PRIVACY POLICY
Welcome to DiViNe Samples. We place great importance on protecting your personal data and are committed to respecting your privacy in accordance with applicable regulations, including the General Data Protection Regulation (GDPR - Regulation EU 2016/679) and other relevant data protection laws.
This privacy policy describes how DiViNe Samples collects, uses, stores, and protects your personal data when you use our website https://www.divinesamples.com/ (hereinafter referred to as the "Site").
1. DATA CONTROLLER
The data controller for personal data collected on the Site is DiViNe Samples.
2. PERSONAL DATA COLLECTED
We collect certain personal data when you use our Site, including:
2.1 Data collected directly
- Account information: First name, last name, email address, password
- Billing information: Postal address, phone number, payment details (processed via secure third-party providers)
- Customer support data: Messages sent via our contact form or by email
2.2 Data collected automatically
- Browsing data: IP address, browser type, pages visited, time spent on the Site
- Cookies and similar technologies: See our Cookie Policy
2.3 Data from third-party services
- Payments: We use third-party provider Stripe to securely process your payments. We do not store your card information. See Stripe - Privacy Policy.
- Analytics and marketing: Google Analytics, Facebook Pixel, and other advertising tools may collect anonymized usage data.
3. PURPOSES OF DATA PROCESSING
We use your data to:
- Manage your account and orders
- Provide and improve our services
- Personalize your user experience
- Handle customer support
- Comply with legal and accounting obligations
- Protect our rights and prevent fraud
- Send marketing communications (with your consent)
4. LEGAL BASES FOR PROCESSING
We process your personal data on the following legal bases:
- Contract performance: To process your orders and provide purchased services
- Consent: For sending newsletters and marketing communications
- Legitimate interest: To analyze and improve our services
- Legal obligation: For accounting and tax compliance
5. DATA SHARING WITH THIRD PARTIES
We do not sell or rent your personal data. However, we may share your data with:
- Payment providers (Stripe)
- Hosting and cloud service providers (Microsoft Azure)
- Marketing and analytics tools (Google Analytics)
- Legal authorities if required by law or legal proceedings
All our service providers are subject to strict data protection obligations.
6. DATA RETENTION PERIOD
We retain your personal data only for as long as necessary for the purposes defined:
- Account data: Until you delete your account
- Billing data: 10 years (legal obligation)
- Browsing data: 12 months (analytics and security)
- Marketing data: Until you withdraw your consent
You may request the deletion of your data at any time (see Your Rights).
7. DATA TRANSFERS OUTSIDE THE EU
Some of our service providers (Microsoft, Google) may process your data outside the EU. We ensure that such transfers comply with appropriate safeguards (standard contractual clauses, Privacy Shield if applicable, etc.).
8. YOUR RIGHTS
Under the GDPR, you have the following rights:
- Right of access: You can request a copy of your personal data.
- Right to rectification: You can correct inaccurate or incomplete data.
- Right to erasure ("right to be forgotten"): You can request the deletion of your data under certain conditions.
- Right to restriction of processing: You can request the temporary suspension of data processing.
- Right to data portability: You can request the transfer of your data to another service provider.
- Right to object: You can object to the use of your data for direct marketing purposes.
- Right to withdraw consent: For marketing communications, you can withdraw your consent at any time.
You can exercise these rights by contacting us via Contact Form.
If you believe your rights are not being respected, you can file a complaint with the CNIL (www.cnil.fr).
9. DATA SECURITY
We implement appropriate technical and organizational measures to protect your data against unauthorized access, loss, or alteration:
- Encryption of sensitive data
- Restricted access to authorized personnel only
- Secure hosting of the website and databases
Any data breach will be reported to the relevant authorities and affected individuals within the legally required timeframe.
10. CHANGES TO THIS POLICY
We reserve the right to modify this privacy policy at any time. Any changes will be posted on this page with an updated date.
We encourage you to review this policy regularly to stay informed about our data practices.
11. CONTACT
For any questions or requests regarding your personal data, you can contact us via Contact Form.
We appreciate your trust and commitment to data protection.
Last updated: 2025-02-01