Privacy Policy
DATA PROTECTION DECLARATION
1) INFORMATION ON THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER
1.1
We are pleased that you are visiting our website and thank you for your interest. In the following, we will inform you about the handling of your personal data when you use our website. Personal data are all data with which you can be personally identified.
1.2
The controller responsible for data processing on this website, within the meaning of the General Data Protection Regulation (GDPR), is:
The Smith's Sisters
The controller responsible for the processing of personal data is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data.
Contact:
support@smithssisters-asheville.com
1.3
For security reasons and to protect the transmission of personal data and other confidential content (e.g. orders or enquiries), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the character string “https://” and the lock symbol in your browser line.
2) DATA COLLECTION WHEN VISITING OUR WEBSITE
When using our website for informational purposes only, we only collect the data that your browser transmits to our server (“server log files”):
-
Visited website
-
Date and time at the time of access
-
Amount of data sent in bytes
-
Source/reference from which you reached the page
-
Browser used
-
Operating system used
-
IP address (if applicable, in anonymized form)
Processing is carried out in accordance with Art. 6 para. 1 lit. f GDPR based on our legitimate interest in improving website stability and functionality.
3) COOKIES
We use cookies to make your visit attractive and to enable certain functions. Cookies may be session cookies or persistent cookies.
Processing takes place in accordance with Art. 6 para. 1 lit. b GDPR or Art. 6 para. 1 lit. f GDPR.
You can control cookies via your browser settings. Please note that restricting cookies may limit website functionality.
4) CONTACTING US
When contacting us (e.g. via contact form or email), personal data is collected solely for the purpose of processing your request.
Legal basis:
-
Art. 6 para. 1 lit. f GDPR
-
Art. 6 para. 1 lit. b GDPR (if contract-related)
5) DATA PROCESSING FOR CUSTOMER ACCOUNTS & CONTRACTS
Personal data is processed in accordance with Art. 6 para. 1 lit. b GDPR for contract execution.
Customer accounts may be deleted at any time upon request.
6) USE OF DATA FOR DIRECT ADVERTISING
6.1 Newsletter Subscription
Newsletter registration uses a double opt-in procedure.
Legal basis: Art. 6 para. 1 lit. a GDPR (consent)
Unsubscribe is possible at any time.
6.2 Newsletter to Existing Customers
Promotional emails may be sent based on legitimate interests (Art. 6 para. 1 lit. f GDPR).
You may object at any time.
7) DATA PROCESSING FOR ORDER HANDLING
7.1
Personal data is forwarded to shipping and payment partners strictly for order fulfillment.
Legal basis: Art. 6 para. 1 lit. b GDPR.
7.2 Payment Providers
Payments may be processed via third-party providers such as:
-
PayPal
-
SOFORT (Klarna Group)
Processing is governed by their respective privacy policies.
8) REVIEW / VALUATION REMINDERS
Review reminder emails are only sent where legally permitted or based on consent.
9) SOCIAL MEDIA PLUGINS
Social media features may be integrated using privacy-protective solutions.
10) ONLINE MARKETING
Online advertising and tracking technologies may be used in accordance with applicable legal bases (consent or legitimate interest).
11) WEB ANALYTICS
Analytics services (such as Google Analytics with IP anonymization) may be used for statistical purposes.
12) RETARGETING / REMARKETING
Remarketing technologies (e.g. Facebook / Google Ads) may be used where legally permitted.
13) RIGHTS OF THE DATA SUBJECT
You have rights under Art. 15–21 GDPR, including:
-
Right of access
-
Right to erasure
-
Right to restriction
-
Right to object
-
Right to lodge a complaint
14) DATA RETENTION
Personal data is stored only as long as necessary for legal, contractual, or operational purposes.
Controller Contact for Privacy Matters