PRIVACY POLICY

Our web address is: xxshock.com

WHAT PRIVACY DATA DO WE COLLECT?

1. INTRODUCTION

This Privacy Policy (hereinafter referred to as the "Policy") explains how XXSHOCK collects your personal data, uses and manages it.

XXSHOCK is committed to protecting and respecting your privacy.

Please read this Policy carefully, in order to find out why and how we collect your data, and how it will be used. with regard to the personal data we collect, XXSHOCK is the "data controller", that is, the entity that determines the purpose and manner in which personal data is processed (XXSHOCK hereinafter: "Controller").

If you wish to contact us regarding your personal data or this Policy, please use the below contact details of the Controller and/or person for the protection of personal data

Data of the Handler:

Business name: KODKUMA

Address: Koče Popovića 2, Belgrade

e-mail: [email protected] (availability: from 8:00 a.m. to 5:00 p.m.)

Contact details of the person for the protection of personal data:

Name and surname: Miloš Kozimirović

E-mail: [email protected] ; (availability: Monday-Friday from 11:00 a.m. to 1:00 p.m.).

2. HOW AND WHEN DO WE COLLECT YOUR PERSONAL DATA?

We collect your personal data when it is relevant for your needs as a consumer, or for our business (e.g. when you buy and/or order products and/or services from us, when you register for a loyalty program, when you subscribe to our newsletter ), when you complete customer surveys or give us feedback about our goods and services, etc.).

We generally receive your personal information directly from you, when you order certain products or services or fill out a certain form.

The legal basis for collecting data for the purpose of purchase is the purchase agreement, while the basis for collecting other data (data for loyalty programs, etc.) may be consent or fulfillment of legal obligations.

You can find more information about the situations and circumstances in which we collect your personal data in the section "What do we use your personal data for?" Remember that this is only information about the potential ways of using your personal data, which you may encounter when visiting our stores and websites, when shopping with us, or when using our services. In any case, you will receive clear information about the purpose of processing your data, and in some cases we will additionally need your express consent.

We will not use your personal information for marketing purposes, unless you tell us it's okay. If you would like us to send you details about our products, services, offers and promotions, please opt-in when joining the loyalty program. For more information, see the Marketing and Loyalty Program sections below. All your personal information is treated as confidential and is adequately protected by the Controller and/or our trusted partners (for more information, see the section: "Does the Controller share my data with third parties?" below).

3. WHAT DATA DO WE COLLECT DIRECTLY FROM YOU?

Common categories of information we collect from consumers are: name, address, contact email and phone, date of birth, preferred language, payment address, shipping address, financial information, including credit or debit card information, or other payment-related information, and which you specify when filling out the form on the www.xxshock.com site, i.e. paying on the www.xxshock.com site or when you communicate with us by phone or e-mail; Your past purchases of products and services, and other information you choose to share with us on a voluntary basis.

 

4. WHAT PRIVACY RIGHTS DO YOU HAVE?

Please note that at any time you have the right to request from the Operator:

  • to give you access to your personal data

You can ask the Controller for which purposes the data concerning you is used, as well as to access such personal data. In addition, you have the right to know the purpose of the processing, the categories of your personal data that we store, the third party or categories of third parties with whom your personal data is shared, the period during which we retain the data, as well as our source of data that we have not collected directly from you.

  • to give you a copy of the personal data we store

You can contact us if you want a copy of some or all of the personal data we have about you.

  • to request correction of incorrectly entered data and addition

We want to make sure that your personal information is accurate and up to date. You can ask us to correct or remove data that you believe is inaccurate or out of date. Data that you consider incomplete can be supplemented based on an additional statement.

  • to request deletion of your personal data

You can ask us to stop processing, or even to delete, the personal data we hold about you. If your personal information is necessary for the fulfillment of certain contractual obligations of the Manager towards you, the Manager may not be able to fulfill such contractual obligations. Likewise, if your personal data is required for the Controller to comply with certain legal obligations (eg tax regulations), your request cannot be resolved.

  • to limit the processing of your data by us and/or third parties, on certain processes, or completely

If you have disputed the accuracy of your data or it has been determined that the processing is illegal and you do not want the data to be deleted or we no longer need the personal data for the purpose of processing but you require it for the establishment, enforcement or defense of legal claims, or you have objected to the processing on the basis for reasons that the Controller considers legitimate, you have the right to request the restriction of the processing of your personal data.

  • to be notified of any deletion or correction and restriction of processing of your data, unless this is impossible or requires an excessive expenditure of time and resources
  • that for any data processing that is based on consent, you can withdraw consent at any time
  • to file a complaint about the way we handle your data

Remember that you have the right to object to the processing of your personal data based on legal grounds that the Controller considers legitimate. In addition, you have the right to object at any time to the processing of your personal data for the purpose of direct marketing, which includes profiling to the extent related to such direct marketing.

 

  • to demand that a decision made solely on the basis of automated processing, including profiling, is not applied to you, if that decision produces legal consequences for you or that decision significantly affects your position. This right does not apply if the decision is necessary for the conclusion or execution of the contract with the Operator.

The operator can opt for automated decision-making, including profiling, for the purpose of obtaining analytical and statistical data and for the purpose of improving its offers. If the Controller implements the mentioned method of data processing, he will inform you in advance about the logic used in this and the importance and consequences of that processing for you.

To exercise the aforementioned rights, please use the Controller's contact information listed in the "About this Privacy Policy" section.

 

If you are not satisfied with the way we collect or use your personal data, you always have the right to file an official complaint with the Commissioner for Information of Public Importance and Protection of Personal Data, in accordance with the law.

 

5. WHERE IS YOUR PERSONAL DATA STORED?

We store the personal data we collect about you in secure environments. Your personal information is protected from unauthorized access, disclosure, use, alteration or destruction by any organization or individual.

Certain data are still stored in paper form. The processed data is stored in the Controller's premises and IT systems, but sometimes we store the data on the servers of our trusted providers.

6. DOES THE MANAGER SHARE MY DATA WITH THIRD PARTIES?

Protecting your privacy is very important to the operator, therefore we will never share your personal data with a third party for purposes not described in this Policy.

In addition to the above, we may provide your personal data to our trusted partners who maintain our IT systems or who provide services to you on behalf of the Controller. For example, for marketing, financial or advertising purposes, to process payments, delivery, or to provide other services we provide in or outside the store. These service providers are, however, bound by the relevant agreements to use the data entrusted to them exclusively in accordance with our guidelines, and strictly for the purpose we have specified. We also oblige them to adequately protect your data and keep it confidential.

In some cases, your data may be processed outside of the Republic of Serbia and the European Union, by our partners based on agreements signed with such entities, which oblige them to treat your data with the use of special security measures, in everything in accordance with the regulations on in force in the Republic of Serbia and the countries of the European Union.

7. HOW LONG DOES THE MANAGER KEEP YOUR DATA?

The operator will keep your personal data until the specific purpose for which the data is processed is fulfilled. Data collected on the basis of consent are stored until the purpose is fulfilled, but at the latest until the consent is revoked.

Exceptionally, if the storage of certain data for a longer period is prescribed by law, that is, if it is necessary for the fulfillment of the legal obligations of the Controller, the Controller will be forced to store such data until the expiration of the deadlines prescribed by law, that is, the fulfillment of legal obligations.

You can learn more about the purpose and legal basis of personal data storage in the section "What do we use your personal data for?"

Final Provisions - Effectiveness and Changes to the Privacy Policy

This Policy enters into force on 01.05.2020. years.

The Privacy Policy will be subject to regular revisions, and we will post any updated version on this website.