PRIVACY POLICY

Last updated: October 19, 2023

This Privacy Policy describes how your personal information is collected, used, stored and shared ("processed") when you visit or make a purchase from casahari.com(the "Site").

Data Controller ("We")contact@casahari.com


During your visit to and interaction with the Site, we automatically collect the following data:

- Details about your device, web browser, IP address, time zone, and specific cookies installed on your device.

In addition, we collect information about the specific web pages or products you view, the websites or search terms that have brought you to the Site, and how you interact with the Site. We refer to this data, which is collected automatically, as ;Device Data. This information is obtained through various technologies:

Cookies are data files stored by your Internet browser or computer, often containing an anonymous unique identifier. The web pages you visit may then recognize certain information stored in your browser's cookies. While some cookies are essential for smooth communication with the website (such as storing items in your shopping cart), others may contain anonymous analytical data about your browsing habits, used to display content relevant to you. They can be stored for an extended period. For more information about cookies and how to disable them, please visit allaboutcookies.org. Log files monitor activities on the site and collect data such as your IP address, browser type, internet service provider, referring/exit pages, and timestamps. ;Web beacons,tags,and pixels are electronic files used to record information about your browsing behavior on the Site. In addition to Device Data, when you make a purchase or attempt to make a purchase through the Site, we ask you for specific information. This includes your name, billing and shipping addresses, payment details (such as credit card numbers and banking information), email address, and phone number. If you do not provide us with this information, we will not be able to process your order or enter into a purchase agreement. We refer to this set of information as Order Data. When we refer to Personal Data in this Privacy Policy, we encompass both Device Data and Order Data. Finally, we process information relating to your subscription to our services, the data you provide to us through online forms on the Site or the information you submit to us in relation to complaints. How we process your personal information: As a matter of practice, we process only personal data that is essential for the smooth running of our business. We do not collect sensitive personal information, such as data relating to racial or ethnic origin, political opinions, religious or philosophical beliefs, or trade union membership. Your personal data may be processed in the following circumstances:

You give us your consent to the processing of data. 

To facilitate the performance of a contract between you and us.

Where the processing is essential to our legitimate business interests, such as business development, providing information about our business to potential customers, identifying fraudulent claims, or improving the overall customer experience on the Site.

We use Non-Directly Identifiable Device Data to examine potential risks and fraud, in particular by analyzing your IP address. Furthermore, this data contributes to the general improvement and optimization of our Site. For example, we analyze how our customers navigate and engage with the Site and evaluate the effectiveness of our marketing and advertising efforts. Additionally, the Device Data collected is used for advertising and retargeting, all to improve the user experience on the Site. The Order Data we collect is primarily used to process orders placed through the Site. This includes processing your payment details, arranging shipping and providing you with invoices and/or order confirmations. Additionally, we use this Order Data to:- Establish communication with you.- Analyze our orders to detect possible risks or fraudulent activities.- In accordance with your preferences, provide you with information or advertising related to our products or services.

To ensure the perfect functioning of the sale of our products and offer you a comfortable shopping experience, we share your Personal Data with third parties. Here we explain how they do it:

1. Shopify manages our online store. For more information about how Shopify handles your Personal Data, please see its privacy policy at shopify.com/legal/privacy .

2. Klaviyo manages subscriptions to our newsletters. Find detailed information about how Klaviyo uses your data in its privacy policy: https://www.klaviyo.com/legal/privacy-policy .

3. Google Analytics helps us understand how our customers navigate the Site. Get detailed information about how Google handles your personal data in its privacy policy at google.com/intl/en/policies/privacy . You can also disable Google Analytics here: tools.google.com/dlpage/gaoptout .

4. To process payments, we collaborate with payment solution providers such as PayPal and Braintree. This makes it necessary to share some of your personal data.

5. To ensure the correct delivery of the ordered products, we share your personal data with our logistics and warehouse partners.

6. Finally, in compliance with applicable laws and regulations, we may disclose your personal data in response to a subpoena, search warrant or other lawful requests for data. This is done to protect our rights and ensure compliance with the law. Sending data to a non-EU country The services we use to operate our site may require the transfer of your personal data to destinations outside the EU, specifically to Canada and the United States.Personalized advertising and opt-out options As mentioned above, we may use your Personal Data to present you with personalized advertising or marketing messages that we believe are tailored to your interests. For a detailed explanation of how personalized advertising works, see the Network Advertising Initiative ("NAI") information guide available at networkadvertising.org/understanding-online-advertising/how-does-it-work . If you wish to opt out advertising or personalized communications, you can use the following links:

Facebook: facebook.com/settings/?tab=ads-

Google: google.com/settings/ads/anonymous-

Bing: advertise.bingads.microsoft.com/en-us/resources/policies/personalized- ads-

Additionally, you have the option to opt-out of certain services by visiting the opt-out platform provided by the Digital Advertising Alliance at: optout.aboutads.info .

For detailed information about how we use these technologies and your preferences in this regard, please see our Cookie Policy.

It is important for you to know that we do not change our data collection and use practices on our Site based on Do Not Track signals received from your browser.

If you are a resident of Europe, you have the following additional rights:

1. The right to access the personal data we have about you.

2. The privilege of obtaining your data in a structured and portable format. Please note that a reasonable fee may apply for copies of your data beyond the initial one we provide to you.

3. The right to ensure that your data is accurate and to request corrections.

4. The option to have your data deleted when it is no longer necessary for the original purpose, or if you believe it was collected illegally. Deletion may also apply if you withdraw your consent or exercise your right to object (see below). Please note that legal regulations may require us to retain copies of your data in some situations, and we will inform you of such circumstances when you make your request.

5. Right to restrict processing (excluding storage), for example when requesting data corrections.

6. Right to object to processing, especially if it is based on our legitimate interest (for example, in cases of direct marketing).

7. Right to withdraw consent at any time, if the processing is based on your consent to process your personal data.

8. Right to file a claim with the competent supervisory authority. You can contact the Spanish Data Protection Authority (AEPD) / https://www.aepd.es/ However, we ask that you contact us first to explore whether we can help you resolve your concerns.

9. In cases where we do not directly collect data from you, the right to know the source of the personal data. Requests for rectification or deletion of personal data will be communicated to all third parties with whom it has been shared. You have the right to be informed about these third parties upon request.

You can exercise the aforementioned rights by contacting us using the information provided below. We will do our best to respond promptly, and at the latest within one month of receiving your request.

As a general rule, we refrain from making automated decisions or profiling that may have legal ramifications for you. However, there are instances where we must automatically adjust certain elements of our offerings, such as VAT, based on your location to comply with various country-specific laws.

We will retain your Order Data only for as long as necessary to comply with legal obligations in the respective jurisdictions. Other data will be retained unless you expressly request its deletion.

In the event of a data security incident, we will promptly notify the competent authority, ensuring that this is done within 72 hours of becoming aware of it. In addition, if the breach may pose a significant risk to your rights and freedoms, we will also inform you. Thorough documentation and record keeping will also be carried out in relation to such incidents.

We reserve the right to modify this privacy policy from time to time to take into account changes in our operations, legal obligations or regulatory requirements.

The Site is intended for use by persons over the age of 18. We do not knowingly process personal data of persons under the age of 18.

For more information about our privacy practices, if you have any questions, would like to file a complaint or unsubscribe from any of our services, please contact us by email at contact@casahari.com.