of the company TOTEMO s.r.o., ID No.: 08268746, with its registered office at Neklanova 123/19 , 12800 (“us” or the “Controller”).
We do not take the protection of personal data lightly. In this Privacy Policy you will find out for what purpose, for what reason and how we process your Personal Data. You will also find information on what your rights are in relation to the protection of Personal Data.
If you have any further questions about the Processing of your Personal Data, please contact us by email at [email protected] .
We need some Personal Data for the performance of the purchase agreement, and we process some Personal Data on the basis of our legitimate interest. For some Personal Data, we are required by law to process it (for example, for bookkeeping). In some cases, we use Processors who may have access to your Personal Data. These include, for example, accounting firms or marketing specialists. Where necessary, we will seek your consent to process your Personal Data.
When we act as a controller? In relation to Customers, we are the controller of Personal Data. You have entrusted us with certain data about yourself (e.g. your name and email) for the purpose of registering in the Eshop. An overview of the Personal Data we process, including the reasons for processing it, can be found below. Should anything be unclear, please do not hesitate to contact us at [email protected] .
To make the text clearer, we will simplify your reading with a few terms we use in this Privacy Policy:
Eshop | our online shop available at eshop.totemo.eu; |
GDPR Business messages | Regulation (EU) 2016/679 of the European Parliament and of the Council;usually an email or SMS message sent to the Customer for the purposes of promoting similar products and services;; |
Personal Data Contract | any information about the Customer that can directly or indirectly identify the Customer;a contractual relationship containing a range of rights and obligations (ours and yours) which we enter into together on the basis of your order on the Eshop; |
Customer / you | natural person to whom the Personal Data relates, most often a customer (a person who has purchased goods from our Eshop) or a potential customer, or users of our website who are just browsing; |
Processor | we use other entities that process Personal Data on the basis of a contract or other mandate; |
Processing of Personal Data | means any operation or set of operations on Personal Data or sets of Personal Data that is carried out with or without the aid of automated processes, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or any other disclosure, alignment or combination, restriction, erasure or destruction; |
Special categories of Personal Data | We do not process this type of Personal Data.This is data that we understand to be more sensitive. For example, it relates to what your ethnicity is, what your sexual orientation is, whether you are in a trade union, or what your health and faith are. Genetic and biometric data are also considered to be a special category of data if they are processed for the purpose of uniquely identifying a natural person. |
How do we process your Personal Data? We process your Personal Data only to the extent necessary to achieve the purpose for which the data was collected and we maintain technical and organizational measures when processing it. The processing of Personal Data is automated, but we do not carry out profiling. The specific purposes of the data processing and the categories of Personal Data we process for each purpose are set out in the following section.
→ Name and surname, contact details (namely email, telephone number).→ Cookies and IP address, user account behavior (including information about your device or operating system). | → Notes to the order and other information you provide to us as part of your communication with us (in particular, questions and answers to your questions, communication with you). |
→ Billing information and bank details (data necessary for bookkeeping and making payments). | → Reviews (name and surname or nickname, email and other data that you share in the review). |
→ Comments posted by you to our posts on social networks (in particular Facebook, LinkedIn), as well as your profile name (nickname) on these social networks and your publicly accessible information on your profiles. | → Age and sex of the child (optional data provided by the Customer within the established user account). |
Special categories of Personal Data.We do not process any Personal Data of a sensitive nature about you.
If you visit our website, we process your Personal Data for the purposes set out in this table. If you are interested, you can sign up on the website or via email to receive Business messages or similar promotional material that we prepare for potential buyers of our goods. In order to subscribe to Business messages, you must provide us together with your consent some of your Personal Data.
Why? | What data? | How? | For how long? |
Visit to the website. Providing basic functions of our website, analytics, improving our services. We also process personal data to show you relevant content or our advertising on other websites. You can set your preferences in the cookie bar. The legal basis for processing Personal Data is consent (analytics, marketing cookies) or our legitimate interest (essential cookies). | Information about when and how you visit and view our website, which may include: your IP address, the date and time you accessed our website, information about your internet browser, your operating system or language settings, your website behavior history. If you visit our website via your mobile phone, we may also process data about your phone. | Cookies or other technologies for tracking user behavior on our website. | The processing time varies according to the type of cookies. Some process data only for a session (visit), some for longer. For more information, please see the instructions in Cookies Policy. |
Communication with customer support, requests and complaints.By submitting an enquiry, you consent to the processing of Personal Data for the purpose of dealing with the enquiry. | Name, surname, telephone number, email. | We process Personal Data necessary for the purpose of handling the enquiry. Communication takes place by telephone, email or directly on our website. | Closed enquiries are periodically deleted, but no later than 3.5 years after the enquiry was made. |
Sending Business messages (direct marketing).You have consented to receive newsletters. If you do not want to receive the newsletter, you can unsubscribe in the footer of the email. | Name, surname, telephone number and email. | We send a newsletter in which we inform you about our goods, services and news. | The data is processed for a period of 2 years from the last active viewing of the newsletter, unless you unsubscribe earlier. |
If you decide to shop with us, we will need your Personal Data to process your order. If you are interested, you can sign up on the website or via email to receive Business messages or similar promotional material that we prepare for existing Customers.
Why? | What data? | How? | For how long? |
Visit to the website. Providing basic functions of our website, analytics, and improving our services. We also process personal data to show you relevant content or our advertising on other websites. You can set your preferences in the cookie bar. The legal basis for processing Personal Data is consent (analytics, marketing cookies) or our legitimate interest (essential cookies). | Information about when and how you visit and view our website, which may include: your IP address, the date and time you accessed our website, information about your internet browser, your operating system or language settings, your website behavior history. If you visit our website via your mobile phone, we may also process data about your phone. | Cookies or other technologies for tracking user behavior on our website. | The processing time varies according to the type of cookies. Some process data only for a session (visit), some for longer. For more information, please see the instructions in Cookies Policy. |
User account.If you create a user account, we will process your Personal Data to the extent necessary. We process Personal Data on the basis of the concluded Contract. | The data filled in during registration, in particular your email and other contact details.The scope of Processing of Personal Data may vary depending on which Personal Data you fill in your user account. | You will provide us with this information when you create your user account. | We process your Personal Data for this purpose for as long as the user account exists and subsequently for 4 years after its termination. |
Personalisation of prices. When you visit our Eshop, we may use cookies or other Personal Data you provide to personalize the prices of our products based on your previous behavior. We only do this on the basis of your express consent. | Information about when and how you visit and view our website, which may include: your IP address, the date and time you accessed our website, information about your internet browser, your operating system or language settings, your website behavior history. In the case of a user account, we are processing first name, last name, address and payment information. | We adjust prices based on available data or Personal Data provided within the user account. | The processing time varies according to the type of cookie. Some process data only for a session (visit), some for longer. More information can be found in the Cookies Policy. The data collected through the user account is processed for the duration of the user account. |
Order processing.In order to purchase goods on our Eshop, you need to go through the order process. By completing an order, the Contract between us is concluded. This is the performance of the Contract. | During the order process, you enter your name, surname, email, telephone number, contact and delivery address, billing data, or data in the notes. | You will provide this information to us during the order process. | The data is processed for the duration of the Contract and then for a period of 4 years from the end of the Contract. |
Complaints. We will process certain Personal Data for the purpose of dealing with a complaint in order to comply with a legal obligation and also to perform the Contract. | Name, surname, email, telephone number, details of the concluded Contract, delivery and necessary payment details. | You provide us with this Personal Data in order to purchase goods on our Eshop, we process the order and then fulfill our statutory or contractual obligation. | We will process your Personal Data for the duration of the Customer's contractual relationship with us and subsequently for 4 years after its termination. |
Communication with customer support, requests and complaints.By submitting an enquiry, you consent to the processing of Personal Data for the purpose of dealing with the enquiry, or Personal Data is processed on the basis of a concluded Contract. | Name, surname, telephone number, email, invoice number, if applicable. | Communication with customer support takes place by phone, email or directly on our website. Calls are not recorded. | Closed enquiries and complaints are periodically deleted, but no later than 3.5 years after the enquiry or complaint has been dealt with. |
Marketing, in particular sending Business messages.We may send newsletters to our Customers based on a legitimate interest in improving and promoting our goods and services or to those who have consented to receive them. | Name, surname, telephone number and email. | We send a newsletter in which we inform you about our goods, services and news. | The data is processed for a period of 2 years from the last active viewing of the newsletter, unless you unsubscribe earlier. If you do not want to receive the newsletter, you can unsubscribe in the footer of the e-mail. |
Satisfaction rating. We have a legitimate interest in finding out whether you were satisfied with our service and the goods you ordered from our Eshop. | Name, surname, email and information about the ordered goods. | Unless you have previously opted out (e.g., during an order process), we will disclose certain Customer Personal Data to a third party for the purpose of evaluating customer satisfaction. | We process the data for the duration of the Customer's contractual relationship with us and subsequently for 4 years after its termination. |
Reviews. If you choose to submit a public review of our products, you agree to the publication of the review, including your name or nickname, the text of the review, the number of stars and optionally an embedded image or photo and the processing of other necessary Personal Data. | First and last name or nickname, email, possibly embedded photo or video and other Personal Data provided within the text of the review. | You voluntarily provide us with your Personal Data for the purpose of writing a review and publishing it. | Reviews are maintained until your consent is withdrawn, we process any Personal Data for a maximum of 5 years. |
Accounting.On the basis of the concluded Contract you will pay us the purchase price of the goods and transport. We issue you accounting and tax documents, which we then archive and continue to work with them for the purposes of proper bookkeeping and compliance with legal obligations. | Invoice data: name, surname, email address, billing address or other identification of the Customer and details of performance according to the order. Details on the tax document: name, surname, email address, billing address or other identification of the Customer and details of the goods ordered. | After filling in the payment information in the profile, we save this information to create an invoice. We are fulfilling a legal obligation. | We are legally obliged to keep accounting documents and accounting records (invoices) for 5 years starting from the end of the accounting period to which they relate. We are also obliged to keep the invoice for 3 years from the end of the tax year in which the tax liability relating to the invoice arose. We are also obliged to keep tax documents for 10 years from the end of the tax year in which the transaction took place. |
Compliance with legal obligations.In certain cases, we must process your Personal Data in order to comply with obligations imposed by law. | In particular, this may include name, surname, email address, billing information, or other identification of the User. | In this case, we process your Personal Data in order to comply with applicable law (compliance with a legal obligation). | We process your Personal Data for the period of time specified by the applicable law. |
Processors. We only use verified Processors with whom we have a written contract and who provide us with at least the same guarantees as we provide to you. We have set out above the data that Processors may process, including the purpose and legal title of the processing. We will be happy to provide you with details of our Processors on request.
Website traffic analysis | Google Analytics |
Order processing | Zásilkovna, Česká Pošta, DPD, GLS, PPL, GooglePay, ApplePay |
Complaints | Zásilkovna, Česká Pošta, DPD, GLS, PPL |
Inquiry handling and communication with us | |
Marketing | Google Ads, Sklik, Criteo, Microsoft, Heureka.cz, Zbozi.cz |
Sending Business messages | Brevo |
Social media | |
Satisfaction rating | Heureka.cz, Zbozi.cz |
Legal obligations. We may transfer Personal Data to third parties other than our Processors if required to do so by law or in response to lawful requests by public authorities or a court order in litigation.
Technical measures. Security is very important to us and we are constantly working to ensure that your Personal Data is protected. When choosing appropriate measures, we take into account the extent of processing, the risks involved of the processing, or the state of our technology.
Organizational measures.We have adopted and are committed to the following measures:
In relation to the protection of Personal Data, you are guaranteed the rights described below, which you can exercise by email [email protected].
How quickly do we process your request? We will respond to you within one month at the latest. If providing the information would endanger the privacy of others, or would be disproportionate to the risks or costs of providing it, we may not be able to comply. In order to deal with your request as soon as possible, we may need to verify your identity. In the event of a repeated request, the Controller will be entitled to charge a reasonable fee for a copy of the Personal Data.
Right of access | We will confirm whether we are processing your Personal Data. You have the right to be informed about the purposes of the processing, the categories of Personal Data, the recipients to whom it is disclosed, the duration of the processing. You have the right to know whether any right has already been exercised. It is also a prerequisite that the rights and freedoms of other persons and a copy of the Personal Data will not be adversely affected. |
Right to correct inaccurate data | We will correct inaccurate Personal Data upon your request. You can correct certain data in your user account. |
Right of erasure | If there is no other reason to further process the data, we will delete or anonymise the data requested by you. |
Right to restrict processing | Please contact us if you believe that we are processing data incorrectly. Whether it is the reasons for the processing or the extent of the processing. |
Right to be notified of correction, erasure, or restriction of processing | If you contact us with your request, we will inform you of the result. Sometimes we may not be able to comply (e.g. the email address from which you wrote to us is no longer working). |
Right to transfer Personal Data | We will provide your Personal Data that you have provided to us in a structured and machine-readable format to another controller of personal data at your request. |
Right to object to the Processing of Personal Data | If we process your data on the basis of a legitimate interest (e.g. sending a newsletter to Customers). It is up to us to prove our legitimate interest. If your objection is justified, we will stop processing Personal Data. |
Right to withdraw a consent | If you have changed your mind, please let us know. Processing for marketing and commercial purposes can be revoked at any time. |
Automated individual decision-making including profiling | Don't want to be decided by computer? We respect your right, so we do not carry out profiling. We process orders, so your Personal Data may be processed automatically. |
This Privacy Policy may only be amended in writing. You will be informed of this via our website.
If you have any questions about our Privacy Policy, please contact us at [email protected].
If you are dissatisfied, you may at any time file a complaint with the Office for Personal Data Protection, located at Pplk. Sochora 727/27, 170 00 Prague 7 - Holešovice (more information at https://www.uoou.cz/)
This Privacy Policy is effective from 20 March 2024.