Privacy Policy

Date: 29.11.2021

PRIVACY POLICY 

For the processing of personal data by Aktiia SA (we, our or Aktiia) through the use of our products and services, including our Website available at https://aktiia.com (the Website) and the Aktiia mobile application accessible on the App Store and Google Play Store (the Mobile Application). 

1. Introduction

We recognise the importance of your privacy and transparency in our processing of your personal data. 

This privacy notice (Privacy Notice) informs you of the personal data we collect when you access and use our products and services and how we process such data. It generally applies to our activities relating to our users’ personal data, but we may also have additional privacy notices that apply in relation to specific products and services. 

By using our product and services, you expressly acknowledge that we may collect and process your personal data in accordance with this Privacy Notice. 

2. Who is responsible for the processing of your personal data

Aktiia SA is responsible for processing your personal data. You will find our contact details in Section 13.

3. What kinds of Personal Data does Aktiia SA Process

Aktiia SA collects personal data for various purposes; with that in mind, we have created a list of the types of personal data that we may collect, either directly from ourselves or other sources, in order to achieve those purposes.

The kinds of personal data we may collect include: 

Customers  Personal data (I): name and surname, address, e-mail, birth date 

Personal data (II): age, gender, height, weight, sleeping schedule 

Payment details: credit card info  

Health data: blood pressure, heart rate 

Professional contact  name and surname, address, telephone number, company name, email 

4. How we collect your personal data 

We collect the personal data you provide to us or transmitted it via the Aktiia device you wear. 

We collect the personal data that you provide to us when you use the Website, the Mobile Application and/or the services provided through the Website and the Mobile Application (the Services), for example, when you place an order, communicate with us, create and/or manage your account, use our blood pressure monitoring services, through web forms you fill, or when you subscribe to our newsletter. 

Some information is mandatory, and some are optional. 

It is mandatory that you complete the data fields identified by an asterisk. If one or more mandatory data fields are not completed, we cannot provide access to the Services. You are not required to complete the optional data fields in order to access the services provided through the Website and/or the Mobile Application. These fields may be completed at any time through your account settings. 

Specific personal data are collected in an automated manner. 

We automatically collect personal data, for instance, when you use Aktiia products or use our Website, including by means of tools, web forms, cookies and other active elements, as further described in this privacy notice. 

You may define specific authorisations relating to the automatic collection of your personal data when you configure your device or your internet browser according to available functionalities. In addition, you may also define specific settings for the automated collection of your personal data through the cookies setting plugin available on the Website. For more detailed information, please see the Cookie Policy.

WooCommerce

Functional

Usage

We use WooCommerce for webshop management. Read more

Sharing data

This data is not shared with third parties.

Functional

Name
Expiration
session
Function
Store items in shopping cart
Name
Expiration
session
Function
Store performed actions on the website
Name
Expiration
persistent
Function
Name
Expiration
session
Function
Store items in shopping cart
Name
Expiration
1 day
Function
Store items in shopping cart
Name
Expiration
session
Function
Store performed actions on the website

Bing Ads

Functional, Marketing

Usage

We use Bing Ads for advertising. Read more

Sharing data

For more information, please read the Bing Ads Privacy Statement.

Functional

Name
Expiration
persistent
Function
Name
Expiration
persistent
Function

Marketing

Name
Expiration
1 day
Function
Store and track visits across websites
Name
Expiration
13 months
Function
Store and track visits across websites

Criteo

Marketing

Usage

We use Criteo for remarketing. Read more

Sharing data

For more information, please read the Criteo Privacy Statement.

Marketing

Name
Expiration
13 months
Function
Provide functions across pages

Purpose pending investigation

Name
Expiration
Function
Name
Expiration
Function
Name
Expiration
Function

Google reCAPTCHA

Functional, Marketing

Usage

We use Google reCAPTCHA for spam prevention. Read more

Sharing data

For more information, please read the Google reCAPTCHA Privacy Statement.

Functional

Name
Expiration
6 months
Function
Provide spam protection

Marketing

Name
Expiration
session
Function
Read and filter requests from bots
Name
Expiration
session
Function
Read and filter requests from bots
Name
Expiration
persistent
Function
Read and filter requests from bots

Poptin

Purpose pending investigation

Usage

We use Poptin for popup creation. Read more

Sharing data

For more information, please read the Poptin Privacy Statement.

Purpose pending investigation

Name
Expiration
Function
Name
poptin_client_id
Expiration
Function
Name
poptin_origin_landing_page
Expiration
Function
Name
poptin_every_visit_session
Expiration
Function
Name
poptin_user_id
Expiration
Function
Name
poptin_user_country_code
Expiration
Function
Name
poptin_user_ip
Expiration
Function
Name
Expiration
Function
Name
poptin_old_user
Expiration
Function
Name
poptin_session
Expiration
Function
Name
poptin_referrer
Expiration
Function

Google Adsense

Marketing

Usage

We use Google Adsense for showing advertisements. Read more

Sharing data

For more information, please read the Google Adsense Privacy Statement.

Marketing

Name
Expiration
persistent
Function
Store and track conversions
Name
Expiration
persistent
Function
Provide ad delivery or retargeting

Facebook

Marketing, Functional

Usage

We use Facebook for display of recent social posts and/or social share buttons. Read more

Sharing data

For more information, please read the Facebook Privacy Statement.

Purpose pending investigation

Name
_fbp
Expiration
Function
Name
_fbc
Expiration
Function

Marketing

Name
Expiration
1 year
Function
Store account details
Name
Expiration
3 months
Function
Store a unique session ID
Name
Expiration
3 months
Function
Provide ad delivery or retargeting
Name
Expiration
90 days
Function
Store logged in users
Name
Expiration
2 years
Function
Provide fraud prevention
Name
Expiration
30 days
Function
Store a unique user ID
Name
Expiration
2 years
Function
Store browser details
Name
Expiration
1 year
Function
Store account details

Functional

Name
Expiration
1 week
Function
Read screen resolution
Name
Expiration
90 days
Function
Provide fraud prevention
Name
Expiration
session
Function
Store and track if the browser tab is active

GDPR Cookie Consent

Functional

Usage

We use GDPR Cookie Consent for cookie consent management. Read more

Sharing data

This data is not shared with third parties.

Functional

Name
Expiration
persistent
Function
Store if a message has been shown

Stripe

Functional

Usage

We use Stripe for payment processing. Read more

Sharing data

For more information, please read the Stripe Privacy Statement.

Functional

Name
Expiration
1 year
Function
Provide fraud prevention

Complianz

Functional

Usage

We use Complianz for cookie consent management. Read more

Sharing data

This data is not shared with third parties. For more information, please read the Complianz Privacy Statement.

Functional

Name
Expiration
730 days
Function
Store cookie consent preferences
Name
Expiration
730 days
Function
Store accepted cookie policy ID
Name
Expiration
730 days
Function
Store cookie consent preferences
Name
Expiration
730 days
Function
Store cookie consent preferences
Name
Expiration
730 days
Function
Store cookie consent preferences
Name
Expiration
730 days
Function
Store cookie consent preferences
Name
Expiration
730 days
Function
Store if the cookie banner has been dismissed

WordPress

Functional

Usage

We use WordPress for website development. Read more

Sharing data

This data is not shared with third parties.

Functional

Name
Expiration
1 year
Function
Store user preferences
Name
Expiration
persistent
Function
Store user preferences
Name
Expiration
persistent
Function
Store user preferences

Google Analytics

Statistics

Usage

We use Google Analytics for website statistics. Read more

Sharing data

For more information, please read the Google Analytics Privacy Statement.

Statistics

Name
Expiration
1 day
Function
Store and count pageviews
Name
Expiration
1 year
Function
Store and count pageviews
Name
Expiration
2 years
Function
Store and count pageviews
Name
Expiration
1 minute
Function
Store number of service requests

WPML

Functional

Usage

We use WPML for locale management. Read more

Sharing data

This data is not shared with third parties.

Functional

Name
Expiration
1 day
Function
Store language settings

Automattic

Statistics

Usage

We use Automattic for website development. Read more

Sharing data

For more information, please read the Automattic Privacy Statement.

Statistics

Name
Expiration
30 minutes
Function
Provide functions across pages

PHP

Functional

Usage

We use PHP for website development. Read more

Sharing data

This data is not shared with third parties.

Functional

Name
Expiration
Function
Provide functions across pages

PayPal

Functional

Usage

We use PayPal for payment processing. Read more

Sharing data

For more information, please read the PayPal Privacy Statement.

Purpose pending investigation

Name
__paypal_storage__
Expiration
Function

Functional

Name
Expiration
session
Function
Provide fraud prevention
Name
Expiration
1 year
Function
Store privacy preferences
Name
Expiration
3 days
Function
Name
Expiration
3 years
Function
Provide fraud prevention

Heap Analytics

Statistics

Usage

We use Heap Analytics for website statistics. Read more

Sharing data

For more information, please read the Heap Analytics Privacy Statement.

Statistics

Name
Expiration
14 months
Function
Store and track interaction
Name
Expiration
30 minutes
Function
Store performed actions on the website
Name
Expiration
14 months
Function
Store and track interaction
Name
Expiration
14 months
Function
Store and track interaction
Name
Expiration
14 months
Function
Store a unique user ID

Google Ads

Marketing, Statistics

Usage

We use Google Ads for advertising. Read more

Sharing data

For more information, please read the Google Ads Privacy Statement.

Marketing

Name
Expiration
90 days
Function
Provide ad delivery or retargeting
Name
Expiration
expires immediately
Function
Store information for remarketing purposes

Statistics

Name
Expiration
90 days
Function
Store and count pageviews

WP Engine

Purpose pending investigation

Usage

We use WP Engine for website hosting. Read more

Sharing data

For more information, please read the WP Engine Privacy Statement.

Purpose pending investigation

Name
Expiration
session
Function
Name
Expiration
session
Function
Name
Expiration
session
Function
Name
Expiration
session
Function
Name
Expiration
session
Function
Name
Expiration
session
Function
Name
Expiration
session
Function

Active Campaign

Marketing

Usage

We use Active Campaign for marketing automation (automated email marketing). Read more

Sharing data

For more information, please read the Active Campaign Privacy Statement.

Marketing

Name
Expiration
2 years
Function
Store and track interaction

Google Fonts

Marketing

Usage

We use Google Fonts for display of webfonts. Read more

Sharing data

For more information, please read the Google Fonts Privacy Statement.

Marketing

Name
Expiration
expires immediately
Function
Read user IP address

YouTube

Marketing

Usage

We use YouTube for video display. Read more

Sharing data

For more information, please read the YouTube Privacy Statement.

Marketing

Name
Expiration
session
Function
Store location data
Name
Expiration
6 months
Function
Provide ad delivery or retargeting
Name
Expiration
session
Function
Store and track interaction
Name
Expiration
8 months
Function
Store user preferences

Vimeo

Statistics

Usage

We use Vimeo for video display. Read more

Sharing data

For more information, please read the Vimeo Privacy Statement.

Statistics

Name
Expiration
10 minutes
Function
Store and track audience reach
Name
Expiration
2 years
Function
Store the user's usage history

Google Maps

Purpose pending investigation

Usage

We use Google Maps for maps display. Read more

Sharing data

For more information, please read the Google Maps Privacy Statement.

Purpose pending investigation

Name
Google Maps API
Expiration
Function

Miscellaneous

Purpose pending investigation

Usage

Sharing data

Sharing of data is pending investigation

Purpose pending investigation

Name
poptin_previous_visited_pages
Expiration
Function
Name
currency
Expiration
Function
Name
ce_clock
Expiration
Function
Name
ce_successful_csp_check
Expiration
Function
Name
klaviyoOnsite
Expiration
Function
Name
ddSession
Expiration
Function
Name
Expiration
Function
Name
_rdt_uuid
Expiration
Function
Name
prism_253144029
Expiration
Function
Name
poptin_c_visitor
Expiration
Function
Name
aktiia_selected_region
Expiration
Function
Name
NoCookie
Expiration
Function
Name
nabIsUserLoggedIn
Expiration
Function
Name
nabIsVisitorExcluded
Expiration
Function
Name
cebs
Expiration
Function
Name
_ce.s
Expiration
Function
Name
_hjIncludedInSessionSample
Expiration
Function
Name
datadome
Expiration
Function
Name
BVBRANDID
Expiration
Function
Name
BVBRANDSID
Expiration
Function
Name
poptin_previous_url
Expiration
Function
Name
__kla_id
Expiration
Function
Name
cebsp
Expiration
Function
Name
wn_data_custom_number
Expiration
Function
Name
_ce_s
Expiration
Function
Name
continueReview
Expiration
Function
Name
nabParticipation
Expiration
Function
Name
nabSegmentation
Expiration
Function
Name
nabAlternative
Expiration
Function
Name
nabExperimentsWithPageViews
Expiration
Function
Name
vx_user
Expiration
Function
Name
WP_DATA_USER_13181
Expiration
Function
Name
_transaction_ids
Expiration
Function
Name
NelioABTesting[is-guide-experiment-list-disabled]
Expiration
Function
Name
NelioABTesting[is-guide-overview-disabled]
Expiration
Function
Name
NelioABTesting[is-guide-results-disabled]
Expiration
Function
Name
_tt_enable_cookie
Expiration
Function
Name
_ttp
Expiration
Function
Name
topee_manifest_version
Expiration
Function
Name
topee_manifest_name
Expiration
Function
Name
topee_locale
Expiration
Function
Name
topee_content_scripts
Expiration
Function
Name
topee_tabId
Expiration
Function
Name
tt_sessionId
Expiration
Function
Name
tt_pixel_session_index
Expiration
Function
Name
tt_pageId
Expiration
Function
Name
tt_appInfo
Expiration
Function
Name
BVImplmain_site
Expiration
Function
Name
Expiration
Function
Name
version.0f037890bda511e9aaeecd0ed0219ab1.pixel_create.en
Expiration
Function
Name
Expiration
Function
Name
text.0f037890bda511e9aaeecd0ed0219ab1.pixel_create.en
Expiration
Function
Name
Expiration
Function
Name
__tea_cache_tokens_3297
Expiration
Function
Name
Expiration
Function
Name
nabWCAlternative
Expiration
Function
Name
_urlg_app_session
Expiration
Function
Name
userty.core.p.f3de1b
Expiration
Function
Name
userty.core.s.f3de1b
Expiration
Function
Name
userty_core_p_f3de1b
Expiration
Function
Name
userty_core_s_f3de1b
Expiration
Function
Name
debug
Expiration
Function
Name
wc_fragments_e17dcbafae225a7e45596c5b65dad05d
Expiration
Function
Name
is_eu
Expiration
Function
Name
wp-settings-445
Expiration
Function
Name
wp-settings-time-445
Expiration
Function
Name
io_temp
Expiration
Function
Name
brx_state_pinnedElements
Expiration
Function
Name
brx_active_window
Expiration
Function
Name
WP_PREFERENCES_USER_5919
Expiration
Function
Name
wc_cart_hash_9cc636c5eb7ad509ccc2b108ae57591c
Expiration
Function
Name
wc_cart_hash_546e419fdb9759613eb09692b0b33c8a
Expiration
Function
Name
WP_DATA_USER_5919
Expiration
Function
Name
brx_state_breakpoints
Expiration
Function
Name
brx_state_themeStyles
Expiration
Function
Name
wc_fragments_546e419fdb9759613eb09692b0b33c8a
Expiration
Function
Name
wp-settings-5919
Expiration
Function
Name
wp-settings-time-5919
Expiration
Function
Name
elfinder-lastdirwp_file_manager
Expiration
Function
Name
elfinder-toolbarhideswp_file_manager
Expiration
Function
Name
_pin_unauth_ls
Expiration
Function
Name
wc_cart_hash_8d5554037e8df943a2c87d877c3dd428
Expiration
Function
Name
WP_DATA_USER_6903
Expiration
Function
Name
wlActiveTab
Expiration
Function
Name
WP_PREFERENCES_USER_6903
Expiration
Function
Name
eos_dp_orientation
Expiration
Function
Name
woolentorShopifyCheckoutStep
Expiration
Function
Name
tablesorter-savesort
Expiration
Function
Name
ecommerce.currency
Expiration
Function
Name
_derived_epik
Expiration
Function
Name
brx_state_pseudoClasses
Expiration
Function
Name
wp-autosave-10
Expiration
Function
Name
gtm4wp_orderid_tracked
Expiration
Function
Name
customer-effort-score-exit-page
Expiration
Function
Name
eztoc_hide_deactivate_feedback
Expiration
Function
Name
wc_fragments_4ff1c5ef950f8e9bd6fe92075fccbda0
Expiration
Function
Name
smcx_424465005_last_shown_at
Expiration
Function
Name
setting-panel-container-rank-math-options-sitemap_options
Expiration
Function
Name
woolentor_already_views_count_product_3
Expiration
Function
Name
__stripe_sid
Expiration
Function
Name
wc_fragments_b3d8acb09845ef0c3931cd77ca566b56
Expiration
Function
Name
wpEmojiSettingsSupports
Expiration
Function
Name
woolentor_already_views_count_product_6
Expiration
Function
Name
explat-experiment--woocommerce_tasklist_progression_headercard_2col_2022_09
Expiration
Function
Name
explat-experiment--woocommerce_test_experiment
Expiration
Function
Name
explat-experiment--woocommerce_tasklist_progression
Expiration
Function
Name
explat-experiment--woocommerce_tasklist_progression_headercard_2022_09
Expiration
Function
Name
wp-settings-time-13238
Expiration
Function
Name
wp-autosave-3
Expiration
Function
Name
wp-settings-13238
Expiration
Function
Name
lastExternalReferrer
Expiration
Function
Name
lastExternalReferrerTime
Expiration
Function
Name
wc_fragments_ab3f59e7b57532705abcc5eb4b0a24d0
Expiration
Function
Name
loglevel
Expiration
Function
Name
wc_fragments_0a5ded6f4218be4dda72fe1b9cb28505
Expiration
Function
Name
wc_cart_hash_e17dcbafae225a7e45596c5b65dad05d-en
Expiration
Function
Name
wc_cart_hash_e17dcbafae225a7e45596c5b65dad05d-de
Expiration
Function
Name
wc_cart_hash_e17dcbafae225a7e45596c5b65dad05d-it
Expiration
Function
Name
wc_cart_hash_e17dcbafae225a7e45596c5b65dad05d-fr
Expiration
Function
Name
brx_state_globalElements
Expiration
Function
Name
bv_metrics
Expiration
Function
Name
WP_PREFERENCES_USER_2
Expiration
Function
Name
nab_wc_fragments_4ff1c5ef950f8e9bd6fe92075fccbda0
Expiration
Function
Name
klaviyoPagesVisitCount
Expiration
Function
Name
_fw_crm_v
Expiration
Function
Name
sbjs_migrations
Expiration
Function
Name
sbjs_current_add
Expiration
Function
Name
sbjs_first_add
Expiration
Function
Name
sbjs_current
Expiration
Function
Name
sbjs_first
Expiration
Function
Name
sbjs_udata
Expiration
Function
Name
nabSessionChecksum
Expiration
Function
Name
nabUniqueViews
Expiration
Function
Name
sbjs_session
Expiration
Function
Name
mcfw-bypass-cookie
Expiration
Function
Name
google_ama_config
Expiration
Function
Name
_hjDonePolls
Expiration
Function
Name
log-settings
Expiration
Function
Name
marketplace_redesign_2023_last_shown_date
Expiration
Function
Name
_pin_unauth
Expiration
Function
Name
_hjSessionUser_2977661
Expiration
Function
Name
_hjSessionUser_2977649
Expiration
Function
Name
__gads
Expiration
Function
Name
__gpi
Expiration
Function
Name
__eoi
Expiration
Function
Name
customer_user_agent
Expiration
Function
Name
customer_ip_address
Expiration
Function
Name
irclickid
Expiration
Function

 

The personal data we process may contain sensitive data. 

The information which you provide directly, or which is collected from you through Aktiia products you wear or Services you use, may contain sensitive data about you, in particular health data (such as information relating to your blood pressure, heart rate, weight, activity, bedtime, medicine intake, and so on) (Sensitive Data). 

We will process such Sensitive Data in accordance with applicable data protection laws, as specified in this Privacy Notice. 

5. How we process your personal data  

We process your personal data by automated means for the purposes indicated in this Privacy Notice and accordance with applicable law. 

We process your personal data in accordance with applicable law, in particular, Swiss data protection law and/or the EU General Data Protection Regulation (GDPR) and/or the UK General Data Protection Regulation, using computers or computer tools, in line with the purposes set out in this Privacy Notice. 

We do not make decisions exclusively based on automated processing which has legal effects on the data subject or affects him significantly (automated individual decision). For example, we may process your personal data to create a profile about you and provide you with a more personalised experience when using our Services (profiling). You may have the right to object to such activities according to applicable data protection laws (see Section 12 below for additional information on your rights). 

We may process your personal data to erase any information that allows us to identify you (anonymisation). We may then use such anonymous data for purposes not contemplated by this Privacy Notice (including data mining, benchmarking, analytics purposes, or developing and marketing new services). You may object to the anonymisation of your personal data for this purpose at any time (see Section 12 below for additional information on your rights). 

We take the technical and organisational appropriate security measures to prevent unauthorised access, disclosure, modification, alteration or destruction of your personal data, as specified in Section 11 below. 

6. On which legal ground do we process your personal data 

We process your personal data only if we have a valid legal ground to do so. 

We will only process your personal data if we have a valid legal ground for doing so. Depending on the processing in question, we will only process your personal data if: 

This is the case in particular when processing your personal data is strictly required to provide you with the Website and/or the Mobile Application and related Services, as further specified in Section 6. Therefore, when the GDPR applies, Contractual Necessity is based on Article 6(1)(b). 

Our Legitimate Interests include in particular (i) ensuring that the Website and/or the Mobile Application and related services are provided efficiently and securely (e.g. through internal analysis of the Website and/or the Mobile Application’s stability and security, updates and troubleshooting, as well as support services); (ii) improving and developing the Website and/or the Mobile Application (including monitoring our performance or the use of the Website and/or the Mobile Application and our Services, and for statistical purposes); (iii) benefiting from cost-effective services (e.g. we may opt to use certain services offered by suppliers rather than undertaking the activity ourselves); (iv) achieving our corporate goals; and (v) for the other Legitimate Purposes explicitly described in Section 6. When the GDPR applies, Legitimate Interest is based on Article 6(1)(f) GDPR. 

When the GDPR applies, consent is based on Article 6(1)(a) GDPR. 

Finally, we will process your personal data if required by law to do so, as further specified in Section 6. When the GDPR applies, Legal Obligation is based on Article 6(1)(c) GDPR. 

In addition, we will only process your Sensitive Data if we have obtained your explicit consent for one or more specified purposes or if we can rely on another lawful justification in accordance with applicable data protection laws. 

7. Purposes for which we process your personal data? 

We process your personal data for legitimate and clearly identified purposes. 

Your personal data is collected and processed to provide our Services and for the other legitimate purposes explicitly specified below and is not further processed in a manner incompatible with those purposes at the time of collection, only to the extent relevant to achieve these purposes. 

We process your personal data for the following purposes: 

We mainly process your personal data to provide the Services and operate the Website and the Mobile Application, based on our Contractual Necessity to do so, including for creating and maintaining a user account, interacting with you, providing you with the requested information and Services, making the products, goods and services available, as well as for customer and user management purposes. 

When you use our blood pressure monitoring Services and devices, we will collect device sensors data (such as battery status and inertial signals), monitoring data (such as debug information), and Sensitive Data such as blood pressure and heart rate measurements. Such information is then further processed to provide our Services. We will also collect information on the country and/or time zone from which you access our Services. We do not track your precise location. 

In addition to the personal data which you provide when logging-in to your account or interacting with the Website and/or the Mobile Application (e.g. when you fill in forms or upload content to the Website and/or the Mobile Application with your bracelet), we automatically collect technical information about your interactions with the Website and/or the Mobile Application, such as the content that was accessed, the date and time of access, and information about your web browser. We process this data to control the use of our Services and manage their stability and security, based on our Legitimate Interest to do so. We may also use this information to improve our Services, as described in more details below. 

Your account information is retained for as long as your account is active. If you suppress your user account, your account information will be deleted or anonymised within 30 days after such event, unless data must be retained for a valid reason (such as evidentiary or tax purposes). This does not include log files, which are automatically deleted or anonymised 30 days after their collection. 

To place an order, you must provide the information requested from you (e.g. contact information, billing and delivery addresses, payment method and related information). We process this data, based on our Contractual Necessity to do so. 

We also automatically collect data related to your use of the Website and/or the Mobile Application in accordance with our Cookie Policy. If we process your data through essential cookies, the valid legal ground is our Legitimate Interest. All other data processes through cookies are based on your consent. 

We use third-party services for payments and the dispatch of orders. For example, depending on the payment method selected, you will be redirected to the Website of an online payment provider which is responsible for processing the payment. We transmit to these third parties only the data necessary for the operations they perform. We process this data based on our Contractual Necessity to do so. 

In order to offer you Klarna’s payment methods, we might in the checkout pass your personal data in the form of contact and order details to Klarna, in order for Klarna to assess whether you qualify for their payment methods and to tailor those payment methods for you. Your personal data transferred is processed in line with Klarna’s own privacy notice 

The processing of the order, inventory and billing data is based on our Contractual Necessity to provide you with the requested goods and Services. We are also required by law to store certain information such as invoices, contracts and other information relevant to accounting for a certain period of time (generally for 10 years) Data relating to uncompleted orders is stored for 12 months and then deleted. 

You have the option of contacting us via the Website, the Mobile Application or by email. In this context, we process the data which you provide to us (including your contact information and the subject-matter of the request). This data is used for the purpose of providing you with the requested information and services, based on our Contractual Necessity. 

The retention period depends on the reason for your request and its context. Requests relating to orders will be retained for the period specified for orders. 

If you subscribe to our newsletter, we will collect your contact details (name and email address) and use it to provide you with our newsletter, based on your Consent. You may unsubscribe from the newsletter service at any time, in which case your contact details will be deleted. 

We also process the time of registration and your opt-in confirmation based on our Legal Obligation to demonstrate compliance. We also analyse your newsletter use, e.g. whether you have opened it or clicked on certain links, and process this data to optimise and improve our newsletter based on your Consent for receiving our newsletter. 

We use a third-party service of Klyvio to provide our newsletter service. Active Campaign allows us to reach our customers, understand how customers interact with communications and other content, and customise marketing based on our customers’ interests. Its privacy policy is applicable in connection with this and is available at https://www.klaviyo.com/legal/privacy-notice  

 Provided we have collected your valid consent, we may process your personal data, in particular data relating to your use of the Website and/or the Mobile Application and your habits and preferences (e.g. our device information [serial number, software version, bug/crash reports], the content you accessed, date and time of access and your preferences), for internal analysis and statistical purposes, in order to better understand the needs of our users and to optimise their experience, and to improve the ergonomics and functionality of the Website, the Mobile Application and the Services in general. You may object to such processing activities at any time (see Section 12 below for additional information on your rights). 

We do not link this information to you or your account. We use analytics tools provided by known market providers – such as Firebase and Google Analytics – which provide to us only aggregated, non-identifiable data. The privacy policy of those service providers is applicable in this context. You will find information on Google’s privacy practices relating to Firebase and Google Analytics here. 

You will find additional information in Cookie Policy in relation to the use of cookies for this purpose, including on the duration for which data collected this way are stored. 

Provided we have collected your valid consent, we use as part of our operation of the Website the services of third parties, such as Google, Youtube or Facebook, which may place cookies on your device in order to provide you with a personalised advertisement based on your interaction with the Website. The privacy policies of those providers are applicable in relation to their activities. You may withdraw your consent at any time (see Section 12 below for additional information on your rights). 

You will find additional information in Cookie Policy in relation to the use of cookies for this purpose, including on the duration for which data collected this way are stored, and the link to the privacy policies of those external service providers. 

We may further process your personal data if we have a Legal Obligation to do so or for other Legitimate Interests. This will, for instance, be the case if we need to disclose certain information to public authorities or retain such information for tax or accounting purposes, or the establishment, exercise or defence of legal claims. The personal data that we process for this purpose are those that we collected for one the purposes indicated elsewhere in this section. We retain the personal data for the duration of the legal obligation imposed on us. 

In addition to the above, we may process your personal data if we have obtained your prior unambiguous consent for specific purposes. Consent given can be withdrawn at any time, but this does not affect data processed prior to withdrawal. 

8. The circumstances in which we disclose your personal data to third parties 

We may disclose your personal data to third parties if this is necessary for the operation of the Website and/or the Mobile Application or to comply with a legal obligation. 

We may disclose your personal data to third parties in connection with the operation of the Website and/or the Mobile Application and to subcontractors such as IT service providers, cloud service providers, database providers, automated marketing solutions providers and consultants. 

We may also enable you to use third-party services directly from the Website and/or the Mobile Application, in which case you acknowledge that third-party operators of such services may access some of your personal data related to the Website and/or the Mobile Application. 

Our Website and/or Mobile Application may also contain links to other websites. This Privacy Notice applies only to our actions and does not apply, in particular, to the practices of third-party companies, individuals, or any other websites that may be referenced on the Website and/or the Mobile Application. You should carefully review the privacy policies of any other websites you visit from the Website and/or the Mobile Application to learn more about their personal data processing practices. In such circumstances, the collection and use of your personal data is governed by the privacy policy of those other websites. We are not responsible for their privacy practices. 

We may also disclose your personal data to third parties where we have a legal obligation to do so or a legitimate interest in doing so. 

We may also disclose your personal data where we have a legitimate interest in doing so, for example (i) to respond to a request from a judicial authority or in accordance with a legal obligation; (ii) to bring or defend against a claim or lawsuit; or (iii) in the context of restructuring, in particular, if we transfer our assets to another company. 

9. International Transfers 

Your personal data is stored in your area or residence, but may in certain circumstances, be disclosed in other countries. 

If you are a resident of the European Union, Switzerland or the United Kingdom, we store your personal data on servers located in the European Union. Personal data of other users is generally stored in the United States. 

In principle, we do not transfer your personal data to other countries or make it available there. However, in certain circumstances, in particular, in connection with the operations of our subcontractors, your personal data may be made available to recipients located abroad (e.g. Google and Amazon Web Services are headquartered in the U.S). In such cases, we will ensure that suitable safeguards are in place, in accordance with applicable data protection laws, for instance by relying on standard contractual clauses adopted by the European Commission. 

You may request additional information in this regard and obtain a copy of the relevant safeguards upon request by sending a request to the contact address indicated in Section 13 below. 

10. How long we store your personal data? 

Your personal data will not be stored longer than necessary. 

We will erase or anonymise personal data as soon as it is no longer necessary for us to fulfil the purposes set out in Section 6 of this Privacy Notice. This period varies, depending on the type of data concerned and the applicable legal requirements. More information on each type of processing can be found in Section 6 above. If you suppress your user account, we will delete your personal data within 30 days after such event, unless data must be retained for a valid reason. 

In view of the legal obligations incumbent upon us, certain information relating in particular to the contractual relationship must be retained for at least 10 years. 

11. Security 

We maintain physical, technical and procedural safeguards to keep secure your personal data. 

We are committed to the security of your personal data and have in place physical, administrative and technical measures designed to keep secure your personal data and to prevent unauthorised access to it. We use two-factor authentication whenever possible, antivirus protection, and have a strong password policy in place. We restrict access to your personal data to those persons who need to know it for the purpose described in this Privacy Notice. In addition, we use standard security protocols and mechanisms to exchange the transmission of sensitive data. When you enter sensitive information, we encrypt it using Transport Layer Security (TLS) technology. 

Although we take appropriate steps to protect your personal data, no website or application is completely secure. Therefore, we cannot guarantee that data you provide to us is safe and protected from all unauthorised third-party access and theft. We waive any liability in this respect. 

The internet is a global environment. As a result, by sending information to us electronically, such data may be transferred internationally over the internet depending upon your location. Internet is not a secure environment and this Privacy Notice applies to your use and disclosure of your personal data once it is under our control only. Given the inherent nature of the internet, all internet transmissions are done at your own risk. 

If we have reasonable reasons to believe that your personal data have been acquired by an unauthorised person, and applicable law requires notification, we will promptly notify you of the breach by email (if we have it) and/or by any other channel of communication (including by posting a notice on the Website and/or the Mobile Application). 

12. Your rights with regard to the processing of your personal data 

You have the right to access your personal data we process and may request without limitation that they be removed, updated, or rectified. 

Unless otherwise provided by law, you have the right to know whether we are processing your personal data. You may contact us to know the content of such personal data, to verify its accuracy, and to the extent permitted by law, to request that it be supplemented, updated, rectified or erased. You also have the right to ask us to cease any specific processing of personal data that may have been obtained or processed in breach of applicable law, and you have the right to object to any processing of personal data for legitimate reasons. 

By accessing your user account (if any), you can review, update, correct or delete the personal data available within your user account. 

If you would like us to delete your personal data from our system, please send a request pursuant to the contact details below. Your request will be accommodated unless we have a legal obligation to retain the record. Please note that any information that we have copied may remain in back-up storage for some period of time after your deletion request. 

If you wish us to erase your personal data from our systems, you may send us a request to the contact details below, which we will comply with unless we need to retain your data for legal or other legitimate reasons. 

Where we rely on your consent to process your personal data, we will seek your freely given and specific consent by providing you with informed and unambiguous indications relating to your personal data. You may revoke at any time such consent. 

You will find further details of your rights in Sections 4 and 5 of this Privacy Notice in connection with each processing activity we perform. 

The above does not restrict any other rights you might have pursuant to applicable data protection legislation under certain circumstances In particular, if the GDPR applies to the processing of your personal data, the GDPR grants you certain rights as a data subject if the individual requirements are met: 

You are not required to pay any charge for exercising your rights. If you make a request, we have one month to respond to you. 

You have the right to lodge a complaint with the competent authority. 

Suppose you are not satisfied with the way in which we process your personal data. In that case, you may lodge a complaint with the competent data protection supervisory authority, in particular in the Member State of your habitual residence, place of work or place of the alleged infringement, in addition to the rights described above. 

Although this is not required, we recommend that you contact us first (see section 13) as we might be able to respond to your request directly. 

Aktiia may contact you via email to invite you to review any services and/or products you received from us [in order to collect your feedback and improve our services [and products]] (the “Purpose”). We use an external company, Trustpilot A/S (“Trustpilot”), to collect your feedback which means that we will share your name, email address and reference number with Trustpilot for the Purpose. If you want to read more about how Trustpilot process your data, you can find their Privacy Policy here.
Aktiia may also use such reviews in other promotional material and media for our advertising and promotional purposes.

13. Contact Us 

We have appointed a Data Protection Officer. If you believe your personal data has been used in a way that is not consistent with this policy, or if you have any questions or queries regarding collecting or processing your personal data, please contact us. 

Aktiia SA Contact Details 

Aktiia SA
Rue du Bassin 8a
2000 Neuchâtel
Switzerland 

Data Protection Officer 

Ametros Group Ltd
Lakeside Offices, Thorn Business Park
Rotherwas Industrial Estate
Hereford
Herefordshire
England
HR2 6JT
Phone: 0330 223 2246
Email: dpo@ametrosgroup.com
Web: www.ametrosgroup.com 

14. Translation 

The original language of these Privacy Policy is English. Any translation made available is for convenience only. In case of conflicts between the original English version and any translation, the English version shall prevail.