Processing of personal data
PROCESSING OF PERSONAL DATA
Data of the Online Store CorpoWear.com is being processed by Corpowear OÜ (registry code 11916096) located at Turu 41, 20106 Tartu, phone +372 5557 0111 and email address info@corpowear.com.
The kind of personal data that is processed:
- name, phone number and email address
- delivery address
- bank account number
- data regarding the price of goods and services and data regarding payments (history of purchases)
- customer support data
Purpose of processing personal data
Personal data is used to manage customer orders and the delivery of goods.
History of purchases (date of purchase, goods, quantity, customer data) is used to provide an overview of purchased goods and services and for customer preference analysis.
Bank account number is used for refunds to the customer.
Personal data like email, phone number, customer name are processed to answer questions about providing goods and services (customer support).
Online Store user IP-address or other network identifiers are processed for providing the information society service of an online store and for producing web usage statistics.
Legal basis
Processing of personal data takes place to fulfil the contract signed with the customer.
Processing of personal data takes place to fulfil a legal obligation (e.g. accounting and consumer complaint resolution).
Recipients of forwarded personal data
Personal data is forwarded to Online Store customer support to manage orders and purchase history and to solve customer issues.
Name, phone number and email address are forwarded to a transportation service provider chosen by the customer. If goods are delivered by courier customer address is provided in addition to contact information.
If Online Store accounting is provided by a service provider then personal data is forwarded to the service provider for accounting purposes.
Personal data may be forwarded to information technology service providers if it is necessary for Online Store functionality or data hosting services.
Safety and access to data
Personal data is housed in servers which are located in a member state of the European Union or in a state which has joined the European Economic Area. Data may be forwarded to countries where data protection has been assessed to be sufficient by the European Commission and businesses located in the United States of America which have joined the Privacy Shield framework.
Access to personal data is provided to Online Store workers who can see the personal data to answer technical questions and to provide customer support.
The Online Store employs appropriate physical, organizational and information technological security measures to protect the personal data from accidental or unlawful destruction, loss, changing or unauthorized access and publication.
Forwarding of personal data to authorized processors (e.g. transportation service providers and data hosting companies) takes place according to contractual agreements signed between the Online Store and authorized processors. Authorized processors are obligated to employ appropriate security measures.
Reviewing and correcting personal data
Personal data can be reviewed and corrected on the Online Store user profile page. If the purchase has been made without an account then the data can be reviewed by contacting customer support.
Withdrawing consent
If customer information is processed with consent then the customer has the right to withdraw consent by notifying customer support via email.
Retention
Personal information will be deleted upon Online Store customer account deletion except if the data must be retained for accounting or customer complaint resolution purposes.
If an Online Store purchase has been made without an account then the purchase history will be retained for 3 years.
In case of disputes regarding payments or customer complaints personal data will be retained until claim resolution or date of expiry.
Personal data necessary for accounting purposes will be retained for 7 years.
Deletion
For deletion of personal data please contact customer support by email. Deletion application will be replied to no later than within 1 month and the deletion deadline will be specified.
Transfer
Applications for transfer of personal data sent over email will be replied to no later than 1 month. Customer support will verify the identity of the applicant and will notify about the personal data that will be transferred.
Direct marketing messages
Email address and phone number will be used to send direct marketing messages if the customer has given permission. If the customer does not wish to receive direct marketing messages then it can be stated in the email footer or by contacting customer support.
Resolving disputes
Resolving any disputes regarding processing personal data takes place over email (info@corpowear.com). The supervisory body is the Data Protection Inspectorate of the Republic of Estonia (info@aki.ee).