Privacy Policy
PRIVACY POLICY SOPHIA VANCOUVER
1 — Information About the Collection of Personal Data & Controller Contact Details
1.1 We are pleased that you are visiting our website and thank you for your interest. Below we will inform you about the handling of your personal data when using our website. Personal data is any data with which you can be personally identified.
1.2 The controller responsible for data processing on this website is Sophia Vancouver. The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data.
1.3 This website uses SSL or TLS encryption for security reasons and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries). You can recognize an encrypted connection by the "https://" string and the lock symbol in your browser bar.
2 — Data Collection When Visiting Our Website
When using our website for informational purposes only — i.e., if you do not register or otherwise transmit information to us — we only collect data that your browser transmits to our server (server log files). When you visit our website, we collect the following data, which is technically necessary to display the website to you:
- The visited page
- Date and time of access
- Amount of data sent in bytes
- Source/referral from which you reached the page
- Browser used
- Operating system used
- IP address used (where applicable, in anonymized form)
Processing is carried out on the basis of our legitimate interest in improving the stability and functionality of our website. The data will not be passed on or otherwise used. We reserve the right to retrospectively check server log files should there be concrete indications of unlawful use.
3 — Cookies
In order to make visiting our website attractive and to enable the use of certain functions, we use cookies on various pages. These are small text files that are stored on your device. Some cookies are deleted after the end of the browser session (session cookies). Others remain on your device and enable us or our partner companies to recognize your browser on your next visit (persistent cookies).
When cookies are set, they collect and process certain user information such as browser and location data as well as IP address values. Persistent cookies are automatically deleted after a specified period, which may vary depending on the cookie.
In some cases, cookies are used to simplify the ordering process by saving settings (e.g., remembering the contents of a virtual shopping cart). We may also work with advertising partners who help us make our website more interesting for you, for which partner cookies may be stored on your device.
Note: You can set your browser to inform you about the setting of cookies and individually decide on their acceptance, or exclude cookies for certain cases or in general. Please note that the functionality of our website may be limited if cookies are not accepted.
Browser cookie settings:
- Internet Explorer: support.microsoft.com/help/17442
- Firefox: support.mozilla.org/kb/cookies-erlauben-und-ablehnen
- Chrome: support.google.com/chrome/answer/95647
- Safari: support.apple.com/kb/ph21411
- Opera: help.opera.com/en/latest/web-preferences/#cookies
4 — Contact
When contacting us (e.g., via contact form or email), personal data is collected. This data is stored and used exclusively for the purpose of responding to your request and the associated technical administration. Your data will be deleted after final processing of your request, provided there are no legal retention obligations to the contrary.
5 — Data Processing When Opening a Customer Account & Contract Processing
Personal data will be collected and processed when you provide it to us for the performance of a contract or when opening a customer account. Deletion of your customer account is possible at any time by sending a message to the address of the controller.
We store and use the data you provide for contract processing. After complete processing of the contract or deletion of your customer account, your data will be blocked in accordance with tax and commercial law retention periods and deleted after expiry of these periods, unless you have expressly consented to further use.
6 — Use of Your Data for Direct Advertising
6.1 — Email Newsletter Registration
If you register for our email newsletter, we will regularly send you information about our offers. The only mandatory information required is your email address. We use a double opt-in procedure, meaning we will only send you a newsletter once you have expressly confirmed your consent via a confirmation link. You can unsubscribe from the newsletter at any time via the link provided in any newsletter email.
6.2 — Email Newsletter to Existing Customers
If you have provided us with your email address when purchasing goods or services, we reserve the right to regularly send you offers for similar goods or services by email. You are entitled to object to the use of your email address for advertising purposes at any time with effect for the future.
7 — Data Processing for Order Fulfillment
7.1 The personal data we collect will be passed on to the transport company commissioned with the delivery, insofar as this is necessary for the delivery of the goods. We will pass on your payment data to the commissioned credit institution insofar as this is necessary for payment processing.
7.2 — Payment Service Providers
PayPal: When paying via PayPal, we pass on your payment data to PayPal (Europe) S.à r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg, only insofar as this is necessary for payment processing. PayPal reserves the right to carry out a credit check.
SOFORT: When selecting the payment method SOFORT, payment processing takes place via SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany, part of the Klarna Group. Your data is transferred exclusively for the purpose of payment processing.
8 — Review Reminder
We may use your email address for a one-time reminder to submit a review of your order, provided you have given us your express consent during or after your order. You can revoke your consent at any time by sending a message to the data controller.
9 — Use of Social Media: Social Plugins
9.1 — Facebook Our website uses social plugins from Facebook (Meta Platforms, Inc.). To protect your data, these buttons are not integrated as unrestricted plugins but only via an HTML link. No connection is established with Facebook servers unless you actively click the button.
9.2 — Google+ Our website uses social plugins from Google (Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA). The same HTML-link solution applies — no connection to Google servers until you actively click the button.
9.3 — Instagram Our website uses social plugins from Instagram (Instagram LLC, 1601 Willow Rd, Menlo Park, CA 94025, USA). No connection to Instagram servers is established until you actively click the button.
10 — Online Marketing
10.1 — DoubleClick by Google This website uses the online marketing tool DoubleClick by Google. DoubleClick uses cookies to display relevant ads, improve campaign performance reports, and prevent users from seeing the same ads repeatedly. DoubleClick cookies do not contain any personal information according to Google.
10.2 — Google AdWords Conversion Tracking This website uses Google AdWords and its conversion tracking to draw attention to our offers on external websites. The conversion tracking cookie is set when a user clicks on a Google AdWords ad and typically expires after 30 days. It is not used for personal identification.
11 — Web Analytics Services
Google Analytics This website uses Google Analytics, a web analytics service provided by Google LLC. Google Analytics uses cookies that enable analysis of your use of the website. We use Google Analytics exclusively with the "_anonymizeIp()" extension, which ensures IP address anonymization and excludes direct personal reference.
Google uses this information to evaluate your use of the website, compile reports on website activity, and provide other related services. The IP address transmitted by your browser within Google Analytics will not be merged with other Google data.
This website also uses Google Analytics for cross-device analysis via a User ID. A unique, permanent, and anonymized ID is assigned upon the first page visit. The User ID does not contain or transmit personal data. You can object to data collection and storage via the User ID at any time with effect for the future.
12 — Retargeting / Remarketing / Recommendation Advertising
Facebook Custom Audience (Pixel) This website uses the Facebook Pixel. If express consent is given, user behavior can be tracked after seeing or clicking on a Facebook ad. This serves to evaluate the effectiveness of Facebook ads for statistical and market research purposes. The data collected is anonymous to us, but is stored and processed by Facebook. Consent to use the Facebook Pixel may only be given by users over the age of 13.
Google AdWords Remarketing Our website uses Google AdWords Remarketing. Google sets a cookie in your browser that enables interest-based advertising using a pseudonymous cookie ID based on the pages you have visited. Further data processing only takes place if you have agreed that your internet and app browsing history may be linked by Google with your Google account.
13 — Rights of the Data Subject
13.1 Applicable data protection law grants you the following rights with regard to the processing of your personal data:
- Right of access (Art. 15 GDPR): Right to information about your processed personal data, processing purposes, categories, recipients, and planned storage period.
- Right to rectification (Art. 16 GDPR): Right to immediate correction of inaccurate data and/or completion of incomplete data stored by us.
- Right to erasure (Art. 17 GDPR): Right to request deletion of your personal data where the applicable conditions are met.
- Right to restriction of processing (Art. 18 GDPR): Right to request restriction of the processing of your personal data.
- Right to notification (Art. 19 GDPR): Right to be informed about all recipients to whom personal data has been disclosed.
- Right to data portability (Art. 20 GDPR): Right to receive your personal data in a structured, commonly used, and machine-readable format.
- Right to withdraw consent (Art. 7(3) GDPR): Right to withdraw consent at any time with effect for the future.
- Right to lodge a complaint (Art. 77 GDPR): Right to lodge a complaint with a supervisory authority.
13.2 — Right to Object
If we process your personal data on the basis of our legitimate interest, you have the right to object to this processing at any time for reasons arising from your particular situation. If you exercise this right, we will stop processing the data concerned unless we can demonstrate compelling legitimate grounds that outweigh your interests.
If your personal data is processed for direct advertising purposes, you have the right to object at any time, after which we will stop processing your data for such purposes.
14 — Duration of Storage of Personal Data
The duration of storage of personal data is based on the applicable legal retention period (e.g., commercial and tax retention periods). After expiry of the relevant period, the corresponding data is routinely deleted, provided it is no longer required for the fulfillment or initiation of a contract and there is no longer any legitimate interest on our part in continued storage.
Contact: support@sophia-vancouver.com