Privacy policy
Privacy Policy
Cristhàlia Online Store operates this store and website, including the information, content, features, tools, products, and services, in order to provide you, the customer, with a suitable shopping experience (the "Services"). Cristhàlia Online Store is powered by Shopify, which enables us to provide the Services. This Privacy Policy describes how we collect, use, and disclose your personal data when you visit, use, make a purchase, or conduct any other transaction through the Services, or when you communicate with us. In the event of a conflict between our Terms of Service and this Privacy Policy, the Privacy Policy shall prevail regarding the collection, processing, and disclosure of your personal data.
Please read this Privacy Policy carefully. By using and accessing the Services, you confirm that you have read and understood this Privacy Policy regarding the collection, use, and disclosure of your information.
Personal Data We Collect or Process
When we use the term “personal data,” we refer to information that identifies or is reasonably associated with you or another person. Personal data does not include information collected in an anonymous or de-identified form so that it cannot identify you or be linked to you. We may collect or process the following categories of personal data, including inferences derived from such personal data, depending on your interaction with the Services, your location, and as permitted or required by applicable law:
-
Contact information including name, address, billing address, shipping address, phone number, and email address.
-
Financial data including credit or debit card numbers, payment card data, financial account information, transaction details, payment method, payment confirmation, and other payment details.
-
Account data including username, password, security questions, preferences, and settings.
-
Transaction data including items you view, add to your cart, wishlist, purchase, return, exchange, or delete, and past transactions.
-
Communications with us including information you provide when contacting us, such as submitting a customer service request or dispute.
-
Device information including information about your device, browser, or network connection, IP address, and other unique identifiers.
-
Usage information including data about how you interact with the Services and when and how you use or explore the Services.
Sources of Personal Data
We may collect personal data from the following sources:
-
Directly from you, such as when you create an account, visit or use the Services, communicate with us, or provide us with your personal data.
-
Automatically through the Services, such as through your device when using our products or services, visiting our websites, and via cookies or similar technologies.
-
From our service providers, such as when we engage them to implement certain technology and when they collect or process your personal data on our behalf.
-
From our partners or third parties.
How We Use Your Personal Data
Depending on how you interact with us or which Services you use, we may collect and use your personal data for the following purposes:
-
Providing, personalizing, and improving the Services: We use your personal data to deliver the Services, fulfill our contract with you, process your payments, complete your orders, remember your preferences and interests, send account notifications, handle purchases, returns, exchanges, create and manage your account, arrange shipping, enable product reviews, and create a personalized shopping experience, including product recommendations.
-
Marketing and advertising: We may use your personal data for marketing purposes, such as sending promotional communications via email, text message, or mail, and displaying online ads for products and services within our Services or on other websites, based on your previous activity, purchases, or items in your cart.
-
Security and fraud prevention: We use your personal data to authenticate your account, ensure secure payment and shopping experiences, detect, investigate, or act against fraudulent, illegal, unsafe, or harmful activities, and protect public safety and our Services.
-
Communications with you: We use your personal data to provide customer support, respond to inquiries, offer services, and maintain business relationships.
-
Legal purposes: We use personal data to comply with applicable laws or respond to valid legal processes, including requests from authorities or government agencies, to investigate or participate in legal proceedings, enforce our terms, or protect our rights and Services.
How We Share Personal Data
We may disclose your personal data to third parties for legitimate purposes under this Privacy Policy. Examples include:
-
With Shopify, vendors, and other third-party service providers performing services on our behalf (e.g., IT management, payment processing, data analytics, customer support, storage, order fulfillment, and shipping).
-
With business and marketing partners to provide services and marketing communications. For example, Shopify may enable personalized ads using third-party services based on your online activity. Our partners will use your data in accordance with their privacy policies. Depending on your location, you may have the right to opt out of such personalized marketing.
-
When you request or authorize disclosure, such as for shipping products or using social media widgets.
-
With our affiliates or within our corporate group.
-
In connection with business transactions such as mergers or bankruptcy, to comply with legal obligations, enforce terms, or protect our Services, rights, or users.
Relationship with Shopify
The Services are powered by Shopify, which collects and processes personal data regarding your access to and use of the Services to provide and improve the Services. Data you provide will be transmitted to and shared with Shopify and third parties, which may be located outside your country. Shopify may also use data from your interactions with our store and other merchants to provide advanced features. For more information on Shopify’s privacy practices and your rights, see Shopify Privacy Policy.
Third-Party Websites and Links
The Services may contain links to third-party websites. If you access these links, you may be subject to their privacy and security policies. We are not responsible for the content, privacy, or security of such sites. Information you provide publicly on social media or other third-party platforms may be visible to others.
Children’s Data
The Services are not intended for children, and we do not knowingly collect personal data from individuals under the age of majority in your jurisdiction. Parents or guardians can contact us to request deletion of any personal data collected from their children.
Data Security and Retention
No security measures are perfect, and we cannot guarantee absolute security. Data retention depends on factors such as maintaining your account, providing Services, complying with legal obligations, resolving disputes, or enforcing agreements.
Your Rights
Depending on your location, you may have the following rights regarding your personal data:
-
Access: Request access to your personal data.
-
Deletion: Request deletion of your personal data.
-
Correction: Request correction of inaccurate data.
-
Portability: Request a copy of your data or transfer it to another party in certain circumstances.
-
Communication preferences: Opt out of promotional emails. Non-promotional communications may still be sent.
For residents of the UK or EEA, additional rights include:
-
Opposition and restriction: Request that processing of personal data be limited.
-
Withdrawal of consent: Revoke consent for data processing.
You may exercise these rights through the Services or by contacting us. Shopify-related rights are described at Shopify Privacy Portal. Requests may require identity verification.
Complaints
For complaints about how we process your personal data, contact us. Depending on your location, you may also lodge a complaint with your local data protection authority.
International Transfers
Your personal data may be transferred, stored, and processed outside your country. Transfers outside the EEA or UK will use reliable mechanisms such as EU Standard Contractual Clauses or equivalent UK-authorized contracts.
Changes to this Privacy Policy
We may update this Privacy Policy periodically to reflect changes to our practices or for operational, legal, or regulatory reasons. Updated versions will be posted on the website with a new “Last Updated” date.
Contact Us
For questions about our privacy policies or this Privacy Policy, or to exercise your rights, contact us:
Phone: [Insert number]
Email: info@cristhalia.it
Address: Via Adige 6, 63811 Sant’Elpidio a Mare, FM, Italy
For the purposes of applicable data protection laws, we are the data controller of your personal data.