Processing of personal data
Personal data is processed by Dekovital OÜ (registration code 14855024), address: Fosforiidi 10, 74114 Maardu. Dekovital OÜ transfers the personal data necessary for making payments to the authorized processor Paysera.
Processed personal data
First and last name;
Phone number;
Email;
Cost of goods;
Bank account number.
Purpose of processing personal data
Personal data is used to manage customer orders and deliver goods.
Purchase history data (purchase date, product, quantity, customer data) is used to provide an overview of purchased goods and services, as well as to analyze customer preferences.
The bank account number is used to return payments to the client. Personal data such as email address, telephone number, customer name is processed to resolve issues related to the provision of goods and services (customer support). The IP address of the user of the online store or other network identifiers are processed to provide the services of the online store as an information society, as well as to compile statistics on Internet use.
Legal basis
The processing of personal data is carried out for the purpose of fulfilling the contract concluded with the client. The processing of personal data is carried out to comply with legal obligations (for example, accounting and consumer dispute resolution).
Recipients to whom information is transmitted
Personal data is transmitted to the customer support service of the online store to manage purchases and purchase history and resolve customer problems.
The name, telephone number and email address are transmitted to the client's chosen transport service provider. If this is cargo delivered by courier, then in addition to contact information, the client’s address is also transmitted.
Personal data is transferred to the accountant provided by the service provider.
Personal data may be transferred to information technology service providers if this is necessary to ensure the functionality of the online store or data hosting.
Security and data access
Personal data is stored on zone.ee servers located in the territory of a member state of the European Union or countries included in the economic zone of the European Union. Data may be transferred to countries whose level of data protection has been assessed as sufficient by the European Commission, as well as to US companies that are members of the Privacy Shield.
Employees of the online store have access to personal data, who can review personal data to resolve technical issues related to the use of the online store, as well as to provide customer support services.
The online store applies appropriate physical, organizational and information technology security measures to protect personal data from accidental or unlawful destruction, loss, modification or unauthorized access and disclosure.
The transfer of personal data to authorized processors of the online store (for example, a transport service provider and data hosting) is carried out on the basis of agreements concluded with the online store and authorized processors. Authorized processors are required to ensure appropriate security measures when processing personal data.
Correction and familiarization with personal data
You can view personal data and make adjustments in the online store user profile. If the purchase was made without a user account, then personal data can be viewed through the support service.
Revocation of agreement
If the processing of personal data is carried out on the basis of the client’s consent, the client has the right to withdraw consent by notifying the support service by email.
Storage
When an online store customer's account is closed, personal data is deleted, except when such data needs to be stored for accounting purposes or to resolve consumer disputes.
If a purchase in an online store was made without a customer account, then the purchase history is stored for three years. In the case of disputes related to payments and consumer disputes, personal data is stored until the request is fulfilled or until the statute of limitations expires.
Personal data required for accounting purposes is stored for seven years.
Removal
To delete personal data, you must contact support by email.
A request for deletion will be answered no later than a month and the period for data deletion will be specified.
Broadcast
A request for the transfer of personal data submitted by email will be answered no later than within a month. The support service establishes the identity and informs about the personal data to be transferred.
Direct newsletters
The email address and telephone number are used to send newsletter messages if the customer has given their consent. If the client does not want to receive mailings, then they should select the appropriate link in the footer of the email or contact support.
If personal data is processed for newsletter purposes (profiling), the client has the right to object at any time to the initial and further processing of his personal data, including when conducting profiling related to direct marketing tellimus@diveevo-shop.ee.
Dispute Resolution
Resolution of disputes related to the processing of personal data is carried out through the customer support service (tellimus@diveevo-shop.ee). The supervisory authority is the Estonian Data Protection Inspectorate (info@aki.ee).