Privacybeleid
Privacy Policy
Aïa cares deeply about your privacy. We only process data that we need to improve our services and handle the information we collect about you and your use of our services with care. We never make your data available to third parties for commercial purposes.
This privacy policy applies to the use of the website and the services accessible through it provided by Aïa. The effective date for the validity of these terms is 14/06/2024. With the publication of a new version, the validity of all previous versions expires. This privacy policy describes what data we collect about you, what it is used for, and with whom and under what conditions this data may be shared with third parties. We also explain how we store your data, protect it from misuse, and what rights you have regarding the personal data you provide to us.
If you have any questions about our privacy policy, you can contact our privacy officer; you will find the contact details at the end of our privacy policy.
Data Processing
Below, you can read how we process your data, where we store it, which security techniques we use, and who has access to the data.
Web Store Software
Shopify
Our web store is developed with software from Shopify. Personal data you provide for our services is shared with this party. Shopify has access to your data to provide us with (technical) support, but they will never use your data for any other purpose. Shopify is obligated to take appropriate security measures based on the agreement we have with them. These security measures include SSL encryption and a strong password policy. Shopify is a certified processor of credit card data. Shopify uses cookies to collect technical information regarding your use of the software; no personal data is collected or stored. Shopify reserves the right to share collected data within its own group to further improve its services. Shopify complies with the applicable legal retention periods for (personal) data. The EU/US Privacy Shield applies, meaning your data may be processed in the United States.
Email and Mailing Lists
Shopify
Our website uses Shopify, a third party that handles the email traffic from our website and the sending of any newsletters. All confirmation emails you receive from our website and web forms are sent via Shopify's servers. Shopify will never use your name and email address for its own purposes. At the bottom of each email sent automatically through our website, you will see the 'unsubscribe' link. If you click on this, you will no longer receive emails from our website. This may severely impair the functionality of our website! Your personal data is securely stored by Shopify. Shopify uses cookies and other internet technologies to provide insight into whether emails are opened and read. Shopify reserves the right to use your data to further improve its services and, in this context, to share information with third parties.
Outlook
We use Outlook for our regular business email traffic. This party has taken appropriate technical and organizational measures to prevent misuse, loss, and corruption of your and our data as much as possible. Outlook has no access to our mailbox, and we handle all our email traffic confidentially.
Payment Processors
Mollie
For handling (part of) the payments in our web store, we use the platform of Mollie. Mollie processes your name, address, and residence details and your payment information such as your bank account or credit card number. Mollie has taken appropriate technical and organizational measures to protect your personal data. Mollie reserves the right to use your data to further improve its services and, in this context, to share (anonymized) data with third parties. All the above safeguards regarding the protection of your personal data also apply to the parts of Mollie’s services for which they engage third parties. Mollie does not retain your data longer than permitted by the legal retention periods.
Paypal
For handling (part of) the payments in our web store, we use the platform of Paypal. Paypal processes your name, address, and residence details and your payment information such as your bank account or credit card number. Paypal has taken appropriate technical and organizational measures to protect your personal data. Paypal reserves the right to use your data to further improve its services and, in this context, to share (anonymized) data with third parties. Paypal shares personal data and information regarding your financial position with credit rating agencies in the case of a deferred payment request (credit facility). All the above safeguards regarding the protection of your personal data also apply to the parts of Paypal’s services for which they engage third parties. Paypal does not retain your data longer than permitted by the legal retention periods.
Reviews
Shipping and Logistics
DHL
If you place an order with us, it is our responsibility to deliver your package to you. We use the services of DHL to carry out the deliveries. It is necessary for us to share your name, address, and residence details with DHL. DHL uses this information solely for the execution of the agreement. In the event that DHL engages subcontractors, DHL also makes your information available to these parties.
Accounting and Bookkeeping
Shopify
For keeping our administration and bookkeeping, we use the services of Shopify. We share your name, address, residence details, and order details with this party. These data are used for the administration of sales invoices. Your personal data are sent and stored protected. Shopify is obligated to confidentiality and will treat your data confidentially. Shopify does not use your personal data for purposes other than those described above.
Purpose of Data Processing
General Purpose of the Processing
We use your data solely for our services. This means that the purpose of the processing is always directly related to the order you provide. We do not use your data for (targeted) marketing. If you share data with us and we use this data to contact you at a later date, other than at your request, we will ask you for explicit permission. Your data will not be shared with third parties, other than to meet accounting and other administrative obligations. These third parties are all bound to confidentiality under the agreement between them and us or an oath or legal obligation.
Automatically Collected Data
Data that is automatically collected by our website is processed to further improve our services. This data (for example, your IP address, web browser, and operating system) is not personal data.
Cooperation in Fiscal and Criminal Investigations
In some cases, Aïa can be held on the basis of a legal obligation to share your data in connection with fiscal or criminal investigations by the government. In such a case, we are forced to share your data, but we will resist within the possibilities that the law offers us.
Retention Periods
We retain your data as long as you are our client. This means we keep your customer profile until you indicate that you no longer wish to use our services. If you indicate this to us, we will also interpret this as a forget request. Due to applicable administrative obligations, we must retain invoices with your (personal) data, so we will keep this data for as long as the applicable term runs. However, employees no longer have access to your client profile and documents that we have produced as a result of your order.
Your Rights
Under applicable Dutch and European legislation, you as a data subject have certain rights regarding the personal data that is processed by or on behalf of us. Below, we explain what these rights are and how you can invoke these rights. In principle, to prevent misuse, we send copies and transcripts of your data only to your already known e-mail address. In the event that you wish to receive the data at another e-mail address or, for example, by post, we will ask you to identify yourself. We keep a record of completed requests, in the case of a forget request we administer anonymized data. All transcripts and copies of data you receive in the machine-readable data format that we use within our systems. You have the right to file a complaint with the Dutch Data Protection Authority if you suspect that we are using your personal data in the wrong way.
Right of Access
You always have the right to access the data that we process or have processed and that relates to your person or is traceable to you. You can submit a request to that effect to our contact person for privacy matters. You will receive a response to your request within 30 days. If your request is granted, we will send you a copy of all data with an overview of the processors who hold this data, stating the category under which we have stored this data.
Right to Rectification
You always have the right to have the data that we process or have processed and that relates to your person or is traceable to you, adjusted. You can submit a request to that effect to our contact person for privacy matters. You will receive a response to your request within 30 days. If your request is granted, we will send you a confirmation that the data has been adjusted to the email address known to us.
Right to Restriction of Processing
You always have the right to restrict the data that we process or have processed that relates to your person or is traceable to you. You can submit a request to that effect to our contact person for privacy matters. You will receive a response to your request within 30 days. If your request is granted, we will send you a confirmation to the email address known to us that the data will no longer be processed until you lift the restriction.
Right to Data Portability
You always have the right to have the data that we process or have processed and that relates to your person or is traceable to you, transferred to another party. You can make such a request to our contact person for privacy matters. You will receive a response to your request within 30 days. If your request is granted, we will send you copies or transcripts of all data about you that we have processed or that has been processed on our behalf by other processors or third parties to the email address known to us. It is likely that we can no longer continue our services in such a case, as the secure connection of data files can no longer be guaranteed.
Right to Object and Other Rights
In certain cases, you have the right to object to the processing of your personal data by or on behalf of Aïa. If you object, we will immediately stop the data processing pending the resolution of your objection. If your objection is justified, we will provide you with copies and/or transcripts of data that we process or have processed and then permanently stop the processing. You also have the right not to be subjected to automated individual decision-making or profiling. We do not process your data in such a way that this right is applicable. If you believe this is the case, please contact our privacy contact person.
Cookies
Third-Party Cookies
In the event that third-party software solutions use cookies, this will be stated in this privacy policy.
Changes to the Privacy Policy
We reserve the right to change our privacy policy at any time. However, you will always find the most recent version on this page. If the new privacy policy affects how we process data already collected about you, we will notify you by email.
Contact Information
For privacy-related questions, please contact us at: aia.crystals@outlook.com