Privacy Notice
1. Who are we and what is this about?
We are Nanosite Ducommun-dit-Verron, Ring 12, 2502 Biel-Bienne, Switzerland, owner of the brand KOYE and the controller of this website. This is our privacy notice (« PN »), in which we provide you, as the data subject, with the information required to enable you to exercise your rights and to ensure transparent data processing.
This PN forms the basis on which we process any personal data we receive in connection with your use of and interaction with this website, in particular our KOYE eCom store, or any other online presence managed by us, including our social media presences as well as our applications, in particular our KOYE App (collectively referred to as the « Website »).
This website may contain links to and from the websites of our partner networks, advertisers and affiliates. If you follow a link to any of these websites, please note that they have their own PN and we cannot be held liable or responsible for them.
This PN is dated 25.07.2024. We reserve the right to adapt it at any time. The PN as published here applies.
2. What personal data do we process from you, for what purpose and with whom do we share it?
2.1 When you visit our website
When you visit our website, our servers temporarily save each access in a log file. The following technical data is collected without your intervention, as is the case with every connection to a web server, and stored by us until automatic deletion after 12 months at the latest:
- the IP address of the requesting computer,
- the date and time of access,
- the name and URL of the retrieved file,
- the status code (e.g. error message),
- the operating system of your computer,
- the browser you use (type, version and language),
- the transmission protocol used (e.g. HTTP/1.1).
This data is collected and processed for the purpose of enabling the use of our website (establishing a connection), ensuring system security and stability on a permanent basis and enabling the optimisation of our Internet offering, as well as for internal statistical purposes.
To this end, we are supported by our partners, which are themselves subject to data protection regulations, which we have carefully selected and which are contractually obliged to comply with data protection, especially with regard to data security.
These are (with links to their respective PN):
- Infomaniak, Switzerland, Hosting, https://www.infomaniak.com/en/legal/confidentiality-policy
- Nanhosting, Switzerland, Hosting, https://nanhosting.ch/conditions-generales/
- WordPress, Open source, CMS, https://wordpress.org/about/privacy/
2.2 If you write to us via the contact form
This website allows you to contact us via a contact form. If you choose to contact us in this way, you consent to us processing your email address, surname, first name, title, telephone number, as well as the content of our conversation, for the purpose of communicating with you until we are satisfied that you are happy with it, and then archiving or deleting the data in accordance with legal requirements.
For communication with us via contact form, we are supported by our partners which are themselves subject to data protection regulations, which we have carefully selected and which are contractually obliged to comply with data protection, in particular with regard to data security.
These are (with links to their respective PN):
- Nanhosting, Switzerland, Hosting, https://nanhosting.ch/conditions-generales/
- WordPress, Open source, CMS, https://wordpress.org/about/privacy/
2.3 If you contact us via email or telephone
If you choose to contact us by email or telephone, you consent to us processing your email address, surname, first name, title, telephone number and the content of our conversation for the purpose of communicating with you until we are satisfied that you are happy with it, and then archiving or deleting the data in accordance with legal requirements.
For communication with us via email or telephone, we are supported by our partners which are themselves subject to data protection regulations, which we have carefully selected and which are contractually obliged to comply with data protection, in particular with regard to data security.
These are (with links to their respective PN):
- Nanhosting, Switzerland, Hosting, https://nanhosting.ch/conditions-generales/
2.4 When you open a customer account with us
To use some of our services, you can open an account. To do this, we need personal data from you; otherwise we cannot open the account for you and provide you with our services.
The creation and subsequent use of an account is voluntary. We require your surname, first name, delivery and billing address, telephone number as well as your email address. We subsequently process when you were logged in and for how long, your account settings, payment method and preferences, your interaction with the website, use of the services and for the creation and management of your customer account, including contacting you in this regard.
If you have an account, you are free to enter additional information about yourself in your profile, e.g. your picture, which you can also delete again.
This account data will be processed by us until you delete your account and then archived for as long as we are legally or contractually obliged to do so. Components of the account data that we are not obliged to archive will be anonymised or deleted for statistical analysis purposes.
For the creation and management of the customer accounts, we are supported by our partners which are themselves subject to data protection regulations, which we have carefully selected and which are contractually obliged to comply with data protection, in particular with regard to data security.
These are (with links to their respective PN):
- Nanhosting, Switzerland, Hosting, https://nanhosting.ch/conditions-generales/
- WooCommerce Ireland Ltd., Ireland, eCommerce Provider, https://automattic.com/privacy/
- WordPress, Open source, CMS, https://wordpress.org/about/privacy/
2.5 When you buy our goods or services online
To purchase our chargeable goods or services, you or your organisation must conclude a contract with us. To do this, we need data such as your surname, first name, telephone number (for delivery purposes), email address, delivery address, billing address and method of payment. On the one hand, this allows us to evaluate entering into a customer relationship with you or your organisation and then decide to do so. On the other hand, it allows us to subsequently provide the services or goods deliveries requested by you or your organisation for the purpose of performing the contract. For this purpose we create an order file containing your purchase and delivery information which we share with our producer(s) in order to have the goods produced and delivered to you. This order file will also be used to generate and reserve the QR codes allocated exclusively to each and every one of your goods. We will retain all of this information as required by law. After your purchase as an existing customer, we reserve the right to inform you via email about our offers for goods or services similar to those you have already purchased, to invite you to events or to ask you to rate us and our performance, if you do not object to this. We also analyse the purchasing behaviour of our existing customers on an individual and segmented basis in order to adapt our offer to the demand thereby forecast. This includes the use for advertising purposes on social media (e.g. for so-called Lookalike Audience campaigns). If you use your customer account for your purchase, we will assign your transactions to this account.
For contract processing, delivery, credit assessment, analysis, communication, invoice and card payment, we are supported by our partners which are themselves subject to data protection regulations, which we have carefully selected and which are accordingly contractually obliged to comply with data protection, in particular also with regard to data security.
These are (with links to their respective PN):
- Nanhosting (general partnership), Switzerland, Hosting, https://nanhosting.ch/conditions-generales/
- WooCommerce Ireland Ltd., Ireland, eCommerce Provider, https://automattic.com/privacy/
- WordPress, Open source, CMS, https://wordpress.org/about/privacy/
- Stripe, Inc., Ireland, Payment Service Provider, https://stripe.com/en-ch/privacy
- Twint SA, Switzerland, Payment Service Provider, https://www.twint.ch/fr/confidentialite/ Our suppliers and delivery providers allocated to your purchase at the time or your purchase.
2.6 If you subscribe to our newsletter
If you decide to subscribe to our newsletter in our App or website, you consent to us processing your mobile number, email and your interaction with our newsletter in order to send you our newsletter by SMS and/or email, to ensure that you receive it and, if necessary, to improve our offering based on your interaction. This includes the use for further advertising purposes on social media (e.g. for so-called lookalike audience campaigns). You can withdraw your consent at any time via the options provided in the newsletter itself with effect for the future.
For the creation, sending, confirmation of receipt and interaction tracking of our newsletter, we are supported by our partners which are themselves subject to data protection regulations, which we have carefully selected and which are correspondingly contractually obliged to comply with data protection, in particular also with regard to data security.
These are (with links to their respective PN):
- Nanhosting (general partnership), Switzerland, Hosting, https://nanhosting.ch/conditions-generales/
- WordPress, Open source, CMS, https://wordpress.org/about/privacy/
- Intuit, United Stated, Mailchimp, Newsletter emailing service, https://www.intuit.com/privacy/statement/
- Twilio, United States, Newsletter SMS service, https://www.twilio.com/en-us/legal/privacy
2.7 If you follow our presence on social media
If you decide to follow our presence on social media and communicate with us via social media, you consent to us processing your username for the purpose of managing and analysing our followers (including for advertising purposes) as well as the content of any interaction with us or our content. You can leave our presence at any time with effect for the future.
We are responsible for the operation of such a presence together with the operator of the respective platform: we for the processing of your data as described above, the platform operator for the processing of your data in accordance with the participation agreement between you and the platform operator itself.
We have presences on the following social media (with links to their respective PN):
- Meta Platforms Ireland Limited, Ireland, Instagram, https://privacycenter.instagram.com/policy/
- Meta Platforms Ireland Limited, Ireland, Facebook, https://www.facebook.com/privacy/policy/
- LinkedIn Ireland Unlimited Company, Ireland, Linkedin, https://fr.linkedin.com/legal/privacy-policy
- Google Ireland Limited, Ireland, Youtube, https://policies.google.com/privacy
- Tiktok Technology Limited,Ireland, Tiktok, https://www.tiktok.com/legal/page/eea/privacy-policy/en
2.8 When you use our KOYE App
The KOYE App is essentially a website which you can access for the purpose of defining the content shown when your QR code is scanned. Access to the KOYE App requires the activation code delivered to you with the merchandise. If you follow the instructions, you will then be prompted to provide your mobile number. This is required to link your merchandise to you and allow you to control the content shown when your QR code is scanned. For more functional explanations, see our Terms of Sale. It is your free choice to do this. If you choose to use our KOYE App and link your mobile number, you consent to the following:
- The KOYE App is granted the access rights necessary for its function to data located on or generated by your device.
- We process your data that is necessary and requested for the opening and management of the account, in particular your mobile number.
- We generate and analyse user profiles regarding usage time and interaction with the KOYE App.
- We further temporarily store access data as described in the chapter “When you use our website”.
For the operation of our KOYE App, we are supported by our partners which are themselves subject to data protection regulations, which we have carefully selected and which are contractually bound to comply with data protection accordingly, especially with regard to data security.
These are (with links to their respective PN):
- Infomaniak, Switzerland, Hosting, https://www.infomaniak.com/en/legal/confidentiality-policy
- Twilio, United States, Newsletter SMS service, https://www.twilio.com/en-us/legal/privacy
- Google LLC, United States, reCAPTCHA service, https://policies.google.com/privacy
3. Which third-party technologies have we embedded?
We use various technologies from (other) third party providers on our website e.g. for analysis, segmentation, marketing, social media integration, security, media display, CRM integration, etc.. They explain in their respective PN which data they process for which purposes, for how long, with whom they share it, which rights you have and how you can exercise them. If applicable, you can opt-out of this processing, for which we provide you with the relevant links below in these cases. You can also make settings in your internet browser that prevent cookies from being stored on your device or tracking technologies from being used, for example. You can make and manage these settings in your internet browser under privacy, security or data protection settings, depending on the provider.
These third party providers are (with links to their respective PN and opt-out options where applicable):
- InnoCraft Limited, New Zealand, Matomo, Website analytics, opt-out : koye.shop/privacy-notice, PN: https://matomo.org/gdpr-analytics/
4. Do we disclose your personal data abroad?
We work with various partners at home and abroad (see above). In principle, these are located in countries with an appropriate level of data protection. If disclosure to individual countries requires additional protection, we ensure this by agreeing standard data protection clauses approved by the authorities with such partners or by relying on the self-certification of such partners under the relevant frameworks.
5. What are your rights towards us?
You have the right:
- request information about, correction or deletion of your personal data;
- request us to restrict the processing of your personal data, in particular to object to the processing of your personal data for marketing purposes; and
- require us to provide you or a natural or legal person appointed by you with a digital file of your personal data (data portability).
You can withdraw your consent to the processing of your personal data for the specified purposes at any time with effect for the future.
You also have the right to lodge a complaint with the competent authority (Federal Data Protection and Information Commissioner).
6. How can you exercise your rights against us?
If you have any questions about this PN or wish to exercise your rights, please contact us in writing either by post (see above) or by email as follows: privacy@koye.shop
We thank our legal partner, Kanzlei Berger (https://kanzlei-berger.ch) for his work on this legal document.