Here at https://andrahandaric.com (ANDRA HANDARIC) we are committed to protecting and respecting the privacy of your personal data. This privacy notice explains how your data is collected, used, transferred and disclosed by ANDRA HANDARIC. It applies to data collected when you use our websites, iOS and android applications, when you interact with us through social media, email, or phone, or when you participate in our competitions or events. It covers:
- The personal data we collect
- How we collect your data
- How we use your data
- Marketing preferences, adverts and cookies
- Links to other websites and third parties
- How we share your data
- Your rights
- Changes to this privacy notice
- How to contact us
WHO IS ANDRA HANDARIC
ANDRA HANDARIC is an online fashion retail company. We design, source, market and sell clothing.
HANDARIC ANDRA G. SIMONA II, located at Cluj Napoca, România, Str. Napoca 12, Ap. 12 (collectively referred to as “ANDRA HANDARIC”, “we”, “us” and “our” in this privacy notice) is the controller and responsible for your personal data collected through the https://andrahandaric.com website (the “website”).
OUR COMMITMENT TO YOU
We take the protection of your personal data seriously and will process your personal data fairly, lawfully and transparently. This privacy notice describes the personal data we are collecting about you and how it is used.
We will only collect and use your personal data for the following purposes, to:
- fulfill your order(s)
- keep you up to date with the latest offers and trends
- give you a better shopping experience
- help us to make our marketing more relevant to you and your interests
- improve our services
- meet our legal responsibilities
HOW WE KEEP YOUR DATA SAFE AND SECURE
We have appropriate organisational safeguards and security measures in place to protect your data from being accidentally lost, used or accessed in an unauthorised way, altered or disclosed.
The communication between your browser and our website uses a secure encrypted connection wherever your personal data is involved.
We require any third party who is contracted to process your personal data on our behalf to have security measures in place to protect your data and to treat such data in accordance with the law.
In the unfortunate event of a personal data breach, we will notify you and any applicable regulator when we are legally required to do so.
THE PERSONAL DATA WE COLLECT
Personal data means any information about an individual from which that person can be identified. It does not include anonymised data, where the identity and identifying information has been removed.
While our website is designed for a general audience, we will not knowingly collect any data from children under the age of 13 or sell products to children. If you are under the age of 13, you are not permitted to use or submit your data to the website.
The following groups of personal data are collected:
- Identity Data includes information such as: first name, last name, title, date of birth (optional), occupation, personal description, photo and gender.
- Contact Data includes information such as: email address, billing address, delivery address, location, country, telephone number, loyalty programme membership number, and social media id (if you log in by social media).
- Transaction Data includes information such as: details of your purchases and the fulfilment of your orders (such as basket number, order number, subtotal, title, currency, discounts, shipping, number of items, product number, single item price, category, tax etc.);
- Technical Data includes information such as: details of the device(s) you use to access our services, your internet protocol (IP) address, login data, your username and password, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform.
- Profile Data includes information such as: purchases or orders made by you, product and style interests, preferences, feedback, and survey responses.
- Usage Data includes information such as: how and when you use our website/app, how you moved around it, what you searched for; website/app performance statistics, traffic, location, weblogs and other communication data; loyalty programme activities; and details of any other boohoo products and services used by you.
- Marketing and Communications Data includes information such as: your preferences in receiving marketing from us and our third parties and your communication preferences.
We also collect, use and share Aggregated Data such as statistical or demographic data for any purpose. Aggregated Data may be derived from your personal data but is not considered personal data as this data does not directly or indirectly reveal your identity. For example, we may aggregate your Usage Data to calculate the percentage of users accessing a specific website feature. However, if we combine or connect Aggregated Data with your personal data so that it can directly or indirectly identify you, we treat the combined data as personal data which will be used in accordance with this privacy notice.
HOW WE COLLECT YOUR DATA
We may collect personal data about you in the following ways:
- Direct interactions – you may give us your Identity, Contact, Profile, and Marketing and Communications data (as described above) by filling in forms, entering information online or by corresponding with us by post, phone, email, telephone or otherwise. This includes personal data you provide, for example, when you:
- Create an account or purchase products on our website;
- Subscribe to our newsletter, discussion boards, social media sites or create wish lists;
- Enter a competition;
- Join a ANDRA HANDARIC loyalty programme;
- Complete a voluntary market research survey;
- Contact us with an enquiry or to report a problem (by phone, email, social media, or messaging service);
- Use the “refer a friend” function on our website; or
- When you log in to our website via social media.
- Third parties – we may receive personal data about you from various third parties, including:
- Technical Data from third parties, including analytics providers such as Google. Please see further information in the section entitled ‘Marketing preferences, adverts and cookies’.
- Technical Data from affiliate networks through whom you have accessed our website;
- Identity and Contact Data from social media platforms when you log in to our website using such social media platforms;
- Contact, Financial and Transaction Data from providers of technical, payment and delivery services.
We will only collect and process your personal data where we have a legal basis to do so. As a data controller, the legal basis for our collection and use of your personal data varies depending on the manner and purpose for which we collected it.
We will only collect personal data from you when:
- we have your consent to do so, or
- we need your personal data to perform a contract with you. For example, to process a payment from you, fulfill your order or provide customer support connected with an order, or
- the processing is in our legitimate interests and not overridden by your rights, or
- we have a legal obligation to collect or disclose personal data from you.
THE LEGAL BASIS FOR PROCESSING YOUR PERSONAL DATA
Your personal data is used by ANDRA HANDARIC to support a range of different activities. These are listed in the table below together with the types of data used and the legal bases we rely on when processing them, including where appropriate, our legitimate interests. Please be aware that we may process your personal data using more than one lawful basis, depending on the specific activity involved. Please contact us if you need details about the specific legal ground we are relying on to process your personal data where more than one ground has been set out in the table below.
USES MADE OF YOUR PERSONAL DATA
|Purpose/Activity||Type of data||Lawful basis for processing including basis of legitimate interest|
|To create an account and register you as a new customer (either directly or via social media).||• Identity• Contact||Performance of a contract with you|
|To process and deliver your order including: recording your order details; keeping you informed about the order status; and automated decision making to assist fraud prevention and detection.||• Identity• Contact• Transaction||• Performance of a contract with you• Necessary for our legitimate interests• For automated decision making we consider that fraud detection and prevention is in our legitimate interests to ensure that fraudulent transactors are unable to benefit from our services and in the legitimate interest of the public as whole due to the impact of fraud on the consumer market; we also consider it a necessary element of entering into a contract with you that we are able to verify your identity and prevent fraud.|
|To manage our relationship with you, including: providing you with any information, products and services that you request from us; notifying you about changes to our services, terms and conditions or privacy notice; asking you to leave a review or take a survey.||• Identity• Contact• Profile• Marketing and Communications||• Performance of a contract with you• Necessary for our legitimate interests (to keep our records updated and to study how customers use our products and services)|
|To enable you to take part in a competition, event, survey, or receive a reward for shopping with us.||• Identity• Contact• rofile• Usage• Marketing and Communications||• Necessary for our legitimate interests (to study how customers use our products and services, to develop them and grow our business)• Where you have decided to enter into a competition or event, for the performance of a contract with you|
|To administer, protect and improve our business and our website/app, including: troubleshooting, data analysis, testing, system maintenance, support, data analysis, reporting and hosting of data; setting default options for you, such as language and currency.||• Identity• Contact• Profile• Technical• Transaction• Marketing and Communications||• Necessary for our legitimate interests (for running our business, provision of administration and IT services, network security, and to detect and prevent fraud)• Necessary to comply with a legal obligation|
|To deliver relevant website content, online advertisements and information for you; and measure the effectiveness of the advertising provided.||• Identity• Contact• Profile• Usage• Marketing and Communications• Technical||Necessary for our legitimate interests (to study how customers use our products and services, to develop them, to grow our business and to inform our marketing strategy)|
|To use data analytics to: improve our website, products, services, marketing, customer relationships and experiences;and for market research, statistical and survey purposes.||• Technical• Usage||Necessary for our legitimate interests (to define types of customers for our products and services, to keep our website updated and relevant, to develop our business and to inform our marketing strategy)|
|To recommend products, services discounts and offers that may be of interest to you, including to send you such information by email, post or SMS.||• Identity• Contact• Technical• Usage• Profile• Marketing and Communications||• Necessary for our legitimate interests (to develop our products and services and grow our business) or• Consent.• See further details in the section ‘Marketing preferences, adverts and cookies’|
|To inform or remind you by email of any task carried out via our website which remains uncompleted, such as incomplete orders or abandoned baskets.||• Identity• Contact• Usage||Necessary for our legitimate interests (to improve the shopping experience of our customers)|