Privacy Policy
[Store_Name] is committed to protecting your personal information to the highest standards. This policy explains how we collect, use, share, and protect personal data — particularly in compliance with the European Union's General Data Protection Regulation (GDPR) and equivalent UK regulations.
1. Data Controller
[Store_Name]
Address: 1 West St, Danbury, CT 06810
Email: [email protected]
We are the Data Controller for the personal data you provide via our website or when placing an order.
2. Legal Basis for Data Processing (under GDPR)
We collect and process your personal data based on one or more legal grounds:
- Contract Performance (Article 6.1(b)) – to process orders, payments, and deliveries.
- Legitimate Interests (Article 6.1(f)) – to improve our website, prevent fraud.
- Compliance with Legal Obligation (Article 6.1(c)) – to retain invoices, prevent fraud.
- Your Consent (Article 6.1(a)) – to send marketing emails or analyze behavior if you consent.
3. Your Rights under GDPR
If you are a resident of the EU/EEA or the UK, you have the following rights:
Right | Description |
---|---|
Right to be informed | You can request details about the personal information we hold. |
Right to rectification | You can request to update inaccurate or outdated information. |
Right to erasure | In certain circumstances, you can request the deletion of your personal data. |
Right to restrict processing | You can request a temporary suspension of data processing in certain situations. |
Right to data portability | You can receive your data in an electronically readable format. |
Right to object | You can object to the use of your data for marketing or legitimate interests. |
Right to withdraw consent | If you have previously given consent, you can withdraw it at any time without affecting prior lawfulness. |
To exercise your rights, please contact: [email protected]
4. Data Transfer Outside EU/EEA
Tokavo's servers and processing systems are located in the United States. We ensure all data transfers comply with GDPR through:
- Standard Contractual Clauses (SCCs).
- Equivalent protection mechanisms if available, or with your explicit consent at the start of purchase.
5. Data Retention Period
We only store personal data for as long as necessary for processing purposes or legal compliance. Specifically:
- Order Information: Retained for 6 years (as required by accounting and tax regulations).
- Marketing Data: Deleted or anonymized after 12 months if you no longer interact.
- Browser Cookies: Varies by cookie type (session, 30–365 days).
6. Recipients of Personal Data
We do not sell your data. However, to fulfill your order, we may share data with processors:
- Payment Processors (PayPal).
- Delivery Partners (DHL, USPS...).
- Analytics Tools (Google Analytics, Hotjar – only collect anonymized data).
All third parties are thoroughly vetted to ensure GDPR compliance and sign Data Processing Agreements (DPA).
7. Security Measures
We implement:
- SSL/TLS encryption for all data communication.
- Restricted access to authorized personnel only.
- Regular data backup and auditing.
- Internal privacy policies compliant with international standards.
8. Cookies & Data Analytics
We use cookies and services like Google Analytics, Hotjar to improve website performance. All analytical or marketing cookies are only activated after your consent. You can change or decline cookies in your Cookie Settings or browser settings.
9. Complaints and Supervisory Authorities
If you believe we have violated your privacy rights, you can file a complaint with the data protection authority of your country of residence.
Examples:
- In France – CNIL (www.cnil.fr)
- In Germany – BfDI (www.bfdi.bund.de)
- In the UK – ICO (www.ico.org.uk)
Contact
Tokavo
Email: [email protected]
Address: 1 West St, Danbury, CT 06810
Phone: (+1) 203 646 0110