GDPR privacy policy
I. Basic Provisions
- The data controller according to Article 4(7) of the European Parliament and Council Regulation (EU) 2016/679 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (hereinafter referred to as "GDPR") is Neven 7 s.r.o., Company ID 29318513, with its registered office at Zavřená 27, 634 00 Brno (hereinafter referred to as "controller").
-
Contact details of the controller areaddress: Neven 7 s. r. o., Zavřená 27, 634 00 Brnoemail: info@neven.czphone: +420 775263544
- Personal data means any information relating to an identified or identifiable natural person; an identifiable natural person is one who can be identified, directly or indirectly, particularly by reference to an identifier such as a name, identification number, location data, online identifier, or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural, or social identity of that person.
- The controller has not appointed a data protection officer.
II. Sources and Categories of Personal Data Processed
-
*Processing of personal data in connection with an order*
If you place an order for goods or services with us, we require the information necessary to complete the order (e.g., your first name, last name, and delivery address). Without this information, we would not be able to ensure proper delivery of your order. Additionally, for the purpose of confirming the order and communication, we need your email address, to which we will send you the order confirmation, terms of service, and complaint procedure.
During the order process, you may also provide optional data, such as a phone number. These details allow us to communicate more effectively and process your order more quickly. For example, we may inform you by phone about the delivery status of your shipment. Providing these details is entirely voluntary.
After the order is delivered, we may send you an email requesting a review of the purchased product. This feedback helps us improve our services.
*Collection of data before the order*
If you use features such as "Watch for availability" or "Watch for price," we will ask for your email address so we can notify you when the product becomes available or reaches the desired price. We also offer similar features for other services, such as "Best Price Guarantee."
If you contact our customer service or send an inquiry via the contact form, we process the data provided in the communication. We use this information solely to address your request and for any further communication.
*User profile data*
In your user profile, you can voluntarily save additional information, such as frequently used delivery addresses, which can make future orders easier for you.
If you save a payment card for quicker payments, we only store partial information (such as the first and last digits of the card). These details can be deleted at any time in your profile settings (account settings > payment cards > delete).
*Card payments*
When paying by card, you are redirected to a secure payment gateway. Your payment card details are not shared with our company. The payment gateway ensures that the data is transmitted directly to the appropriate bank via encrypted transmission.
*Automatically processed personal data*
When visiting our website, we may automatically collect some information. This includes, for example, your IP address, the date and time of access, the type and version of your web browser, the operating system used, and language settings. We may also track which pages you visit on our website, which links you click on, or what products you view.
If you visit our website from a mobile device or via a mobile app, we may also collect data about your device, such as the type of device, the operating system version, or information about any issues or app crashes. This information helps us optimize our website and mobile apps for your convenience.
*Cookies*
We use cookies on our website to help improve its functionality, analyze your behavior, and provide you with relevant content and advertisements. Some cookies are necessary for the basic functionality of the website, while others are used for personalizing content, analyzing traffic, and targeting ads.
You can change your cookie preferences at any time in *Privacy Settings*. Here you can disable personalization, analytics tools, or targeted advertising according to your preferences.
*How we use collected data*
- To ensure the security of our website.
- To better tailor content and offers to your needs.
- To analyze traffic and optimize our services.
- To display personalized ads, if you have given us consent.If you have any questions regarding the protection of your personal data, feel free to contact us. We will gladly provide more information or adjust your preferences.
III. Legal Basis and Purpose of Processing Personal Data
- the performance of the contract between you and the controller under Article 6(1)(b) GDPR,
- the legitimate interest of the controller in providing direct marketing (especially for sending business messages and newsletters) under Article 6(1)(f) GDPR,
- your consent to the processing for direct marketing purposes (especially for sending business messages and newsletters) under Article 6(1)(a) GDPR in connection with Section 7(2) of Act No. 480/2004 Coll., on certain information society services in case no order for goods or services was placed.
- to process your order and fulfill the rights and obligations arising from the contractual relationship between you and the controller; during the order process, personal data is required to successfully complete the order (name and address, contact), providing personal data is a necessary requirement for concluding and fulfilling the contract, without providing personal data, the contract cannot be concluded or fulfilled by the controller,
- to send business messages and carry out other marketing activities.
IV. Data Retention Period
- for the time necessary to exercise the rights and obligations arising from the contractual relationship between you and the controller and to assert claims from these contractual relationships (for 15 years after the end of the contractual relationship).
- for the time until the consent for processing personal data for marketing purposes is revoked, for a maximum of 5 years, if the personal data is processed based on consent.
V. Recipients of Personal Data (Subcontractors of the Controller)
- involved in the delivery of goods/services/processing of payments under the contract,
- providing e-shop services (Heureka) and other services related to the operation of the e-shop,
- providing marketing services.
VI. Your Rights
- access your personal data under Article 15 GDPR,
- rectify personal data under Article 16 GDPR, or limit processing under Article 18 GDPR.
- erase personal data under Article 17 GDPR.
- object to processing under Article 21 GDPR and
- data portability under Article 20 GDPR.
- withdraw consent to the processing in writing or electronically to the address or email of the controller specified in Article III of these terms.
VII. Conditions for Securing Personal Data
- The controller declares that it has taken all appropriate technical and organizational measures to secure personal data.
- The controller has implemented technical measures to secure data storage and storage of personal data in paper form.
- The controller declares that only authorized persons have access to personal data.
VIII. Final Provisions
- By submitting the order via the online order form, you confirm that you are familiar with the personal data protection terms and that you fully accept them.
- You consent to these terms by checking the consent box via the online form. By checking the consent box, you confirm that you are familiar with the personal data protection terms and that you fully accept them.
- The controller is entitled to change these terms. The new version of the personal data protection terms will be published on its website, and the new version of these terms will also be sent to your email address provided to the controller.