Privacy Policy

PRIVACY AND COOKIES POLICY

Who we are

We are ExiShop.com, we are an online e-commerce store. Our website address is: https://www.exishop.com. We may be contacted by using our contact form located on our website.

What we use your data for

We will use your data (collected online or in person), among other purposes, to manage your registration as a user, to manage your purchases of products or services, to respond to your queries, and, if you wish, to send you our customised communications.

Why we use your data

We have legal standing to process your data for various reasons. The main reason is that we need to process your data to perform the contract that you accept with us when you register and when you make a purchase or enjoy any of our services or functionalities. We also use your data for other reasons, for example, to respond to your queries or to send you newsletters that you have asked to receive from us.

Depending on the purpose for which we process your data from time to time, as explained above, we need to process one or other data, which will in general be, depending on each case, as follows:

  • your identity data (for example, your name, surname, language and country from which you interact with us, contact data, etc.)
  • economic and transactions information (for example, your payment or card data, information on your purchases, orders, returns, etc.)
  • geolocation and/or browsing data (for example, if you interact with us from your mobile phone)
  • commercial information (for example, if you have subscribed to our newsletter)
  • information about your tastes and preferences

Understand that, when we ask you to fill in your personal data to give you access to any functionality or service of the platform, we will mark certain fields as compulsory, since this is information that we need to be able to provide the service or give you access to the functionality in question. Please take into account that, if you decide not to make such data available to us, you may be unable to complete your user registration or may not be able to enjoy those services or functionalities.

Depending on how you interact with our platform, depending on the services, products or functionalities that you wish to enjoy, we will process your personal data for the following purposes:

  • To manage your registration as user of the platform. If you decide to become a registered user of our platform, we need to process your data to identify you as a user of the platform and grant you access to its various functionalities, products and services available to you as a registered user.
  • For the development, performance and execution of the purchase or services contract that you executed with us on the platform. This purpose includes processing your data. Mainly, to contact you for updates or informative notices related to the contracted functionalities, products or services, including quality surveys and to be able to establish the degree of customer satisfaction with the provided service.
  • To manage payment of the products that you purchase, regardless of the payment procedure used . For example, if on purchasing any of our products through the Web site or the App, you opt to activate the functionality of save your card data for future purchases, we need to process the indicated data for activation and development of that functionality. Consent to the activation of this functionality enables your autocompleted payment data to appear in subsequent purchases so that you do not need to introduce them in each new process , and these data will be deemed valid and effective for subsequent purchases. You may change or cancel your cards at any time through the section on payment information of your Website registered user account.
  • Activate the necessary arrangements in order to control and/or prevent potential fraud against you and against us during the purchase process. If we consider that the transaction can be fraudulent, this processing may cause the blocking of the transaction.
  • To manage potential returns after you have purchased and manage requests of availability information for articles, reservations of products through the platform, depending on the availability of such options from time to time.
  • For invoicing purposes and to make available to you the tickets and invoices of the purchases you have made through the platform.
  • To meet requests or applications that you make through the Customer Support channels. We only process the personal data that are strictly necessary to manage or resolve your request or application.
  • If you decide to use WhatsApp (if applicable) as a channel to communicate with Customer Support, we will share your telephone number with WhatsApp Inc. to confirm that you are a user of this service. We recommend you to review your privacy settings and to read WhatsApp privacy policy to obtain more detailed information about the use that WhatsApp makes of the personal data of the users that use their services.

What happens when you provide us with data of third parties

We offer functionalities or services that require us to process the personal data of a third party that you must provide, such as in the case of activation and sending of the Gift Voucher or the management of the application for the Gift Voucher. If you provide us with personal data of third parties, you confirm that you informed them of the purposes and of the manner in which we need to process their personal data.

How we are legally permitted to process your data

The legal terms on which we are permitted to process your personal data also depends on the purpose for which we process them, as stated below:

  • To manage your platform user registration. We process your data because this is necessary on the terms regulating the use of the platform. In other words, for you to be able to register as a user on the platform, we need to process your personal data, since we would otherwise be unable to manage your registration.
  • Development, performance and making of the purchase or services contract. We process your data because their processing is necessary for us to make the purchase or services contract with you. Certain processing of data related to the purchase process is activated only because you request and/or authorise it, as is the case of the storage of payment (card) data for future purchases. In these cases, our processing of your data is supported by your own consent.
  • We consider that we have a legitimate interest to carry out the necessary verifications to detect and prevent potential fraud when you make a purchase. We understand that the processing of these data is positive for all the participating parties when a purchase is paid and in particular for you, since this allows us to establish measures to protect you from fraud attempts by third parties.
  • Customer support. We consider that we have legitimate interest in answering the requests or queries raised by you through the existing different contact channels. We understand that the processing of these data is also beneficial to you to the extent that it enables us to assist you adequately and answer to the queries raised. When you get in touch with us, in particular, for the management of incidents related to your order or the product/service acquired through the Platform, the processing of your data is necessary to perform the purchase contract. When your request is related to the exercise of y our rights on which we inform you below, or to claims on our products or services, we are legally permitted to process your data for compliance with our legal obligations.
  • We are legally permitted to process your data for marketing purposes due to the consent that you give us, for example when you accept receiving customized information through multiple channels, when authorizing the sending of push notifications in your mobile device or when accepting the legal terms and conditions to participate in a promotional action or to publish your pictures on the platform or on our social networks’ channels.  

Who we share your data with

In order to provide you with our full service, we share your data with third party providers who assist and support our operations. For example:

  • financial institutions
  • anti-fraud detection and prevention entities
  • technological service providers
  • logistic, transport and delivery partners and service providers
  • providers of customer support related services
  • advertising and marketing related partners and service providers

For service efficiency purposes, some of these providers might be located in territories outside the European Economic Area that do not offer a level of data protection comparable to that of the European Union. In such cases, we inform you that we will transfer your data with adequate safeguards and always keeping your data safe.

Comments

When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.

An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.

Media

If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.

Embedded content from other websites

Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.

These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.

How long we retain your data

If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.

For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.

What rights you have over your data

If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.

How we protect your data

We take precautions to protect your information. When you submit sensitive information via the website, your information is protected both online and offline.

Wherever we collect sensitive information (such as credit card data), that information is encrypted and transmitted to us in a secure way. You can verify this by looking for a lock icon in the address bar and looking for “https” at the beginning of the address of the Web page.

While we use encryption to protect sensitive information transmitted online, we also protect your information offline. Only employees who need the information to perform a specific job (for example, billing or customer service) are granted access to personally identifiable information. The computers/servers in which we store personally identifiable information are kept in a secure environment.

Information on Cookies

What is a Cookie? A Cookie is a small text file that a website stores on your PC, telephone or any other device, with information about your navigation on that website. Cookies are necessary to facilitate browsing and to make it more user – friendly, and they do not damage your computer.

Cookies are an essential part of how our website works. The main purpose of our Cookies is to improve your browsing experience. For example, they are used to remember your preferences (language, country, etc.) while browsing and on future visits.

The information collected by the Cookies also enables us to improve the site by estimating numbers and patterns of use, the suitability of the website to the individual interests of the users, quicker searches, etc.

We do not store sensitive personal information, such as your address, your password, your credit or debit card data, etc. in the Cookies we use.

The information stored in the Cookies from our website is used exclusively by us, except for those identified as “third – party cookies”, which are used and managed by external entities to provide services requested by us to improve our services and the experience of the user when browsing our website. The main services for which these “third – party cookies” are used are to obtain access statistics and to guarantee the payment transactions that are carried out.

If you prefer to avoid the use of Cookies on this page, taking into account the above – described limitations, you must first disable the use of Cookies in your browser and then delete the Cookies saved in your browser associated with this website.

You may use this option for preventing the use of Cookies at any time.

You may restrict, block or delete the Cookies from this website at any time by changing the configuration of your browser following the steps indicated below. While the settings are different in each browser, Cookies are normally configured in the “Preferences” or “Tools” menu. For further details on configuring Cookies in your browser, see the “Help” menu in the browser itself.

We use cookies and similar devices to facilitate your browsing in the platform, understand how you interact with us and, in certain cases, to be able to show you advertisements in accordance with your browsing habits.

If you leave a comment on our site you may opt-in to saving your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.

If you have an account and you log in to this site, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.

When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.