Privacy Policy
1. Introduction
Zelmarondroz ("we," "our," or "us") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website zelmarondroz.world and use our services.
We process your personal data in compliance with the General Data Protection Regulation (GDPR) (EU) 2016/679 and other applicable data protection laws.
2. Data Controller
The data controller responsible for your personal data is:
Zelmarondroz
Saaristonkatu 4, 90100 Oulu, Finland
Email: contactuse@zelmarondroz.world
3. Personal Data We Collect
We collect personal data that you voluntarily provide to us when you:
- Place an order through our website
- Contact us via email or contact forms
- Subscribe to our newsletter
- Browse our website
3.1 Information You Provide
- Name and contact information (email address, phone number)
- Delivery address
- Payment information (processed by secure third-party payment providers)
- Communication preferences
- Any other information you choose to provide
3.2 Automatically Collected Information
- IP address
- Browser type and version
- Device information
- Pages visited and interaction data
- Referring website
- Date and time of visits
4. Purposes of Processing
We process your personal data for the following purposes:
- Order Processing: To process and fulfill your orders, including delivery and payment processing
- Customer Service: To respond to your inquiries and provide customer support
- Legal Compliance: To comply with applicable laws and regulations
- Website Improvement: To analyze website usage and improve our services
- Marketing: To send promotional communications (with your consent)
- Security: To protect our website and prevent fraud
5. Legal Basis for Processing
We process your personal data based on the following legal grounds under GDPR:
- Contract Performance (Art. 6(1)(b)): Processing necessary to fulfill orders and provide services
- Consent (Art. 6(1)(a)): For marketing communications and non-essential cookies
- Legitimate Interests (Art. 6(1)(f)): For website analytics and security
- Legal Obligation (Art. 6(1)(c)): For compliance with tax and accounting requirements
6. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:
- Order data: 7 years (for tax and accounting purposes)
- Customer communication: 3 years after last contact
- Marketing data: Until you withdraw consent or unsubscribe
- Website analytics: 26 months
7. Data Sharing
We may share your personal data with:
- Service Providers: Payment processors, delivery services, and hosting providers
- Legal Authorities: When required by law or to protect our rights
We do not sell your personal data to third parties. All third-party service providers are contractually obligated to protect your data and process it only on our behalf.
8. International Transfers
Your personal data may be transferred to and processed in countries outside the European Economic Area (EEA). When this occurs, we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions by the European Commission
- Other legally approved transfer mechanisms
9. Your Rights
Under GDPR, you have the following rights regarding your personal data:
- Right of Access: Request a copy of your personal data
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your data ("right to be forgotten")
- Right to Restriction: Request limitation of processing
- Right to Data Portability: Receive your data in a structured format
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent at any time
To exercise any of these rights, please contact us using the details provided below.
We will respond to your request without undue delay and in any event within one month of receiving it. This period may be extended by two further months where necessary, taking into account the complexity and number of requests. In such a case, we will inform you of any extension together with the reasons for the delay.
10. Data Security
We implement appropriate technical and organizational measures to protect your personal data, including:
- SSL/TLS encryption for data transmission
- Secure server infrastructure
- Access controls and authentication
- Regular security assessments
- Employee training on data protection
11. Cookies
Our website uses cookies to enhance your browsing experience. For detailed information about the cookies we use, please see our Cookie Policy.
12. Complaints
If you believe we have not handled your personal data properly, you have the right to lodge a complaint with a supervisory authority. In Finland, the supervisory authority is:
Office of the Data Protection Ombudsman
Lintulahdenkuja 4, 00530 Helsinki, Finland
Website: tietosuoja.fi
13. Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated revision date. We encourage you to review this policy periodically.
15. Children’s Data
Our Website and services are not directed to children under the age of 16, and we do not knowingly collect personal data from children under 16. In Finland, children who are at least 13 years of age may in some cases give consent to the processing of their personal data in relation to information society services; however, our products and marketing are aimed at adults.
If we become aware that we have collected personal data from a child contrary to applicable law, we will take steps to delete such data as soon as reasonably possible. If you believe that a child has provided us with personal data, please contact us using the details below.
14. Contact Us
If you have questions about this Privacy Policy or wish to exercise your rights, please contact us:
Zelmarondroz
Saaristonkatu 4, 90100 Oulu, Finland
Email: contactuse@zelmarondroz.world