PRIVACY POLICY

1) Information on the collection of personal data and contact details of the responsible party

1.1 We are pleased that you are visiting our website and thank you for your interest. The following explains how we handle your personal data when you use our website. Personal data is all data with which you can be personally identified.
1.2 The controller for data processing on this website within the meaning of the GDPR is Elaine & Theo. The controller is the natural or legal person who alone or jointly with others decides on the purposes and means of the processing of personal data. Contact: contact@elainetheojewels.com.
1.3 For security and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries), this website uses SSL/TLS encryption. You can recognize an encrypted connection by “https://” and the lock symbol in your browser.

2) Data collection when visiting our website

If you use our website for information purposes only, we only collect data that your browser transmits to our server (server log files):

  • The website visited

  • Date and time of access

  • Amount of data sent in bytes

  • Referrer URL

  • Browser used

  • Operating system used

  • IP address (possibly anonymized)

Processing is based on Art. 6(1)(f) GDPR on our legitimate interest in improving stability and functionality. Data is not passed on or used otherwise. We reserve the right to check server logs subsequently if there are concrete indications of illegal use.

3) Cookies

We use cookies to make visits more attractive and enable certain functions. Session cookies are deleted after closing the browser; persistent cookies remain and may recognize your browser on the next visit. If cookies are set, they may process user information such as browser, location data, and IP addresses. Persistent cookies are deleted after their set lifetime.

Some cookies simplify orders by saving settings (e.g., cart contents). If personal data is processed by cookies we implement, processing occurs per Art. 6(1)(b) GDPR to perform a contract or Art. 6(1)(f) GDPR for our legitimate interests in optimal website functionality and a user-friendly experience.

We may work with advertising partners that place third-party cookies. If so, you will be informed below about each partner’s cookies and scope of data.

You can configure your browser to be informed about cookies and decide individually whether to accept them or to exclude acceptance in certain cases or in general. Help pages:
Internet Explorer: https://support.microsoft.com/de-de/help/17442/windows-internet-explorer-delete-manage-cookies
Firefox: https://support.mozilla.org/de/kb/cookies-erlauben-und-ablehnen
Chrome: https://support.google.com/chrome/answer/95647
Safari: https://support.apple.com/kb/ph21411
Opera: https://help.opera.com/en/latest/web-preferences/#cookies
If you do not accept cookies, website functionality may be limited.

4) Contacting us

When you contact us (e.g., via form or email), personal data is collected as visible in the form fields. Data is used exclusively to answer your request and for related technical administration. Legal basis: Art. 6(1)(f) GDPR (legitimate interest). If the contact aims to conclude a contract, Art. 6(1)(b) GDPR applies. Data is deleted once the request is conclusively handled unless statutory retention applies.

5) Data processing when opening a customer account and for contract execution

Per Art. 6(1)(b) GDPR, we collect and process personal data provided to execute a contract or open an account. Required fields are shown in the forms. You can request deletion of your account at any time via contact@elainetheojewels.com. We store and use data to process the contract. After completion, data is restricted for tax/commercial retention and deleted after those periods unless you consent to further use or we are legally permitted to retain it.

6) Use of your data for direct marketing

6.1 Newsletter registration
If you register, we send offers by email. Only your email is mandatory. We use double opt-in. By confirming, you consent per Art. 6(1)(a) GDPR. We log IP, date, and time of signup. You can unsubscribe at any time via the link in the newsletter or by emailing contact@elainetheojewels.com.

6.2 Newsletter to existing customers
If you provided your email during a purchase, we may email offers for similar goods per Art. 6(1)(f) GDPR (legitimate interest in direct marketing). You can object at any time at no more than the basic transmission cost by emailing contact@elainetheojewels.com.

7) Data processing for order processing

7.1 Shipping and payments
We transmit necessary personal data to the carrier for delivery and to the payment institution for payment processing, per Art. 6(1)(b) GDPR.

7.2 Payment service providers

8) Review reminder

With your express consent per Art. 6(1)(a) GDPR, we may send a one-time email reminder to review your order. You can revoke consent anytime via contact@elainetheojewels.com.

9) Use of social media: social plugins (Shariff)

9.1 Facebook
Buttons are integrated as HTML links (Shariff). No connection to Facebook servers occurs until you click. Privacy: https://www.facebook.com/policy.php

9.2 Google+
Integrated as HTML links. Privacy: https://www.google.com/policies/privacy/

9.3 Instagram
Integrated as HTML links. Privacy: https://help.instagram.com/155833707900388/

10) Online marketing

10.1 DoubleClick by Google
We use DoubleClick cookies for relevant ads and conversion measurement per Art. 6(1)(f) GDPR. Opt-out settings: https://www.google.de/settings/ads and http://www.aboutads.info

10.2 Google Ads conversion tracking
A conversion cookie is set when you click our Google ad. Expires typically after 30 days. Opt-out: https://www.google.de/policies/privacy/ and https://www.google.com/settings/ads/plugin

11) Web analysis services

Google Analytics (Universal Analytics) with IP anonymization “_anonymizeIp()”. Legal basis: Art. 6(1)(f) GDPR. Opt-out add-on: https://tools.google.com/dlpage/gaoptout
Mobile/alt opt-out requires setting an opt-out cookie per browser/domain. More info: https://support.google.com/analytics/answer/2838718

12) Retargeting/Remarketing/Recommendation advertising

Facebook Pixel
Used with your express consent per Art. 6(1)(a) GDPR for ad effectiveness and optimization. Privacy: https://www.facebook.com/about/privacy/
Google Ads Remarketing
Interest-based ads via cookie ID per Art. 6(1)(f) GDPR. Settings: https://www.google.com/settings/ads/onweb/ and http://www.aboutads.info

13) Rights of the data subject

You have the rights of access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), notification (Art. 19), data portability (Art. 20), withdrawal of consent (Art. 7(3)), and complaint to a supervisory authority (Art. 77).

Right to object (Art. 21 GDPR)
You may object at any time to processing based on Art. 6(1)(f) GDPR for reasons relating to your situation. If you object to direct marketing, we will stop processing for that purpose.

14) Duration of storage of personal data

Storage duration follows statutory retention periods. After expiry, data is deleted unless needed to fulfill or initiate a contract or we have a legitimate interest in continued storage.


Controller contact:
Elaine & Theo
Email: contact@elainetheojewels.com
Website: https://elainetheojewels.com