Privacy policy
Privacy Policy
## **1) Introduction and Contact Details of the Controller**
### **1.1**
We are pleased that you are visiting our website and thank you for your interest. The following information explains how we handle your personal data when you use our website. Personal data includes all data that can personally identify you.
### **1.2**
The controller responsible for data processing on this website under the General Data Protection Regulation (GDPR) is:
Limlex
Email: support@limlex.com
The controller is the natural or legal person who alone or jointly with others determines the purposes and means of processing personal data.
## **2) Data Collection When Visiting Our Website**
If you use our website for informational purposes only, i.e., without registering or otherwise providing us with information, we collect only the data that your browser transmits to our server ("server log files"). When you visit our website, we collect the following data, which is technically necessary for us to display the website:
- The pages visited on our website
- Date and time of access
- Amount of data transmitted in bytes
- Referring source (the website from which you reached our site)
- Browser used
- Operating system used
- IP address (if applicable, in anonymized form)
Processing is carried out in accordance with Article 6(1)(f) GDPR based on our legitimate interest in improving the stability and functionality of our website. This data is not shared or used for any other purpose. However, we reserve the right to review server log files retrospectively if there are concrete indications of illegal activity.
## **3) Hosting & Content Delivery Network**
### **Shopify**
For hosting our website and displaying content, we use the system of the following provider:
**Shopify International Limited**
Victoria Buildings, 2nd Floor, 1-2 Haddington Road, Dublin 4, D04 XN32, Ireland
Data is also transferred to: **Shopify Inc., 150 Elgin St, Ottawa, ON K2P 1L4, Canada**.
All data collected on our website is processed on the provider's servers. We have signed a data processing agreement with the provider to ensure data protection for our visitors and to prevent unauthorized data transfer to third parties.
For data transfers to Canada, an adequate level of data protection is ensured by an adequacy decision of the European Commission.
## **4) Cookies**
To enhance your experience on our website and enable certain features, we use cookies—small text files stored on your device. Some cookies are automatically deleted when you close your browser ("session cookies"), while others remain longer and allow us to store website settings ("persistent cookies"). You can check your browser settings for cookie expiration times.
If personal data is processed using these cookies, processing is based on:
- **Article 6(1)(b) GDPR** (contract performance)
- **Article 6(1)(a) GDPR** (consent)
- **Article 6(1)(f) GDPR** (legitimate interest in providing a functional and user-friendly website)
You can configure your browser to inform you about cookie usage, allow or reject cookies on a case-by-case basis, or disable cookies entirely. However, disabling cookies may limit the functionality of our website.
## **5) Contacting Us**
When you contact us (e.g., via a contact form or email), we process your personal data solely to respond to your inquiry.
- **Legal basis:** Our legitimate interest in responding to inquiries (Article 6(1)(f) GDPR).
- If your request relates to a contract, the additional legal basis is **Article 6(1)(b) GDPR** (contractual necessity).
- Your data will be deleted once your request is fully resolved and no legal retention obligations apply.
## **6) Comment Function**
When you leave a comment on our website, we store:
- Your comment
- The date and time of the comment
- Your chosen username
- Your IP address (for security reasons, to prevent misuse)
- **Legal basis:** Article 6(1)(b) and (f) GDPR.
- We may delete comments flagged as illegal.
## **7) Use of Customer Data for Direct Marketing**
### **7.1 Email Newsletter Subscription**
If you sign up for our newsletter, we will send you periodic information about our offers. The only required information is your **email address**. Providing additional details is voluntary.
- **Double Opt-In Process:** You must confirm your email via a verification link.
- **Legal basis:** Your consent (Article 6(1)(a) GDPR).
- You can unsubscribe anytime via the link in the newsletter.
### **7.2 Email Newsletter for Existing Customers**
If you have provided your email address during a purchase, we may send you promotional emails about similar products.
- **Legal basis:** Article 6(1)(f) GDPR (legitimate interest in direct marketing).
- You can opt out anytime.
### **7.3 Email Marketing via Klaviyo**
We use Klaviyo (Klaviyo, Inc., Boston, USA) for newsletter distribution.
- **Legal basis:** Article 6(1)(f) GDPR.
- Your data may be used for analytics (email opens, clicks).
- You can withdraw consent anytime.
## **8) Order Processing**
To fulfill orders, we share personal data with:
- Shipping providers
- Payment processors
- **Legal basis:** Article 6(1)(b) GDPR (contractual necessity).
## **9) Retargeting/Remarketing & Conversion Tracking**
### **TikTok Pixel**
We use **TikTok Pixel** (TikTok Technology Limited, Dublin, Ireland) to track conversions.
- **Legal basis:** Article 6(1)(a) GDPR (consent).
- You can opt out via our cookie settings.
## **10) Social Media Plugins**
### **10.1 Facebook & Instagram Plugins**
We use Facebook and Instagram plugins (Meta Platforms Ireland Ltd.).
- **Data transfer:** Your device and browser information may be shared.
- **Legal basis:** Article 6(1)(a) GDPR (consent).
- You can withdraw consent by disabling plugins.
## **11) Additional Tools**
### **11.1 Accounting Software (AccountOne)**
We use AccountOne GmbH for accounting services.
- **Legal basis:** Article 6(1)(f) GDPR (legitimate interest in efficient business operations).
### **11.2 Cookie Consent Tool**
Our website uses a cookie consent tool to manage user permissions.
- **Legal basis:** Article 6(1)(c) GDPR (legal obligation).
## **12) Your Rights as a Data Subject**
- **Right to Access** (Article 15 GDPR)
- **Right to Rectification** (Article 16 GDPR)
- **Right to Erasure** (Article 17 GDPR)
- **Right to Restriction of Processing** (Article 18 GDPR)
- **Right to Data Portability** (Article 20 GDPR)
- **Right to Withdraw Consent** (Article 7(3) GDPR)
- **Right to Lodge a Complaint** (Article 77 GDPR)
### **Objection to Data Processing (Article 21 GDPR)**
You have the right to object to the processing of your personal data at any time for reasons relating to your situation.
- If we process data for **direct marketing**, you can object at any time.
## **13) Storage Duration**
- Data is stored as long as necessary for the purpose collected.
- If processing is based on **consent**, data is stored until consent is withdrawn.
- If processing is based on **legitimate interest**, data is stored until an objection is made.
We value your privacy and the information you consent to share in relation to our SMS marketing service. We use this information to send you text notifications (for your order, including abandoned checkout reminders), text marketing offers, and transactional texts, including requests for reviews from us. Opt-in data and consent for text messaging will not be shared with any third parties except for messaging partners for the purpose of enabling and operating our text messaging program.
Opt-in data and consent for text messaging will not be shared with any third-parties except for messaging partners for the purpose of enabling and operating our text messaging program.
Our website uses cookies to keep track of items you put into your shopping cart, including when you have abandoned your checkout. This information is used to determine when to send cart reminder messages via SMS.