Privacy Policy
PRIVACY POLICY
1) INFORMATION ABOUT THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER
1.1 We are pleased that you are visiting our website and thank you for your interest. In the following, we inform you about the handling of your personal data when using our website. Personal data is all data with which you can be personally identified.
1.2 The controller for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is Pearl Bay Boutique. The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data.
1.3 This website uses SSL or TLS encryption for security reasons and to protect the transmission of personal data and other confidential content (e.g. orders or inquiries to the controller). You can recognize an encrypted connection by the character string “https://” and the lock symbol in your browser’s address bar.
2) DATA COLLECTION WHEN VISITING OUR WEBSITE
When using our website purely for informational purposes, i.e., if you do not register or otherwise provide us with information, we only collect data that your browser transmits to our server (so-called “server log files”). When you access our website, we collect the following data, which is technically necessary for us to display the website:
- Our visited website
- Date and time of access
- Amount of data sent in bytes
- Source/referrer from which you came to the site
- Browser used
- Operating system used
- IP address used (if applicable: in anonymized form)
The processing is carried out in accordance with Art. 6 para. 1 lit. f GDPR based on our legitimate interest in improving the stability and functionality of our website. The data is not passed on or used in any other way. However, we reserve the right to check the server log files retrospectively if there are concrete indications of unlawful use.
3) COOKIES
To make visiting our website attractive and to enable the use of certain functions, we use cookies on various pages. These are small text files stored on your device. Some of the cookies we use are deleted after the browser session ends, i.e., after you close your browser (so-called session cookies). Other cookies remain on your device and allow us or our partner companies (third-party cookies) to recognize your browser on your next visit (persistent cookies).
When cookies are set, they collect and process specific user information such as browser and location data as well as IP address values, to varying degrees. Persistent cookies are automatically deleted after a specified duration, which may vary depending on the cookie.
Some cookies help simplify the ordering process (e.g., remembering the contents of a virtual shopping cart for a later visit). If personal data is also processed by individual cookies we use, the processing takes place either in accordance with Art. 6 para. 1 lit. b GDPR (for the execution of the contract) or in accordance with Art. 6 para. 1 lit. f GDPR to safeguard our legitimate interests in the best possible functionality of the website and a customer-friendly and effective design of the site visit.
We may work with advertising partners who help us make our internet offering more interesting for you. In such a case, cookies from partner companies (third-party cookies) may also be stored on your hard drive when you visit our website. If we cooperate with the aforementioned advertising partners, you will be individually and separately informed about the use of such cookies and the scope of the information collected.
Please note that you can configure your browser to notify you about the setting of cookies and individually decide on their acceptance or exclude the acceptance of cookies for specific cases or in general. The cookie settings for each browser are described in the help menu of each browser, which explains how to change your cookie settings. You can find this for the respective browsers under the following links:
- Internet Explorer:
https://support.microsoft.com/de-de/help/17442/windows-internet-explorer-delete-manage
- Firefox:
https://support.mozilla.org/de/kb/cookies-erlauben-und-ablehnen
- Chrome:
https://support.google.com/chrome/answer/95647?hl=de&hlrm=en
- Safari:
https://support.apple.com/kb/ph21411?locale=de
- Opera:
https://help.opera.com/en/latest/web-preferences/#cookies
Please note that if cookies are not accepted, the functionality of our website may be limited.
4) CONTACTING US
When you contact us (e.g., via contact form or email), personal data is collected. Which data is collected in the case of a contact form can be seen from the respective form. These data are stored and used exclusively for the purpose of responding to your request or for contacting you and the related technical administration.
The legal basis for processing the data is our legitimate interest in responding to your inquiry in accordance with Art. 6 para. 1 lit. f GDPR. If your contact aims to conclude a contract, the additional legal basis for the processing is Art. 6 para. 1 lit. b GDPR.
Your data will be deleted once your inquiry has been conclusively answered and provided that there are no statutory retention obligations to the contrary.
5) DATA PROCESSING FOR ACCOUNT CREATION AND CONTRACT FULFILLMENT
According to Art. 6 para. 1 lit. b GDPR, personal data will be collected and processed if you provide it to us to execute a contract or open a customer account. Which data is collected can be seen from the respective input forms.
You can delete your customer account at any time by sending a message to info@pearlbay-boutique.com. We store and use the data you provide for contract processing.
After the contract has been fully processed or your customer account deleted, your data will be blocked with regard to tax and commercial law retention periods and deleted after these periods expire, unless you have expressly consented to further use of your data or we reserve the right to use your data legally permitted beyond that, which we inform you about in this statement.
6) USE OF YOUR DATA FOR DIRECT ADVERTISING
6.1 Subscription to Our Email Newsletter
If you subscribe to our email newsletter, we will regularly send you information about our offers. The only mandatory data for sending the newsletter is your email address. Providing any other data is optional and is used to address you personally.
For the newsletter dispatch, we use the so-called double opt-in procedure. This means that we will only send you a newsletter after you have explicitly confirmed that you agree to receive newsletters. You will then receive a confirmation email asking you to confirm your subscription by clicking a corresponding link.
By activating the confirmation link, you give us your consent to use your personal data in accordance with Art. 6 para. 1 lit. a GDPR. When registering for the newsletter, we store your IP address as entered by your Internet Service Provider (ISP) as well as the date and time of registration in order to trace any misuse of your email address at a later time.
The data collected during registration is used exclusively for the purposes of promotional communication via the newsletter. You can unsubscribe from the newsletter at any time via the link provided in the newsletter or by contacting info@pearlbay-boutique.com.
Upon unsubscribing, your email address will be immediately removed from our newsletter distribution list, unless you have expressly consented to further use of your data or we reserve the right to further data use that is permitted by law and about which we inform you in this policy.
6.2 Newsletter for Existing Customers
If you have provided us with your email address when purchasing goods or services, we may send you regular offers for similar goods or services by email. According to legal regulations, we do not require separate consent for this.
The data processing takes place solely based on our legitimate interest in personalized direct advertising according to Art. 6 para. 1 lit. f GDPR. If you initially objected to the use of your email address for this purpose, you will not receive such emails.
You can object to the use of your email address for advertising purposes at any time by contacting info@pearlbay-boutique.com. You will only incur transmission costs according to basic rates.
7) DATA PROCESSING FOR ORDER HANDLING
7.1 General
We pass on your personal data to the shipping company commissioned with the delivery as far as necessary to deliver the goods. Your payment data will be passed on to the credit institution commissioned with the payment processing if necessary.
The legal basis for the transfer of data is Art. 6 para. 1 lit. b GDPR.
7.2 Use of Payment Service Providers
- PayPal
If you choose to pay via PayPal, your payment data will be transferred to:
PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg.
This transfer is made according to Art. 6 para. 1 lit. b GDPR. PayPal may carry out a credit check for certain payment methods (e.g., purchase on account or installment payments). For this purpose, your data may be passed on to credit agencies as per Art. 6 para. 1 lit. f GDPR based on PayPal’s legitimate interest in determining your solvency. You can find more information in PayPal’s Privacy Policy:
https://www.paypal.com/de/webapps/mpp/ua/privacy-full
You can object to this processing at any time by contacting PayPal.
- SOFORT (Klarna)
If you select “SOFORT” as your payment method, your data will be passed to:
SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany
Part of Klarna Bank AB (publ), Sveavägen 46, 11134 Stockholm, Sweden
More information about data protection with SOFORT:
https://www.klarna.com/sofort/datenschutz
8) CONTACT FOR REVIEW REMINDERS
We may use your email address to remind you once to submit a review of your order, if you have given us your express consent during or after your purchase (Art. 6 para. 1 lit. a GDPR). You can revoke your consent at any time by contacting info@pearlbay-boutique.com.
9) USE OF SOCIAL MEDIA: SOCIAL PLUGINS
9.1 Facebook Plugins Using the Shariff Solution
Social plugins (“plugins”) of the social network Facebook, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA (“Facebook”), are used on our website.
To increase the protection of your data when you visit our website, these buttons are not fully integrated as plugins but only using an HTML link. This type of integration ensures that no connection to Facebook servers is established when a page of our website containing such buttons is accessed. Only when you click on the button will a new browser window open and load the Facebook page where you can interact with the plugins (possibly after entering your login data).
Facebook Inc., based in the USA, is certified under the US-EU Privacy Shield, which ensures compliance with EU data protection levels.
For details on how Facebook handles your personal data, your rights, and settings to protect your privacy, please see Facebook’s privacy policy:
https://www.facebook.com/policy.php
9.2 Google+ Plugins Using the Shariff Solution
Social plugins (“plugins”) of the Google+ network operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”) are also used.
These plugins are embedded only as HTML links to increase data protection. This ensures no connection to Google’s servers is established just by visiting the page. Only when you click the button will the Google+ page open in a new browser window.
Google LLC is certified under the US-EU Privacy Shield, ensuring compliance with European data protection standards.
For more information, see Google’s privacy policy:
https://www.google.com/intl/de/policies/privacy/
9.3 Instagram Plugin Using the Shariff Solution
Social plugins (“plugins”) of Instagram, operated by Instagram LLC., 1601 Willow Rd, Menlo Park, CA 94025, USA (“Instagram”), are used on our website.
These are also integrated using HTML links. This prevents a direct connection to Instagram servers when the page is loaded. A connection is only established when you click the plugin.
Instagram LLC is certified under the US-EU Privacy Shield.
For more information, please refer to Instagram’s privacy policy:
https://help.instagram.com/155833707900388/
10) ONLINE MARKETING
10.1 DoubleClick by Google
This website uses the online marketing tool DoubleClick by Google, operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“DoubleClick”).
DoubleClick uses cookies to serve relevant ads, improve campaign performance reports, or prevent a user from seeing the same ad multiple times. Each browser is assigned a cookie ID to track displayed ads. This is done based on our legitimate interest in optimal marketing per Art. 6 para. 1 lit. f GDPR.
If a user interacts with an ad and later visits our website, this is counted as a conversion. According to Google, DoubleClick cookies do not contain personal data.
By integrating DoubleClick, Google may receive the information that you visited a part of our site or clicked an ad. If you’re logged into a Google account, this visit may be assigned to your account.
You can opt out of this tracking by:
- Disabling cookies from the domain www.googleadservices.com via this link: https://www.google.de/settings/ads
- Using the Digital Advertising Alliance opt-out page: www.aboutads.info
- Adjusting browser cookie settings accordingly
More details:
https://www.google.de/policies/privacy/
10.2 Use of Google AdWords Conversion Tracking
We use the Google Ads program and Google Conversion Tracking by Google LLC.
When you click on a Google ad, a cookie is placed for conversion tracking. This helps us measure the success of our ads. The cookie expires after 30 days and does not personally identify the user.
Each Ads client receives a different cookie. Information collected helps compile statistics but does not identify users.
You can block tracking by disabling cookies in your browser or installing this plugin:
https://www.google.com/settings/ads/plugin?hl=de
11) WEB ANALYTICS
Google (Universal) Analytics
This site uses Google Analytics, a web analytics service of Google LLC. Google Analytics uses cookies that generate information about your use of the website, typically sent to a Google server in the USA.
We use Google Analytics with the extension _anonymizeIp(), which anonymizes your IP within the EU. Only in exceptional cases is the full IP sent to Google and shortened there.
Processing is based on Art. 6 para. 1 lit. f GDPR – our legitimate interest in optimizing our website.
Google does not merge the IP address transmitted by your browser with other data.
To prevent data collection:
- Use this plugin: https://tools.google.com/dlpage/gaoptout?hl=de
- Or click an opt-out link (must be reactivated after clearing cookies)
For cross-device tracking, a unique, anonymous User-ID may be used.
More info:
https://support.google.com/analytics/answer/2838718?hl=de
12) RETARGETING / REMARKETING / REFERRAL ADVERTISING
Facebook Custom Audience via Pixel
With your consent, we use the Facebook Pixel, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA.
This tracks user behavior after clicking Facebook ads, helping improve ad effectiveness and targeting.
Data collected is anonymous for us but may be linked to your Facebook profile. Facebook can use this data for its own advertising purposes per:
https://www.facebook.com/about/privacy/
Consent is only valid for users over 13 years old. Younger users must seek parental permission.
You can disable third-party cookies at:
https://www.aboutads.info/choices/
Google AdWords Remarketing
We also use Google Remarketing to display ads in Google Search and other sites based on your interests.
Google stores a cookie that identifies your browser and tracks visited pages. If you are logged in to your Google account, Google may link this data across devices.
You can opt out via:
- https://www.google.com/settings/ads/onweb/
- www.aboutads.info
- Adjusting your browser settings
More info:
https://www.google.com/policies/technologies/ads/
13) DATA SUBJECT RIGHTS
13.1 Your Rights under GDPR
You have the following rights:
- Right to access (Art. 15 GDPR)
- Right to rectification (Art. 16 GDPR)
- Right to erasure (Art. 17 GDPR)
- Right to restrict processing (Art. 18 GDPR)
- Right to be informed (Art. 19 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to withdraw consent (Art. 7 para. 3 GDPR)
- Right to lodge a complaint (Art. 77 GDPR)
13.2 Right to Object
You may object to data processing based on Art. 6 para. 1 lit. f GDPR at any time, citing reasons from your particular situation. If you object, we will stop processing your data unless we can demonstrate compelling legitimate grounds.
If your data is used for direct advertising, you can object at any time, and we will cease processing your data for this purpose.
14) DURATION OF PERSONAL DATA STORAGE
The duration of data storage depends on statutory retention periods (e.g., tax and commercial regulations). After these periods, data will be routinely deleted unless it is still required for contract fulfillment or there is a legitimate interest in further storage.