Privacy policy
KAYIKO endeavors to protect your data as much as possible. We therefore process your data exclusively on the basis of the legal provisions of the General Data Protection Regulation (GDPR) and the Telecommunications Act (TKG 2003).
Order, customer account
For the purpose of processing your order, all data filled in at check-out will be processed and saved. The secure transmission of your data via the online form is encrypted.
In the course of ordering, you will receive some automated emails about the current status of your purchase. E-mails are usually transmitted unencrypted.
This data processing is based on the legal provisions of Art. 6 Para. 1 lit b (necessary for the fulfillment of a contract) and lit c (necessary for the fulfillment of a legal obligation) of the GDPR.
If you create a customer account, your data will be stored permanently. You can use a personally chosen password in combination with your e-mail address to view your account and make changes to your data or delete the account.
This data processing takes place on the basis of the legal provisions of Art 6 Para 1 lit a (consent) of the GDPR.
We use the Shopify shop system to process the contract. For this purpose, your personal data collected as part of the order will be transmitted to Shopify Inc., 150 Elgin Street, Suite 800, Ottawa, ON K2P 1L4, Canada. There is an adequacy decision by the European Commission in relation to Canadian data protection law for the transfer of your data to a third country.
You can learn more about Shopify's privacy policy at www.shopify.com/legal/privacy
Payment
PayPal
We use the PayPal Express payment service from PayPal (Europe) S.à.r.l. on our website. et Cie, S.C.A. (22-24 Boulevard Royal L-2449, Luxembourg; "PayPal"). The purpose of data processing is to be able to offer you payment via the PayPal Express payment service. In order to integrate this payment service, it is necessary for PayPal to collect, save and analyze data (e.g. IP address, device type, operating system, browser type, location of your device) when the website is accessed. Cookies can also be used for this. The cookies enable your browser to be recognized. This data processing, in particular the setting of cookies, is based on Article 6 (1) (f) GDPR from our overriding legitimate interest in a customer-oriented offer of various payment methods. You have the right, for reasons arising from your particular situation, to object to the processing of your personal data based on Art. 6 (1) lit. F GDPR at any time. By selecting and using PayPal Express, the data required for payment processing is transmitted to PayPal in order to be able to fulfill the contract with you using the selected payment method. This processing takes place on the basis of Article 6 Paragraph 1 Letter b GDPR. All PayPal transactions are subject to the PayPal Privacy Policy. You can find these under www.paypal.com/webapps/mpp/ua/privacy-full
Payment by credit card, payment system, immediate transfer
When paying, we do not record or store any payment transaction information such as credit card numbers or bank details. You only disclose this directly to the respective payment service provider. We process these payments through Shopify Payments.
Advance payment
We store your personal data in order to be able to allocate your payment to the order. This data processing is based on the legal provisions of Art. 6 Para. 1 lit b (necessary for the fulfillment of the contract) of the DSGVO.
Shipping
We pass on your data in the course of the delivery of goods and the service provider specified when ordering. Contact data such as e-mail address and/or telephone number are only used by the logistics partner to agree on a delivery date and for important notifications about this.
This data processing is based on the legal provisions of Art. 6 Para. 1 lit b (necessary for the fulfillment of the contract) of the DSGVO.
Contact with us
If you contact us by Email, the data you provide will be stored with us for six months for the purpose of processing the request and in the event of follow-up questions.
This data processing takes place on the basis of the legal provisions of Art 6 Para 1 lit f (legitimate interest) of the GDPR.
Newsletter
Irrespective of contract processing, we use your e-mail address and your name exclusively for our own advertising purposes for sending out newsletters, provided you have expressly consented to this. You can revoke your consent at any time. To do this, unsubscribe from the newsletter using the relevant link in the newsletter or by notifying us. Your e-mail address will then be removed from the mailing list.
We use the newsletter tool from Sendinblue GmbH, Köpenicker Straße 126, 10179 Berlin. Your data is stored on ISO-certified servers in Germany.
Mehr zum Datenschutz von Shopify erfahren Sie auf https://sendinblue.com/legal/privacypolicy/
Your data will be passed on on the basis of the legal provisions of Art 6 Para 1 lit a (consent) of the GDPR.
Cookies
In order to make visiting our website attractive and to enable your order, we use so-called cookies on our website. These are small text files that are stored on your end device, which save certain settings and data for exchange with our system via your browser. Some of the cookies we use are deleted after the end of the browser session, i.e. after closing your browser (so-called session cookies). Other cookies remain on your end device and enable us to recognize your browser the next time you visit (persistent cookies).
Cookies do not contain any personal data and can therefore not be assigned to any user. Based on cookie technology, we only receive anonymous information, for example about which websites you visited our website from, which pages were viewed on our website, etc.
Please note that certain cookies are set as soon as you enter our website. You can set your browser so that you are informed about the setting of cookies and decide individually whether to accept them or to exclude the acceptance of cookies for certain cases or in general (you can find information on this in the help menu of your browser). However, if you do not accept cookies, you will not be able to complete an order through our website.
This data processing takes place on the basis of the legal provisions of Art 6 Para 1 lit a (consent), lit b (necessary for contract performance) and lit f (legitimate interest) of the GDPR.
Google Analytics
This website uses Google Analytics, a web analytics service provided by Google Inc. ("Google"). Google Analytics uses so-called "cookies", text files that are stored on your computer and enable an analysis of your use of the website.
In exceptional cases, the information generated by the cookie about your use of this website is sent to a Google server in the USA and stored there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide other services related to website activity and internet usage to the website operator. The IP address transmitted by your browser as part of Google Analytics (this is made anonymous by shortening it) is not merged with other Google data. You can prevent the storage of cookies by setting your browser software accordingly.
You can also prevent Google from collecting the data generated by the cookie and related to your use of the website (including your IP address) and from processing this data by Google by downloading the browser plug-in available under http://tools.google.com/dlpage/gaoptout?hl=en and install it. You can find more information on the terms of use and data protection under http://www.google.com/analytics/terms/ or http://support.google.com/analytics/answer/6004245?hl=en.
There is no decision by the European Commission and no certification from the ECJ that there is an adequate level of data protection in the USA. In addition, no security is guaranteed by the USA for the protection of personal data. Therefore, there is a possibility that personal data will be used by authorities for control and monitoring purposes. There are no effective legal remedies against this access to data.
Your data will be passed on on the basis of the legal provisions of Art 6 Para 1 lit a (consent) of the GDPR.
Vimeo – embedding of videos
We embed videos via the platform of the provider Vimeo LLC, headquartered at 555 West 18th Street, New York, New York 10011.
When you visit a page with videos, a connection to the Vimeo servers is established. This transmits to the Vimeo server which of our websites you have visited. If you are logged in as a member of Vimeo, Vimeo assigns this information to your personal user account. If you click on the start button of a video, this information can also be assigned to an existing user account. You can prevent this assignment by logging out of your Vimeo user account before using our website and deleting the corresponding Vimeo cookies.
In addition, Vimeo calls the Google Analytics tracker via the iFrame in which the video is called up. This is Vimeo's own tracking, to which we have no access. You can prevent tracking by Google Analytics by using the deactivation tools that Google offers for some internet browsers. Users can also prevent the data generated by Google Analytics and related to their use of the website (including their IP address) being sent to Google and the processing of this data by Google by using the browser plug-in available under the following link download and install: https://tools.google.com/dlpage/gaoptout?hl=de.
Further information on data processing and information on data protection by Vimeo can be found at https://vimeo.com/privacy.
There is no decision by the European Commission and no certification from the ECJ that there is an adequate level of data protection in the USA. In addition, no security is guaranteed by the USA for the protection of personal data. Therefore, there is a possibility that personal data will be used by authorities for control and monitoring purposes. There are no effective legal remedies against this access to data.
This data processing takes place on the basis of the legal provisions of Art 6 Para 1 lit f (legitimate interest) of the GDPR.
Responsibility for links
This website contains links to other websites over which KAYIKO has no control. Responsibility for content and data protection on external sites lies solely with the operators of the linked sites.
Your rights
In principle, you have the right to information, correction, deletion, restriction, data transferability, revocation and objection. If you believe that the processing of your data violates data protection law or your data protection rights have otherwise been violated in any way, you can complain to the supervisory authority. In Austria this is the Datenschutzbehörde (data protection authority).
You can reach us using the following contact details:
KAYIKO
The Private Luxury KG
Windmühlgasse 16
1060 Vienna
Austria
Phone: +43 1 558 46 42
Email: shop-vienna@kayiko.com