ARTICLE 13 GENERAL DATA PROTECTION REGULATION (GDPR)
With this information sheet, Eternal Makeup (hereinafter “Eternal Makeup“ or “we“) informs you about the processing of your personal data (“Data“) as well as your Data protection claims and rights:
1. WHICH DATA IS PROCESSED AND FROM WHICH SOURCES DO THEY COME FROM?
We process the Data that we receive from you as part of your visit or purchase on our website www.eternalmakeup.co.uk (hereinafter “Website“). We do not collect and process any special categories of personal Data.
Personal Data include:
Your personal details: e.g. name, address, e-mail address, telephone number and gender
Data about your Eternal Makeup purchases: e.g. customer number, UID number, previous purchases,
invoice number, purchase date and time, product, quantity and price
Data about your payment method: e.g. bank details, used credit card company,…
2. FOR WHAT PURPOSES AND FOR WHAT DURATION IS DATA BEING PROCESSED?
We process your Data in accordance to applicable data protection law and for specific purposes and for a specific period. The most important purposes and duration of the processing are listed below. If we collect Data from you for other purposes, we will inform you separately before collecting that Data.
2.1. PURCHASE AT ETERNAL MAKEUP
We process the Data you provide when purchasing goods for the purpose of fulfilling our contractual obligations to you. This includes, for example, the delivery of goods ordered by you. We process this data until the fulfilment of our obligations; beyond that, only as long as there is a legal obligation to do so or we need Data for the exercise or defence of legal claims.
2.2. ETERNAL MAKEUP CUSTOMER ACCOUNT
We process the Data provided by you when creating your Eternal Makeup customer account for the provision of Eternal Makeup service offers. With your Eternal Makeup customer account you can process purchases faster, save more than one address, track your orders and much more. If you purchase goods online via your customer account, we also process your Data to perform and fulfil your purchase.
We will process the Data you provided for the Eternal Makeup customer account until you delete your customer account; beyond that, only as long as there is a legal obligation to do so or we need Data for the exercise or defence of legal claims.
2.3. ETERNAL MAKEUP NEWSLETTER
We process the Data you provided when you signed up for the Eternal Makeup Newsletter for the purposes of direct marketing. We will send you personalized newsletters via e-mail and inform you about offers, services and events of Eternal Makeup and our partner companies if, based on your Data, we assume that this information is particularly relevant and interesting for you. An up-to-date list of our partner companies can be found here.
We process the Data you provided by signing up for the Eternal Makeup Newsletter as long as you wish to receive the newsletter and furthermore only as long as we need Data for the exercise or defence of legal claims.
2.4. ETERNAL MAKEUP CUSTOMER SERVICE
When contacting our Customer Service for requests or issues we process your Data to respond to your requests or to fulfil your issues.
We process the Data you provide only for the duration of the response or fulfilment of your requests and issues. Beyond that, we will process the Data only as long as there is a legal obligation to do so or we need Data for the exercise or defence of legal claims.
2.5. ETERNAL MAKEUP CHAT
When you contact Eternal Makeup for requests or issues, and therefore provide us with your Data (name, e-mail address and message), this Data will be processed only to respond to your requests or fulfil your issues.
The Data that you provide for Eternal Makeup will be deleted after the end of our chat. Beyond that we store your Data only if this is necessary due to our justified interest in the asserting and defence of legal claims and for internal administrative purposes.
3. ON WHAT LEGAL BASIS DO WE PROCESS YOUR DATA?
3.1 .ON THE BASIS OF YOUR CONSENT (ARTICLE 6 (1) (A) GDPR):
If you have given us your consent to the processing of your Data – for example to receive the Eternal Makeup – this processing will only be carried out in accordance with the purposes specified in the respective declaration of consent and to the extent agreed therein.
You can withdraw your given consent at any time with effect for the future in writing by e-mail or letter to our contact address as stated in point 9. The withdrawal of consent does not affect the lawfulness of the processing of your Data based on your consent before its withdrawal.
3.2. TO FULFIL CONTRACTUAL OBLIGATIONS (ARTICLE 6 (1) (B) GDPR):
We process your Data in order to fulfil our contractual obligations to you. For example, we need your name and address to send you ordered goods and issue an invoice for your order. If there are any delivery problems or if you have concerns or requests, we need, for example, your e-mail address or phone number in order to contact you.
3.3. TO FULFIL LEGAL OBLIGATIONS (ARTICLE 6 (1) (C) GDPR):
The processing of your Data may be required to fulfil our legal obligations (in particular for the storage of business papers and contractual documents).
3.4. FOR THE PURPOSES OF THE LEGITIMATE INTERESTS (ARTICLE 6 (1) (F) GDPR):
If it is necessary for the purposes of our legitimate interests or the legitimate interests of third parties, we process your Data:
Our legitimate interest in the processing your Data includes own and third-party marketing purposes, customer loyalty or direct marketing. In addition, we have a legitimate interest in the processing your Data for administrative purposes within Eternal Makeup and in for the exercise or defence of legal claims. Your Data can therefore be processed on the basis of these legitimate interests even for example if you withdraw your consent.
4. WHO RECEIVES YOUR DATA?
Within Eternal Makeup, we will receive your personal information, for the purposes outlined above. If we are legally obliged to do so, we will also transfer your Data to public bodies and authorities. In addition, companies commissioned by us (in particular IT or payment services and back office providers) will receive your Data if they need them to fulfil their respective tasks. These providers are obliged to treat your Data confidentially, to process them only to the extent necessary for their service provision and they provide their processing activities within the European Economic Area. If these companies provide their processing activities outside the European Economic Area, they have a Privacy Shield Certificate or have undertaken to ensure an adequate level of data protection.
5.1. TECHNICALLY REQUIRED COOKIES
5.2. GOOGLE ANALYTICS
Furthermore we use the Cookies of Google Analytics, a web analysis service provided by Google LLC (hereinafter “Google”). These cookies transmit data about your usage of the website to a Google server in the USA. However, your IP address will be shortened by Google prior to transmission and the transmitted data can no longer be associated with your person. Google will use this information to evaluate general usage data of our website and to compile reports on website activities. If you want to prevent the use of Google Analytics cookies, you can either do this through your browser settings (see point 5.1), or you can install the browser plug-in available under the following link: http://tools.google.com/dlpage/gaoptout.
|Google Analytics Cookie||Purpose||Storage period|
|_gat||Determined by Google Analytics to identify unique sessions||30 minutes|
|_gid||Determined by Google Analytics to identify unique sessions||30 minutes|
|_ga||Determined by Google Analytics to identify unique sessions||30 minutes|
Click here to revoke your agreement to use Google Analytics.
5.3 FACEBOOK AUDIENCE PIXEL
We also use the Facebook Audience Pixel analysis tool from Facebook Ireland Limited or Facebook Inc. to measure the effectiveness of our advertising. The pixel collects information about website usage, such as when the website is used and whether goods are placed in the shopping basket, and transmits that information to Facebook’s servers in Ireland and the United States. This information may also be cross-checked with other Facebook information or our information that we have about you. All data collected by this pixel is encrypted by Facebook using “hashes”. Facebook Ireland Limited is located in the European Union; Facebook Inc. is located in the United States and has a Privacy Shield Certificate which ensures the protection of your data.
The collection of data by Facebook Pixel only takes place with your consent. This consent can be withdrawn by you at any time. The comparison of the data with the data stored by us is based on our legitimate interest in marketing and customer loyalty.
6. ARE YOU OBLIGED TO PROVIDE DATA?
To receive a service – a purchase, customer account or newsletter – it is necessary that you provide the Data we need to fulfil our contractual obligations to you and to perform our voluntary performances and services. Those Data are marked with (*) as mandatory. Unless you provide those mandatory Data, we will generally be unable to provide our services.
7. YOUR RIGHTS IN THE CONTEXT OF THE PROCESSING OF YOUR DATA
You have the right:
- To request information about which of your personal Data we process (Article 15 GDPR);
- To rectify or erase your Data (Article 16 GDPR);
- To restrict the processing of your Data (Article 18 GDPR);
- To withdraw your consent (Article 7 GDPR);
- To object to the processing of your Data (Article 21 GDPR);
- To Data portability (Article 20 GDPR).
If you believe that we violate your rights under the GDPR or national data protection law when processing your Data, please contact us. This is the only way we can treat your concerns as quickly as possible. You also have the right to lodge a complaint with a supervisory authority.
8. AUTOMATED DECISION-MAKING
We do not use automated decision-making or profiling according to Article 22 GDPR.
9. WHO CAN YOU CONTACT?
If you have any requests or concerns, you can contact us directly by e-mail, by phone or by post to the following address:
88 Ablewell Street, Walsall, West Midlands, UK. WS1 2EU
Phone: 0800 999 1179