Privacy policy

PRIVACY POLICY

Ladies and Gentlemen, 

Bearing in mind our obligation to provide information on the processing of personal data of natural persons, we kindly ask you to read this document. To use www.aurumbloom.com and our online shop, you have to accept this document.

Please note that other provisions relevant to our cooperation, in particular the Regualtions, are also available on our website.

I. Who is the Data Controller?

Aurum Bloom spółka z ograniczoną odpowiedzialnością, KRS [National Court Register] No.: 0000811038, NIP [VAT No.]: 6762574079, REGON [National Official Business Register No.]: 384884553, address: ul Halicka 9, 31-036 Kraków, Poland, is the Data Controller with respect to your personal data.
II. What are the grounds for the processing of personal data?
Your personal data is processed on the following grounds:

  1. Consent (when you give your consent to the processing of personal data). The scope of data processing resulting from the consent given is limited by the scope of the consent. You can withdraw your consent at any time. To do so, please contact us at info@aurumbloom.com. The withdrawal of consent does not affect the lawfulness of earlier data processing based on this consent. Data shall be processed:

  2. in order to send the ordered goods, inform about a change of delivery date, etc. for the performance of a contract (when processing is necessary for the performance of a contract to which the data subject is a party or in order to take steps at the request of the data subject prior to entering into a contract).

  3. for compliance with a legal obligation (when processing is necessary for compliance with a legal obligation to which the data controller is subject, e g. in statistical and accounting provisions, broadly defined tax acts, and other legal acts).

  4. for legitimate interests pursued by the data controller, e.g. the investigation and defence of claims.

     

III. Is the provision of personal data voluntary?

Providing your personal data is completely voluntary but necessary to enter into and perform the contract and to fulfil other obligations required by law. This means that providing your personal data, such as your name, surname, contact e-mail address, address to which the goods are to be delivered, and other data is necessary to complete the order and send the goods to you. Without your personal data, we will not be able to process your order.

IV. What data are processed?

The processing of personal data which you provide to us when logging into our online shop, placing an order, and in connection with carrying out an order is of key importance. In most cases, the personal data includes the name, surname, delivery address, NIP (fiscal no), e-mail address, and phone number. This list is subject to change depending on the circumstances for a given order. Each time, you will provide the personal data on your own, which means that you will have full control over what personal data you provide to us.

In addition, depending on your browser settings (when using our website), additional data may be collected, e.g. information about your online activities, the pages you visit, your previous visits to our website, the type of the your device, etc. 

V. How long are personal data processed?

We process personal data for a period that depends on the basis on which the processing is carried out.

  1. If consent constitutes the basis for the processing: Data is processed at the latest until withdrawal (revocation) of the consent. The revocation of the consent does not affect the lawfulness of data processing in the period preceding the withdrawal of the consent.

  2. If the performance of a contract to which the data subject is a party or taking steps at the request of the data subject constitute the basis for the processing: Data is processed for the period necessary for the performance of the contract and obligations arising from the contract.

  3. If the processing is required by law: Data is processed for the period resulting from the applicable laws. For example, for fiscal records, the period is at least five years after the end of the calendar year in which the conditions for storing the records have been met.

  4. If legitimate interests pursued by the Company constitute the basis for the processing: Data is stored at least until the limitation period in accordance with the time limits provided for in the Polish Civil Code and special laws (if applicable).

VI. What rights do I have?

You have a numer of rights in relation to the processing of your personal data, in particular the right to:

  1. request access to the personal data collected and processed,

  2. rectify personal data,

  3. erase personal data,

  4. restrict the processing of personal data,

  5. transfer personal data,

  6. object to the processing of personal data,

  7. lodge a complaint to the personal data protection supervisory authority, i.e. the President of the Personal Data Protection Office,

  8. withdraw consent to the processing of personal data (the withdrawal of consent does not affect the lawfulness of data processing based on consent before its withdrawal). The withdrawal of consent affects the processing based on the consent but does not affect the processing based on other grounds.

VII. Who do we share your personal data with?

Personal data may be disclosed to authorised bodies (entities), e.g. investigative bodies, such as the Police, the Prosecutor’s Office, the Border Guard, the Tax Inspection Office, and other similar bodies. Personal data may also be disclosed to other authorities that have the right to request such data by virtue of law, e.g. tax, customs, administration, pension authorities, etc.

Personal data may also be disclosed to entities processing personal data on behalf of the Data Controller (i.e. the Company), such as IT service providers, accounting and bookkeeping companies, carriers, possibly marketing agencies, and other entities.

On the basis of your consent, your data may also be used by electronic systems associated with your Internet browser and the user’s device, e.g. to select advertising content, use cookies, and analyse your activities on the website (the hotjar application – software, the stripe payment platform, the UPS carrier, and others).  


VIII. Transfer of data outside the EEA

Our Company as well as most of its partners and entities processing data on behalf of the Data Controller are based in Poland or in other countries of the European Economic Area. Therefore, as a rule, personal data is not transferred outside the EEA. However, in some cases, data will be transferred outside the EEA. For example, Google, hotjar, and stripe are based outside the EEA, which means that if you send us an e-mail with an order via Gmail or make a payment using the stripe platform, the data will be transferred via servers located outside the EEA.

Information on the processing of personal data can be found, e.g., at the following addresses:

    1. https://stripe.com/en-pl/guides/general-data-protection-regulation#stripe-and-the-gdpr

    2. https://www.hotjar.com/legal/compliance/gdpr-commitment/

       

IX. Cookies

Our website uses so-called web tags, including cookies and local storage files, i.e. small pieces of information exchanged between your device and web services and stored on your device (e.g. laptop or smartphone). The files are used to collect and process data which may constitute personal data. Their aim is to facilitate and speed up the use of websites, select advertisements visible in the browser window, and analyse the traffic on our website. Cookies remember your preferences for the content displayed or advertisements. With cookies, you can “store” goods in the shopping cart or browse the subpages of the website without logging on to each of them separately. 

Our website uses cookies by default depending on the settings of your browser. You can change the settings of your browser at any time and limit or disable web tags.
Web tags are used to speed up our website, tailor the content of advertisements, streamline their display, and collect statistics that analyse website traffic and assess how the website is used.

Our website may use session cookies (that remain on your device only when you use our company’s website) and serial cookies (that remain on your device for as long as your device or your software settings allow it or until they are deleted).

 

Can I change my cookie settings?

Yes, most web browsers allow you to change your cookie settings depending on your preferences.

 

X. Contact details

If you have any questions, please contact our team at info@aurumbloom.com. We will be happy to answer your questions.

 

COOKIE INFORMATION

  1. For proper operation, the Online Shop obtains information about the users of the online shop and their activities by means of electronic systems, including automated actions. In particular, it performs the following actions:

    1. it analyses information voluntarily entered by buyers,

    2. it stores cookies on the user’s devices, and

    3. it collects server logs.

  2. The Online Shop collects information provided voluntarily by the Buyer, e.g. name of the Buyer, the delivery address, the quantity, and type of the Goods.

  3. Information about the connection parameters (the time stamp, the IP address) may be stored.

  4. The information provided by the Buyer is processed only for the purpose of processing the order placed and the related payment (e.g. payment operators, courier companies, issuing VAT invoices). The information provided is not used for marketing or promotional purposes.

  5. The Online Shop uses cookies.

  6. Cookies are IT data stored on the user’s device for the purpose of using websites. In particular, as text files, they contain a website name, information about the time they are stored on the user’s device, and a unique User ID.

  7. The operator of the Online Shop places cookies on the Buyer’s device and gains access to them.

  8. Cookies may be used for the following purposes: to ensure proper operation of the partner software, in particular to determine the source of redirection of users to the Website;

    1. to configure the service;

    2. to adjust the content of the Service websites to the user’s preferences and to optimise the use of the websites;

    3. to remember the user’s settings and customise the user interface, e.g. the user’s language or region;

    4. to handle the Cart;

    5. to remember the history of pages visited on the Website and recommend content;

    6. to authenticate the user on the Website and provide a user session on the site;

    7. to properly configure selected functions of the Website, in particular to verify the authenticity of a browser session;

    8. to optimise and increase the efficiency of the services provided by the Operator;

    9. to adjust the content of the Service websites to the user’s preferences and to optimise the use of the websites, in particular, to recognise the basic parameters of the user’s device and display the website tailored to the user’s individual needs;

  9. to compile anonymous statistics, excluding user identification, to understand how the Buyers use the websites to improve their structure and content;

  10. to adjust the content of the website to the Buyer’s preferences, in particular to determine the device on which the information is displayed and to adjust the information displayed to that device;

  11. to profile the user in order to deliver targeted advertisements in advertising networks, particularly in the Google network.

  12. The Website uses two basic types of cookies: session cookies and persistent cookies. Session cookies are temporary files that are stored on the Buyer’s device until he/she log out, leaves the Online Shop or disables the software (closes a web browser). Persistent cookies are files that are stored on the Buyer’s device for a period of time specified in cookies parameters or until they are deleted by the Buyer. Under cookie policy, collecting any personal data or any confidential information from the Buyer’s device is not possible.

  13. The software used to browse websites (a web browser) usually by default enables the storage of cookies on the Customer’s device. Customers may change their web browser settings. The web browser enables the user to delete cookies and automatically disable (block) cookies. For details, refer to the help or web browser documents. The Customer may restrict or disable access of cookies to his/her device resulting in a potential limitation of available functionalities.

  14. Disabling cookies may affect some of the functionalities available on the websites of the Online Shop.

  15. Cookies placed on the Customer’s device may also be used by advertisers and partners cooperating with the operator of the Online Shop.

  16. We recommend reading the privacy policies of these companies in order to find out more about the rules of using cookies for gathering statistics: Privacy Policy of Google Analytics.

  17. Cookies may be used by advertising networks, in particular by the Google network, to display advertisements tailored to the way the Customer uses the Online Shop. To this end, they may store information about the user’s navigation path or the time spent on a given website.

  18. As regards the information about the user’s preferences collected by the Google advertising network, the user may view and edit the information obtained from cookies with the following tool: https://www.google.pl/intl/pl/policies/privacy/.

  19. The information about some behaviours of the Customer is logged on the server. This data is used only to administer the website and to ensure the most efficient support of hosting services.

  20. The sites viewed are identified by URL addresses. In addition, the following information may be saved: (The above data is not associated with any specific person viewing the websites.)

    1. the time of the request;

    2. the time of the response;

    3. the name of the customer’s station – identification by HTTP;

    4. information about any errors which may have occurred during the HTTP transaction;

    5. the URL address of the website which was previously visited by the Buyer (referrer link), if the Buyer accessed the Website using a link;

    6. information about the Buyer’s web browser;

    7. The IP address.

  21. The above data is used solely to administer the server.

  22. The data provided by the Buyer is not disclosed to third parties (except in the situations described above), except when such an obligation arises from the law (e.g. at the request of the authorised bodies: the Police, the Prosecutor’s Office, etc.).

  23. If the Buyer does not wish to receive cookies, they may change their web browser settings. Please note that disabling cookies required for the purposes of authentication, security or storing the Buyer’s preferences may make it difficult or even impossible to use the websites.