Privacy Policy
PRIVACY POLICY
In accordance with article 10 of Law 34/2002, of July 11, on Information Society Services and Electronic Commerce (hereinafter, the “LSSICE”), with article 13 of the Regulation (EU) 2016/679, of April 27, 2016, general data protection law (RGPD) and article 11 of the current Organic Law 3/2018, of December 5, on the Protection of Personal Data and guarantee of digital rights (LOPD) , in relation to the processing of your personal data, we inform you of the following:
Responsible for the treatment
MAMAKAY STUDIO
App. Barcelona Post Office (SPAIN)
Phone. +34 689 066 405
Email: info@mamakaystudio.com
Data typology
The data processed will be the following: name and surname, contact telephone number, email, Tax Identification Number (No.YoF) or Tax Identification Code (C.YoF), Company name, contact person, position/position, name and surname of the remaining users, accounting and tax information, and any other information necessary for the provision of the Service. In particular, data on bank accounts and means of payment will be subject to the data protection regulations mentioned in the heading and regulations on electronic means of payment (Royal Decree Law 19/2018 of November 23 on payment services and other urgent measures in financial matters).
The banking entity will be in charge of verifying the authenticity of the card and will be responsible for the protection of the User's data. In this way, the Company will at no time have the User's financial data, other than those that the entity provides: brand of the card used, country of the card and an identifier provided to us by the bank that identifies the card.
All data requested during registration through the website www.mamakaystudio.com are mandatory, since they are necessary to provide optimal service to the User.
Purpose of the treatment
The operations planned to carry out the treatment are:
Maintain a commercial relationship with the User and promote the sale and transportation of artisanal clothing products.
Administrative and billing management of the service contracted by the User to MAMAKAY STUDIO.
Sending commercial advertising communications, by e-mail, SMS, instant messaging or any other electronic or physical means, present or future, that makes it possible to make commercial communications in relation to the services and promotions offered by MAMAKAY STUDIO.
The type of processing of the User's personal data may consist of collection, structuring, conservation, consultation, deletion, communication, registration, modification, extraction, limitation and destruction.
Legitimation
The legal basis for data processing is the User's consent:
- Request, use and contracting of the Service for correct management of the requested service.
- Legitimate interest of the person responsible in the provision of the service contracted by the User.
- Compliance with legal obligations applicable to the transfer of data to public organizations or authorities, whenever required in accordance with legal and regulatory provisions.
- Processing of bank data and, where applicable, transfer to the banking entity to manage the electronic payment of the Service.
Duration
The data will be kept for the duration of the contractual and commercial relationship between MAMAKAY STUDIO and the User. Once the Services are completed, the data will be deleted at the request of the User unless it is necessary to retain it to comply with legal obligations.
Recipients
Except legal obligation, MAMAKAY STUDIO expressly informs and guarantees users that their personal data will not be transferred to third parties, except when express, informed and unequivocal consent is previously obtained from the interested parties for said transfer. Exceptionally, data may be transferred to companies or individuals directly linked to MAMAKAY STUDIO or that provide services to it.
In the case of data transfer to third parties that provide services to MAMAKAY STUDIO, it will be regulated by a data processor contract with the aim of guaranteeing that they will process the personal data in accordance with the provisions of current legislation.
International Transfers
International data transfers are made to third countries outside the European Union, to the following companies that provide services to the Company:
Shopify Inc.
151 O’Connor Street, Ground floor
Ottawa, ON K2P 2L8
Canada
The legal conditions for these transfers comply with the requirements of the European Data Protection Regulation.
You can review the legal conditions at: https://www.shopify.com/legal/privacy
Rights that assist the User
In accordance with the LOPD and the RGPD, the User may exercise their rights in relation to the data collected by the Company:
Access: right to request and obtain free information on the data undergoing processing, the origin and the communications made or to be made.
Rectification: right to modify inaccurate or incomplete data.
Cancellation: right to delete inappropriate or excessive data.
Opposition: right to prevent the processing of data when consent for processing is not necessary due to a legitimate and well-founded reason, in the case of files whose purpose is to carry out advertising and commercial prospecting activities, when The purpose of the processing is to adopt a decision regarding the affected person and based solely on automated processing of personal data.
Portability: right to receive personal data in a structured, commonly used and machine-readable way to transmit it to another RT.
Profile evaluations: the right is provided not to be subject to a decision based solely on automated processing (including profiling) that produces legal effects on the affected party or significantly affects them.
Limitation: right to obtain limitation of data processing in the legally provided cases.
The exercise of rights will be in writing accompanied by a copy of the official document that identifies it addressed to the Data Controller. In case of disagreement with the treatment, you also have the right to file a claim with the supervisory authority (AEPD).
You can find forms for exercising your rights on the website of the Data Protection Agency (www.aepd.es).
Security measures
MAMAKAY STUDIO is complying with current regulations on data protection, and states that the data is processed in a lawful, loyal and transparent manner in relation to the interested party and adequate, relevant and limited to what is necessary in relation to the purposes for those who are treated.
MAMAKAY STUDIO guarantees that it has implemented appropriate technical and organizational policies to apply the security measures established by current data protection regulations, in order to protect the rights and freedoms of Users and has communicated to them the appropriate information to that they can exercise them. Likewise, it guarantees that the staff and their advisors gather the necessary knowledge in accordance with data protection regulations.
The personal data collected will be stored and managed in compliance with the duties of confidentiality that are required in response to the services offered, applying the computer security measures established in the applicable legislation to prevent access or improper use of the data, its manipulation, deterioration or loss.
In the unlikely event of suffering a “security breach” defined by the Control Authorities, such as any incident that causes the destruction, loss, accidental or illicit alteration of personal data transmitted, preserved or processed or when there is a communication or unauthorized access, MAMAKAY STUDIO will notify the AEPD and, where applicable, the User about the nature of the violation, the category and approximate number of interested parties and data records affected, the name and contact information of the DPD or, failing that, the person responsible. before the AEPD, the measures adopted or proposed to remedy the security violation, including, if applicable, the measures applied to reduce the negative effects.
The information provided by the User, their personal data, which are necessary for the provision of the services offered by MAMAKAY STUDIO, will be saved and managed in compliance with the duties of confidentiality that are required in response to the services offered. , applying the computer security measures established in the applicable legislation to prevent access or improper use of data, its manipulation, deterioration or loss.
COOKIE POLICY
What are cookies?
A cookie is a file that is downloaded to your computer when you access certain web pages or “cloud” platforms. Cookies allow, among other things, to store and retrieve information about the browsing habits of a user or their equipment and, depending on the information they contain and the way in which they use their equipment, they can be used to recognize the user.
Types of cookies used by this website:
Technical cookies: These are those necessary for navigation and the proper functioning of the platform. They allow, for example, to control traffic and data communication, access restricted access parts, use security elements, store content to be able to broadcast videos or share content through social networks.
Analysis cookies: These are those that are processed by us or by third parties, they allow us to quantify the number of users and thus carry out the measurement and statistical analysis of the use made by users of the service offered. To do this, the navigation on the platform is analyzed in order to improve it.
Session cookies: these are temporary cookies that remain in your browser's cookie file until you leave the website, so none are recorded on the user's hard drive. The information obtained through these cookies is used to analyze traffic patterns on the web. Ultimately, this allows us to provide a better experience to improve content and ease of use.
We use the following cookies:
|
Cookie |
Name |
Purpose / More information |
Maturity |
|
Google Analytics |
_ga |
Used to distinguish users. |
2 years |
|
_gat |
Used to differentiate between different tracking objects created in the session. |
Session |
|
|
_gid |
Used to distinguish users by ID. |
24 hours |
|
|
_gat_gtag_UA{ID} |
Used to identify the Analitycs user by a UA. |
24 hours |
|
|
NID |
They store preferences and other information. It serves, for example, to compare that the user who is using the browser is a person and not a bot. |
6 months |
|
|
1P_JAR |
Transfer data to Google. |
1 week |
|
|
|
|
|
|
We also use some of our online store manager's own Cookies, which you can consult at this link: https://www.shopify.com/legal/cookies
Delete or block cookies:
You can allow, block or delete cookies installed on your computer by configuring the options of the browser installed on your computer.
- Firefox: http://support.mozilla.org/es/kb/habilitar-y-deshabilitar-cookies-que-los-sitios-we
- Chrome: http://support.google.com/chrome/bin/answer.py?hl=es&answer=95647
- Internet Explorer: http://windows.microsoft.com/es-es/windows7/how-to-manage-cookies-in-internet-explorer-9
- Safari: http://support.apple.com/kb/ph5042
- Opera: http://help.opera.com/Windows/11.50/es-ES/cookies.html