This is a Registry and Privacy Statement in accordance with the Company Personal Data Act (Sections 10 and 24) and the EU General Data Protection Regulation (GDPR). Created April 30, 2018 Last modified May 24, 2018
SUBSCRIPTION
Ordering from DeliDeli.fi does not require registration. In this way, we collect the customer's personal information necessary to complete the order.
However, at the time of ordering or otherwise, the customer may register as a DeliDel customer, in which case the customer agrees to the inclusion of his / her personal information in the e-commerce customer register.
REGISTRAR
DeliDeli Oy
Business ID 1740519-4
www.delideli.fi
Address: PL 250, 00181 Helsinki
Phone: +358 09 2694 2010
Email: info@delideli.fi
REGISTERING IS CARE
DeliDel Customer Service
Gregory Sufa
Address: Ruosilantie 7, 00390 Helsinki
Email: info@delideli.fi
NAME OF THE REGISTER
DeliDel Customer Magazine
PERSONAL DATA PROCESSOR
The purpose of processing personal data is to communicate with customers, maintain customer relationships, marketing, etc.
The customer magazine submitter (we only give out email addresses) is American MailChimp
PURPOSE OF THE PROCESSING OF PERSONAL DATA
Customer register personal information is processed in connection with orders, billing, mailing, customer communications, service development, reporting, marketing and other customer relationship management activities. Purchase and transaction information processed in the register may also be used for profiling and targeting offers, benefits and other marketing activities as well as customer communications to the data subject.
CONTENTS OF THE REGISTERS
Customer register: Customer's first and last name, address, telephone number, email address, transaction and transaction information, feedback information, username and password, alternate shipping addresses.
DeliDeli does not collect or store customer bank details or credit card information.
REGULAR SOURCES OF INFORMATION
Customer's own notice and customer's purchase and transaction information in the company's information systems.
REGULAR DISCLOSURES AND DATA TRANSFERS OUTSIDE THE EU OR THE EUROPEAN ECONOMIC AREA
Customer registry information will not be disclosed outside of DeliDel, except as required by law, and to company subcontractors involved in organizing direct marketing, maintaining information systems, or handling customer orders, such as mailing or payment of products. Personal information may be transferred outside the EU or the EEA -> customer magazine emails are stored on the MailChimp server in Atlanta. We use Google Analytics for page tracking. Our online store is also linked to our Facebook pages.
PRINCIPLES FOR THE PROTECTION OF REGISTERS
The customer register information is confidential. The register shall be kept electronically and properly protected. Only designated persons have the right to access and maintain password-protected records. Users are bound by a duty of confidentiality.
FEES AND PAYTRAIL
Paytrail collects the IP address, payment method and payment date at the time of the transaction.
https://www.paytrail.com/tietosuojaseloste-paytrailin-maksupalvelu
RIGHT OF INSPECTION, CORRECTION AND PROHIBITION
The customer has the right to check what information concerning him is stored in the registers. The request for inspection must be sent in writing and signed to the company's customer service. A verification request may also be made in person at the above address, in which case the customer must have a proof of identity. The Company will respond to requests for data verification in writing in accordance with the Personal Data Act. If there is an error in the customer's information, the customer may submit a request to the company to correct the error. You may refuse to use your information for direct marketing purposes by notifying your company customer service, and direct marketing may also be canceled by following the instructions in each newsletter.
COOKIES
Our online shop uses cookies to store your shopping cart. Cookies commonly used in online shops are small identifiers that are transferred from the server to the visitor's computer during the session. You must have cookies enabled in your internet browser so that you can buy products online. We use cookies to facilitate e-commerce and to analyze how we can improve our service. Cookies are safe to use, not visible to the visitor during the session, and do not strain or damage the visitor's computer. No personal information is stored in cookies.
Prohibition to save a cookie
If you do not want to save cookies, most browser programs allow you to disable the cookie function. When you use the Services in a web browser, you can configure your browser to accept all cookies, to reject all cookies, or to indicate when a cookie is being sent, which allows you to block cookies on a per-cookie basis. This is done, for example, via the "Internet Options" menu in the "Tools" menu in Internet Explorer under "Security".
Attention! Your shopping cart will not work without cookies.
Registry and Privacy Statement (template)
This is the Register and Privacy Statement in accordance with the Company Personal Data Act (Sections 10 and 24) and the EU General Data Protection Regulation (GDPR). Prepared dd.mm.yyyy. Last change dd.mm.yyyy.
1. The controller
Company, Address, 01234 Post Office
Other contact information
2. Contact person responsible for the register
First name Last name, e-mail, phone number
If your organization has a data protection officer, his or her information will come here. Otherwise, any contact person.
3. Name of the register
Company's customer register, marketing register, stakeholder register, online service user register, member register, employee register, etc.
4. Legal basis and purpose of the processing of personal data
The legal basis for the processing of personal data under the EU General Data Protection Regulation is
- consent of the person (documented, voluntary, identified, informed and unambiguous)
- a contract to which the data subject is a party
- law (what)
The performance of a public task (on which it is based), or
- the legitimate interest of the controller (eg customer relationship, employment relationship, membership).
The purpose of processing personal data is to communicate with customers, maintain customer relationships, marketing, etc.
The data is not used for automated decision making or profiling.
5. Information content of the register
The information stored in the register includes: person's name, position, company / organization, contact information (phone number, e-mail address, address), website addresses, network IP address, IDs / profiles in social media services, information about subscribed services and their changes, billing information, other information related to the customer relationship and the services ordered.
Also indicate here the data retention period, if possible. Also tell if, for example, the data will be anonymized after a certain period of time.
6. Regular sources of information
The information stored in the register is obtained from the customer e.g. Messages sent via web forms, e-mail, telephone, via social media services, contracts, customer meetings and other situations in which the customer discloses their information.
7. Regular transfers of data and transfers of data outside the EU or the EEA
The information is not regularly disclosed to other parties. The information may be published to the extent agreed with the customer.
Data may also be transferred by the controller outside the EU or the EEA.
If you provide personal information to different parties, please indicate here the potential recipients or groups of recipients.
8. Registry Security Principles
The register shall be handled with due care and the data processed by the information systems shall be adequately protected. When registry information is stored on Internet servers, the physical and digital security of their hardware is adequately addressed. The controller shall ensure that the data stored, as well as the access rights to the servers and other information critical to the security of personal data, are treated confidentially and only by the employees whose job description it includes.
9. Right of inspection and right to request correction of information
Every person in the register has the right to check the information stored in the register and to request the correction of any incorrect information or the completion of incomplete information. If a person wishes to check or request the rectification of data stored about him or her, the request must be sent in writing to the data controller. If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the timeframe set out in the EU Data Protection Regulation (generally within one month).
10. Other rights related to the processing of personal data
A person in the register has the right to request the removal of his or her personal data from the register (“right to be forgotten”). Likewise, registrants have others Rights under the EU General Data Protection Regulation such as restricting the processing of personal data in certain situations. Requests must be sent in writing to the controller. If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the timeframe set out in the EU Data Protection Regulation (generally within one month).