Data privacy is of high importance for Aesthetic Stories and we want to be open and transparent with our processing of your personal data.
We therefore have a policy setting out how your personal data will be processed and protected.
The Amsterdam based company Aesthetic Stories (“Aesthetic Stories”), is the controller of the personal data you submit to us and responsible for your personal data under applicable data protection law.
For every specific processing of personal data we collect from you we will inform you whether the provision of personal data is statutory or required to enter a contract and whether it is an obligation to provide the personal data and possible consequences if you choose not to.
What do we do with your information?
When you purchase something from our store, as part of the buying and selling process, we collect the personal information you give us such as your name, address and email address.
When you browse our store, we also automatically receive your computer’s internet protocol (IP) address in order to provide us with information that helps us learn about your browser and operating system.
Email marketing (if applicable): With your permission, we may send you emails about our store, new products and other updates.
Why do we use your personal data?
I. Account information
We will use your personal data to create and manage your personal account in order to give you a personalized and relevant experience at Aesthetic Stories.
We will provide you with your order history and details around your orders and enable you to handle your account settings (including marketing preferences). We will also provide you with easy ways to maintain accurate and updated information such as contact details and payment information. Further we will enable you to save items in your shopping bag and offer you size recommendations on the products you’ve purchased from us.
In order to optimize your experience of Aesthetic Stories we will provide you with relevant information, recommend products, send you reminders of products left in your shopping bag and send you personalized offers. Also we process your navigation and browsing on our digital platforms. All these services are based on your previous purchases, shopping history, what you have clicked on, as well as the data you submitted to us through your account.
II. E-mail sign-ups
We will use your personal data to send you marketing offers, information surveys and invitations through e-mails, text messages, phone calls and postal mail.
What type of personal data do we collect?
We will always process your e-mail address and password that you submit to us when you sign up for a Aesthetic Stories account.
We will process following categories of personal data if you choose to provide it to us:
* Contact information such as name, address, telephone number
* Date of birth
* Account settings
* Encrypted payment card information
We will process the following categories of personal data if you make a purchase
* Order history
* Delivery information
* Payment history
We will also process the following categories of personal data connected to your cookies
* Click history
* Navigation and browsing history
How long do we save your data?
We will keep your data for as long as you have an active Aesthetic Stories account or as long as you are signed up for our email marketing campaigns. You have the right to terminate your account at any time or opt-out for our email marketing campaigns at any time, if you choose to do so your account will cease to exist and you are being considered inactive. We will keep your personal data in there if there are any legal requirements and if there is an open dispute.
We will consider you an inactive account owner if you haven’t
* Opened an e-mail within 1 year,
* Not placed any orders within 3 years or
* Not logged in within 2 years
After your account has been terminated your data will be deleted.
How do you get my consent?
When you provide us with personal information to complete a transaction, verify your credit card, place an order, arrange for a delivery or return a purchase, we imply that you consent to our collecting it and using it for that specific reason only. If we ask for your personal information for a secondary reason, like marketing, we will either ask you directly for your expressed consent, or provide you with an opportunity to say no.
How do I withdraw my consent?
If after you opt-in, you change your mind, you may withdraw your consent for us to contact you, for the continued collection, use or disclosure of your information, at anytime, by contacting us via email@example.com or T: +31 6 81 52 87 56, or unsubscribing from our mailing list.
We may disclose your personal information if we are required by law to do so or if you violate our Terms of Service.
Our store is hosted on Woocommerce Inc. They provide us with the online e-commerce platform that allows us to sell our products and services to you.
Your data is stored through Woocommerce data storage, databases and the general Woocommerce application. They store your data on a secure server behind a firewall.
If you choose a direct payment gateway to complete your purchase, then Woocommerce stores your credit card data. It is encrypted through the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction data is stored only as long as is necessary to complete your purchase transaction. After that is complete, your purchase transaction information is deleted.
All direct payment gateways adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, MasterCard and American Express.
PCI-DSS requirements help ensure the secure handling of credit card information by our store and its service providers.
Data that is forwarded to third parties, is only used to provide you with our services. In general, the third-party providers used by us will only collect, use and disclose your information to the extent necessary to allow them to perform the services they provide to us.
However, certain third-party service providers, such as payment gateways and other payment transaction processors, have their own privacy policies in respect to the information we are required to provide to them for your purchase-related transactions.
For these providers, we recommend that you read their privacy policies so you can understand the manner in which your personal information will be handled by these providers.
In particular, remember that certain providers may be located in or have facilities that are located a different jurisdiction than either you or us. So if you elect to proceed with a transaction that involves the services of a third-party service provider, then your information may become subject to the laws of the jurisdiction(s) in which that service provider or its facilities are located.
As an example, if you are located in Canada and your transaction is processed by a payment gateway located in the United States, then your personal information used in completing that transaction may be subject to disclosure under United States legislation, including the Patriot Act.
When you click on links on our store, they may direct you away from our site. We are not responsible for the privacy practices of other sites and encourage you to read their privacy statements.
To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed.
If you provide us with your credit card information, the information is encrypted using secure socket layer technology (SSL) and stored with a AES-256 encryption. Although no method of transmission over the Internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement additional generally accepted industry standards.
Right to access:
You have the right to request information about the personal data we hold on you at any time. You can contact Aesthetic Stories that will provide you with your personal data via e-mail.
Right to portability:
Whenever Aesthetic Stories process your personal data by automated means based on your consent or based on an agreement you have the right to get a copy of your data transferred to you or to another party. This only includes the personal data you have submitted to us.
Right to rectification:
You have the right to request rectification of your personal data if they are incorrect, including the right to have incomplete personal data completed.
If you have a Aesthetic Stories account you can edit your personal data under your account and membership pages.
Right to erasure:
You have the right to erase any personal data processed by Aesthetic Stories at any time except for the following situations
* You have an ongoing matter with our customer service
* You have an open order which has not yet been shipped or partially shipped
* You have an unsettled debt with Aesthetic Stories, regardless of the payment method
* If you are suspected or have misused our services within the last four years
* If you have made any purchase, we will keep your personal data in connection to your transaction for bookkeeping rules
Your right to object to processing based on legitimate interest:
You have the right to object to processing of your personal data that is based on Aesthetic Stories legitimate interest. Aesthetic Stories will not continue to process the personal data unless we can demonstrate a legitimate ground for the process which overrides your interest and rights or due to legal claims.
Your right to object to direct marketing:
You have the right to object to direct marketing, including profiling analysis made for direct marketing purposes.
You can opt out from direct marketing by the following means:
* Following the instruction in each marketing mails
Right to restriction:
You have the right to request that Aesthetic Stories restricts the process of your personal data under the following circumstances:
* If you object to a processing based Aesthetic Stories legitimate interest, Aesthetic Stories shall restrict all processing of such data pending the verification of the legitimate interest.
* If you have claim that your personal data is incorrect, Aesthetic Stories must restrict all processing of such data pending the verification of the accuracy of the personal data.
* If the processing is unlawful you can oppose the erasure of personal data and instead request the restriction of the use of your personal data instead
* If Aesthetic Stories no longer needs the personal data but it is required for your to make of defending legal claims.
How can you exercise your rights?
We take data protection very seriously and therefore you can always reach us at firstname.lastname@example.org.
A cookie is a small text file that is saved to, and, during subsequent visits, retrieved from your computer or mobile device. If you use our services, we will assume that you agree to the use of such cookie.
We use session cookies for example when you use the product filtration function, to check whether you are logged in or if you put an item in your shopping bag.
We use both first- and third-party cookies to collect statistics and user data in aggregate and individual form in analysis tools to optimize our site and to present you with relevant marketing material.
Some third-party cookies are set by services that appear on our pages and are not in our control. They are set by social media providers such as Facebook and relate to the ability of users to share content on this site, as indicated by their respective icon.
We also use third-party cookies which performs cross-site tracking in order for us to give you marketing in other sites/channels.
Age of Consent
By using this site, you represent that you are at least the age of majority in your state or province of residence, or that you are the age of majority in your state or province of residence and you have given us your consent to allow any of your minor dependents to use this site.
If our store is acquired or merged with another company, your information may be transferred to the new owners so that we may continue to sell products to you.
Questions and Contact Information
If you would like to: access, correct, amend or delete any personal information we have about you, register a complaint, or simply want more information contact us via email@example.com or T: +31 6 81 52 87 56.