Go to main content

Privacy Policy

The following text describes how we use and process the personal data you have provided to us. You will also find information here on how to contact us if you have questions about personal data. We are happy to answer any questions you may have.
 

Identity and Contact Details of the Controller

Company / full name: 

NORTHERN DESIGN s.r.o.

Registered office: 

Bezručova 1656, 539 01 Hlinsko

Company ID (IČO): 

27509940

Phone: 

469 319 583

Email: 

hm@northerndesign.cz


What Type of Personal Data Do We Collect?

We only collect personal data for the purpose of communicating with website users or fulfilling the offered service or sale of goods, based on the performance of a concluded contract. This includes First Name, Last Name, Delivery Address, Billing Address, Email and payment details depending on the payment type.
 

For What Purpose Do We Process Personal Data?

Processing personal data is necessary for communicating with website users or fulfilling a contract arising from ordering the offered services, for the following purposes:

  • Information about new products.

  • Providing the service.

  • Informing you about the status of your order.

  • Delivering the ordered goods.

  • Handling any complaints.

We need your email address so we can inform you about discounts and special offers, competitions and other interesting news. You must give informed consent for this extended marketing communication. Consent is given by filling in the registration form for these emails, or by confirming an email that was sent to you following an order for a service / product.

If you do not wish to receive this information, you may withdraw your consent at any time. You will find this option in every newsletter you receive. You may also contact the authorised person at the email address given above.
 

What Personal Data Do We Share With Third Parties?

The website is connected to several third-party applications, which further process data for their own purposes. A complete overview of the third-party applications our website uses can be found in the following table:

Service Name

Data

Purpose

Type of Consent

Facebook

Cookies, anonymous data on group behaviour and interests.

Legitimate interests of the controller.

Opt-out, consent not required.

Google Analytics

Cookies, anonymous data on website usage.

Analysis of anonymous data.

Consent not required.

Google Adwords

Cookies, anonymous data on website usage.

Campaign optimisation based on anonymous data.

Consent not required.

Mailchimp

Email

Managing and sending email communications.

Legitimate interests of the controller, customer consent.

Smartsupp

Cookies, anonymous information about behaviour on the site.

Analysis of customer behaviour data on the site.

Not required.

 

Through third-party applications we collect information about your computer. This data is anonymous. It cannot identify you as a person and is used only to generate statistics and for their subsequent analysis.
 

How We Use Cookies

We use third-party cookies that anonymously store information about visits to the website. These may then be used for analytical or marketing purposes. All information stored in the cookies we use is anonymous. Cookies cannot be tracked automatically — we use an opt-in approach, meaning we only track cookies after the website user has given consent. 
 

What Security Measures Do We Use for Storing Personal Data?

The Provider has adopted and maintains technical and organisational measures to prevent unauthorised or accidental access to personal data, its alteration, destruction or loss, unauthorised transfers, other unauthorised processing, as well as any other misuse of personal data.

  •  Anonymisation of personal data.

  • The ability to restore the availability of and access to personal data in a timely manner in the event of a physical or technical incident.

  • A process of regular testing, assessment and evaluation of the effectiveness of the technical and organisational measures implemented to ensure processing security.

  • Multi-layered firewall.

  • Antivirus protection and monitoring of unauthorised access.

  • Encrypted data transfer via IT technologies.

  • Access to personal data restricted to authorised persons of the Provider.

  • Servers holding personal data locked in a server room.

How Can You Check the Personal Data You Have Provided?

If you would like to verify which of your specific data we are working with, please contact the authorised person — see the email in the first part of this page. Follow the same procedure if you wish to have your personal data deleted.
 

General Provisions

  1. 1. The customer voluntarily provides their personal data and agrees to it being provided to third parties under the conditions set out below.

  2. 2. Personal data will be processed in electronic form by automated means, or in printed form by non-automated means.

  3. 3. If a website user believes that the controller or processor is processing their personal data in a manner that conflicts with the protection of their private and personal life, or in breach of the law, in particular if the personal data is inaccurate with regard to the purpose of its processing, they may: — ask the seller or processor, at their electronic address or in writing, for an explanation, — request that the controller or processor, by request to their electronic address or in writing, remedy the resulting situation.

  4. 4. If a website user requests information regarding the processing of their personal data, the seller is obliged to provide this information to their electronic address or in writing by post. The controller has the right to request reasonable compensation not exceeding the costs necessary to provide the information under the previous sentence, in the case of a repeated request.

  5. 5. The seller is a duly registered controller of personal data. Customers' personal data is secured against misuse. The handling of customers' personal data is governed by the relevant provisions of Act No. 101/2000 Coll., on the Protection of Personal Data and on Amendments to Certain Acts, as amended and in effect.

  6. 6. Any error, question, leak or misuse of personal data can be reported to the relevant Office for Personal Data Protection. (ÚOOÚ)