- General provisions
1.1 This privacy policy sets out the principles of protection of confidential information regarding Users, including personal data, by the administrator of this data, i.e. the entity running the Store, hereinafter referred to as the Seller.
1.2 For the purposes of interpreting this document, the definitions included in the Store Regulations apply.
1.3 When running the Store, the Seller makes special efforts to protect the rights of Users, in particular in the field of privacy and protection of information provided to the Seller and regarding Users. This information (including Users’ personal data) is properly secured, and the online forms used to transmit this information are protected by the SSL security protocol, thanks to which the data transfer process is encrypted. When processing Users’ personal data, the Seller pays particular attention to ensuring that these data are protected against being made available to unauthorized persons, taken away by an unauthorized person, processed in violation of applicable law, as well as against their change, loss, damage or destruction.
- Personal data
2.1 When using the Store, the User may be asked to provide his/her personal data necessary for the provision of services by the Seller:
- when registering in the Store (name and surname or company name, delivery address, telephone number, e-mail address)
- when expressing your willingness to use the Newsletter service (e-mail address),
- when placing an order (name and surname or company name, delivery address, telephone number, e-mail address).
2.2 Providing any personal data by the User is voluntary. Providing the data mentioned in point 2.1. is necessary for the purposes specified in point 2.4.
2.3 Users can browse the Store and the offers for goods contained therein without prior registration or providing personal data.
2.4 Personal data of Users who are natural persons (including natural persons running a sole proprietorship) will be processed by the Seller as the personal data administrator in order to provide services by the Seller via the Store, as well as for marketing purposes related to the operation of the Store, including services and goods presented in the Store. With respect to the personal data of Users registering in the Store using access data from Allegro or purchasing goods or services in the Store using access data from PayU, the Seller receives this data – respectively – from the Allegro Group or PayU, with the consent of the Users and to the extent necessary for the Seller to achieve the objectives indicated above. The processing of collected data is carried out in accordance with the provisions of the Act of August 29, 1997 on the protection of personal data and the Act of July 18, 2002. on the provision of services by electronic means. Providing your personal data by the User is voluntary.
2.5 The User’s personal data may be made available to entities authorized to receive them under applicable law, including competent judicial authorities. Users’ personal data may also be transferred or disclosed – to the extent necessary and required – to third parties, including entities performing activities on behalf of the Seller related to the Agreement concluded with the Buyer, including: operators handling electronic payments under concluded Agreements or entities delivering the ordered goods. Users’ personal data (including their e-mail addresses) may also be disclosed by the DreamCommerce Seller in connection with the operation of the Store by the Seller, including in connection with the performance by DreamCommerce for the Seller of activities arising from the contract between the Seller and DreamCommerce, enabling the Seller to use from tools used to run the Store.
2.6 The Seller ensures that Users whose personal data are processed exercise the rights arising from the Personal Data Protection Act, including the right to access and correct their own personal data and the right to control the processing of their own personal data on the terms described in the said Act.
2.7 As part of the right to control the processing of their own personal data, the User has, in particular, the right to submit a written, substantiated request to discontinue the processing of his or her data due to his or her special situation, as well as to object to the processing of his or her data when the Seller processes it when it is necessary to do so. necessary to fulfill legally justified purposes pursued by the Seller or when the Seller intends to process them for marketing purposes, or when the Seller transfers the User’s personal data to a data controller other than the Seller.
2.8 Confidential information regarding Users, including Users’ personal data, is protected by the Seller against disclosure to unauthorized persons, as well as other cases of disclosure or loss, and against destruction or unauthorized modification of the indicated data and information through the use of appropriate technical and organizational security measures.
3. Refunds
3.1 Bizim Sklep will only provide a refund if we are unable to deliver to the specified location of the Customer.
Our Location: Górczewska 224, 01-460 Warszawa.
Company registiration number: 5242972293
Name of our company: AREM Trade
Privacy Policy – Bizim Sklep
Website: bizim.pl
1. Data Controller
1.1. The controller of your personal data is:
AREM Trade
NIP: 5242972293
Address: Górczewska 224, 01-460 Warszawa, Poland
Website: bizim.pl
1.2. The controller decides how and why your personal data is processed.
2. Personal Data We Collect
2.1. When placing an order, we may collect:
-
name and surname or company name,
-
delivery address,
-
billing address,
-
e-mail address,
-
phone number,
-
order details,
-
payment method,
-
payment status,
-
invoice details, if requested.
2.2. When creating a customer account, we may collect:
-
name and surname,
-
e-mail address,
-
encrypted password,
-
delivery address,
-
billing address,
-
order history.
2.3. When contacting us, we may collect:
-
name,
-
e-mail address,
-
phone number, if provided,
-
message content.
2.4. When using the website, we may collect:
-
IP address,
-
browser information,
-
device information,
-
cookies,
-
cart data,
-
session data,
-
technical logs.
3. Purposes of Processing Data
3.1. We process personal data to:
-
accept and process orders,
-
deliver purchased products,
-
process payments,
-
issue invoices and accounting documents,
-
handle returns, complaints and customer service,
-
create and manage customer accounts,
-
send order confirmations and transactional messages,
-
maintain website security,
-
comply with legal and tax obligations,
-
send marketing messages only where legally allowed or consented to.
4. Legal Basis for Processing
4.1. Personal data is processed under:
-
Article 6(1)(b) GDPR — processing necessary to perform a contract, including orders, payments and delivery.
-
Article 6(1)(c) GDPR — processing necessary to comply with legal obligations, including tax and accounting duties.
-
Article 6(1)(f) GDPR — legitimate interest, including customer service, fraud prevention, website security and claims protection.
-
Article 6(1)(a) GDPR — consent, including newsletter, marketing cookies and optional marketing communication.
5. Online Store Platform
5.1. The Store operates using:
-
WordPress,
-
WooCommerce,
-
WooCommerce plugins and extensions needed for cart, checkout, payments, delivery and order management.
5.2. DreamCommerce / Shoper is not used in this Privacy Policy.
6. Payments
6.1. Online payments in the Store may be processed by:
-
Przelewy24,
-
PayPro S.A.,
-
BLIK,
-
payment cards,
-
bank transfer payment methods,
-
Google Pay,
-
Apple Pay.
6.2. Payment providers may process data necessary to complete payment, confirm payment status, prevent fraud and comply with legal obligations.
6.3. The Store does not store full card numbers or full payment credentials.
7. Delivery
7.1. Personal data may be shared with delivery providers to deliver orders.
7.2. Data shared for delivery may include:
-
name and surname,
-
delivery address,
-
phone number,
-
e-mail address,
-
order information necessary for delivery.
8. Service Providers
8.1. Personal data may be shared with trusted service providers, including:
-
hosting providers,
-
IT and website maintenance providers,
-
WordPress and WooCommerce plugin providers,
-
payment operators,
-
delivery companies,
-
e-mail service providers,
-
accounting service providers,
-
legal advisors,
-
security and anti-spam providers,
-
analytics providers, if used,
-
marketing tools, if used and legally allowed.
8.2. Data is shared only to the extent necessary for the service.
10. Newsletter and Marketing
10.1. Marketing messages may be sent only if:
-
the User has given consent, or
-
the law allows such communication.
10.2. The User can unsubscribe from marketing communication at any time.
10.3. Withdrawal of consent does not affect processing carried out before consent was withdrawn.
11. Data Retention
11.1. Order data is stored for the period required by tax, accounting and consumer protection laws.
11.2. Invoice and accounting data is stored for the legally required period.
11.3. Customer account data is stored until the account is deleted, unless longer storage is required by law.
11.4. Contact messages are stored for the time needed to handle the enquiry and protect possible claims.
11.5. Newsletter data is stored until consent is withdrawn or the User unsubscribes.
11.6. Technical logs are stored for security and maintenance purposes for a limited period.
12. User Rights
12.1. The User has the right to:
-
access personal data,
-
receive a copy of personal data,
-
correct personal data,
-
request deletion of personal data,
-
restrict processing,
-
object to processing,
-
transfer personal data,
-
withdraw consent at any time,
-
lodge a complaint with the Polish Data Protection Authority, UODO.
13. International Data Transfers
13.1. Some service providers, such as Google, Apple, hosting providers or analytics providers, may process data outside the European Economic Area.
14. Security
14.1. The Store uses technical and organisational measures to protect personal data.
14.2. Security measures may include:
-
SSL encryption,
-
secure hosting,
-
access control,
-
password protection,
-
backups,
-
software updates,
-
anti-spam protection,
-
anti-fraud measures.
15. Contact
15.1. For matters related to personal data, the User may contact the controller:
AREM Trade
Address: Górczewska 224, 01-460 Warszawa, Poland
Website: bizim.pl
Phone Number: +48 881 017 015
16. Changes to the Privacy Policy
16.1. The Privacy Policy may be updated when:
-
the law changes,
-
the Store changes its services,
-
payment providers change,
-
delivery providers change,
-
website tools or plugins change.
16.2. The current version of the Privacy Policy is always available on the Store website.