CONDITIONS FOR PROCESSING PERSONAL DATA UNDER THE PERSONAL DATA PROTECTION ACT AND REGULATION (EU) 2016/679
By using this SITE, the USER declares that they are at least 16 years old!
In order to use the SITE, the USER gives their consent for IV369 to collect and process their personal data and declares that they are familiar with:
- the purpose and means of processing personal data;
- the voluntary nature of providing data and the consequences of refusing to provide them;
- the right to access, correct, and delete data collected by the PROVIDER;
- the recipients or categories of recipients to whom the data may be disclosed;
- Your personal data confidentiality is important to us;
Atelier60.bg is owned by the company IV369, with VAT ID: BG205955055, Registered address: Dobrich, Georgi Kirkov Str. 44, Manager: Veselina Stoyanova
More about the company, referred to below for brevity as the PROVIDER, and its activity, can be read here.
By registering on the SITE or placing an ORDER and filling out the personal data form, the USER declares that they agree that all personal data provided by them will be included in the PROVIDER’s database and gives their explicit and unambiguous consent that their personal data may be stored and used by the PROVIDER and its partners under contract for:
- Marketing activities, by receiving informational or commercial messages (offers, promotions, advertising, and marketing messages from the PROVIDER and third parties with whom the PROVIDER has any relationship) at the email addresses provided by the USER.
- Sending non-commercial or administrative messages from the PROVIDER
- Necessary for internal statistics to improve the quality of services provided and the appearance of the SITE and for creating new features, elements, promotions, functionalities, and new services;
- Market research and others;
Personal data required for placing an order
To place an order on Atelier60.bg, you need to provide the following personal data necessary for fulfilling your order:
- Two names
- Phone
- Email address
- Delivery address
When paying with a debit/credit card, payment data is collected and processed by the payment service provider – Stripe, Inc.
The provision of this data is entirely voluntary and necessary for the delivery of the selected goods.
Data collected when accessing the website
Every time the USER accesses a page from Atelier60.bg and its various menus, the PROVIDER receives information in the form of an information protocol with the following content:
- the page that referred the USER to us
- the pages that the USER has visited
- the USER’s IP address
- date and duration of access
- information about the browser and operating systemthe USER uses
Contact forms
The information provided by the USER through the contact forms on the site is used only for feedback from the PROVIDER and is stored for up to 30 days after the correspondence has ended. The data provided by the USER through the contact form will not be used for marketing purposes unless they have explicitly agreed to it!
Comments
When the USER leaves a comment under an article or product review, the PROVIDER collects both the information provided by the USER and their IP address and the browser used. Collecting this information is necessary to help identify spam comments.
Part of the email address (also called a hash) may be provided to Gravatar to display a picture if the USER uses Gravatar services. You can review Gravatar’s privacy policy here: https://automattic.com/privacy/
Information received from third-party affiliated applications
If the USER connects or registers on the SITE using their profile from a third-party service (e.g., Facebook, Google), the PROVIDER will receive information from the third party necessary for creating a profile on the SITE. The information provided to the PROVIDER by the third party may be different from what you would provide during regular registration on the SITE.
If you want to use your profile on another site for login, you should read their privacy policy and set your preferences for the information provided on their site.
The time for which the PROVIDER stores personal data from completed orders is as follows:
- All user profiles that have not been accessed for more than 10 years will be automatically deleted from our system
- All incomplete, canceled, and unsuccessful orders will be automatically deleted from our system after 10 years
- Your personal data will be anonymized for each order you have successfully completed more than 10 years ago
The current rules describe how we use cookies and similar files and technologies on the site. These technologies are used by almost every website and are contained in almost every commercial email message sent over the internet, and are called “cookies”. If you visit our site and your browser settings accept “Cookies”, we consider that you agree to use “Cookies”.
You can learn more about how to manage your cookies by visiting the help function of your browser, or you can visit aboutcookies.org, where detailed information is provided on managing cookies for the most popular browsers.
What is a “cookie”?
“Cookies” are small files that are sent to your computer from the websites you visit and are stored in your browser’s file directory. The next time you visit the same site, the browser reads the “Cookie” and relays the information to the website or the element that originally set the “Cookie”.
Why do we use “cookies”?
Cookies are essential for the functioning of our website and are key to making your work with it easier. We use cookies to improve the quality of our services by storing each user’s settings. Most browsers are initially set to allow cookies, but you can disable them or set them to notify you when they are accepted.
Please note that without accepting cookie files, some features of the site may not work properly.
The cookies on this website are used for various purposes. Mainly according to their purpose and the type of information they collect, they are divided into:
Functionally necessary
These cookies are necessary to navigate the site and use its full functionality. Without them, online shopping is impossible. These cookies serve to remember the products you place in your “shopping cart” when using the online store. These cookies can be used to remember previous actions you have taken (e.g., last viewed products).
These are cookies that cannot identify you personally in any way outside the scope of this website.
Performance cookies
These cookies collect anonymous information about how users use the website, such as which pages users visit most often and whether they receive error messages. These cookies allow us to improve the design and operation of the site in its future versions. This statistic cannot identify you personally in any way, it is of a group rather than a personal nature. None of these cookies are used to target you personally with ads or marketing initiatives.
Referral cookies
We may use referral cookies that are sent to your device from the websites of our business partners. These cookies are used to identify each time our business partners refer someone to our website, as well as whether the person’s visit leads to a product purchase on the site or not. This information may be disclosed to our business partners, but only in an anonymous manner, not in a way that you can be directly identified.
Third-party cookies
Some cookies stored during your visit to our website may be stored and used by other companies. For example:
When a “Like” button or another similar button for a social network is displayed on any of the pages of the site, that social network may store and use its own cookies to ensure the functionality of the button, as well as for other purposes. We do not control the storage or access to these cookies. (For more information, see the privacy/cookie policies of that social network)
How long are Cookies stored?
Some cookies are stored only for the duration of your visit. They are called session cookies. Others, called persistent cookies, may remain stored on your computer after your visit, and our site may use them each time you visit again.
How to disable Cookies?
You can disable the use of Cookies from your browser settings. Here we have provided useful links for disabling Cookies for the most used browsers:
Please note that disabling cookies may result in incomplete functioning of the site.
The USER will receive an email after completing an order, confirming that the order has been successfully completed.
The USER will receive a second email after placing the order, confirming that the order has been shipped and containing information about its delivery.
The USER has the right to subscribe to receive email news about new products and promotions. The USER has the right to unsubscribe from receiving email news at any time, through the link under each email or by writing a letter requesting cancellation to: office@atelier60.bg
The USER may receive an email for a forgotten cart, in case they have provided their email address and added products to the cart. The USER has the right to opt-out of this email, through the link under each email or by writing a letter requesting cancellation to: office@atelier60.bg
The USER may receive an email after placing their order, asking them to leave a review for the purchased product. The USER has the right to opt-out of this email, through the link under each email or by writing a letter requesting cancellation to: office@atelier60.bg
The USER may receive an email about expiring promo points in their account, in case they have created one and completed an order. The USER has the right to opt-out of this email by writing a letter requesting cancellation to: office@atelier60.bg
Some pages on the website may have embedded content from other websites (YouTube, Facebook, etc.). When the USER accesses a page with embedded content, it is as if the USER has also accessed the website from which the content is embedded.
These websites may collect information about the USER, install Cookies, and track the USER’s interaction with the embedded content, in case you have logged into your account on the respective websites from the same device that you use to access the PROVIDER’s website.
This website uses Google Analytics, a web analytics service provided by Google Inc (“Google”). Google Analytics uses Cookies, which are text files stored on your computer, to enable the analysis of the website usage by the USER.
The information about the website usage obtained by Google Analytics is transmitted and stored by Google on servers in the United States. This website has IP anonymization enabled, which means that Google will partially delete the USER’s IP address. Only in exceptional cases is the full IP address sent and partially deleted on servers in the United States.
At the request of the PROVIDER, Google will use this information to evaluate the website usage, compile web activity reports, and provide the PROVIDER with other services related to website usage.
Google will not associate the IP address sent by the USER’s browser through Google Analytics with any other data stored by Google.
You can prevent the collection of data extracted through Google cookies and the processing of your data by downloading and installing this browser plugin provided by them:
https://tools.google.com/dlpage/gaoptout?hl=en
Please note that the use of the browser plugin is limited to the respective browser and computer, and after its installation, it cannot be deleted to preserve the deactivation of Google Analytics.
You can find Google’s privacy policy here: http://www.google.com/intl/bg/policies/privacy/
This website uses Facebook Pixel to make Facebook ads more targeted.
Facebook Pixel tracks the USER’s actions on the pages of the SITE, and the data transmitted to Facebook is processed by Facebook.
You can disable Facebook Pixel tracking in your Facebook profile settings or by simply logging out of your Facebook account on the device you use to access our SITE.
You can find more information about Facebook’s privacy policy here: https://www.facebook.com/about/privacy/
Legal basis: Art. 6 (1) f GDPR.
This website uses the remarketing feature “Custom Audiences” of Facebook Inc. (abbreviated as “Facebook”). It allows users of this website to see ads based on their interests (abbreviated as “Facebook ads”). Facebook ads are visible to users when visiting the Facebook social network or other websites that also use the feature. As soon as you visit a page from this website, your browser automatically establishes a direct connection with Facebook servers. We have no responsibility or influence over the subsequent collection and use of data by Facebook through this feature, so we inform you according to our level of knowledge and availability to the “Custom Audiences” feature and related services.
By integrating “Custom Audiences” from Facebook, Facebook receives information about the content you have visited on our website. It also receives information about the usage of our Facebook ads, based on the same feature.
If you are registered with Facebook for using services and products from Facebook, Facebook will link your visits to your user profile on the Facebook social network. Even if you are not registered on Facebook or have not logged into Facebook with user data from your registration, it is possible for Facebook to record your IP address and other identifying information.
You can deactivate the “Custom Audiences” feature on Facebook by visiting the following address: https://www.facebook.com/settings/?tab=ads#_.
Used cookies – from a third party, an external company offering advertising and marketing services; used to report a site visit for creating a target audience for advertising purposes.
Cookie duration – over 6 months
Retargeting or remarketing refers to technologies in which users who have previously visited a specific website are shown relevant advertising even after leaving that website. To do this, users need to be recognized on the internet outside of their own website, using cookies from the respective service providers. In addition, previous usage behavior is considered. For example, if a user views certain products, they may later see those or similar products as advertisements on other websites. This is personalized advertising tailored to the needs of each user. It is not necessary for this personalized advertising to be identified beyond recognizing the user. Therefore, the data used for retargeting or remarketing will not be combined with other data.
We use such technologies to display advertisements on the internet. We use third-party providers to display them. Among other things, we use offers from Google, which allows automatic display of interesting products for the internet user. This function is performed by cookies. For more information on this technology, see Google’s Privacy Policy at https://policies.google.com/privacy?hl=de: Installing cookies for remarketing in Google and tracking conversions in Google AdWords can be prevented by setting the appropriate browser by accessing the website http://www.google.com/policies/privacy/ads/ and changing the corresponding setting.
The site uses retargeting tags from Google and Facebook. The advertising JavaScript codes for retargeting, embedded in this website, store a cookie on the user’s computer for the purpose of retargeting. At a later date, the user will be provided with banners or text ads from Atelier60.bg, provided that the user acts on websites in the Google search network, as well as on the Google display network profiles. All data is recorded anonymously, so it is not possible to draw conclusions about specific individuals. Users can opt out of the retargeting feature by changing the settings of Google remarketing tags or deactivating retargeting. Alternatively, users can deactivate the use of third-party cookies by using the opt-out page or object of the network advertising initiative for each network separately.
The PROVIDER will not provide any personal information to third parties, except in the following cases:
- If required by a regulatory act – to the respective authorities
- State agencies and other regulators that provide a legitimate document for the right to request information or when a legal basis is present
- Third parties that perform services for us related to marketing and payments, provided that they have declared that they agree with our terms to keep the information confidential and comply with the necessary measures for its high protection
Upon request, the USER has the right to receive free information regarding the personal data collected about them. The USER has the right at any time to refuse their personal data to be collected and processed, and also to request that their data be deleted, corrected, or blocked. The USER has the right to request the complete deletion of their profile and all data associated with it.
To do so, send an email to our personal data protection officer at: office@atelier60.bg
The PROVIDER undertakes to fulfill the USER’s request within 30 days.
If you receive promotional offer emails from us, you can unsubscribe from them using the link at the bottom of the message. If the link does not work or is missing, you can write to us at the email: office@atelier60.bg, and we will make sure to stop sending you emails and reminders from us.
The WEBSITE may contain hyperlinks to websites owned by third parties. The links to these websites on this WEBSITE are not monitored by the PROVIDER and are provided solely for the convenience and ease of use of the USER, and their presence does not imply that the PROVIDER endorses the content, products, or services offered on these websites.
The PROVIDER does not control and is not responsible for these websites, nor does it guarantee or assume any obligations regarding them or their content, completeness, timeliness, accuracy, and usefulness of the information, as well as the products or services offered there. The PROVIDER is not responsible for the privacy policy or security of these websites. The PROVIDER is not responsible for any results and consequences of their use (including damages or missed benefits). The use of such websites, for which there are links on the WEBSITE, is entirely at the risk and responsibility of the USER.
Links to this WEBSITE are permissible, provided they are placed in an appropriate context.
How do we protect your personal data?
The website is hosted on our own server, which is located in Bulgaria and complies with all European requirements for personal information protection. Our hosting service provider is VPS.BG Ltd. You can familiarize yourself with their privacy policy here: https://www.vps.bg/privacy
All pages on the site are encrypted with a COMODO SSL certificate (256-bit).
The site has a system to prevent Brute-Force attacks, which involve guessing user passwords. The system blocks any IP address that has entered the wrong password more than five consecutive times. Additionally, the site is protected with Google ReCaptcha to limit login attempts from automated robots.
Access to the XMLRPC.php file, often used by hackers to access content, has been blocked.
All IP addresses attempting to access the site’s administrative panel from other countries are blocked.
The administrative panel of the site is protected with a server password (encrypted on the server) and a second password (encrypted in the database).
Upon registration, each user receives an automatically generated password with a suitable length and symbols to provide a high level of protection for each profile. The password is automatically sent to the email address provided by the USER.
The information is stored in the database in encrypted form with protected and limited access.
What are the procedures in case of a security breach on the site?
In the event of a security breach on the site, the PROVIDER is obliged to notify all users and the regulatory authority – the Commission for Personal Data Protection, within 72 hours after the breach is detected.
Regulatory authority page: https://www.cpdp.bg/
The page was last updated on April 2, 2023.