This Privacy Policy describes how clairebridal.shop collects, uses, discloses, protects and otherwise processes personal information when individuals visit our website, purchase products, communicate with us or otherwise interact with our services.
For privacy questions or requests, contact:
Email: info@clairebridal.shop
Where clairebridal.shop determines the purposes and means of processing personal data, clairebridal.shop acts as the data controller for purposes of applicable data-protection law.
This policy is intended to reflect principles of the General Data Protection Regulation, including transparency regarding processing purposes and legal bases. GDPR Article 13 requires controllers to provide information including their identity, contact details, processing purposes and legal bases.
Depending on how you use our services, we may process categories of personal information including:
This may include:
This may include:
Payments may be handled by third-party payment processors.
Depending on the payment method, payment providers may process:
clairebridal.shop may receive limited payment-related information rather than complete payment-card credentials.
When you use our website, information may be collected automatically, including:
If you contact us, we may process:
We may process personal information to:
Under the GDPR, personal-data processing requires an appropriate lawful basis. Relevant bases can include consent, contractual necessity, compliance with legal obligations and legitimate interests.
Depending on the processing activity, we may rely upon:
We may process information where necessary to:
We may process and retain information where necessary to comply with obligations concerning:
Where legally permitted, we may process information for legitimate interests such as:
Where legitimate interests are relied upon, we consider the relevant interests against the rights and freedoms of affected individuals.
We may rely on consent for certain activities, including certain:
Where processing is based on consent, consent may be withdrawn for future processing, subject to applicable law.
Our ecommerce store may be hosted and operated using Shopify technology.
Shopify may process customer information to provide services including:
Shopify indicates that customer personal data originating from the EEA, UK and Switzerland is initially processed by Shopify International Limited in Ireland, with affiliated entities and subprocessors assisting in providing services.
Where Shopify processes information for its own legally permitted purposes, its own privacy terms and privacy portal may also apply.
We may disclose personal data to service providers where reasonably necessary to operate our store.
Recipients may include providers of:
We seek to limit disclosures to information reasonably necessary for the relevant service.
Payment information may be transmitted directly to secure payment-service providers.
Payment providers may process personal data under their own privacy and security obligations.
The specific provider used may depend on the payment method selected at checkout.
To deliver your order, relevant information may be provided to:
This may include your name, shipping address, telephone number where necessary and order-related information.
Our website may use cookies, pixels, local storage and similar technologies.
These technologies may be used for:
Some technologies are necessary to provide functionality expressly requested by the user or to transmit communications.
These may be used without consent where applicable law permits.
German TDDDG §25 generally requires informed consent before information is stored on or accessed from an end user's device unless an applicable exception applies, including where the technology is strictly necessary to provide a service expressly requested by the user.
Accordingly, where required, non-essential analytics, advertising or similar technologies should only be activated after appropriate consent.
Shopify provides customer privacy controls and cookie-banner functionality for EEA markets.
Customers may manage cookie preferences through available consent controls.
Where legally permitted, we may send marketing communications to customers who have appropriately requested or consented to receiving them.
Marketing communications may include information concerning:
Customers may unsubscribe using the available unsubscribe mechanism or by contacting:
Withdrawing marketing consent does not affect service communications necessary to administer an existing order.
We may use information to identify and prevent fraudulent or suspicious transactions.
This may involve automated risk indicators or information supplied by payment, ecommerce or fraud-prevention providers.
A transaction may be reviewed where indicators suggest unauthorized payment, identity misuse or other security risks.
Some service providers may process personal information outside Germany or outside the European Economic Area.
Where GDPR requirements apply to international transfers, appropriate safeguards will be used where required, which may include:
We retain personal information only for as long as reasonably necessary for the purposes for which it was collected and for any additional period required or permitted by law.
Retention periods may depend on factors including:
When information is no longer reasonably required, it may be deleted, anonymized or otherwise disposed of in accordance with applicable requirements.
We use reasonable administrative, technical and organizational measures intended to protect personal information against:
However, no internet transmission or electronic-storage system can be guaranteed to be completely secure.
Customers should protect account credentials and notify us if they believe their account or transaction information has been compromised.
Subject to applicable requirements and exceptions, individuals may have rights including:
Requests may be sent to:
We may require reasonable information to verify the requester's identity and protect personal data against unauthorized disclosure.
We will process valid requests in accordance with applicable law.
Where personal data is processed for direct-marketing purposes, individuals may object to such processing.
Upon a valid objection, personal data will no longer be processed for the relevant direct-marketing purpose to the extent required by law.
Our website is intended for individuals who can legally enter into transactions or who use the website with appropriate parental or guardian authorization.
We do not knowingly seek to collect personal information from children in circumstances prohibited by applicable law.
If you believe a child has supplied personal data improperly, contact:
Our website may contain links to third-party websites or services.
We do not control the privacy practices of independent third parties.
Customers should review the privacy notices of third-party services before supplying personal information to them.
We may update this Privacy Policy when reasonably necessary to reflect:
The updated version will be published on clairebridal.shop with an updated revision date where appropriate.
For privacy questions or requests:
clairebridal.shop
Email: info@clairebridal.shop
Thanks for subscribing!
This email has been registered!