Customer Privacy Policy
Heys EU GmbH is committed to protecting the privacy of our customers. This Privacy Policy outlines how we collect, use, and safeguard your personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable EU privacy laws.
1. Information We Collect
We collect the following types of personal data:
1.1 Information You Provide Directly
Account Information: Name, email address, phone number, billing and shipping addresses, and password.
Payment Information: Credit/debit card details or other payment methods (processed securely by our payment provider; we do not store your full payment details).
Order Details: Purchase history, product preferences, and any returns or exchanges.
Customer Support Interactions: Details you provide when contacting our support team, such as inquiries, complaints, or other communications.
1.2 Information Collected Automatically
Device Information: IP address, browser type, operating system, and device identifiers.
Usage Data: Pages visited, time spent on our website, clicks, and navigation patterns.
Cookies and Tracking Technologies: We use cookies to enhance your experience, analyze usage, and provide personalized recommendations. For more details, see our Cookie Policy.
1.3 Information From Third Parties
We may receive information from:
Social Media Platforms: If you interact with our accounts or use social login.
Marketing Partners: To improve targeting and analytics.
2. How We Use Your Information
We use your personal data for the following purposes:
2.1 To Provide Our Services
Process and deliver your orders.
Manage your account.
Provide customer support.
2.2 For Marketing and Personalization
Send promotional emails and offers (only with your consent).
Personalize product recommendations and advertisements.
Conduct surveys and obtain feedback to improve our services.
2.3 For Legal and Administrative Purposes
Comply with legal obligations (e.g., tax and accounting regulations).
Prevent fraud, abuse, or other illegal activities.
Enforce our Terms and Conditions.
3. Sharing Your Information
We only share your data with third parties under the following circumstances:
3.1 Service Providers
We engage trusted third-party vendors to perform tasks such as payment processing, order fulfillment, and marketing. These providers are contractually obligated to handle your data securely and in compliance with GDPR.
Your data is stored through our e-commerce platform provider’s data storage, databases, and general application. Payment gateways adhere to the Payment Card Industry Data Security Standard (PCI-DSS), ensuring secure handling of credit card information.
3.2 Legal Obligations
We may disclose your data when required to comply with legal obligations, enforce agreements, or protect our rights.
3.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your personal data may be transferred to the new entity, subject to the same protections outlined in this policy.
4. Your Rights
Under the GDPR, you have the following rights:
Access: Request a copy of the personal data we hold about you.
Correction: Correct any inaccuracies in your data.
Erasure: Request deletion of your data, subject to legal or contractual obligations.
Restriction: Restrict the processing of your data under certain conditions.
Portability: Receive your data in a structured, commonly used, and machine-readable format.
Objection: Object to data processing for direct marketing or legitimate interests.
Withdraw Consent: Withdraw your consent at any time where processing is based on consent.
To exercise your rights, contact us at Service.EU@heys.com. We will respond within one month, as required by law.
5. Data Retention
We retain your data only as long as necessary to:
Fulfill the purposes outlined in this policy.
Comply with legal, tax, and accounting requirements.
Resolve disputes and enforce agreements.
Your purchase transaction data is stored only as long as necessary to complete the transaction and is then deleted unless required by law.
6. Data Security
We implement technical and organizational measures to protect your data from unauthorized access, alteration, disclosure, or destruction. This includes encrypting sensitive information (e.g., credit card data) using secure socket layer (SSL) technology and AES-256 encryption. While no method of transmission or storage is 100% secure, we adhere to PCI-DSS standards and implement additional generally accepted industry practices.
7. International Data Transfers
If your data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards, such as standard contractual clauses, are in place to protect your information. This includes ensuring third-party service providers comply with applicable data protection regulations.
8. Cookies and Tracking Technologies
Our website uses cookies to enhance user experience and provide functionality. Examples include session cookies to store session-specific data, persistent cookies for site analytics, and cart cookies to remember your shopping preferences. You can manage or disable cookies through your browser settings. For more information, see our Cookie Policy.
9. Changes to This Privacy Policy
We may update this policy periodically. Any changes will be posted on this page, and where appropriate, notified to you by email if required. Please review this policy regularly to stay informed.
10. Contact Us
If you have any questions or concerns about this Privacy Policy, please contact us at:
Heys EU GmbH
Email: Service.EU@heys.com
Thank you for trusting us with your data. Your privacy is our priority.