Privacy Policy
1. Data Controller
ProzelonkhonchikValimotie 13 A, 00380 Helsinki, Finland
Email: clients@prozelonkhonchik.world
Website: https://prozelonkhonchik.world
Prozelonkhonchik (hereinafter referred to as "we", "us", or "our") is the data controller responsible for the processing of your personal data as described in this Privacy Policy. We are committed to protecting your privacy and ensuring the security of your personal information in accordance with the General Data Protection Regulation (EU) 2016/679 ("GDPR"), the Finnish Data Protection Act (1050/2018), and other applicable data protection legislation.
2. What Personal Data We Collect
We collect and process the following categories of personal data:
- Contact information: full name, email address, and phone number (if provided) submitted through our order form.
- Communication data: messages and inquiries you send to us through the order form or by email.
- Technical data: IP address, browser type, operating system, device information, referring URLs, and pages visited. This data is collected through cookies and similar technologies (see our Cookie Policy for details).
- Consent records: records of the consents you have given, including GDPR consent and cookie preferences.
We do not collect sensitive personal data (special categories of data) such as health information, racial or ethnic origin, political opinions, religious beliefs, or biometric data.
3. Purposes of Data Processing
We process your personal data for the following purposes:
- Order processing: to receive and respond to your order requests, communicate with you regarding your order, and provide customer support.
- Contractual obligations: to perform our obligations arising from any contracts entered into between you and us, including the delivery of products.
- Website functionality: to operate and maintain our website, ensure its security, and improve user experience.
- Analytics: to analyze website usage patterns and improve our services (only with your explicit consent).
- Marketing: to provide you with relevant information about our products (only with your explicit consent).
- Legal compliance: to comply with applicable laws, regulations, and legal obligations, including tax and accounting requirements.
4. Legal Basis for Processing
We process your personal data based on the following legal grounds under Article 6 of the GDPR:
- Consent (Art. 6(1)(a)): when you have given explicit consent for specific purposes, such as submitting the order form, receiving marketing communications, or enabling analytics cookies.
- Contract performance (Art. 6(1)(b)): when processing is necessary for the performance of a contract with you or to take steps at your request prior to entering into a contract.
- Legal obligation (Art. 6(1)(c)): when processing is necessary for compliance with a legal obligation to which we are subject.
- Legitimate interest (Art. 6(1)(f)): when processing is necessary for our legitimate interests, such as ensuring website security and preventing fraud, provided that these interests are not overridden by your rights and freedoms.
5. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:
- Order and contact data: retained for up to 3 years from the date of your last interaction with us, unless a longer retention period is required by law.
- Accounting and tax records: retained for the period required by Finnish law (typically 6 years for accounting records under the Finnish Accounting Act).
- Consent records: retained for as long as the consent is valid and for a reasonable period thereafter to demonstrate compliance.
- Technical and analytics data: retained for up to 26 months.
After the applicable retention period expires, your personal data will be securely deleted or anonymized.
6. Data Sharing and Transfers
We do not sell, rent, or trade your personal data to third parties. We may share your data with:
- Service providers: trusted third-party service providers who assist us in operating our website, conducting our business, or servicing you, subject to appropriate data processing agreements.
- Legal authorities: when required by law, regulation, legal process, or enforceable governmental request.
If any data transfer occurs outside the European Economic Area (EEA), we ensure that appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the European Commission, or the recipient is located in a country deemed adequate by the European Commission.
7. Your Rights Under GDPR
As a data subject, you have the following rights under the GDPR:
- Right of access (Art. 15): you have the right to request a copy of the personal data we hold about you.
- Right to rectification (Art. 16): you have the right to request correction of inaccurate or incomplete personal data.
- Right to erasure (Art. 17): you have the right to request deletion of your personal data ("right to be forgotten"), subject to certain exceptions.
- Right to restriction (Art. 18): you have the right to request restriction of processing of your personal data under certain circumstances.
- Right to data portability (Art. 20): you have the right to receive your personal data in a structured, commonly used, and machine-readable format.
- Right to object (Art. 21): you have the right to object to the processing of your personal data, including processing based on legitimate interests or for direct marketing purposes.
- Right to withdraw consent (Art. 7(3)): where processing is based on consent, you have the right to withdraw your consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
- Right to lodge a complaint: you have the right to lodge a complaint with a supervisory authority. In Finland, the supervisory authority is the Office of the Data Protection Ombudsman (Tietosuojavaltuutetun toimisto), Lintulahdenkuja 4, 00530 Helsinki, Finland, tietosuoja.fi.
To exercise any of these rights, please contact us at: clients@prozelonkhonchik.world. We will respond to your request within 30 days.
8. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Use of HTTPS encryption for all data transmitted through our website.
- Restricted access to personal data on a need-to-know basis.
- Regular review and updating of our security practices.
- Secure storage of personal data with access controls.
While we strive to protect your personal data, no method of transmission over the Internet or electronic storage is completely secure. We cannot guarantee the absolute security of your data.
9. Cookies
Our website uses cookies and similar technologies. For detailed information about the cookies we use, their purposes, and how to manage your preferences, please refer to our Cookie Policy.
10. Children's Privacy
Our website and services are not directed at individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have inadvertently collected personal data from a child under 18, we will take steps to delete that information promptly.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or other factors. Any changes will be posted on this page with an updated revision date. We encourage you to review this Privacy Policy periodically.
12. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data processing practices, please contact us:
ProzelonkhonchikValimotie 13 A, 00380 Helsinki, Finland
Email: clients@prozelonkhonchik.world