Privacy policy

1. Scope and Overview

This Privacy Policy applies to the use of the website www.naturalsophy.com (hereinafter referred to as the “Website”).

The privacy policy applies only to personal data.

This Privacy Policy sets out the nature and purpose of the data collection and use and your choices regarding the data.

By using this site, you consent to the collection, use and transfer of your information in accordance with this Privacy Policy.

2. Responsible

person within the meaning of the EU

General Data Protection Regulation (hereinafter referred to as “DSGVO”) is: Sijiao Feng-Göhringer, NATURALSOPHY, a trademark of Frankfurt Natural GmbH, Mergenthalerallee 55-59, 65760 Eschborn, info@frankfurtnatural.com or info @ naturalsophy.com, 017662085985

If you want to object to the collection, processing or other use of your data by us completely or for individual measures, you may address your objection to the person responsible.

3. Legal basis of data processing

Insofar as we obtain the consent of the data subject for processing of personal data, Art. 6 para. 1 lit. a DSGVO as legal basis.

In the processing of personal data necessary for the performance of a contract of which the data subject is a party, Art. 6 para. 1 lit. b DSGVO as legal basis. This also applies to processing operations required to carry out pre-contractual measures.

Insofar as the processing of personal data is required to fulfill a legal obligation that our company is subject to, Art. 6 para. 1 lit. c DSGVO as legal basis.

If processing is necessary to safeguard the legitimate interests of our company or a third party, and if the interest, fundamental rights and fundamental freedoms of the data subject do not outweigh the former interest, Art. 6 para. 1 lit. f DSGVO as legal basis for processing.

4. Data deletion and storage

duration Unless specifically stated, the personal data of the data subject shall be deleted or blocked as soon as the purpose of storage ceases.

However, further storage may take place if this is mandatory in applicable legal regulations. A blocking or deletion of the data takes place even if a storage period prescribed by the aforementioned statutory provisions expires, unless there is a need for further storage of the data for the purposes stated in Section 3 of this Privacy Policy.

5. Use of the website

5.1 log files and other access data

If you use this website, we will collect information about you; we capture, store and use data. The access data include the name and URL of the called file, the date and time of the retrieval and the IP address.

We use this protocol data without being assigned to you or otherwise creating a profile for statistical purposes for the operational purpose, for the anonymous recording of the number of visitors to our website (“traffic”) as well as the extent and nature of the use of our website and services. For a limited period of time, we store IP addresses.

Hosting service provided by a third party

A third party provider, in the case of processing on our behalf, provides us with services for hosting and displaying the website. This serves to safeguard our legitimate interests, which predominate in the context of a balance of interests, in the correct presentation of our offer. All data collected in the online shop as part of the use of this website or in dedicated forms are processed on its servers.

Our service provider is located in Germany.

5.2 Data collection and use of data for contract execution and opening a customer account

Within the scope of your order as well as with a contacting us eg by contact form or email or by opening a customer account, we collect personal data, if you inform us voluntarily. The marked mandatory fields are required in the context of your order for contract processing or to process your contact or opening the customer account and you can not complete the order or the account opening without their specification, or can not send the contact. From the respective input forms, the data can be seen, which are collected. For the execution of the contract and the processing of your inquiries, we use the data provided by you in accordance with Art. 6 (1) S.1 lit.b DSGVO.

Before completing each order, you have to confirm that you have read the current terms and conditions and privacy policy, as well as the newsletter and the existing right to unsubscribe. Further information will be provided by you voluntarily and a non-disclosure has no effect. The data will be permanently stored by us for the purpose of, for example, answering your request, processing your order and, if you agree, sending you a newsletter. You have a right to information and objection to your stored data at any time. This can be sent to us by a message.

If you communicate with us on social media channels such as Instagram or Facebook, link, “like”, send greetings and leave comments and photos to us and if we agree to a link, your messages, comments, photos or greetings on our website the link is visible and will not be saved with us.

We use Woocommerce to create and manage your client account.

5.3 Email Newsletter

We use the data required to regularly send you our email newsletter based on your consent in accordance with Art. 6 para. 1S.1 lit.a DSGVO if you subscribe to our newsletter or tick the appropriate option in the order process. At any time you can unsubscribe from the newsletter by sending us a message. If you have not expressly consented to the further use of your data or if we reserve the right to use the data beyond that, which is permitted by law and about which we inform you in this declaration, we will delete your email address after unsubscribing. Please send an email with the appropriate request for distribution from the mailing list to us at info@naturalsophy.com.

The newsletter will be sent by email. Your email address will not be forwarded.

5.4 Data transfer

We provide your data for fulfillment of the contract in accordance with Art. 6 para. b DSGVO to the shipping company responsible for the delivery, insofar as this is necessary for the delivery of ordered goods. In order to process payments, we pass on the payment data collected to the credit institution commissioned with the payment and any payment service providers commissioned by us or to the selected payment service, depending on which payment service provider you have selected in the ordering process. As far as you create an account there, the selected payment service providers also collect this data themselves. Therefore, in this case, you must register with the payment service provider in the ordering process with your access data. In that regard, it is the privacy policy of each payment service provider.

Data transfer to Versanddiestleister

With regard to Art. 6 (1) sentence 1 lit.a DSGVO, we will pass on your email address and telephone number to the selected shipping service provider, provided that you have given us your express consent during or after your order, so that the shipping service provider can arrange for the delivery Purposes of the delivery notice or delivery agreement can contact you. If you wish to revoke your consent, you can at any time by a message to the contact option described below or directly to the shipping service provider at the following contact address (DHL- Deutsche Post AG, Charles-de-Gaulle-Straße 20, 53113 Bonn) contact. Unless you have expressly consented to the further use of your data or we reserve the right to use the data beyond that,

5.5 Cookies and Google Analytics

We use cookies on various pages to make the visit to our website attractive, to display suitable products and to enable market research and the use of certain functions. In an optimized presentation of our offer in accordance with Art. 6 (1) (1) (f) DSGVO, this serves to safeguard our legitimate interests, which are predominant in the context of a weighing up of interests. These are small text files that are automatically stored on your device. eg session cookies are deleted after the end of the browser session. Other cookies remain on your device, which allows us to recognize your browser the next time you visit (so-called persistent cookies). Under the cookie settings of your web browser, you can see the duration of the storage. By setting cookies and accepting them or accepting cookies for specific cases or excluding them altogether, you can discontinue your browser. This differs in the way he manages the cookie setting. If cookies are not accepted, website may be restricted.

We use Google Analytics, the web analytics service provided by Google Inc. (“Google”). Google Analytics uses so-called “cookies”, text files that are stored on your hardware (eg computer) and that enable a user analysis of the homepage. The data generated by cookies on the use of this website by the user are usually transmitted to a Google server in the United States and stored.

However, in the case of the activation of IP anonymisation on our website, your IP address will be shortened beforehand by Google within the member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be sent to a Google server in the US and shortened there. IP anonymization is active on this website. Google will use this information on our behalf to evaluate your use of the website, to compile reports on website activity, and to provide us with other services related to website activity and internet usage.

The IP address provided by Google Analytics from your browser will not be merged with other Google data. You can prevent the storage of cookies by setting your browser software accordingly. Here, however, we would like to draw your attention to the fact that in this case not all functions of this website may be completely available for use.

You can prevent the identification of the data generated by the cookie and related to your use of the website (including your IP address) and forwarding to Google as well as the processing of this data by Google: To do so, please download the browser data available at the following link. Download and install the plugin: http://tools.google.com/dlpage/gaoptout?hl=en.

Using an opt-out cookie to deactivate this link on your device may in future prevent Google Analytics from recording on this website. The opt-out cookie is only valid for www.naturalsopyh.com and the browser used. If you have deleted the cookies in your browser history, you will have to click on the link to deactivate the tracking when you continue to visit our site and when you call up with another browser.

5.6 Using Facebook Custom Audiences Pixel

On our website we use “Custom Audiences Pixel” of Facebook Inc. (“Facebook”). This is for the purpose of presenting visitors interested in our website with interest-based advertisements as part of their visit to the social network Facebook. For this purpose, a pixel from Facebook was implemented on our website. Via this pixel, a direct connection to the Facebook servers is established when visiting our website. It is transmitted to the Facebook server that you have visited our website and Facebook assigns this information to your personal Facebook user account. For more information on the collection and use of data by Facebook, as well as your rights in this regard and ways to protect your privacy, please refer to the privacy policy of Facebook at https://www.facebook.com/about/privacy/. Alternatively, you may opt out of interest-based advertising on Facebook at https://www.facebook.com/settings/?tab=ads#_=_. For this you must be logged in to Facebook or you contradict directly with us.

5.7 Integration of Services and Third Party Content

5.7.1 Youtube Video

On our websites, we use Youtube Embedding feature to display and play videos from the “Youtube” provider owned by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (“Google”).

Only when the video is played according to provider information stored user information. As soon as the embedded Youtube videos start, the provider Youtube uses cookies to gather information about user behavior. These are used to capture video statistics to improve usability and prevent abusive practices. Your data will be assigned directly to your account when you log in to Google and click on a video. You must log out before activating the button to prevent the association with your profile on Youtube. Then your profile will be saved as user profile on Youtube as a non-logged in user profile and will be valued. This evaluation is carried out in accordance with Art. 6 para. 1 lit. f DSGVO based on Google’s notorious interests in the display of personalized advertising, market research and customization of its website. If you want to object to the creation of user profiles, you must address directly to Youtube.

Each visit to this site will connect to Google’s DoubleClick network, which, without our influence, may initiate further data processing, regardless of playback of the embedded video.

US-based Google LLC is certified to the US Privacy Shield, which ensures compliance with the level of data protection in the EU.

For more information on data protection at “YouTube”, please see the provider’s privacy policy at: https://www.google.com/intl/en/policies/privacy

5.7.2 Use of Facebook social media plugins

Due to our legitimate interest in the analysis, optimization and operation of our online services (within the meaning of Art. 6 (1) lit. DSGVO), this website uses Facebook Social plug-in operated by Facebook Inc. (1 Hacker Way, Menlo Park, California 94025, USA). Recognizable are the incorporations on the Facebook logo or on the terms “Like”, “Like”, “Share” in the colors Facebook (blue and white). Information on all Facebook plug-ins can be found at the following link: https://developers.facebook.com/docs/plugins/

Facebook Inc. complies with European data protection law and is certified under the Privacy Shield Agreement: https://www.facebook.com/docs/plugins/ www.privacyshield.gov/participant?id=a2zt0000000GnywAAC&status=Active

The plugin establishes a direct connection between your browser and the Facebook servers. The website operator has no influence whatsoever on the nature and extent of the data transmitted by the plugin to the Facebook Inc. servers. Information can be found here: https://www.facebook.com/help/186325668085084

The plugin informs Facebook Inc. that you as a user have visited this website. There is the possibility that your IP address will be saved. If you are logged into your Facebook account while visiting this website, the information will be linked to it.

If you use the functions of the plugin – for example by sharing or “liking” – the relevant information will also be transmitted to Facebook Inc. Do you want to prevent the Facebook. Inc. associates this information with your Facebook account, please log out of Facebook before visiting this website and delete your stored cookies. Through your Facebook profile, you can make additional settings for data processing for advertising purposes or you may object to the use of your data for advertising purposes. You can access the settings here:

Profile settings on Facebook: https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen

Cookie deactivation page of the European website: http://optout.networkadvertising.org/?c=1 #! /

Which data, for what purpose and to what extent Facebook collects, uses and processes data and which rights and setting options you have to protect your privacy can be found in the Facebook Privacy Policy. These can be found here: https://www.facebook.com/about/privacy/

5.7.3 Instagram

Features and content of the Instagram service offered by Instagram Inc., 1601 Willow Road, Menlo Park, CA, 94025, USA, will be incorporated into our website. Through the integrated Instagram button on our site Instagram receives the information that you have accessed the corresponding page of our website. If you are logged in to Instagram, Instagram can associate this visit on our page with your Instagram account and link the data. The data transmitted by clicking on the Instagram button are saved by Instagram. For more information about the purpose and scope of the data collection, how it is processed and used, your rights to do so, and ways to protect your privacy, see the Instagram Privacy Statement available at http:

To prevent Instagram from associating your visit to our Instagram account, you’ll need to unsubscribe from your Instagram account before visiting our page.

5.7.4 Pinterest

Our website may include features and content of the Pinterest service offered by Pinterest Inc., 635 High Street, Palo Alto, CA, 94301, USA.

Through the integrated Pinterest button on our site Pinterest receives the information that you have accessed the corresponding page of our website. If you are logged in to Pinterest, Pinterest can assign this visit on our site to your Pinterest account and thus link the data. The data transmitted by clicking on the Pinterest button are saved by Pinterest. For more information about the purpose and scope of the data collection, how it is processed and used, your rights, and ways to protect your privacy, see the Pinterest Privacy Notice, which is available at https://about.pinterest.com/privacy-policy can.

To prevent Instagram from associating your visit to our Pinterest account, you must log out of your Pinterest account before visiting our site.

5.7.5 Google+

Within our website, features and content of the Google+ platform offered by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (“Google”) may be incorporated.

By integrating the Google + button on our site, Google receives the information that you have accessed the corresponding page of our website.

If the users are members of the platform Google+, Google can assign the call of the abovementioned contents and functions to the profiles of the users there.

Google is certified under the Privacy Shield Agreement, which provides a guarantee to comply with European privacy legislation (https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active).

For more information about Google’s data usage, hiring and disparaging options, please read Google’s Privacy Policy (https://policies.google.com/technologies/ads) and

Google’s Ads Ads Settings (https: // adssettings.google.com/authenticated).

6. Your rights as a data controller

In order to assert the rights listed below regarding your personal data, please make a request to the person named under 2 with a clear identification of your person.

6.1 Right to Information and Confirmation

You may request from the person responsible a confirmation as to whether personal data concerning you is processed by us.

If such processing is available, you may ask the controller for the following information:

(1) the processing purposes ;

(2) the categories of personal data being processed;

(3) the recipients or categories of recipients to whom the personal data relating to you have been disclosed or are still being disclosed;

(4) the currently planned duration of the storage of your personal data or, if specific information is not available, criteria for determining the duration of storage;

(5) the right of rectification or erasure of personal data concerning you, a right to restriction of processing by the controller or a right to object to such processing;

(6) the existence of a right of appeal to a supervisory authority;

(7) all available information on the source of the data if the personal data are not collected from the data subject;

(8) the existence of automated decision-making including profiling under Article 22 (1) and (4) GDPR and, at least in these cases, meaningful information about the logic involved, and the scope and intended impact of such processing on the data subject.

You have the right to request information about whether the personal data relating to you are transferred to a third country or an international organization. In this regard, you can request the appropriate warranties in accordance with. Art. 46 GDPR to be informed in connection with the transfer.

6.2

Right of rectification You have a right to correction and completion, as far as the processed personal data that concern you are incorrect or incomplete. The responsible person must carry out the correction or completion immediately upon your request.

6.3 Right to Cancellation Obligation to

delete

You are entitled and we are obliged to delete your personal data without delay, if one of the following reasons is met:

(1) The personal data relating to you are for the purposes for which it was collected or otherwise Are no longer necessary and deletion is not precluded by compelling reasons based on statutory provisions.

(2) You revoke your consent, to which the processing acc. Art. 6 para. 1 lit. a or Art. 9 para. 2 lit. a GDPR and there is no other legal basis for the processing.

(3) According to. Art. 21 para. 1 DSGVO objection to the processing and there are no prior justifiable reasons for the processing, or you lay gem. Art. 21 para. 2 DSGVO objection to the processing.

(4) Your personal data have been processed unlawfully.

(5) The deletion of your personal data is required by law.

(6) The personal data concerning you were collected in relation to information society services offered pursuant to Article 8 (1) of the GDPR.

Information to third parties

If we have made the personal data relating to you public and if we are obliged to delete them in accordance with Art. 17 GDPR, we shall take appropriate measures, including technical ones, to data controllers processing the personal data, taking into account the available technology and implementation costs to inform you that you have requested the deletion of any links to such personal information or copies or replications of such personal information.

Exceptions

The right of cancellation does not exist insofar as the processing is required

(1) to exercise the right to freedom of expression and information;

(2) to fulfill a legal obligation that requires processing under the applicable statutory provisions to which we are subject, or to perform a task of public interest or in the exercise of official authority delegated to the controller;

(3) for reasons of public interest in the field of public health pursuant to Art. 9 (2) lit. h and i and Art. 9 (3) GDPR;

(4) for archival purposes of public interest, for scientific or historical research purposes or for statistical purposes acc. Article 89 (1) GDPR, to the extent that the law referred to in subparagraph (a) is likely to render impossible or seriously affect the achievement of the objectives of that processing, or

(5) to assert, exercise or defend against or against any legal claim or other rights.

6.4 Right to Restrict Processing

You have the right to demand that we restrict processing if any of the following conditions are met:

We will contest the accuracy of your personal information for a period of time that enables us to do so To verify the accuracy of the personal data,

the processing is unlawful and you refuse the deletion of personal data and instead require the restriction of the use of personal data;

We no longer need your personal information for processing purposes, but you need it to assert, exercise or defend against or against any legal claim, or

You objected to the processing in accordance with Article 21 (1) of the GDPR, as long as it is not certain that the legitimate reasons of our company outweigh yours.

6.4 Right to Data Portability

You have the right to receive the personal data relating to you provided to us in a structured, common and machine-readable format. In addition, you have the right to transfer this data to another person responsible without hindrance by us, provided that

(1) the processing is based on a consent pursuant to Art. Art. 6 para. 1 lit. a GDPR or Art. 9 para. 2 lit. a DSGVO or on a contract acc. Art. 6 para. 1 lit. b DSGVO is based and

(2) the processing is carried out using automated procedures.

In exercising your right to data portability, you have the right to obtain that personal information be transmitted directly by us to another controller, as far as technically feasible.

Freedoms and rights of other persons may not be affected.

6.6

Right to object You have the right at any time, for reasons that arise from your particular situation, against the processing of personal data concerning you, which, pursuant to Art. 6 para. 1 lit. e or f DSGVO takes an objection; this also applies to profiling based on these provisions.

In the event of an objection, we will no longer process your personal data unless we can prove compelling legitimate grounds for processing that outweigh your interests, rights and freedoms, or the processing is for the purpose of asserting, exercising or defending against or against legal claims or other rights.

If the personal data relating to you are processed for direct marketing purposes, you have the right to object at any time to the processing of your personal data for the purpose of such advertising; this also applies to profiling insofar as it is associated with such direct mail.

You have the right, for reasons of your own particular situation, to object to the processing of personal data concerning you for scientific or historical research purposes or for statistical purposes under Article 89 (1) of the GDPR, unless: , processing is necessary to fulfill a public interest task.

6.7 Automated Decisions Including Profiling

You have the right not to be subject to a decision based solely on automated processing – including profiling – that will have legal effect or similarly affect you in a similar manner.

This does not apply if the decision

(1) is required for the conclusion or performance of a contract between you and the controller,

(2) permitted by legal provisions to which we are subject, and such laws are reasonable measures to safeguard your rights and Liberties as well as your legitimate interests or

(3) with your express consent.

6.8 Right to revoke a data protection consent

You have the right to revoke your consent to the processing of personal data at any time.

6.9 Right to complain to a supervisory authority

You have the right to complain to a supervisory authority, in particular in the Member State of its place of residence, employment or the place of alleged infringement, if you believe that the processing of your personal data concerns you violates the GDPR.

The supervisory authority to which the complaint has been submitted shall inform the complainant of the status and results of the complaint, including the possibility of a judicial remedy pursuant to Article 78 of the GDPR.

7. Disclosure of data to third parties; grds. no data transfer to non-EU countries

Basically, we use your personal data only within our company.

If and as far as we engage third parties in the performance of contracts, they will receive your personal data only to the extent that the transmission is required for the appropriate service.

In the event that we outsource certain parts of the data processing, we contractually obligate the processors to use personal data only in accordance with the requirements of data protection laws and to ensure the protection of the data subject’s rights.

Data transmission to agencies or persons outside the European Union outside the cases specifically mentioned in this declaration does not take place and is not planned.

8. You are entitled to save and print out this privacy policy.