The data supplied to DEZAINIT OÜ, via the website https://dezainit.com (hereafter the “Website”) when using services supplied by DEZAINIT (hereafter “Services”), shall be processed in compliance with personal data protection legislation (GDPR EU Regulation 2016/679 and Estonian Privacy Code).
DEZAINIT informs users of the following.
- Data Controller
1.1. The Data Controller of personal data is DEZAINIT OÜ, with registered office in Estonia, company registration number 14940400 and VAT number EE102253551(hereafter “DEZAINIT”), email: info@DEZAINIT.com.
2. Nature of the data processed and purposes of the processing
2.1. DEZAINIT use personal data for the purpose of identifying and communicating with the user to fulfill inquiries, orders and services.
The data processed are the data provided by the user to the DEZAINIT when: a) ordering service or product on the website; b) registering for the DEZAINIT newsletter; c) requesting for DEZAINIT’s Service and product; d) when sending communications to DEZAINIT via e-mail or through a website form to be filled in. Processing of personal data will include, but not limited to: name and surname, date of birth, e-mail address, postal address, telephone number, delivery address, bank card details, bank account details, orders history, inquiry and claim, as well as the data collected by DEZAINIT when browsing the Website, such as IP address, information obtained through cookies.
2.2 The data will be used for the following purposes:
A) for the performance of the Services requested, for the fulfillment of obligations under the Estonian law and EU regulations or legislation.
B) for the promotion, via digital tools of commercial proposals related and/or connected to DEZAINIT’s Services and for sending advertising material exclusively regarding DEZAINIT’s products or services, and in order to conduct market surveys;
C) for the analysis of consumers’ habits and consumption choices, for the creation of a user’s profile on the basis of the information and preferences expressed when browsing the Website or during the use of the Services requested, for the purpose of sending personalized advertising communications via digital tools.
The profiling activity as identified in section 2.2C shall not produce legal effects on the user nor affect him personally, except for the communication and promotion of personalized offers.
3. Data disclosure
3.1 Users’ personal data may be disclosed to certain parties appointed by DEZAINIT to provide the Services requested and to meet legal obligations.
Data may be disclosed to:
a) people, companies or professionals who provide DEZAINIT with bookkeeping, administrative, legal, fiscal and financial assistance, consulting services and collaboration;
b) parties delegated and/or appointed by DEZAINIT to perform activities or parts of activities related to the supply of the requested services and all other external parties who collaborate with DEZAINIT and must be informed of the data in order to correctly fulfill DEZAINIT’s obligations under the contract for the supply of services;
c) Public Authorities in the performance of their institutional functions, within the limits set by laws and regulations.
Users’ data will not be disseminated.
The updated list of all parties may be requested at the following e-mail address firstname.lastname@example.org. DEZAINIT may update the list from time to time.
4. Duration of processing
4.1 Personal data will be processed with regard to the purpose mentioned in section 2.2.A for no longer than the period necessary for the performance of Services required, and for the time necessary for the fulfillment of current civil, fiscal and tax obligations and in any case for no longer than a period of 10 years from the termination of the underlined obligation.
4.2 Personal data will be processed with regard to the purposes mentioned in section 2.2.B (marketing/promotional activities) for no longer than 24 months starting from the date in which the consent to the processing of personal data was given.
4.3 Personal data will be processed with regard to the purposes mentioned in section 2.2.C (profiling activity) for no longer than 12 months starting from the date in which the consent to the processing of personal data was given.
4.4 At the end of the data processing period, the data will be deleted or permanently rendered anonymous.
5. Legal basis for the processing
5.1 The legal basis for the processing shall be constituted in accordance with the user’s consent, the compliance with a contractual requirement and the legal provisions.
6. Security and access to data
6.1 Personal data are stored in the servers of Zone OÜ, which are located on the territory of a member state of the European Union or states of the European Economic Area. Data may be transferred to the countries whose data protection levels have been assessed as adequate by the European Commission and to the companies in the USA who have joined the Privacy Shield framework.Personal data can be accessed by the staff of DEZAINIT in order to settle technical issues related to the use of the online shop and to provide customer support.
DEZAINIT takes appropriate physical, organisational and IT security measures to protect personal data against accidental or unlawful destruction, loss, alteration or unauthorised access and disclosure.
Personal data are transmitted to the data processors of DEZAINIT (such as the providers of transport and data hosting services) and processed under contracts concluded between DEZAINIT and the processors. The processors must ensure appropriate safeguards when processing personal data.
6.2 Personal data can be accessed and rectified in the user profile on dezainit.com. When a purchase has been made without a user account, personal data can be accessed through the customer support email address email@example.com
6.3 Where personal data are processed on the basis of the user’s consent, the user has the right to withdraw his/her consent by notifying customer support by email at firstname.lastname@example.org
6.4 For the erasure of the personal data, customer support must be contacted via email at email@example.com
8. Dispute resolution
8.1 Disputes concerning the processing of personal data are settled through customer support firstname.lastname@example.org. The supervisory authority is the Estonian Data Protection Inspectorate (email@example.com).