top of page

Privacy Policy

 

The controller of the personal data of the online shop is S.Aukust Capital OÜ (registry code 14818046), located at  Künni tn 1/5Tartu, Estonia, e-mail info@yaki.design.

​

Which personal data are processed?

 

1. Visitor Data (Automatically Collected)

  • IP Address: We collect your IP address to help us understand where visitors come from and to protect our site from unauthorized access.

  • Device & Browser Information: This information helps us make sure our website works well on your device and browser, so you have the best experience.

  • Session Data: We track how long you visit and which pages you view to improve our website’s performance and content.

  • Cookies: Cookies help our website remember your preferences, keep it working properly, and show you personalized content or ads.

  • Referring/Exit Pages: We check which websites bring visitors to us and where visitors leave, so we can improve how you find and use our site.

  • Date/Time Stamps: We record the time of your visits to understand busy times and improve our services.

​

2. User Data (Provided by You)

  • Personal Information: We collect your name, email, phone, and address so we can contact you and deliver products or services.

  • Login Credentials: Your username and password let you securely access your account and any personalized features.

  • Payment Details: We need your payment information to process purchases safely and complete your orders.

  • Form Submissions: Any information you provide in forms helps us respond to your questions, requests, or feedback.

  • Uploaded Files: If you upload documents or images, we use them to provide or improve our services.

  • Communication Records: We keep records of messages you send us to help with support and improve your experience.

​​​​​

Legal basis

​

The purpose of processing personal data is to fulfil the agreement entered into with the customer  (managing the customer’s orders, delivery, returning goods and reimbursing payments). 

​

Personal data are processed in order to fulfil legal obligations (e.g. for accounting).

 

The processing of personal data, i.e. the collection of purchase history data for the purposes of  resolving potential consumer disputes, is necessary due to the controller’s legitimate interest. 

​

Recipients of personal data 

​

Name, telephone number and e-mail address are forwarded to the transport service provider selected by the customer. If the goods are delivered by a courier, the customer’s contact details, as well as their address, are forwarded to the courier. 

​

If an outside service provider handles the accounting for the online shop, the personal data is forwarded to that service provider to perform the accounting operations. 

​

Personal data may be forwarded to IT service providers if this is needed to ensure the functionality  of the online shop or to host data. 

​

Security and access to data 

​

Personal data is stored in the servers, which are located on the territory of a member state  of the European Union or states of the European Economic Area. Data may be forwarded to states whose level of data protection is sufficient according to the European Commission or to a company of a third state to which a safeguard specified in articles 46 or 47 or in subsection 49 (1) of the  GDPR has been applied.

​

Personal data can be accessed by the staff of the online shop in order to resolve technical issues related to the use of the online shop and to provide customer support.

 

The online shop applies the relevant physical, organisational and IT security measures in order to protect personal data from accidental or unlawful destruction, loss, amendment or unauthorised access and disclosure. 

​

Personal data are forwarded to processors (e.g. the transport service provider and data hosts) on  the basis of contracts between the online shop and processors. Upon processing data, the processors  are obliged to ensure the relevant safeguards in accordance with article 28 of the GDPR. 

​

Access to and rectification of personal data 

​​

Personal data can be accessed and rectified via the online shop’s user profile or customer support. If a purchase is made without a user account, personal data can be accessed via customer support. If the request to access personal data has been submitted electronically, the information will also be provided via commonly used electronic means. 

​

Withdrawal of consent 

​

If personal data are processed with the customer’s consent, the customer has the right to withdraw  their consent by making relevant changes in the user account’s settings or by notifying customer support via e-mail. 

 

Storage 

​

Personal data are erased upon deleting the online shop’s customer account, except for the personal  data (purchase history) which are necessary for accounting or to resolve consumer disputes. 

​

In the event of disputes regarding payments and consumer disputes, personal data are stored until  the claim is settled or the limitation period expires. 

​

The personal data in original accounting documents is stored for seven years.

 

Restriction

​

If the data are incorrect, incomplete or processed unlawfully, the customer has the right to request the restriction of the processing of their personal data. 

​

Objections 

​

The customer has the right to submit objections regarding the processing of their personal data if  they have a reason to believe that there is no legal basis to process their personal data. 

​

Erasure 

​

For the erasure of personal data, customer support should be contacted by e-mail. Requests for erasure are responded to within one month and the period of erasure is specified. The response to  the request will also indicate which personal data will not be erased, on which legal basis and why. 

​

Transfer 

​

Requests to transfer personal data submitted via e-mail are responded to within one month. Customer support identifies the person and indicates which personal data is to be transferred. 

​

Direct marketing messages 

​

The e-mail address and telephone number are used to send direct marketing messages if the customer has consented to receiving such messages. If the customer does not wish to receive direct marketing messages, they should select the relevant link at the footer of the e-mail or contact customer support. 

​

Where personal data are processed for direct marketing purposes (profiling), the customer has the right to object at any time both to the initial and further processing of their personal data, including profiling related to direct marketing, by notifying customer support thereof via e-mail (the respective information should be submitted clearly and separately from any other information). 

​

Resolution of disputes 

​

Disputes concerning the processing of personal data are settled through customer support (info@yaki.design). The supervisory authority is the Estonian Data Protection Inspectorate (info@aki.ee).

​

bottom of page