1.Basic provisions
1.1
The controller of personal data pursuant to Art. 4(7) of Regulation (EU) 2016/679 of the European Parliament and of the Council on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (hereinafter: "GDPR") is Bc. Ladislav Pípal, IČ 72158280 with registered office at Nová Ves 40, Čížová 39701, phone: +420 799 517 735, email: info@eros-veneziani.eu (hereinafter: "controller").
1.2
Personal data means any information about an identified or identifiable natural person.
1.3
The controller has not appointed a data protection officer, as it is not legally required to do so.
2.Sources and categories of processed personal data
2.1
The controller processes personal data that you provided when ordering goods or registering.
2.2
The following are processed in particular: first name, last name, address, e-mail, telephone, billing and payment details.
3.Legal basis and purpose of processing personal data
3.1
The legal grounds for processing are:
- performance of the contract between you and the controller (Art. 6(1)(b) GDPR),
- the controller's legitimate interest in direct marketing (Art. 6(1)(f) GDPR),
- your consent to receiving commercial communications (Art. 6(1)(a) GDPR).
3.2
The purposes of processing are:
- processing your order and exercising the rights and obligations arising from the contract,
- sending commercial communications and newsletters (if you have given your consent).
3.3
No automated individual decision-making or profiling takes place.
4.Data retention period
4.1
The controller retains personal data:
- for the duration of the contractual relationship and no longer than 10 years after its termination (in accordance with the obligation to retain accounting documents),
- for marketing purposes no longer than 5 years from the last interaction or until consent is withdrawn.
4.2
After this period expires, personal data will be securely deleted.
5.Recipients of personal data
5.1
Recipients of personal data are in particular:
- carriers (postal services, parcel delivery companies, pickup-point networks, etc.),
- payment service providers and banks,
- accountants and tax advisors.
5.2
The controller does not intend to transfer personal data to a third country (outside the EU) or to an international organization.
6.Your rights
6.1
You have the right to:
- access your personal data (Art. 15 GDPR),
- rectification or erasure (Art. 16 and 17 GDPR),
- restriction of processing (Art. 18 GDPR),
- data portability (Art. 20 GDPR),
- object to processing (Art. 21 GDPR),
- withdraw your consent to processing at any time, in writing or by e-mail.
6.2
You also have the right to lodge a complaint with the Office for Personal Data Protection (www.uoou.cz).
7.Security conditions
7.1
The controller has adopted technical and organizational measures to protect data.
7.2
Only persons authorized by the controller have access to personal data.
8.Cookies and analytics
8.1
The website uses cookies. These are small text files that help ensure the functionality of the website and analyze its use.
8.2
We mainly use:
- technical cookies (necessary for the function of the online store and shopping cart),
- analytical cookies (e.g. Google Analytics),
- marketing cookies (e.g. Heureka, Facebook Pixel) – only with your consent.
8.3
You can refuse or restrict the use of cookies in your browser.
9.Final provisions
9.1
By submitting your order, you confirm that you are familiar with this policy and that you accept it in full.
9.2
The controller is entitled to change this policy. It will publish the new version on its website and, in the event of significant changes, will inform you by e-mail.
These terms take effect on 17. 8. 2025
