Discover the Clab Skin product line, ideal for your facial care. Estimated delivery within 48 hours.

Site user information

Information on the protection of personal data for website users

WHO WE ARE
Your privacy matters to us: you can count on us! Read our privacy policy to understand how we process your personal data, and if you have any questions, please email privacy@clabskin.it .

INTRODUCTION
Your privacy is important to us at https://clabskin.com

We have written this privacy policy (hereinafter also simply "policy") in a simple and understandable manner to help you understand who we are, what data we collect about you, and what we do with it. We want you to be aware that your personal data (hereinafter also simply "data" or "your data") is any information or set of information from which you can be identified, directly or indirectly, in particular by reference to an identifier, such as first and last name, email address, telephone number, etc.

Please note that since this is a general policy, you may find more specific information regarding the various services we offer elsewhere on the site, and we may provide different information regarding specific processing activities. Please take the time to read the entire policy so that, if you do not agree with how we process your personal data, you can refrain from providing it to us.

What is this information for?

This policy explains how we collect and use (i.e., process) your data when you visit or use our website, or when you register on our site.

WHO WE ARE
When this information says “we” it refers to the data controller , who is Claudia Bussotti, Via Giuseppe di Vittorio 2/ B (06012) Città di Castello (PG)

WHAT TYPES OF DATA DO WE COLLECT?
We collect your data when you interact with us. You provide us with data when, for example, you enter into a contract with us, contact us to purchase products on our site, or request information. We also collect your data automatically when, for example, you browse our website.

WHAT TYPES OF DATA DO WE COLLECT ABOUT YOU?
We may collect your data when you visit our website or request information from us. We don't just collect the data you provide directly when you contact us or otherwise use the website to communicate with us or send us requests. Some data is also collected automatically as a result of your browsing experience. Below is an overview of the categories of data we may process:

A) information you provide to us directly

Data categories:
  • Identifying data (Examples of data types: First name, last name, date of birth).
  • Contact details (Email, telephone number*).
  • Shipping data (Address, Country).
  • Banking details (bank accounts, data relating to payments made by credit card or PayPal account).
  • Login credentials - for registered users only (Username, password** or other security codes).
  • Order history - available for registered users (Products purchased, quantities, prices).
  • Any other information you choose to share with us (Feedback, opinions, reviews, and any information you provide to us by any means).

*We will only use your phone number to contact you if necessary to deliver your order and will only share it with the courier for this purpose.
** This doesn't mean we'll see your password, just that we can manage it, allowing you to enter it to log in or reset it.

b) Information we collect automatically

When you visit or use our website, we may collect, in addition to the information you provide directly, information that your computer, mobile phone, or other devices you use to access our channels automatically sends to us.

Data categories:

  • device information (data types: Model, IMEI code and other unique device identifiers, MAC address, IP address, operating system version, device settings you use to access various services);
  • log information (data types: Time and duration of your use of the digital channel);
  • Location information (types of data: your location (i.e. the geographic area in which you are located) derived from your IP address or other geolocation-based technologies that allow us to obtain this type of information when you enable location sharing on your PC or smartphone, if the application or browser with which you access our site allows it).

DO WE TRANSFER YOUR DATA ABROAD?
By using the hosting service that hosts the website https://clabskin.com, your data is transferred to servers located outside the EU, specifically to Canada. The safeguards adopted for transfers to third countries include standard contractual clauses and the European Commission's adequacy decisions. Specifically, an adequacy decision from the European Commission is used for transfers to Canada.

HOW LONG DO WE PROCESS YOUR DATA?
We process your data until the purpose for which we collected it is fulfilled, but sometimes we may need to process some data for longer to comply with a legal obligation.

HOW LONG DO WE KEEP YOUR DATA?
We retain your data for as long as necessary to fulfill the purpose for which we collected it (for clarification on the purposes, please read the section "How do we use your data?"). Please note that in some cases, a longer retention period may be permitted or required by law. The criteria for determining the retention period include:

  • How long do we need the data transmitted through the site to provide you with the service or to operate our business?
  • How long do we need your data to provide you with feedback?
  • How long do we need your browsing data to ensure the security of the site?
  • Have you revoked the consent you gave us (for the processing for which consent is required)?
  • Are we subject to a legal, contractual, administrative, or similar obligation to retain your data? For example, when there are regulations requiring data retention, or court orders to retain data relevant to an investigation, or the data must be retained to enforce a legal claim. For example, we retain billing data for ten years, in compliance with current legal obligations, and we also retain data related to the performance of the contract for ten years, the period within which any legal action becomes statute-barred.
  • Finally, if you decide to provide us with a review using the form on the site, if the review is approved, we will retain the review and related personal data until the product is available. We reserve the right, however, to remove it if it appears to be inaccurate due to the passage of time or changes in the product's characteristics. Unapproved reviews, along with the related data, are deleted and retained only for the time necessary for the approval process.

WHY DO WE COLLECT YOUR DATA?
We use your data to provide you with the best possible experience, from improving our services to providing customer support.

HOW DO WE USE YOUR DATA?
We may use your data for various legitimate reasons and purposes related to our business. Below are the purposes for which we process your data:
Purpose:

  • Conclusion and execution of contracts - Case studies: sales, invoicing, shipment of goods, pre-contractual activities, account management;
  • Provide you with assistance (upon your request) - Case: providing you with assistance through our communication channels;
  • Manage withdrawals, returns, warranties, and complaints – Case study: provide you with assistance and follow up on complaints or communications aimed at asserting the right of withdrawal or the guarantee of conformity;
  • Security and protection of our interests or assets – Case study: Developing and maintaining technical and organizational security measures, conducting internal audits, including with respect to the IT security of the site itself.
  • Legal Obligations – Case Study: Disclosing data and information to competent authorities, data protection supervisory authorities, in accordance with applicable legislation, record-keeping and reporting obligations, conducting audits relating to regulatory compliance, complying with inspections and requests from governments or authorities, fulfilling procedural requests, for example in relation to testimonial obligations;
  • Defense in court: Acting or defending ourselves in court;
  • IT security (legitimate interest of the owner) – Case study: Ensuring the security of our website.
  • Publish the reviews you send us spontaneously.

WHAT HAPPENS IF I DON'T WANT TO GIVE YOU MY DATA?
We ask you to provide us with the personal data necessary for registration, to complete the sales contract, or to ship the product; or you can send us your data if you request information. However, if you choose not to provide us with the data necessary to complete the contract, register on the site, ship the products, or provide you with information, we will not be able to guarantee that you will be able to use our services or purchase our products, and we may not be able to respond to your requests.

WHAT IS THE LEGAL BASIS FOR OUR PROCESSING?
To lawfully process your data, we can rely on various legal bases:

  • Your consent (only when required or permitted by law). If we rely on consent as the legal basis for processing your data, you can withdraw it easily and free of charge at any time;
  • The need to enter into a contract with you and fulfill the obligations arising from it;
  • The need to comply with obligations imposed on us by law, or to exercise a right or defend ourselves in court;
  • The need to pursue our legitimate interest, such as:
    - ensure that our network and information are secure;
    - To prevent suspected violations of law or investigate actual violations of law, as well as violations of contracts with business customers or non-compliance with policies or standards we follow.
  • The need to respond to your request, or fulfill your request.
  • Publish the reviews you send us spontaneously:
    The owner's legitimate interest is to inform users of its site of the opinions of those who have already tried the products offered and to share their opinions on them. Those who review the product may object to the publication of their identification data (name) and request that the review be published anonymously, indicating a fictitious name (nickname). The publication of the reviewer's identification data is justified by the desire to transparently disclose that the review is truthful and has been expressed by customers who have tried the product and is not the product of the Owner's imagination, created for commercial purposes.
    The requested information is mandatory, although your email address will not be published, as the review will not be considered without it. If you wish to remain anonymous, simply enter a pseudonym in the "Name" field.
    The need to request the aforementioned data as mandatory has been considered in compliance with the principles of data protection by design and data protection by default. Furthermore, we have implemented appropriate technical and organizational measures to ensure that, by default, only the personal data necessary to allow users to fully express their opinion on the product they wish to review are processed, while also ensuring that third parties (potential customers and users) have a legitimate interest in the accuracy of their opinion.

HOW DO WE PROTECT YOUR DATA?
We protect your data with appropriate technical and organizational measures.

HOW DO WE PROTECT YOUR DATA?
To protect your data, we take appropriate measures in compliance with applicable law, including requiring our service providers to use appropriate measures to maintain the confidentiality of your information and to keep your data secure. Depending on the state of the art, implementation costs, and the nature of the data to be protected, we implement technical and organizational measures to prevent the risk of destruction, loss, alteration, disclosure, or unauthorized access to your data.

DO WE SHARE YOUR DATA?
We will only share your data when required by law, or when you have expressly permitted it, or to provide you with the services you have requested.

WHEN DO WE SHARE YOUR DATA?
We share your data with others only in the circumstances indicated below. If necessary for the purposes set out in this policy, we may share your data with the recipients indicated below.

  • Suppliers: We may outsource certain services to trusted third parties to provide us with functionality and services, such as providing ICT services for managing our website and email, or shipping, or online payment services, or banking.
  • Businesses, professionals, and consultants: We may share your data with professionals and consultants such as insurance companies, lawyers, and accountants.
  • In particular, the website https://clabskin.com is hosted by Shopify International Limited 2nd Floor, 1-2 Victoria Buildings, Haddington Road, Dublin 4, D04 Xn32 Ireland, which processes the data as the data controller.
  • Public and government authorities: When required by law, or when necessary to protect our rights, we may share data with the competent authorities.
DO WE SHARE YOUR DATA?
Disclosing data means making it available to an indeterminate number of people. We engage in dissemination when we publish data on our website.
We only share data related to reviews. If you freely choose to provide one through the form on the site, your name or nickname and the opinion you expressed will be shared, including any information relating to you that you deem appropriate to share. The email address we ask you to provide to ensure the authenticity of the review will not be published or otherwise distributed.

    KEEP CONTROL!
    We encourage you to maintain control over your data: Please keep your data accurate and up-to-date.

    WHAT SHOULD YOU DO?
    We remind you that it is your responsibility to ensure, to the best of your knowledge, that the data you provide us is accurate, complete, and up-to-date. Furthermore, if you share other people's data with us, you are responsible for processing that data in accordance with the law. For example, you will be responsible for informing the people whose data you provide us of the content of this policy and obtaining their consent if required by law.

    WHAT ARE YOUR RIGHTS?
    We provide you with access to your data. You can control your data by asking us to update, modify, or, if permitted by law, delete it. We encourage you to regularly review your data. You can always contact us if you wish:

      • access or review, modify, or delete the data you have provided to us (if we are no longer permitted or required to retain it);
      • object to certain treatments;
      • revoke the consent given (only for processing based on your consent)
      • receive a copy of your data (in a commonly used, readable format);
      • ask us to limit the use of your data (if applicable) and any other information relating to the protection of your data
      • Our contact details are:
        - Paper mail Claudia Bussotti, Via Giuseppe di Vittorio 2/ B (06012) Città di Castello (PG)
        - Online via email: clabskin2021@gmail.com.

    RIGHT TO OBJECT
    You can always object to processing for marketing purposes, and we will comply with your request. You can also object to profiling or processing based on legitimate interest. In the latter case, we will comply with your request by assessing whether our legitimate interest prevails over your interests or fundamental rights and freedoms. We do our best to respond to requests promptly and free of charge, unless this would require a disproportionate effort. In some cases, we may ask you to verify your identity before processing your request. If you are dissatisfied with the response you receive, you can lodge a complaint with the competent supervisory authority in your country (for Italy: Garante per la protezione dei dati personali).

    WHEN WILL THIS NOTICE BE UPDATED?
    Over time, treatments may evolve and change, and the information that reflects them may be modified.

    This policy may be subject to change over time. The most recent version of the policy on the website reflects our processing of personal data and information.

    This policy was updated in November 2021.

    What are you looking for?

    Your cart