This privacy policy (“Privacy Policy”) is intended to outline how any personal data collected from you via www.myrtofyllo.gr (the “Website”) or in our store, will be protected, used, stored and processed by us to communicate with you and to deliver you excellent service whilst being compliant with the applicable data protection law (Regulation (EU) 2016/679 – hereinafter referred to as “GDPR”).
This Privacy Policy does not apply to websites that you may be able to access via links on the Website and/or activities offered by third parties. Please ensure you review any relevant policies on any third party websites before proceeding. The Company is not responsible for the collection or use of your personal information from these third party websites.
PERSONAL DATA
We collect and process the following types of information about you:
1. Information we collect about you:
• when you sign up to our newsletter
• when you enter competitions and prize draws;
• when you register with the Website, by phone or by email, or provide personal information which you complete, or which we complete at your request in-store via a store card;
• when you place an order on our Website;
• if you ask us to receive personalised online content such as targeted advertising;
• if you contact or correspond with us (for example, by phone, email or otherwise) to find out more about a product or our after sale care and support services, to report a problem with the Website or a product or for any other reason.
With your consent, we process the following personal data which you provide when you interact with the Website and use the related services and functions. The data may include your first and surname, title, gender, birthdate (day, month & year), email address, phone number, address, financial information (such as credit or debit card details), as well as shipping address, billing address, and any other information that you consider necessary to provide us with.
The information collected from you via our Website will be matched with personal information you may have given us in our stores. This is to help us ensure that the data we hold about you is kept accurate and up to date.
In any event, even without your prior consent, we may process your data to comply with legal obligations stemming from laws, regulations and EU Law, to exercise rights in legal proceedings, to pursue our own legitimate interests and in all cases provided by Articles 6 and 9 of the GDPR, where applicable. Processing shall take place both using computers and on paper, and shall always entail the implementation of the security measures provided by current law.
2. Information we exchange with other sources about you:
We work closely with third parties, for example, business partners, sub-contractors for technical, payment and delivery services, advertising networks, analytics providers and search information providers. If we receive information about you from them, we will always seek assurances that they are providing information to us in accordance with data protection laws and that they are transparent with you that they may share your data with us. We may use this information to update our records about you to keep them accurate.
HOW WE USE YOUR PERSONAL DATA
We may use and share non-personal data we receive or collect from you without restrictions.
The Company may use the above personal data held about you for the following purposes (purposes for which we need your consent are marked *):
• to carry out obligations arising from any contracts entered between you and us and to provide you with information, products and services that you request from us, i.e. to process and complete your orders and to process your payments.
• to remind you of products you have placed in your basket on the Website, but have not purchased*.
• to tailor our Website content to your needs and preferences*.
• to prevent, detect, and investigate fraud, security breaches, violations of law, and other misuse of the Website, and to enforce our General Terms and Conditions.
• to address any enquiries, correspondence, concerns or complaints you have raised.
• for our internal operations, including data analysis, testing, research, statistical purposes and troubleshooting.
• to provide you with information about other products and services we offer that are similar to those that you have already purchased or enquired about. We will only contact you by email with such information if you have consented to this. More information about this is set out below under the heading “legal basis for processing”*.
• to deliver relevant advertising to you, for example, newsletters*.
• to make suggestions and recommendations to you about other products or services that may be of interest to you*.
• to carry out automated decision-making and profiling for the purpose of identifying wha information or advertising you might like to see from use, for example, by creating individual or group profiles.*
Your data may in any case be processed, even without your consent, for the purpose of complying with laws, regulations, EU Law (art 6.1.(c) of the GDPR, to perform statistics on the Website’s usage and ensure its proper functioning (art. 6.1.(f) of the Regulation), to establish or defend the legal claims in the interest of the Company.
LEGAL BASIS FOR DATA PROCESSING
For some of the uses of your personal data (as described above) there is a legal basis under applicable data protection laws for us to use such personal data without your consent (these uses are not marked with *).
This includes, for example, where it is necessary for us to use the information in order to perform a contract with you or take steps at your request prior to entering into a contract with you, such as to process your order, provide aftercare and support services to you or manage the online account facility that we provide to you. It also includes circumstances (such as we have described below) where we have a legitimate interest to use your data, provided that proper care is taken in relation to your rights and interests:
• to ensure that we organise our database efficiently and understand how our clients may make purchases in different parts of the world;
• to send you marketing communications. You can subscribe at our Website and unsuscribe at any time through the unsubscribe button at the Privacy Center or by contacting us on info@myrtofyllo.gr.
•To present you with personalised offers on our website, through social media channels such as Facebook and Instagram and by placing banner advertisements on third party websites
• to carry out research and analysis of your data (including purchase information) as this helps us understand our clients better, who they are and how they interact with the Company
• to improve and ensure the security of the Website (for example, for statistical, testing and analytical purposes, troubleshooting); and
• to ensure that you know about any changes to the Website or the terms of this Privacy Policy.
Where we have a legal basis to use your information without consent (as we’ve described above), this Privacy Policy fulfils our duty to process personal data fairly and lawfully and in a manner that you would expect given the nature of our relationship with you, by giving you appropriate notice and explanation of the way in which your personal data will be used.
Where consent is required for our use of your personal information, by ticking the appropriate consent box or otherwise communicating your consent (for example, by email, providing non mandatory information), you consent to our use of that personal information for the purposes covered by the specific consent that you have given. For example, we will only process your personal information for marketing purposes if we have your consent to do so.
NEWSLETTER AND COMMUNICATION
We will, if you have given us your consent, provide you with information about products, news, events, sales and marketing from Myrtofyllo (including personalised online content and advertising, social media platforms or our online partners).
We will ask whether you would like us to send you marketing messages when you tick the relevant boxes when you check out, sign up for newsletters or updates, or if you register with us via the Website, by phone, by email or the store personal information card. With your consent, we will use your email address as a convenient way to contact you about your order or any reminder service you have. From time to time, we may update you on relevant the Website or new gift news, but only with your permission.
UNSUSCRIBE FROM OUR NEWSLETTER
We will send you special offers and promotions along with our lattest news and products by email. If you do not want to, simply click on the unsubscribe box at the Privacy Center. You can unsubscribe at any time. To unsubscribe click here.
STORAGE AND PROTECTION OF PERSONAL DATA
Your privacy as an individual and as a customer is important to us, so we don’t use the information you provide on this site to learn any more about you other than what is required to fulfil your orders or offer you services such as new alerts or reminder services. Any personal data gathered by us in your use of this site will be recorded electronically and only used in accordance with the UK Data Protection Act 1998.
We will store your data for as long as strictly necessary for us to provide the relevant services to you, for as long as you wish to keep in touch with us or as long as is necessary to provide support-related reporting & analysis. Even if you request to erase your data, we may keep it in a form that doesn’t identify you. If reasonably necessary or required to meet legal or regulatory requirements, resolve disputes, prevent fraud and abuse, or enforce our terms and conditions, we may also keep hold of some of your information as required, even after you have closed your account or it is no longer needed to provide the services to you. If you have not agreed that we may use your data for marketing purposes, we will keep your data for 6 years after you have made a purchase from us.
HOW WE PROTECT YOUR PERSONAL DATA
We protect your privacy in several ways: The personal data is entered into the our computer system in full compliance with data protection law, including security and confidentiality profiles and based on principles of correct practice, lawfulness and transparency in processing. Access to customer account information is limited to those who need access for the performance of their job. We use full login and password controls on our system. Confidentiality and database access controls are reviewed periodically and updated as required to further protect our personal data.
Data is accessible by our staff authorised to process personal data as well as other collaborators who need to process the data to perform their job duties.
Your data may be stored in a database that we can access. We do this to help us organise our databases efficiently and understand how our clients may make purchases in different parts of the world.
DISPOSAL OF PERSONAL DATA TO THIRD PARTIES
We will never pass on your email address to a third party for marketing purposes (except if they are contacting you on behalf of the Company). We respect your privacy and are committed to protecting it.
We may also share your data with the following categories of selected third parties in accordance with this Privacy Policy:
• service providers (for example, IT services), business partners, suppliers and sub-contractors for the performance of any contract we enter into with you (such as, but not limited to, Website operations, payment services, shipments, delivery couriers, fraud investigations, bill collection, and affiliate and rewards programs);
• analytics and search engine providers that assist us in the improvement and optimisation of the Website;
• law enforcement or regulatory agencies, or authorised third parties, in response to a verified request relating to a criminal investigation or alleged illegal activity or any other activity through the Website that may expose us and/or the user or any third party to legal risks or liability; and
• other business entities, should we plan to merge with or be acquired by that business entity. Should such a combination occur, we will require that the new combined entity follow this Privacy Policy with respect to your data.
These third parties who may receive your data will process that data for the purposes specified above and in accordance with applicable law. The Company will retain a list of the third parties with whom data is shared, which will be available upon request.
YOUR RIGHTS
You have the following rights with regard to your personal information:
• Access. You have the right to access data we hold about you as well as an updated list of the individuals who can access your data. We will need you to prove your identity before we release any personal data to you.
• Rectification or erasure. You have the right to request that we rectify or delete any personal data that we hold about you (unless we have the legal right or obligation to retain it).
• Restriction. You have the right to restrict your use of personal information if the data is inaccurate, our use of the information is unlawful or if we no longer need to use the data for the purposes for which we hold it.
• Change of preferences. You can change your data processing preferences at any time. For example, if you have given your consent to direct marketing, but have changed your mind, you can opt out of receiving marketing communications by contacting us using the details provided below or clicking the “unsubscribe” link in any communication you receive.
• Automated decision making. If you have any questions in respect of our automated decision-making processes or the accuracy of them, please let us know, or to change your preferences, please see above.
• Data portability. You have the right to obtain personal data we hold about you, in a structured, electronic format, and to transmit such data to another data controller, where this is (a) personal data which you have provided to us and (b) if we are processing that data on the basis of your consent (such as your marketing preference information) or to perform a contract with you (such as to manage your online account).
• Complaints. If for any reason you are not happy with the way that we have handled your personal data, please contact us. If you are still not happy, you have the right to make a complaint to the Information Commissioner’s Office.
To exercise any of the rights mentioned above, please send us an email to info@myrtofyllo.gr.
If you ask us to stop processing your personal information in a certain way or erase your personal information, and this type of processing or information is needed to facilitate your use of the Website or is required to enable us to provide you with a service (such as to manage your online account), you may not be able to use the Website or the service as you did before.
This does not include your unsubscribe from our promotional material, something you may request at any time without restriction.
Please allow at least 3 working days for your request to be actioned.
The rights mentioned above do not extend to non-personal data
reCAPTCHA
We use the reCAPTCHA service provided by Google Inc. (Google) to protect your submissions via internet submission forms on this site. This plugin checks if you are a person in order to prevent certain website functions from being (ab)used by spam bots (particularly comments). This plugin query includes the sending of the IP address and possibly other data required by Google for the Google reCAPTCHA service. For this purpose your input will be communicated to and used by Google. However, your IP address is previously truncated by Google within member states of the European Union or in other states which are party to the agreement on the European Economic Area and is, as such, anonymized. Only in exceptional cases is a full IP address transmitted to a Google server in the United States and truncated there. On behalf of the operator of this website, Google will use this information to evaluate your use of this service. The IP address provided by reCaptcha from your browser shall not be merged with any other data from Google. This data collection is subject to the data protection regulations of Google (Google Inc.). For more information about Google’s privacy policy, please visit: https://www.google.com/intl/en/policies/privacy/ By using the reCAPTCHA service, you consent to the processing of data about you by Google in the manner and for the purposes set out above.
CHANGE OF PRIVACY POLICY
We will notify you of changes to this Privacy Policy by posting the amended terms on the Website.
If you do not agree to the new terms of this Privacy Policy, you should stop using the Website, and if you are a registered user, you may cancel your account with us within the thirty (30) day period by contacting us at info@myrtofyllo.gr. Your account will be closed and you will not be bound by the new terms. You may also ask us to delete your information (as mentioned above).
Otherwise, continued use of the Website after the effective date of changes constitutes acceptance of the new terms of this Privacy Policy.
CONTACT US
We are always happy to hear from our customers. If you have any questions regarding our privacy policy, would like us to stop using your information, would like to exercise your rights as stated above or have a complaint, then please get in touch.
You can contact us at +30 6972623314 or via e-mail at info@myrtofyllo.gr