Privacy Policy
1. Introduction and Scope
This Privacy Policy explains how [Your Company Name] ("we", "us", "our") collects, uses, and protects the personal information you provide when you visit our website, interact with our services, or make a purchase. This policy applies to all visitors, users, and customers accessing our services from New Zealand and globally, regardless of the platform or device used.
By accessing or using our website and services, you agree to the terms outlined in this Privacy Policy. If you do not agree with any part of this policy, please discontinue using our services.
This policy complies with the New Zealand Privacy Act 2020 and reflects the best practices and requirements for data protection under international standards. We are committed to ensuring that your privacy is protected and that your personal data is handled responsibly and lawfully.
This Privacy Policy may be updated periodically to reflect changes in our practices, legal obligations, or operational needs. We encourage you to review this page regularly to stay informed about any updates. Your continued use of our services after changes are posted will signify your acceptance of those changes.
- Data Collection and Controller's Contact Information
We value your privacy and are committed to responsibly managing the personal information we collect. This section explains how we collect data, the types of information we collect, and provides the contact details of the data controller responsible for ensuring your privacy is protected.
2.1. Data Controller
The data controller, responsible for the collection, use, and protection of your personal information, is [Your Company Name], registered in New Zealand. You can contact the data controller regarding any privacy-related questions or concerns at the following:
Company Name: Kelly Aukland
Contact Person: Dawid Jan
Address: Postfach 37, 8840 Einsiedeln, Switzerland
Email: info(AT)kelly-auckland.com
2.2. Data Collection
We collect personal information to provide our services effectively and to ensure a smooth and personalized user experience. The type of data we collect depends on how you interact with our website and services. This includes:
- Information You Provide Directly: When you create an account, make a purchase, contact customer support, or interact with us in any way, we collect information such as your name, email address, phone number, billing and shipping addresses, payment information, and any additional details you choose to provide.
- Data Automatically Collected: When you visit our website, we collect technical data such as your IP address, browser type, device information, and browsing activity. This is gathered through the use of cookies, server logs, and other tracking technologies (see "Cookies and Tracking Technologies" for more details).
2.3. Legal Requirements and Legitimate Interests
We may also collect personal information in compliance with legal obligations or to protect our legitimate interests, including improving our services, preventing fraud, and ensuring website security.
3. Information We Collect
This section details the types of personal data we collect, how we gather it, and the technologies we use to track and improve your experience on our website.
3.1. Types of Personal Data Collected
The types of personal information we collect about you depend on your interactions with us and may include the following:
- Contact Information: Your name, email address, phone number, billing address, and shipping address.
- Account Information: Username, password, and other credentials when you register an account with us.
- Order Information: Details related to your purchases, including items bought, payment information (such as credit or debit card details), and transaction history.
- Communications: Any information you choose to provide through customer support queries, emails, or chat interactions.
- Device and Usage Data: Information about how you access and use our website, such as your IP address, device type, browser type, time zone, and interactions with our site.
- Marketing Preferences: Data related to your preferences for receiving marketing communications or participating in promotions.
3.2. Data Collection via Website Interaction
We collect information directly from you when you engage with our website and services in the following ways:
- Account Registration: When you create an account, we collect your name, email address, and password, along with optional information like your shipping and billing addresses.
- Purchases: We collect your contact and payment information to process your orders and ensure delivery of your purchases.
- Customer Support: When you contact our customer service, we may collect personal details related to your inquiry, including your email address, name, and any relevant details you provide to resolve the issue.
- Newsletter and Marketing: If you subscribe to our marketing communications, we collect your email address and preferences. You can opt out of receiving marketing emails at any time.
3.3. Cookies and Tracking Technologies
We use cookies and other tracking technologies to enhance your experience on our website and collect information automatically. These technologies help us understand how users interact with our site, improve functionality, and deliver personalized content and ads.
- Cookies: Small text files stored on your device that allow us to recognize your browser and capture certain information such as browsing behavior and preferences. Cookies help improve website performance, remember your preferences, and streamline the checkout process.
- Session Cookies: Temporary cookies that are deleted once you close your browser.
- Persistent Cookies: Remain on your device until they expire or you delete them.
- Tracking Pixels and Web Beacons: Small graphics embedded in emails or website pages to monitor user engagement with content and measure the success of marketing campaigns.
- Analytics Tools: We may use third-party analytics services (such as Google Analytics) to collect and analyze information about your use of our website. These tools use cookies and other technologies to gather data such as page views, time spent on site, and user interactions.
Managing Cookies: You can manage your cookie preferences by adjusting your browser settings to refuse or block cookies. However, disabling cookies may affect the functionality of our website and your ability to use certain features.
4. How We Use Your Personal Information
We collect and use your personal information to provide, improve, and personalize our services. Below are the specific ways in which we use your data:
4.1. Providing and Managing Services
We use your personal information to:
- Fulfill Orders: Process and deliver your orders, manage payments, and arrange for shipping or returns.
- Account Management: Create and maintain your user account, allowing you to log in, track orders, and manage your preferences.
- Customer Support: Respond to your inquiries, resolve issues, and provide technical support when needed.
4.2. Marketing and Promotional Activities
We may use your personal information to:
- Send Marketing Communications: With your consent, we send newsletters, promotional offers, and updates about products and services that may interest you. You can opt out at any time by using the unsubscribe link provided in these emails.
- Personalize Advertising: We tailor advertisements and promotions based on your interactions with our website, purchase history, and preferences. This may include showing ads on our website, social media platforms, or other third-party sites.
4.3. Improving and Optimizing Our Services
We use data to monitor and improve our website and services, including:
- Website Performance: Analyzing how users interact with our website to enhance the overall experience and address any technical issues.
- Product Development: Using customer feedback and purchase data to identify trends and develop new products or features.
- Analytics and Research: We collect usage data and perform analytics to understand customer behavior, preferences, and trends, which help us optimize our services and marketing strategies.
4.4. Security and Fraud Prevention
To ensure the security of your data and prevent unauthorized access or fraudulent activity, we use personal information for:
- Account Security: Monitoring and securing user accounts, including detecting and responding to any suspicious or unauthorized activity.
- Fraud Detection: Identifying, investigating, and preventing fraudulent activities, illegal actions, or violations of our terms of service.
4.5. Compliance with Legal Obligations
In certain cases, we may be required to use your personal information to comply with applicable laws and regulations, including:
- Legal Requirements: Fulfilling tax, audit, and reporting obligations as required by law.
- Law Enforcement: Responding to valid legal requests, subpoenas, or court orders from regulatory authorities or law enforcement.
4.6. Other Legitimate Business Interests
We may process your personal data to pursue legitimate interests, such as:
- Business Operations: Managing and improving our daily business activities.
- Mergers and Acquisitions: In the event of a business transfer, sale, or merger, personal data may be transferred as part of the business assets, subject to continued privacy protections.
5. Data Processing for Contract Fulfillment and Customer Accounts
We collect and process your personal information primarily to fulfill our contractual obligations to you and to ensure the smooth operation of your customer account. This section explains how we use your data for these purposes.
5.1. Contract Fulfillment
To provide you with the products and services you have purchased or requested, we process your personal information in the following ways:
- Order Processing: We use your contact details, payment information, and shipping address to process and fulfill your orders. This includes handling payment transactions, issuing invoices, and ensuring the successful delivery of purchased items.
- Delivery of Products and Services: Your personal information is used to arrange the delivery of goods or services and to facilitate any returns, refunds, or exchanges.
- Payment Information: We collect and process payment details (such as credit or debit card information) to complete transactions, in accordance with applicable laws and secure payment processing standards.
5.2. Customer Account Management
When you create a customer account with us, we use your personal information to manage and maintain your account, allowing you to:
- Account Creation and Access: We collect your email, username, and password to allow secure access to your account. You can update your account information, review order history, and manage your preferences within your account.
- Account Security: We use your data to secure your account by protecting against unauthorized access or fraudulent activities. This includes sending security alerts and requesting identity verification when necessary.
- Order Tracking and History: Your account allows you to view and track your order history, including past purchases, pending deliveries, and any returns or exchanges.
5.3. Communications Related to Contractual Obligations
We process your personal information to send communications that are necessary for fulfilling our contractual obligations, such as:
- Order Confirmation and Updates: Notifications related to order confirmation, shipment tracking, and delivery status.
- Service Notifications: Information regarding changes or updates to our services, including any disruptions or maintenance work that may affect your experience.
- Billing and Invoices: Communication regarding billing, invoicing, and any issues related to payment processing.
5.4. Data Retention for Contractual Purposes
We retain your personal information for as long as necessary to fulfill our contractual obligations and to comply with legal and regulatory requirements, including:
- Tax and Accounting Records: Personal information related to purchases and transactions is retained to comply with applicable tax and accounting laws.
- Dispute Resolution: In the event of a dispute, your personal information may be used to address any contractual disagreements or legal claims.
6. Legal Basis for Processing Data
We process your personal data in compliance with the legal requirements set forth under the New Zealand Privacy Act 2020 and other applicable data protection regulations. This section outlines the legal grounds on which we rely to process your personal information.
6.1. Consent
In certain instances, we process your personal data based on your explicit consent. This applies when:
- You subscribe to receive marketing communications such as newsletters and promotional emails.
- You provide consent for us to collect non-essential cookies and tracking data for personalized advertisements and analytics purposes.
Withdrawal of Consent: You can withdraw your consent at any time by contacting us or by opting out through the provided mechanisms (such as the unsubscribe link in emails). Please note that withdrawing consent does not affect the lawfulness of processing based on consent prior to its withdrawal.
6.2. Contractual Necessity
We process your personal data when it is necessary to fulfill the contract or agreement we have with you. This legal basis applies when:
- You make a purchase, and we need to process your order, payment, and delivery information.
- You create and maintain an account with us, enabling access to your order history, preferences, and settings.
Without this data, we may not be able to provide the requested services or complete the contract.
6.3. Legal Obligations
We are required to process certain personal data to comply with legal and regulatory obligations, including:
- Tax and Accounting: Processing and retaining personal data related to financial transactions to meet tax, accounting, and auditing requirements.
- Regulatory Reporting: Disclosing personal data when necessary to comply with legal requests or investigations from authorities, such as law enforcement or regulatory agencies.
6.4. Legitimate Interests
In some cases, we process your personal data based on our legitimate business interests. This is done when the processing is necessary and does not override your rights and freedoms. Examples include:
- Improving and Optimizing Our Services: Analyzing website usage data and customer feedback to improve our products, services, and user experience.
- Marketing and Advertising: Using customer data to deliver targeted advertising, personalize marketing messages, and offer promotions tailored to your interests.
- Security and Fraud Prevention: Ensuring the security of our website, services, and customer data by monitoring for suspicious activity and implementing fraud prevention measures.
- Business Operations: Managing day-to-day business functions such as customer support, service management, and conducting market research.
6.5. Vital Interests
In rare circumstances, we may process your personal data to protect your vital interests or those of another person. For example, if necessary for medical emergencies or other urgent situations.
7. Third-Party Data Processing and Sharing
We may share your personal information with third parties in certain circumstances to provide and improve our services. This section explains how we disclose your data to service providers and how your information may be shared with other third parties when using external links or services.
7.1. Disclosure to Service Providers
To ensure the proper operation of our website and services, we work with trusted third-party service providers who may process your personal data on our behalf. These service providers are carefully selected and are bound by contractual agreements to protect your personal information and to use it only as directed by us. Examples of service providers include:
- Payment Processors: We share your payment details (such as credit or debit card information) with third-party payment processors to complete transactions securely.
- Shipping and Logistics Providers: To ensure your orders are delivered, we share your contact and shipping details with delivery and logistics companies.
- Customer Support Providers: We may share your personal data with third-party customer service platforms that help us manage and respond to inquiries, complaints, or service requests.
- IT and Hosting Services: Our website and data storage are supported by third-party IT services and hosting providers, who may process your data to ensure website functionality and security.
- Analytics and Marketing Providers: We use third-party analytics services (e.g., Google Analytics) and marketing platforms to analyze user behavior and personalize our marketing efforts. These service providers may collect data such as your browsing activity and device information through cookies or other tracking technologies.
All third-party service providers are required to handle your data in compliance with relevant data protection laws and ensure its confidentiality and security.
7.2. Third-Party Links and Services
Our website may contain links to third-party websites, applications, or services that are not operated by us. If you click on these links or interact with external services, please be aware that we do not have control over the content, policies, or practices of these third parties. Examples of third-party services include:
- Social Media Platforms: We may offer social media sharing options (e.g., Facebook, Instagram) through plugins or integrations. If you use these features, your data may be processed by the respective social media platform, and their privacy policies will apply.
- External Websites: Our website may include links to other websites that are not governed by this Privacy Policy. When you navigate to these sites, you should review their privacy policies to understand how your data is collected, used, and shared.
- Third-Party Advertisers: Advertisements for third-party services may be displayed on our website. Clicking on these ads may direct you to third-party websites, which may collect your data independently from our service.
We are not responsible for the privacy practices or content of any third-party websites, services, or applications. We recommend reviewing the privacy policies of any external services before interacting with them or sharing your personal information.
8. Data Transfer Outside New Zealand
In some cases, your personal information may be transferred to and processed in countries outside of New Zealand. This section explains how we manage international data transfers and the safeguards we have in place to protect your information.
8.1. International Data Transfers
As part of our business operations, your personal data may be transferred to countries or jurisdictions that do not have the same level of data protection laws as New Zealand. This typically occurs when we work with third-party service providers or partners who are located in other countries, including:
- Hosting and Cloud Storage Providers: Your data may be stored on servers located in countries outside New Zealand, depending on the location of our cloud storage or hosting providers.
- Payment Processors and Shipping Services: To complete transactions and deliver products, your information may be processed by payment gateways or logistics companies based overseas.
- Marketing and Analytics Partners: Some of our third-party marketing and analytics services may operate from international locations, resulting in your data being processed outside New Zealand.
8.2. Safeguards for International Data Transfers
To ensure your personal data remains protected when transferred internationally, we take appropriate measures in compliance with applicable data protection laws, including:
- Adequacy Decisions: We may transfer data to countries that have been recognized by New Zealand as providing an adequate level of data protection, meaning their privacy laws offer comparable protection to New Zealand’s Privacy Act.
- Standard Contractual Clauses (SCCs): For data transfers to countries that do not provide adequate protection, we implement Standard Contractual Clauses or equivalent contractual obligations to ensure your data is protected to the same standard as required under New Zealand law.
- Other Legal Mechanisms: In certain cases, we may rely on other legal mechanisms, such as your explicit consent for the transfer, or transfers that are necessary for the performance of a contract between you and us.
8.3. Your Rights Regarding International Transfers
Where applicable, you have the right to request information about the safeguards in place for the transfer of your personal data outside New Zealand. You can contact us at any time for more details about how your information is protected during these transfers.
9. Cookies and Other Tracking Technologies
We use cookies and other tracking technologies to improve your experience on our website, enhance site functionality, analyze usage, and provide personalized content and advertisements. This section explains what cookies are, how we use them, and how you can manage them.
9.1. What Are Cookies?
Cookies are small text files that are placed on your device (such as a computer, tablet, or smartphone) when you visit a website. They help websites remember your actions and preferences over time, allowing for a smoother and more personalized experience. Cookies can be classified into different types based on their purpose:
- Session Cookies: Temporary cookies that are deleted once you close your browser. These cookies allow websites to link your actions during a single browser session.
- Persistent Cookies: Cookies that remain on your device after you close your browser. They help websites remember your preferences or actions for future visits.
- First-Party Cookies: Cookies set directly by our website.
- Third-Party Cookies: Cookies set by external service providers (e.g., analytics tools, social media platforms).
9.2. How We Use Cookies
We use cookies and similar tracking technologies for the following purposes:
- Essential Cookies: These cookies are necessary for the basic functioning of our website, such as enabling secure logins, processing transactions, and navigating between pages. Without these cookies, our website cannot operate properly.
- Performance and Analytics Cookies: These cookies collect information about how visitors use our website, such as which pages are most visited or if users experience any errors. The data collected is used to improve website performance and user experience. For example, we use tools like Google Analytics to track usage patterns.
- Functionality Cookies: These cookies allow our website to remember choices you make, such as your language preferences or the items in your shopping cart. This helps provide enhanced and personalized features.
- Advertising and Targeting Cookies: We use these cookies to deliver relevant advertisements to you based on your browsing habits and interests. These cookies may be placed by third-party advertising partners (such as Google or Facebook) and are used to show you ads on our site or across other platforms.
9.3. Other Tracking Technologies
In addition to cookies, we may use other tracking technologies such as:
- Web Beacons/Pixels: Small images embedded on web pages or in emails that track user engagement, such as whether an email was opened or a webpage was viewed.
- JavaScript Tags: Scripts that collect information about your device and browsing activity, such as which elements of a webpage you interact with.
9.4. Managing Cookies
You can control how cookies are used on your device by adjusting your browser settings. Most web browsers allow you to:
- Accept or Reject Cookies: You can choose to block all cookies or allow only certain types.
- Delete Cookies: You can delete cookies that have already been stored on your device.
- Manage Cookie Preferences: Set preferences for how websites use cookies, such as allowing only essential cookies or blocking third-party cookies.
Please note that disabling cookies may impact your experience on our website, and some features may not function as intended. For example, you may not be able to log in, place orders, or access certain personalized features.
9.5. Third-Party Cookies and Opt-Out
We may use third-party service providers to place cookies on our website for purposes such as analytics, advertising, and social media integration. You can manage third-party cookies by visiting the relevant service provider’s website or by using industry opt-out tools such as:
- Google Analytics Opt-Out: Google Analytics Opt-Out Add-on
- Digital Advertising Alliance: AdChoices Opt-Out
For more information about how we use third-party services, see the section on Third-Party Links and Services.
10. Direct Marketing and Communications
We may use your personal information to send you direct marketing communications, such as newsletters, promotional offers, and product updates. This section explains how we handle direct marketing and email communications, as well as how you can opt out if you no longer wish to receive such messages.
10.1. Newsletter and Email Communication
If you choose to subscribe to our newsletters or other marketing communications, we will send you regular updates on our products, services, special offers, and promotions. We may also inform you about news related to our company and industry.
- Subscription: You can subscribe to our marketing communications by providing your email address through our website or when you create an account or place an order. By subscribing, you consent to receiving promotional emails from us.
- Types of Communications: These emails may include promotional offers, exclusive discounts, updates on new products, blog content, and other information we believe may be of interest to you.
Double Opt-In: In some cases, we may use a double opt-in process, where we send you a confirmation email to verify your subscription. This ensures that you have actively chosen to receive our communications.
10.2. Opt-Out Procedures
You have the right to opt out of receiving marketing communications from us at any time. Below are the methods by which you can manage or withdraw your consent:
- Unsubscribe Link: Every marketing email we send includes an "unsubscribe" link, typically found at the bottom of the email. By clicking this link, you can stop receiving further marketing communications from us.
- Account Settings: If you have an account with us, you can manage your communication preferences directly by logging into your account and adjusting the settings under "Notification Preferences" or a similar section.
- Contacting Us: You can also opt out by contacting our customer support team directly via email or phone, requesting to be removed from marketing lists.
Important Notes:
- Transactional Emails: Even if you opt out of receiving marketing communications, you may still receive non-promotional emails from us. These emails include important information related to your account, orders, deliveries, or other transactional matters.
- Opt-Out Timing: After you opt out, it may take a few days to process your request. During this time, you may still receive emails that were already scheduled.
10.3. Consent for Other Forms of Marketing
In some cases, we may request your explicit consent to contact you through other forms of marketing, such as SMS (text messages) or postal mail. In such cases, you will be given the option to opt in to these communications and the ability to opt out at any time by following the instructions provided in the messages or by contacting us directly.
11. Use of Social Media and Plugins
We use social media platforms and plugins to enhance your experience on our website and provide additional ways for you to interact with us and our content. This section outlines how we use social media features and plugins and how they may affect your personal information.
11.1. Social Media Integration
Our website may include links to or integrations with various social media platforms, such as Facebook, Instagram, Twitter, LinkedIn, and others. These integrations allow you to share content or interact with our brand directly through your social media accounts.
- Social Media Links: Clicking on a social media link (e.g., Facebook, Instagram) will redirect you to the respective platform, where you can engage with our content. Please note that these platforms operate independently from us, and your interaction with them is governed by their own privacy policies and terms of service.
- Social Media Widgets: Our website may also include social media widgets, such as the Facebook "Like" button or the Twitter "Share" button. These widgets may collect information such as your IP address and the page you are visiting on our website, and they may set a cookie to enable the widget to function properly. The social media platform providing the widget may also be able to track your interaction.
11.2. Use of Social Media Plugins
We may use plugins provided by social media networks to enhance your interaction with our content, such as allowing you to share products or articles. The following are examples of commonly used social media plugins and how they function:
- Facebook Plugins: When you interact with Facebook plugins (e.g., "Like" or "Share"), information about your activity may be transmitted directly to Facebook, even if you do not actively engage with the plugin. Facebook may collect and store this data according to its own privacy policies.
- Instagram Plugins: Instagram may also track your interaction with embedded posts or images on our website, collecting information such as your browsing behavior and preferences.
- YouTube or Vimeo Plugins: If we embed video content from platforms like YouTube or Vimeo, your activity (such as playing or pausing videos) may be tracked by the respective platform and linked to your account if you are logged in.
11.3. Data Collected by Social Media Platforms
If you interact with our website using a social media platform, your personal information may be shared with or collected by these platforms. This data can include:
- Your interactions with our content (e.g., likes, shares, comments).
- Information about your visit to our website (e.g., pages visited, time spent, actions taken).
- Your social media profile data if you are logged into your account (e.g., your username, profile picture, and friends list).
This information is processed according to the privacy policies of the respective social media platforms. We encourage you to review their privacy practices to understand how they handle your data.
11.4. How We Use Social Media Data
We may use aggregated and anonymized data from social media interactions to improve our marketing and customer engagement strategies. For example, we analyze how often our content is shared or liked to better tailor our promotions and product offerings.
We do not have access to or control over how social media platforms use the personal information they collect through their plugins. However, we may use tools like Facebook Insights to view anonymized data about how users interact with our page or content.
11.5. Managing Your Social Media Privacy
You can control how social media platforms collect and use your information by adjusting the privacy settings within your social media accounts. You may also choose to log out of your social media accounts when browsing our website to prevent these platforms from tracking your activity.
12. Advertising and Analytics Services
We use various advertising and analytics services to understand how our website is used, to enhance your experience, and to serve personalized advertisements. This section explains how these services collect and use your data and how you can manage your preferences.
12.1. Advertising Services
We work with third-party advertising networks and platforms, such as Google Ads, Facebook Ads, and others, to deliver relevant advertisements based on your interests and browsing behavior. These services may use cookies and other tracking technologies to collect information about your online activities and provide personalized ads.
- Personalized Ads: These platforms may display personalized ads based on your browsing history, interactions with our website, or other websites you visit. For example, after viewing a product on our website, you may see related advertisements on Facebook or Google.
- Retargeting and Remarketing: We use retargeting technologies that allow us to display ads to users who have previously visited our website or shown interest in our products. This helps remind you of our products or promotions across different websites or social media platforms.
- Third-Party Advertising Networks: Our advertising partners, such as Google and Facebook, may collect data about your interactions with our website, including pages visited, time spent, and products viewed. They may also combine this data with information from other websites or services you use.
12.2. Analytics Services
We use analytics services to understand how visitors use our website, identify trends, and improve our services. These services may use cookies, web beacons, and other technologies to collect information about your interaction with our website.
- Google Analytics: We use Google Analytics to track user behavior, such as the number of visitors, pages viewed, and time spent on the site. Google Analytics collects information such as your IP address, device type, browser type, and how you interact with our website. This data helps us analyze user activity and improve the performance and functionality of our website.
- Other Analytics Tools: In addition to Google Analytics, we may use other third-party analytics tools to gain insights into website traffic and user engagement. These tools may collect information similar to that collected by Google Analytics.
12.3. Managing Advertising and Analytics Preferences
You have the option to manage how your data is collected and used for advertising and analytics purposes. Below are ways you can control these settings:
- Opting Out of Personalized Ads: You can opt out of receiving personalized ads from certain advertising networks by visiting platforms like the Digital Advertising Alliance or Google's Ad Settings. These platforms allow you to adjust your preferences for interest-based advertising.
- Managing Cookies: Most web browsers provide options to manage your cookie settings. You can block or delete cookies to prevent advertising networks from tracking your activity. However, disabling cookies may affect the functionality of some website features.
- Google Analytics Opt-Out: If you want to prevent Google Analytics from tracking your activity on our website, you can install the Google Analytics Opt-Out Browser Add-On. This tool ensures that Google Analytics does not collect information about your visits to our site.
- Facebook Ads Settings: You can manage your ad preferences on Facebook by visiting your Facebook Ads Settings. Here, you can adjust what kind of ads you see and control how Facebook uses your data for advertising purposes.
12.4. Third-Party Advertising and Analytics Providers
The third-party advertising and analytics providers we work with operate independently and have their own privacy policies governing how they collect and use information. These providers may combine data collected on our website with information from other sources to build a more complete profile of your interests and behaviors.
We recommend reviewing the privacy policies of these providers to understand how they use your information. Some of the providers we work with include:
- Google Ads: Google Privacy Policy
- Facebook Ads: Facebook Privacy Policy
- Google Analytics: Google Analytics Privacy
13. Your Rights and Choices Regarding Your Personal Data
You have various rights and choices regarding how we collect, use, and process your personal data. This section outlines your rights under applicable data protection laws, including how you can access, correct, or manage your personal information.
13.1. Access and Correction
You have the right to request access to the personal data we hold about you and to ask for corrections if that data is inaccurate, incomplete, or outdated. Specifically:
- Accessing Your Data: You can request a copy of the personal information we hold about you at any time. This may include data related to your account, transactions, or communications with us. We will provide this information to you in accordance with legal requirements.
- Correcting Inaccuracies: If any of the personal information we hold about you is incorrect or incomplete, you have the right to request that we correct or update it. For example, you may need to update your contact details or preferences if they change.
To exercise these rights, you can contact us through the details provided in this policy, and we will respond to your request in a timely manner.
13.2. Data Portability
In certain circumstances, you have the right to request the transfer of your personal data to you or another organization. This is known as the right to data portability and applies when:
- Requesting a Transfer: You may request that we provide your personal data in a structured, commonly used, and machine-readable format. This right typically applies to data you have provided to us directly and that we process by automated means based on your consent or a contractual agreement.
- Transferring Data to a Third Party: If technically feasible, you can request that we transmit your personal data directly to another organization or service provider at your direction.
Please note that the right to data portability only applies to certain types of data and in specific contexts, as permitted by applicable law.
13.3. Withdrawal of Consent
Where we rely on your consent to process your personal data (e.g., for marketing communications), you have the right to withdraw your consent at any time.
- How to Withdraw Consent: You can withdraw consent by:
- Clicking the "unsubscribe" link in any marketing email.
- Adjusting your preferences within your account settings.
- Contacting us directly using the contact information provided in this policy.
- Effect of Withdrawal: Once you withdraw your consent, we will stop processing your personal data for the specific purposes for which consent was obtained (e.g., marketing). However, withdrawal of consent will not affect the lawfulness of any processing carried out before your consent was withdrawn.
13.4. Right to Object to Processing
You have the right to object to the processing of your personal data in certain circumstances, including:
- Direct Marketing: You have the right to object to the use of your personal data for direct marketing purposes, including profiling related to marketing. If you object, we will stop using your personal data for these purposes.
- Legitimate Interests: If we process your personal data based on our legitimate interests or for public interest purposes, you can object to this processing if you believe it affects your fundamental rights and freedoms. In such cases, we will review your objection and stop processing your data unless we can demonstrate compelling legitimate grounds for the processing that override your rights.
13.5. Exercising Your Rights
To exercise any of the rights outlined above, please contact us at [Your Contact Email] with your request. We may need to verify your identity before responding to your request to ensure that we are protecting your privacy and security.
We will respond to your request within a reasonable time frame, typically within one month, and in accordance with applicable data protection laws.
14. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected, including to comply with legal, accounting, or reporting requirements. This section explains how long we retain your data and the criteria we use to determine these retention periods.
14.1. Retention Periods
The duration for which we retain your personal data depends on the type of data and the specific purposes for which it is processed:
- Account Information: We retain your account information for as long as your account remains active. If you choose to close your account, we will delete your account information, except where retention is required to comply with legal obligations or resolve disputes.
- Transaction Data: Information related to purchases, payments, and order history is retained as long as necessary to fulfill our contractual obligations, comply with legal requirements (such as tax or accounting regulations), and resolve any disputes related to transactions. This data is typically retained for the legally mandated period, which may be up to 7 years for financial records.
- Customer Support Information: Data related to customer inquiries, complaints, or technical support requests is retained for as long as necessary to resolve the issue and ensure customer satisfaction. This information may be kept for a reasonable period after the issue is resolved to facilitate follow-up support if needed.
- Marketing and Communication Preferences: We retain information about your preferences for receiving marketing communications until you opt out or request that your data be deleted. Once you unsubscribe, we will stop sending marketing communications, but we may retain a record of your request to ensure compliance with your opt-out decision.
14.2. Legal and Regulatory Requirements
In some cases, we may be required to retain personal data for a longer period due to legal or regulatory obligations. For example:
- Tax and Accounting Laws: We are required to retain financial records, including transaction and payment details, for a specified period to comply with tax and accounting regulations.
- Legal Disputes: If your personal data is relevant to any legal disputes or claims, we may retain it until the matter is fully resolved, including any appeals, and the applicable retention period for legal matters has expired.
14.3. Data Deletion and Anonymization
Once the retention period has expired, or we no longer need your personal data for the purposes outlined in this policy, we will either delete or anonymize your data. Anonymization means altering the data so that it can no longer be associated with you or identified as your personal information.
- Deletion: Your data will be securely deleted in a manner that prevents unauthorized access or recovery.
- Anonymization: In some cases, we may anonymize data to retain aggregated insights or statistics for business purposes. Anonymized data can no longer be linked to any individual and is no longer considered personal information.
14.4. Your Right to Request Deletion
You have the right to request the deletion of your personal information in certain circumstances, such as when the data is no longer necessary for the purposes for which it was collected or when you withdraw your consent for its use. To request deletion, please contact us using the contact details provided in this policy.
We will review and respond to your request in accordance with applicable data protection laws. However, please note that we may be required to retain certain data for legal or regulatory purposes even after a deletion request is made.
15. Security Measures
We take the security of your personal information seriously and are committed to protecting it from unauthorized access, use, or disclosure. This section outlines the security measures we have in place to safeguard your data.
15.1. Technical and Organizational Measures
To ensure the confidentiality, integrity, and availability of your personal information, we implement a range of technical and organizational security measures, including:
- Data Encryption: We use encryption technologies (such as SSL/TLS) to secure the transmission of sensitive information, including personal data and payment details, between your browser and our servers. This helps prevent unauthorized access during transmission.
- Access Control: Access to your personal information is restricted to authorized personnel only. We limit access based on job responsibilities and use role-based permissions to ensure that only those who need your information for legitimate business purposes have access to it.
- Firewalls and Intrusion Detection: We use firewalls and intrusion detection/prevention systems to protect our servers and networks from unauthorized access, malware, and other potential security threats.
- Regular Security Audits: We conduct regular security audits and vulnerability assessments to identify and address any weaknesses in our systems. This helps ensure that our security measures are up to date with evolving threats.
- Data Minimization: We practice data minimization by collecting only the personal data necessary for the specific purposes outlined in this policy. This reduces the risk of storing excessive information that could be exposed in the event of a breach.
15.2. Password Protection
If you create an account with us, it is your responsibility to ensure the security of your login credentials. We recommend the following best practices to protect your account:
- Strong Passwords: Use a unique, strong password for your account, consisting of a combination of letters, numbers, and symbols. Avoid using easily guessable information such as your name or date of birth.
- Multi-Factor Authentication (MFA): Where available, we recommend enabling multi-factor authentication (MFA) for an added layer of security. MFA requires you to provide a second form of verification, such as a code sent to your mobile device, in addition to your password.
- Secure Your Devices: Ensure that your computer or mobile device is secured with up-to-date antivirus software, firewalls, and operating system patches.
15.3. Monitoring and Incident Response
We continuously monitor our systems for suspicious activity and potential security breaches. In the event of a security incident that affects your personal information, we have an incident response plan in place to address the issue promptly:
- Incident Detection: We use monitoring tools to detect unusual or unauthorized access to our systems.
- Response Procedures: If a data breach occurs, we will take immediate steps to contain the breach, investigate the cause, and implement measures to prevent future incidents.
- Notification of Data Breaches: In compliance with applicable data protection laws, if we discover a data breach that poses a significant risk to your rights and freedoms, we will notify you as soon as possible. We will also inform the relevant authorities, as required by law.
15.4. Third-Party Security
When we share your personal information with third-party service providers (such as payment processors or cloud hosting services), we ensure that these providers implement appropriate security measures to protect your data. We conduct due diligence on third-party partners and require them to comply with relevant data protection regulations.
15.5. Limitations of Security
While we strive to implement robust security measures, it is important to understand that no system is completely immune to security risks. Despite our best efforts, we cannot guarantee absolute security of your personal information, and you should be cautious when sharing sensitive data online.
We encourage you to notify us immediately if you believe your account or personal information has been compromised, so we can take the necessary steps to protect your data.
16. Children’s Data Protection
We take the privacy of children very seriously and are committed to complying with relevant laws and regulations designed to protect their personal information. This section outlines how we handle personal data related to children and the specific measures we take to ensure their protection.
16.1. Intended Audience
Our website and services are not intended for use by children under the age of 16. We do not knowingly collect, use, or disclose personal information from children without parental consent, in compliance with applicable data protection laws.
16.2. Collection of Data from Children
- Parental Consent: If we become aware that we have unintentionally collected personal information from a child under the age of 16 without verifiable parental consent, we will take immediate steps to delete that information from our systems.
- Age Verification: We may implement age verification mechanisms on our website or in our services to prevent children under the age of 16 from creating accounts or providing personal information without parental consent.
16.3. Parental Rights
If you are a parent or guardian and believe that your child has provided us with personal information without your consent, you have the right to:
- Request Access: You can request to access the personal information we have collected from your child.
- Request Deletion: You can request that we delete any personal data collected from your child.
To exercise these rights, please contact us using the contact details provided in this Privacy Policy. We will verify your identity as the parent or guardian and take the necessary actions to protect your child’s information.
16.4. Educational and Other Exceptions
In certain cases, data protection laws may allow us to collect personal information from children without parental consent, such as when the data is necessary to provide an educational service or when it is part of a one-time request (such as for a contest or sweepstakes). In such cases, we will ensure that the data is used strictly for the intended purpose and is not retained beyond what is necessary.
16.5. Security Measures for Children’s Data
When collecting, storing, and processing personal data from children (with parental consent), we implement additional security measures to ensure that this data is protected. These measures may include enhanced access controls and restricted use of the data to minimize any risks.
17. Complaints and How to Contact Us
We are committed to protecting your privacy and ensuring that your personal data is handled responsibly. If you have any concerns, questions, or complaints about how we process your personal information, this section explains how you can get in touch with us and how we handle complaints.
17.1. How to Contact Us
If you have any questions about this Privacy Policy, our data practices, or if you wish to exercise your rights regarding your personal information (such as access, correction, or deletion), please contact us using the details below:
Kelly Auckland
Email: info(AT)kelly-auckland.com
Mailing Address: Postfach 37, 8840 Einsiedeln, Switzerland
Website: https://www.kelly-auckland.com
We are available to assist with any inquiries or requests related to your privacy and data protection rights.
17.2. How to Lodge a Complaint
If you believe that we have not handled your personal information in accordance with this Privacy Policy or relevant privacy laws, you have the right to lodge a complaint. We take all complaints seriously and will work to resolve your concerns promptly.
- Internal Resolution: Please contact us directly with your complaint using the contact details provided above. We will acknowledge receipt of your complaint, investigate the issue, and respond within a reasonable time frame, typically within 30 days.
17.3. Escalating Your Complaint
If you are not satisfied with our response to your complaint, or if you believe we are not processing your personal data lawfully, you have the right to escalate your complaint to the relevant data protection authority. In New Zealand, you can contact:
New Zealand Office of the Privacy Commissioner
Website: https://www.privacy.org.nz/
Phone: 0800 803 909
Email: enquiries@privacy.org.nz
The Privacy Commissioner can investigate complaints, provide advice, and ensure that your rights are upheld.
17.4. International Users
If you are located outside of New Zealand and have concerns about how we handle your personal information, you may also have the right to contact your local data protection authority. We will cooperate with relevant authorities to address your concerns and ensure compliance with applicable data protection laws.
18. Updates to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or operational needs. This section outlines how we will notify you of any updates and what you can expect if changes are made.
18.1. When We Make Updates
We may revise this Privacy Policy periodically, especially in response to:
- Changes in relevant laws or regulations.
- Updates to our services, website functionality, or business practices.
- Feedback or suggestions from users regarding privacy concerns.
18.2. How We Notify You of Changes
If we make significant changes to this Privacy Policy, we will notify you in a manner appropriate to the significance of the changes. This may include:
- Posting a notice on our website or in your account dashboard indicating that the Privacy Policy has been updated.
- Sending an email to inform you of the changes, if you have provided us with your email address.
The "Last Updated" date at the top of this Privacy Policy will reflect the date of the most recent revisions.
18.3. Your Continued Use of Our Services
Your continued use of our website and services after any updates to this Privacy Policy signifies your acceptance of the revised terms. We encourage you to periodically review this Privacy Policy to stay informed about how we collect, use, and protect your personal information.
18.4. Material Changes
In the event of any material changes that significantly impact your rights or the way we process your personal data, we will provide you with an opportunity to review and accept the changes before they take effect. If you do not agree to the updated policy, you may stop using our services and contact us to delete your account or any related personal information.