Privacy Policy

PRIVACY POLICY

  1. INFORMATION ABOUT THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE RESPONSIBLE PARTY
    1.1 We are pleased that you are visiting our website and thank you for your interest. Below, we inform you about how we handle your personal data when using our website. Personal data includes all data that can be used to identify you personally.

1.2 The responsible party for data processing on this website in the sense of the General Data Protection Regulation (GDPR) is Velmour Boutique. The party responsible for the processing of personal data is the natural or legal person who, alone or jointly with others, decides the purposes and means of the processing of personal data.

1.3 This website uses SSL or TLS encryption for security reasons and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries to the responsible party). You can recognize an encrypted connection by the “https://” prefix and the lock symbol in your browser bar.

  1. DATA COLLECTION WHEN VISITING OUR WEBSITE
    When you simply use our website for informational purposes, meaning when you do not register or send us any information, we only collect data that your browser transmits to our server (so-called "server log files"). When you visit our website, we collect the following data that is technically necessary for us to display the website to you:
  • The website visited
  • Date and time of access
  • Amount of data sent in bytes
  • Source/reference from which you accessed the page
  • Browser used
  • Operating system used
  • IP address used (possibly anonymized)

The processing is carried out in accordance with Article 6, Paragraph 1, Letter f GDPR based on our legitimate interest in improving the stability and functionality of our website. There is no transfer or further use of the data. However, we reserve the right to review the server log files retrospectively if there are specific indications of unlawful use.

  1. COOKIES
    In order to make visiting our website attractive and to enable the use of certain functions, we use cookies on various pages. These are small text files that are stored on your device. Some of the cookies we use are deleted after the end of the browser session, i.e., after you close your browser (so-called session cookies). Other cookies remain on your device and allow us or our partner companies (third-party cookies) to recognize your browser on your next visit (persistent cookies). When cookies are set, they collect and process certain user information such as browser and location data, as well as IP address values. Persistent cookies are automatically deleted after a predetermined period, which can vary depending on the cookie.

Some cookies are used to simplify the ordering process by storing settings (e.g., remembering the contents of a virtual shopping cart for a later visit to the website). If personal data is processed by individual cookies implemented by us, the processing is done in accordance with Article 6, Paragraph 1, Letter b GDPR either for the performance of the contract or according to Article 6, Paragraph 1, Letter f GDPR to safeguard our legitimate interests in the best possible functionality of the website and a user-friendly and effective design of the site visit.

We may work with advertising partners who help us make our online offerings more interesting for you. For this purpose, cookies from partner companies may also be stored on your hard drive when you visit our website (third-party cookies). If we collaborate with such advertising partners, you will be individually and separately informed about the use of such cookies and the scope of the data collected in the following paragraphs.

Please note that you can configure your browser to be notified about the setting of cookies and to accept them individually or exclude the acceptance of cookies for certain cases or generally. Each browser differs in how it manages cookie settings. These are described in the help menu of each browser, which explains how you can change your cookie settings. You can find this for the respective browsers at the following links:

Please note that if you do not accept cookies, the functionality of our website may be limited.

  1. CONTACTING US
    When you contact us (e.g., via contact form or email), personal data is collected. The data collected in the case of a contact form can be found in the respective contact form. This data is used solely for the purpose of answering your inquiry or for contact and the related technical administration. The legal basis for processing the data is our legitimate interest in responding to your inquiry in accordance with Article 6, Paragraph 1, Letter f GDPR. If your contact is aimed at concluding a contract, the additional legal basis for processing is Article 6, Paragraph 1, Letter b GDPR. Your data will be deleted after the completion of your request if it is clear from the circumstances that the matter has been resolved and there are no legal retention obligations to the contrary.
  2. DATA PROCESSING WHEN CREATING A CUSTOMER ACCOUNT AND FOR CONTRACT PERFORMANCE
    In accordance with Article 6, Paragraph 1, Letter b GDPR, personal data is collected and processed when you provide it to us for the performance of a contract or when opening a customer account. The data collected can be found in the respective input forms. Deletion of your customer account is always possible and can be done by sending a message to the address of the responsible party listed above. We store and use the data you provide for contract performance. After complete processing of the contract or deletion of your customer account, your data will be blocked for tax and commercial law retention periods and deleted after these periods expire, unless you have expressly consented to further use of your data or a legally permitted further use of the data has been reserved by us, of which we will inform you accordingly below.
  3. USE OF YOUR DATA FOR DIRECT ADVERTISING
    6.1 Subscription to our Email Newsletter
    If you subscribe to our email newsletter, we will send you regular information about our offers. The required data for sending the newsletter is only your email address. Providing additional data is voluntary and will be used to address you personally. We use the so-called double opt-in procedure for sending the newsletter. This means that we will only send you an email newsletter once you have explicitly confirmed that you consent to receive the newsletter. We will then send you a confirmation email, asking you to confirm by clicking a corresponding link that you want to receive the newsletter in the future.

By activating the confirmation link, you give us your consent to use your personal data in accordance with Article 6, Paragraph 1, Letter a GDPR. When subscribing to the newsletter, we store your IP address registered by the Internet Service Provider (ISP) as well as the date and time of registration to track possible misuse of your email address at a later time. The data we collect when you subscribe to the newsletter will be used solely for the purpose of advertising via the newsletter. You can unsubscribe from the newsletter at any time via the link provided in the newsletter or by sending a corresponding message to the responsible party mentioned at the beginning. After unsubscribing, your email address will be deleted from our newsletter distribution list unless you have expressly consented to further use of your data or we have reserved a further use of your data that is legally permissible, of which we will inform you in this declaration.

6.2 Sending the Email Newsletter to Existing Customers
If you have provided us with your email address when purchasing goods or services, we reserve the right to regularly send you offers for similar goods or services from our range via email. For this, we do not need to obtain separate consent from you. The data processing is carried out solely based on our legitimate interest in personalized direct advertising in accordance with Article 6, Paragraph 1, Letter f GDPR. If you initially objected to the use of your email address for this purpose, no emails will be sent. You have the right to object to the use of your email address for this advertising purpose at any time with effect for the future by notifying the responsible party mentioned at the beginning. For this, you will only incur transmission costs according to the basic rates. Upon receipt of your objection, the use of your email address for advertising purposes will immediately cease.

7) DATA PROCESSING FOR ORDER MANAGEMENT

7.1 The personal data we collect will be passed on to the transport company commissioned with the delivery, as far as necessary for the delivery of the goods. Your payment data will be passed on to the bank commissioned with the payment processing, insofar as this is necessary for the payment processing. If payment service providers are used, we will explicitly inform you below. The legal basis for the transfer of data is Art. 6 Para. 1 lit. b GDPR.

7.2 Use of Payment Service Providers (Payment Service Providers)

  • PayPal
    In the case of payment via PayPal, credit card via PayPal, direct debit via PayPal or – if offered – "purchase on account" or "installment payment" via PayPal, we pass your payment data to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter "PayPal") for the purpose of payment processing. The transfer takes place in accordance with Art. 6 Para. 1 lit. b GDPR and only to the extent necessary for payment processing.

PayPal reserves the right to conduct a credit check for payment methods such as credit card via PayPal, direct debit via PayPal, or – if offered – "purchase on account" or "installment payment" via PayPal. For this purpose, your payment data may be passed on to credit agencies in accordance with Art. 6 Para. 1 lit. f GDPR on the basis of PayPal's legitimate interest in determining your ability to pay. PayPal uses the results of the credit check, which include statistical payment default probabilities (so-called score values), to decide whether to offer you the respective payment method. The score values are based on a scientifically recognized mathematical-statistical procedure. The calculation of the score values includes, among other things, but is not limited to, address data. For further privacy-related information, including the credit agencies used, please refer to PayPal’s privacy policy:
https://www.paypal.com/de/webapps/mpp/ua/privacy-full

You can object to this processing of your data at any time by sending a message to PayPal. However, PayPal may still be entitled to process your personal data if necessary for contract-compliant payment processing.

  • SOFORT
    If you select the "SOFORT" payment method, payment processing will be carried out through the payment service provider SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany (hereinafter "SOFORT"). We will pass on the information you provide during the ordering process, including details about your order, to SOFORT in accordance with Art. 6 Para. 1 lit. b GDPR. SOFORT GmbH is part of the Klarna Group (Klarna Bank AB (publ), Sveavägen 46, 11134 Stockholm, Sweden). The transfer of your data will only take place for the purpose of payment processing with SOFORT and only to the extent necessary for this purpose. For further information about SOFORT’s data protection policies, please visit:
    https://www.klarna.com/sofort/datenschutz

8) CONTACT FOR REVIEW REMINDERS
Own review reminder (not sent via a customer review system)

We use your email address to remind you once to submit a review of your order for the review system we use, provided you have given us your express consent in accordance with Art. 6 Para. 1 lit. a GDPR during or after your order. You can withdraw your consent at any time by sending a message to the data controller.

9) USE OF SOCIAL MEDIA: SOCIAL PLUGINS

9.1 Facebook Plugins with Shariff Solution
Additional customs clearance costs and/or import duties are not included in the price and are at the customer’s expense.

We use so-called social plugins ("plugins") from the social network Facebook, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA ("Facebook").

To increase the protection of your data when visiting our website, these buttons are not integrated directly as plugins but instead as HTML links. This ensures that when a page on our website containing such buttons is accessed, no connection to Facebook's servers is made yet. When you click the button, a new browser window opens and directs you to the Facebook page where you can interact with the plugins (possibly after entering your login data).

Facebook Inc., based in the USA, is certified under the US-European data protection agreement "Privacy Shield," which ensures compliance with the level of data protection required by EU law.

For the purpose and scope of the data collection and further processing and use of the data by Facebook, as well as your rights and settings options to protect your privacy, please refer to Facebook's privacy policy:
https://www.facebook.com/policy.php

9.2 Google+ Plugins as Shariff Solution
We use so-called social plugins ("plugins") from the social network Google+, operated by Google LLC., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google").

To increase the protection of your data when visiting our website, these buttons are not integrated directly as plugins but instead as HTML links. This ensures that when a page on our website containing such buttons is accessed, no connection to Google’s servers is made yet. When you click the button, a new browser window opens and directs you to the Google+ page where you can interact with the plugins (possibly after entering your login data).

Google LLC, based in the USA, is certified under the US-European data protection agreement "Privacy Shield," which ensures compliance with the level of data protection required by EU law.

For the purpose and scope of the data collection and further processing and use of the data by Google, as well as your rights and settings options to protect your privacy, please refer to Google’s privacy policy:
https://www.google.com/intl/de/policies/privacy/

9.3 Instagram Plugin as Shariff Solution
We use so-called social plugins ("plugins") from the online service Instagram, operated by Instagram LLC., 1601 Willow Rd, Menlo Park, CA 94025, USA ("Instagram").

To increase the protection of your data when visiting our website, these buttons are not integrated directly as plugins but instead as HTML links. This ensures that when a page on our website containing such buttons is accessed, no connection to Instagram's servers is made yet. When you click the button, a new browser window opens and directs you to the Instagram page where you can interact with the plugins (possibly after entering your login data).

Instagram LLC, based in the USA, is certified under the US-European data protection agreement "Privacy Shield," which ensures compliance with the level of data protection required by EU law.

For the purpose and scope of the data collection and further processing and use of the data by Instagram, as well as your rights and settings options to protect your privacy, please refer to Instagram’s privacy policy:
https://help.instagram.com/155833707900388/

10) ONLINE MARKETING

10.1 DoubleClick by Google
This website uses the online marketing tool DoubleClick by Google, operated by Google LLC., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("DoubleClick").

DoubleClick uses cookies to display relevant ads to users, improve campaign performance reports, or prevent users from seeing the same ads repeatedly. Google uses a cookie ID to track which ads are shown in which browser, preventing repeated displays of the same ads. The processing is based on our legitimate interest in optimizing the marketing of our website according to Art. 6 Para. 1 lit. f GDPR.

Additionally, DoubleClick can use cookie IDs to record so-called conversions related to ad requests. For example, if a user sees a DoubleClick ad and later visits the advertiser's website using the same browser and makes a purchase. According to Google, DoubleClick cookies do not contain personal information.

Because of the marketing tools used, your browser automatically establishes a direct connection with Google's servers. We have no control over the scope and further use of the data collected by Google through this tool, and thus inform you according to our knowledge: By integrating DoubleClick, Google receives the information that you have visited the relevant part of our website or clicked on one of our ads. If you are registered with a Google service, Google may associate this visit with your account. Even if you are not registered with Google or logged in, there is a possibility that Google may learn and store your IP address.

If you do not wish to participate in this tracking, you can disable cookies for conversion tracking by adjusting your browser settings to block cookies from the domain www.googleadservices.com at
https://www.google.de/settings/ads. This setting will be deleted if you clear your cookies. Alternatively, you can visit the Digital Advertising Alliance’s website at
www.aboutads.info for more information about cookie settings and adjustments. Finally, you can adjust your browser settings to be informed about cookie placement and decide whether to accept them individually or exclude cookies for specific cases or in general. Please note that disabling cookies may limit the functionality of our website.

Google LLC, based in the USA, is certified under the US-European data protection agreement "Privacy Shield," which ensures compliance with the level of data protection required by EU law.

For more information on DoubleClick by Google, please refer to:
https://www.google.com/doubleclick

11) Web Analytics Services

Google (Universal) Analytics

This website uses Google Analytics, a web analytics service provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google"). Google Analytics uses cookies, which are text files stored on your computer to analyze your use of the website. The information generated by the cookie about your use of this website (including the truncated IP address) is usually transmitted to and stored on a server in the USA by Google.

This website uses Google Analytics exclusively with the "_anonymizeIp()" extension, which ensures the anonymization of the IP address by truncation and prevents direct identification. The IP address is truncated within the European Union member states or in other countries that are parties to the Agreement on the European Economic Area. Only in exceptional cases is the full IP address transmitted to a server in the USA and truncated there. In these exceptional cases, this processing is carried out in accordance with Art. 6, para. 1, lit. f GDPR, based on our legitimate interest in statistical analysis of user behavior for optimization and marketing purposes.

Google will use this information on our behalf to evaluate your use of the website, compile reports on website activities, and provide other services related to website usage and internet use. The IP address transmitted by your browser within the framework of Google Analytics will not be merged with other Google data.

You can prevent the storage of cookies by adjusting your browser settings; however, please note that in this case, you may not be able to use all the features of this website to their full extent. You can also prevent the collection of data generated by the cookie and related to your use of the website (including your IP address) and its processing by Google by downloading and installing the browser plugin available at the following link: https://tools.google.com/dlpage/gaoptout?hl=en

Alternatively, on mobile browsers, click the following link to set an opt-out cookie that will prevent future collection by Google Analytics on this website (this opt-out cookie works only in this browser and only for this domain; if you delete your cookies in this browser, you will need to click the link again): Disable Google Analytics

Google LLC, located in the USA, is certified under the US-European data protection framework "Privacy Shield," which ensures compliance with the data protection standards applicable in the EU.

This website also uses Google Analytics for cross-device analysis of visitor flows through a user ID. When first visiting a page, a unique, permanent, and anonymized ID is assigned to the user, which is set across devices. This allows interaction data from different devices and sessions to be assigned to a single user. The user ID does not contain any personal data and does not transmit such data to Google.

The data collection and storage via the user ID can be objected to at any time with effect for the future. To do this, you need to disable Google Analytics on all systems you use, such as in another browser or on your mobile device. You can disable it using the Google browser plugin https://tools.google.com/dlpage/gaoptout?hl=en. Alternatively, you can click on the following link to set an opt-out cookie within your browser: Disable Google Analytics

Further information on Universal Analytics can be found here: https://support.google.com/analytics/answer/2838718?hl=en&ref_topic=6010376

12) Retargeting/Remarketing/Recommendation Advertising

Facebook Custom Audience via Pixel Technology

This website uses the "Facebook Pixel" from Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA ("Facebook"). With explicit consent, this enables the tracking of user behavior after they have viewed or clicked on a Facebook advertisement. This process helps evaluate the effectiveness of Facebook ads for statistical and market research purposes and can help optimize future advertising efforts.

The collected data is anonymous for us, so it does not provide insights into the identity of the users. However, Facebook stores and processes the data, allowing it to be linked to the user's profile, and Facebook may use the data for its own advertising purposes according to the Facebook Data Usage Policy (https://www.facebook.com/about/privacy/).

You can allow Facebook and its partners to show ads on and off Facebook. For this purpose, a cookie may be stored on your computer. These processing activities are carried out only with your explicit consent, in accordance with Art. 6, para. 1, lit. a GDPR.

Consent for the use of the Facebook Pixel can only be given by users who are 13 years or older. If you are younger, please ask your parents for permission.

13) RIGHTS OF THE DATA SUBJECT

13.1 The applicable data protection law grants you comprehensive rights regarding the processing of your personal data by the data controller (right to information and intervention), which we inform you about below:

  • Right to information pursuant to Art. 15 GDPR: You have the right to be informed about the personal data we process about you, the processing purposes, the categories of personal data processed, the recipients or categories of recipients to whom your data has been or will be disclosed, the planned storage duration or the criteria for determining the storage duration, the existence of a right to rectification, deletion, restriction of processing, objection to processing, filing a complaint with a supervisory authority, the origin of your data if it was not collected directly from you, the existence of automated decision-making, including profiling, and meaningful information about the logic involved, as well as the significance and consequences of such processing, and your right to be informed about the guarantees according to Art. 46 GDPR when transferring your data to third countries.
  • Right to rectification pursuant to Art. 16 GDPR: You have the right to have incorrect data concerning you corrected and/or to have incomplete data completed without undue delay.
  • Right to deletion pursuant to Art. 17 GDPR: You have the right to request the deletion of your personal data when the conditions of Art. 17(1) GDPR are met. However, this right does not exist, especially if the processing is necessary for the exercise of freedom of expression and information, for fulfilling a legal obligation, for reasons of public interest, or for asserting, exercising, or defending legal claims.
  • Right to restriction of processing pursuant to Art. 18 GDPR: You have the right to request the restriction of processing of your personal data while the accuracy of your data is being verified, if you refuse the deletion of your data due to unlawful processing and instead request restriction of processing, if you need your data for asserting, exercising, or defending legal claims, after we no longer need the data for the purposes of processing, or if you have objected to processing due to reasons arising from your particular situation, as long as it has not yet been determined whether our legitimate reasons outweigh yours.
  • Right to notification pursuant to Art. 19 GDPR: If you have exercised your right to rectification, deletion, or restriction of processing, the data controller is obliged to inform all recipients to whom your personal data has been disclosed about these corrections or deletions of data or restrictions on processing, unless this proves impossible or involves disproportionate effort. You have the right to be informed about these recipients.
  • Right to data portability pursuant to Art. 20 GDPR: You have the right to receive the personal data you have provided to us in a structured, commonly used, and machine-readable format or to request its transmission to another controller, provided this is technically feasible.
  • Right to withdraw consent pursuant to Art. 7(3) GDPR: You have the right to withdraw consent previously given for the processing of your data at any time with effect for the future. In the event of withdrawal, we will promptly delete the affected data unless further processing is based on a legal basis for non-consensual processing. The withdrawal of consent does not affect the lawfulness of processing based on consent prior to withdrawal.
  • Right to lodge a complaint pursuant to Art. 77 GDPR: If you believe that the processing of your personal data violates the GDPR, you have the right to lodge a complaint with a supervisory authority, particularly in the member state of your residence, workplace, or the place of the alleged infringement, without prejudice to any other administrative or judicial remedy.

13.2 RIGHT TO OBJECT

If we process your personal data based on our legitimate interest, you have the right to object to this processing at any time for reasons arising from your particular situation with effect for the future.

If you exercise your right to object, we will cease the processing of the affected data. However, further processing is allowed if we can demonstrate compelling legitimate grounds for the processing that outweigh your interests, rights, and freedoms, or if the processing is necessary for the establishment, exercise, or defense of legal claims.

If your personal data is processed for direct marketing purposes, you have the right to object to the processing of your personal data for such purposes at any time. You can exercise this right as described above.

If you exercise your right to object, we will cease processing the affected data for direct marketing purposes.

14) DURATION OF STORAGE OF PERSONAL DATA

The duration of the storage of personal data is determined by the respective statutory retention period (e.g., commercial and tax retention periods). After the expiration of the period, the corresponding data will be routinely deleted, unless it is no longer required for the performance of the contract or the initiation of a contract and/or we no longer have a legitimate interest in storing it.


Facebook Inc., based in the USA, is certified under the US-European data protection framework "Privacy Shield," which ensures compliance with the data protection standards applicable in the EU.

To deactivate the use of cookies on your computer, you can configure your internet browser so that no cookies are placed on your computer in the future or that existing cookies are deleted. Disabling all cookies may result in certain functions on our website being unavailable. You can also disable the use of cookies by third parties such as Facebook on the Digital Advertising Alliance website: https://www.aboutads.info/choices/

Google AdWords Remarketing

Our website uses Google AdWords Remarketing, which allows us to advertise this website in Google search results as well as on third-party websites. The provider is Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google"). To this end, Google sets a cookie on your device, which automatically enables interest-based advertising based on the pages you have visited through a pseudonymous cookie ID.

This processing is based on our legitimate interest in the optimal marketing of our website in accordance with Art. 6, para. 1, lit. f GDPR. Further data processing occurs only if you have consented to Google linking your internet and app browsing history with your Google account and using information from your Google account to personalize the ads you see on the web. If you are logged into Google during your visit to our website, Google uses your data along with Google Analytics data to create and define audience lists for cross-device remarketing. In this case, your personal data will be temporarily linked to Google Analytics data to form target groups.

You can permanently disable the setting of cookies for ad preferences by downloading and installing the available browser plugin here: https://www.google.com/settings/ads/onweb/

Alternatively, you can learn about the setting of cookies and adjust your preferences on the Digital Advertising Alliance website at www.aboutads.info.

Google LLC, based in the USA, is certified under the US-European data protection framework "Privacy Shield," which ensures compliance with the data protection standards applicable in the EU.

Further information and the privacy policy regarding Google advertising can be found here: https://www.google.com/policies/technologies/ads/