Privacy Policy
ABOUT THIS PRIVACY POLICY AND WHO WE ARE
This Privacy Policy explains how Sophie Vancouver collects, uses, stores, and protects your personal information when you visit or use our website. Personal information means any data that can identify you directly or indirectly.
The data controller responsible for processing your personal data under the General Data Protection Regulation is Sophie Vancouver. We decide why and how your personal data is processed.
Our website uses SSL or TLS security technology to protect transmitted data. You can recognize a secure connection by “https” in the address bar and the lock symbol in your browser.
We do not use automated decision-making or profiling that produces legal or significant effects as defined in Article 22 of the GDPR.
DATA COLLECTED WHEN YOU VISIT OUR WEBSITE
If you browse our website without registering or submitting information, we only collect technical data that your browser automatically sends to our server. This data is required to display the website correctly.
Collected data may include:
• Pages accessed
• Date and time of access
• Data volume transferred
• Referring website or source
• Browser type and version
• Operating system
• IP address, anonymized where applicable
This processing is based on our legitimate interest in maintaining website security and performance under Article 6(1)(f) GDPR. We do not combine this data with other data sources. We may review logs later if there is evidence of misuse.
USE OF COOKIES
Our website uses cookies to improve usability and enable specific functions. Cookies are small text files stored on your device.
Session cookies are deleted when you close your browser. Persistent cookies remain stored and allow recognition of your browser during future visits.
Cookies may process data such as browser details, approximate location data, and IP addresses. Each cookie has a defined storage period and is deleted automatically afterward.
Some cookies support essential functions such as saving items in your shopping cart. Where cookies process personal data, processing is based on:
• Article 6(1)(b) GDPR for contract-related functions
• Article 6(1)(f) GDPR for website optimization
We may use third-party cookies from advertising or analytics partners. Details are explained in the relevant sections below.
You can manage cookie settings in your browser:
• Internet Explorer
• Firefox
• Chrome
• Safari
• Opera
When you first visit our website, you can choose which cookies you allow through our cookie banner. You can change your choices at any time.
If you block cookies, some website features may not work properly.
CONTACTING US
If you contact us via form or email, we collect the information you provide. This data is used only to respond to your request and manage the communication.
Processing is based on our legitimate interest under Article 6(1)(f) GDPR. If your request relates to a contract, processing is based on Article 6(1)(b) GDPR.
Your data is deleted once your request is resolved, unless legal retention rules apply.
CUSTOMER ACCOUNTS AND CONTRACT PROCESSING
When you create an account or place an order, we process your data to fulfill the contract under Article 6(1)(b) GDPR. The required data is shown in the input forms.
You can request deletion of your customer account at any time by contacting us. After contract completion or account deletion, your data is restricted and removed after legal retention periods, unless further use is legally permitted or you gave consent.
EMAIL MARKETING
Newsletter subscription
If you sign up for our newsletter, we use your email address to send updates and offers. Additional details are optional and used for personalization.
We apply a double opt-in process. After registration, you receive a confirmation email. Only after confirmation will you receive newsletters.
We store your IP address and subscription time to prevent misuse. Processing is based on Article 6(1)(a) GDPR.
You can unsubscribe at any time using the link in the email or by contacting us. Your email address is removed immediately unless legal use is permitted.
Emails to existing customers
If you provided your email during a purchase, we may send offers for similar products. This is based on our legitimate interest under Article 6(1)(f) GDPR.
You can object at any time. After objection, your email will no longer be used for marketing.
ORDER AND PAYMENT PROCESSING
To complete your order, we share required data with shipping providers. Payment data is shared only with the chosen payment provider. Processing is based on Article 6(1)(b) GDPR.
Payment services
PayPal
If you choose PayPal, your payment data is transferred to PayPal Europe S.a.r.l. et Cie, S.C.A., Luxembourg. PayPal may perform credit checks for certain payment methods. This is based on PayPal’s legitimate interest.
You can object directly with PayPal. Contract-related processing remains permitted.
SOFORT
Payments via SOFORT are processed by SOFORT GmbH, Germany, part of Klarna Group. Order and payment data is transferred as required for processing.
REVIEW REMINDERS
With your consent, we may send one email requesting a product review. Processing is based on Article 6(1)(a) GDPR. You can withdraw consent at any time.
SOCIAL MEDIA PLUGINS
Facebook
Our website includes Facebook buttons using a link-based solution. No connection to Facebook servers occurs until you click the button.
Instagram
Instagram buttons are integrated using the same link-based method.
Google services
Where applicable, Google services follow similar privacy-protective integration methods.
Data processing occurs only after interaction. Details are available in each provider’s privacy policy.
ONLINE ADVERTISING AND ANALYTICS
We use advertising and analytics tools to improve our website and marketing performance. These tools may use cookies and tracking technologies.
Services may include:
• Google Ads
• Google Analytics with IP anonymization
• Facebook Pixel
• Remarketing technologies
Processing is based on consent under Article 6(1)(a) GDPR or legitimate interest under Article 6(1)(f) GDPR.
You can disable tracking through browser settings, opt-out tools, or provider-specific controls. Disabling tracking may limit website functionality.
YOUR RIGHTS
You have the following rights under GDPR:
• Access to your data
• Correction of incorrect data
• Deletion of your data
• Restriction of processing
• Data portability
• Withdrawal of consent
• Objection to processing
• Complaint to a supervisory authority
If your data is used for direct marketing, you can object at any time. Marketing will stop immediately.
DATA RETENTION
We store personal data only as long as required by law or for contract fulfillment. After expiration of retention periods, data is deleted unless further storage is legally justified.
CONTACT DETAILS
For questions, requests, or to exercise your rights, contact:
Sophie Vancouver
Email: info@sophievancouver.com