Below you can read how we process your data, where we save it, what security techniques we use and to whom the data is visible.
EMAIL LIST AND MAILING LISTS
For our regular business email, we use the email services of the webhost. This party has implemented fitting technical and organisational measures to prevent misuse, loss or corruption of your data. The web host does not have access to our mailbox and we treat our email-traffic confidentially.
ConvertKit is established outside the EU.
PAYMENT PROCESSORS & TRANSPORT AND LOGISTICS
If you place an order with us it is our responsibility to have your order successfully delivered to you. For a successful delivery it is important that we share you name, address and residential details with the delivery services. All delivery services uses this information with the sole purpose to carry out the agreement of delivery. In case of the delivery service is hiring subcontractors, they will share said information with these parties. Re-Art, the fine art print producer, may receive your name, address and residential details for they carefully make the product ready for transport.
We may also obtain information on your payment from your bank or credit card company. For this purpose, we use your payment details, phone number, invoice address, email address and unique payment id number, name and address details, ip address and birth date. We do this on the basis of your consent. We store this information until your order has been completed and seven years thereafter (the legal retention period).
To handle your orders, we work together with:
Producer of the products Re-Art
Our shipping providers PostNL, TNT, DHL, UPS and FedEx
Our payment providers Paypal and Mollie
Of these parties, Paypal, DHL, UPS and FedEx are established outside the EU.
Certain features of our service require you to register beforehand. You will have to provide some information about yourself and choose a username and password for the account that we will set up for you.
For this purpose, we use your name and address details, email address, phone number and invoice address. We do this on the basis of your consent. We store this information until you close your account.
We will retain this data so that you do not have to re-enter it every time you visit our website, and in order to contact you in connection with the execution of the agreement, invoicing and payment, and to provide an overview of the products and services you have purchased from us.
We will not publish your customer data.
Except for the parties mentioned, we do not under any circumstance provide your personal data to other companies or organisations, unless we are required to do so by law (for example, when the police demands access to personal data in case of a suspected crime).
Our website features social media buttons. These buttons are used by the providers of these services to collect your personal data.
The first time you visit our service, we will show you a notification explaining our cookies and ask for your permission for the use of these cookies.
We made arrangements with other parties who place cookies on our website. Nevertheless, we cannot fully control what they are doing with their cookies, so please read their privacy statements as well.
We use Google Analytics to track visitors on our website and to get reports about how visitors use the website. We accepted the data processing agreement from Google. We do allow Google to use information obtained by Analytics for other Google services.
We take security measures to reduce misuse of and unauthorised access to personal data. We take the following measures in particular:
Access to personal data requires the use of a username and password
We take physical measures to protect access to the systems in which the personal data is stored
We make use of secure connections (Secure Sockets Layer of SSL) to encrypt all information between you and our website when entering your personal data
PURPOSE OF DATA PROCESSING
General purpose of data processing
We use your data with the sole purpose of providing you with our services. This means that the goal of processing this data stands in direct relation to the assignment or task that you offer us. We do not use this data for (addressed) marketing purposes. If you share information with us and we use this information to – not based on a request – contact you at a later time, we will first ask for explicit consent. Your data is not shared with third parties, with any other purpose than to fulfil accountancy and administrative obligations. These third parties are all obligated to a duty of confidentiality based on the agreement we have with them, an oath or legal obligation.
Automatically collected data
Information automatically gathered by our website is processed with the sole purpose of providing you with and/or to further improve our services. This information (for instance your IP address (anonymised), web browser and operating system) is not personal information.
We store your data for as long as you are a client with us. This means that we maintain and keep your client profile until you make it known to us that you no longer desire to use our services. Such a message also functions as a request to be forgotten. We are required to keep invoices with your (personal) information due to relevant administrative obligations, this information is safely stored for as long as the relevant term for these obligations has not yet passed. Personnel no longer has access to your client profile and any documents made because of your assignment or task.
Based on valid Dutch and European law you, as a concerning party, have certain rights when it comes to
Being informed on which personal data we have and what we are using it for; Inspection of the personal data that we keep from you; Having incorrect data corrected; Request to delete outdated personal data; Revoke your consent; Object to certain uses.
Please note that you always make clear who you are, so that we can assure that we do not modify or remove the data from the wrong person.