2. This means that this data is needed, in particular, for:
- registering on the website;
- entering into a contract;
- settling payments;
- delivering the goods ordered by the User or providing services;
- the User's exercise of all consumer rights (e.g., withdrawal from the contract, warranty);
- receiving and fulfilling orders, handling requests and complaints, presenting personalized marketing content.
3. The User may also consent to receive information about news and promotions, which will result in the administrator also processing personal data for the purpose of sending the User commercial information, including, among others, about new products or services, promotions, or sales.
4. Personal data is also processed to fulfill legal obligations incumbent on the data controller and to perform tasks in the public interest, including carrying out activities related to security and defense or storing tax documentation.
5. Personal data may also be processed for the purposes of direct marketing of products, securing and pursuing claims, or protecting against claims of the User or third parties, as well as marketing the services and products of third parties or self-marketing, not constituting direct marketing.
3. Type of data
1. The administrator processes the following personal data, the provision of which is necessary for:
Registering on the website:
- first and last name;
- email address.
Making purchases using the website:
- first and last name;
- gender;
- delivery address;
- phone number;
- email address.
Data optionally provided by the User:
- date of birth;
- PESEL number (in case of requesting an invoice);
- Tax Identification Number (NIP) (in case of requesting an invoice for a business entity).
2. In case of withdrawal from the agreement or acceptance of a complaint, when the refund is made directly to the User's bank account, we also process information regarding the bank account number for the purpose of refunding the payment.
4. Legal basis for processing personal data
1. Personal data are processed in accordance with the provisions of Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation), OJ L 119, 4.5.2016, p. 1–88, hereinafter referred to as the "GDPR".
2. The administrator processes personal data only after obtaining prior consent from the User, expressed at the time of registration on the website or at the time of confirming the transaction made on the website.
3. Giving consent to the processing of personal data is entirely voluntary, however, failure to provide it prevents registration on the website and making purchases through the website.
5. User's rights
1. The User may request information from the administrator at any time regarding the scope of processing of personal data.
2. The User may at any time request the correction or rectification of their personal data. The User can also do this independently by logging into their account.
3. The User may at any time withdraw their consent to the processing of their personal data, without giving a reason. The request not to process data may concern a specific purpose of processing indicated by the User, for example, withdrawing consent to receive commercial information, or it may concern all purposes of data processing. Withdrawing consent for all processing purposes will result in the User's account being deleted from the website, along with all personal data previously processed by the administrator. Withdrawal of consent will not affect actions already taken.
4. The User may at any time request, without giving a reason, for the administrator to delete their data. The request to delete data will not affect actions already taken. Deleting data will simultaneously mean deleting the User's account, along with all personal data stored and processed by the administrator up to that point.
5. The User may at any time object to the processing of personal data, both in terms of all personal data processed by the administrator and only to a limited extent, for example, regarding processing data for a specifically designated purpose. The objection will not affect actions already taken. Raising an objection will result in the deletion of the User's account, along with all personal data stored and processed by the administrator up to that point.
6. The User may request a restriction on the processing of personal data, either for a specified period or without a time limit but in a specified scope, which the administrator will be obliged to comply with. This request will not affect actions already taken.
7. The User may request that the administrator transfer their personal data to another entity. To do this, the User should write a request to the administrator, indicating the entity (name, address) to which the User's personal data should be transferred and which specific data the User wishes the administrator to transfer. After confirming the User's request, the administrator will electronically transfer the User's personal data to the designated entity. Confirmation of the User's request is necessary due to the security of the User's personal data and to ensure that the request comes from an authorized person.
8. The administrator informs the User of the actions taken, within one month of receiving any of the requests mentioned in the previous points.
6. Period of personal data storage
1. In principle, personal data is stored only for as long as necessary to fulfill contractual or statutory obligations for which they were collected. This data will be deleted immediately when its storage is no longer necessary, for evidentiary purposes in accordance with civil law, or in connection with a statutory obligation to retain data.
2. Information regarding the agreement is kept for evidentiary purposes for a period of three years, starting from the end of the year in which the commercial relationship with the User ended. Data deletion will occur after the statutory limitation period for contractual claims has expired.
3. Additionally, the administrator may retain archival information regarding concluded transactions because their storage is related to the User's claims, for example, under warranty.
4. If no agreement has been concluded between the User and the Owner, the User's personal data is stored until the User's account is deleted from the website. Account deletion may occur upon request by the User, withdrawal of consent to the processing of personal data, or objection to the processing of such data.
7. Entrusting data processing to other entities
1. The administrator may entrust the processing of personal data to entities cooperating with the administrator, to the extent necessary for the execution of transactions, e.g., for preparing ordered goods and delivering shipments or sending commercial information originating from the administrator (the latter applies to Users who have consented to receiving commercial information).
2. Apart from the purposes indicated in this Privacy policy, Users' personal data will not be shared with any third parties or transferred to other entities for the purpose of sending marketing materials from these third parties.
3. The administrator informs that the following tracking technologies are used to monitor actions taken by the User/Customer on the website of the Store:
- tracking codes - for analyzing website statistics of the Store and for marketing purposes solely for the needs of email, SMS, social media campaigns launched or indicated by the administrator.
8. Cookies
1. The website uses cookies or similar technology (hereinafter collectively referred to as "cookies") to collect information about the User's access to the website (e.g., via computer or smartphone) and their preferences. They are used, among other things, for advertising and statistical purposes, as well as to customize the website to the User's individual needs.
2. Cookies are pieces of information containing a unique reference code that the website sends to the User's device for storage, and sometimes tracking, of information regarding the device used. They typically do not allow identification of the User. Their main purpose is to better tailor the website to the User.
3. Some cookies on the website are only available for the duration of a given internet session and expire when the browser is closed. Other cookies are used to remember the User, who, upon returning to the website, is recognized. They are then retained for a longer period.
4. The cookies used on this website include:
- necessary cookies, enabling the use of services available within the Service, e.g., authentication cookies used for services requiring authentication within the Service;
- security cookies, used to ensure security, e.g., used to detect abuse in the registration process within the Service;
- performance cookies, allowing the collection of information about how the Service is used;
- functional cookies, enabling the "remembering" of user-selected settings and user interface personalization;
- advertising cookies, enabling the delivery of advertising content tailored to the User's interests.
5. All cookies on the website are set by the administrator.
6. All cookies used by this website comply with applicable European Union law.
7. Most Users and some mobile browsers automatically accept cookies. If the User does not change the settings, cookies will be saved in the device's memory.
8. The User can change preferences regarding the acceptance of cookies or change the browser to receive appropriate notifications each time the cookie function is set. To change cookie acceptance settings, adjust the settings in the browser.
9. It is worth remembering that blocking or deleting cookies may prevent full use of the website.
10. Cookies will be used for necessary session management, including:
- creating a special login session for the User of the website, so that the website remembers that the User is logged in and their requests are delivered effectively, securely, and consistently;
- recognizing the User who has previously visited the website, allowing identification of the number of unique users who have used the service and ensuring sufficient service capacity for new users;
- recognizing whether a person visiting the website is registered on the website;
- recording information from the User's device, including: cookies, IP address, and information about the browser used, for the purpose of diagnosing problems, administering, and tracking website usage;
- customizing elements of the graphic layout or content of the website;
- collecting statistical information about how the User uses the website, to improve the website and identify which areas of the website are most popular with Users.