Privacy policy

This Privacy Policy describes how we collects, uses, and discloses your Personal Information when you visit or make a purchase from the Site.

Title

Last updated: July 2024

1. Mamaaura Dermo Cosmetics GmbH is the Data Controller – How do you contact us?

2. Purpose with and use of your personal data and the legal basis for the use of your data

3. Categories of personal data we process

4. Legitimate interests we pursue with processing your personal data

5. Receivers or categories of receivers of your personal data

6. Transfer of your data to receivers outside of the EU/EEA

7. Storage of your personal data

8. The right to withdraw your consent

9. Your rights regarding the use of your information

10. SMS Sending Information

11. Complain to a data protection authority

1. mamaaura dermo cosmetics gmbh is the data controller – how do you contact us?

Mamaaura Dermo Cosmetics GmbH is the data controller responsible for handling the personal data that we have collected from you. You can find our contact details below:

Mamaaura Dermo Cosmetics GmbH Münchener Str 18 85774 Unterföhring, Germany

Commercial Register: HRB 256212

Registration court: Registergericht München

General Manager: Kaan Edebali Ekinci

Contact

Phone: +49 (0)173 708 4967

E-mail: info@mamaaura.com

If you have any questions, concerns, or complaints about our Privacy Policy or our data collection and processing practices, or if you wish to exercise any of your rights or report any security violations to us, please contact us.

2. purpose with and use of your personal data and the legal basis for the use of your data

2.1 When you visit our website, we collect information regarding your use of our website, including your browser type, search terms used, your IP address including your network location, and information about the device you are using to visit our website. Furthermore, we collect information regarding which products and services you click on and add to your basket. This information is collected through cookies. Learn more about our use of cookies in our cookie policy. We use third-party analytics services to help analyze how users use our Site.

 

2.1.2 The purpose is:

• To gather statistics to analyze trends about our user movements and use of our website, so we can better tailor our Services to our users’ needs

• To be able to give you recommendations for products on our website that we think you might be interested in

• To carry out marketing of our products to you, including marketing via Facebook and Google

• To improve the security of our website

 

2.1.3 The legal basis for processing is the EU General Data Protection Regulation (GDPR) art 6 (1) (f) and your personal data will only be processed if you have given your consent to the processing of your personal data with this specific purpose.

 

2.2 When you order a product or communicate with us on our website, we collect the information you provide us, e.g. your name, address, email address, phone number, payment information, time of purchase, which products you purchase or may return, shipment information, and the IP address for which you make the order.

 

2.2.2 The purpose is:

• To create a customer account and to deliver the products you have ordered as well as our agreement with you 

• To handle your rights to return and to complain 

• To prevent fraud 

• To fulfill any legal requirement including the German Accounting law and Annual report law 2.2.3 The legal basis for processing is GDPR art 6 (1) (b) (3.2.1.1-2), art 6 (1)(c)(3.2.1.4), and art 6 (1)(f)(3.2.1.3) and the German accounting law paragraph 10.

 

2.3.2 The purpose is: 

• To send you the newsletter 

• To construct statistics to optimize our newsletters and to carry out marketing of our services 

• To document your consent to receive the newsletter 2.3.3 The legal basis for processing is the EU GDPR art 6 (1) (f).

 

2.4 If you provide us feedback or contact us via e-mail, we will collect your name and e-mail address, as well as any other content included in the e-mail, to send you a reply.
 

2.4.2 The purpose is:

• To send you an answer on your feedback or mail

• To process any complaint about a product failure 2.4.3 The legal basis for processing is the EU GDPR art 6 (1) (f).

 

2.5 If you post content on our Website such as a review, the information contained in your posting will be stored on our servers and other users will be able to see it, along with your first name and last initial. The information that you provide will be visible to others, including anonymous visitors to the Site.

 

2.5.2 The purpose is: 

• To document who the author of the review is

2.5.3 The legal basis for processing is the EU GDPR art 6 (1) (f).

 

2.6 When you visit our Facebook page, you should be aware that we use Facebook´s analysis tool “Page insight” to obtain statistics over visitors and to gain insights on visitors' use of our Facebook page, including the number of likes, who likes our posts, the number of page visitors, interactions with our page, the reach of our post, and other insights.

 

In connection with this, Facebook collects information as a data controller together with us. When you visit our Facebook page, you will gain access to information regarding the processing of these data. For more information, follow this link: Facebook Terms We have entered into an agreement with Facebook regarding the shared responsibility of the data. You can read the agreement via this link: Facebook Agreement

3. categories of personal data we process

We process the following data about you: We collect personal data as described in section 2 of this privacy policy. We do not receive any personal data about you from any third party.

4. legitimate interests we pursue with processing your personal data

As described above, parts of our processing of your personal data are carried out based on a legitimate interest according to GDPR Article 6 (1)(f). Our legitimate interest in using your personal data to carry out marketing activities, improve our website, improve the security of our website, and prevent fraud, have been balanced concerning your interests, basic rights, and freedom rights to secure our use of your data do not exceed these. If you want to learn more about how we have balanced our use of your data according to this paragraph, please contact us using one of the methods stated in section 1.

5. receivers or categories of receivers of your personal data

We transfer or hand over your personal data to the following receivers: 

 

5.1 Information regarding your name, address, email, phone number, order number, and specific shipping information will be transferred to shipping companies such as DHL International GmbH or any other carrier that handles the shipment of your order. If you purchase a product we do not have at our warehouse, information regarding your order will be transferred to the manufacturer or importer of the respective product, and in such cases, the manufacturer or importer will handle the shipment of your order. 

 

5.2 Personal data can be transferred to a government department if we are required to do so by law or if the police may suspect any breach of law or as part of an investigation of specific criminal offenses. Information regarding a purchase including who has made the order and any shipment information can be transferred to the credit card company if the cardholder expresses that the credit card has been abused in connection with the specific purchase. 

 

5.3 Information can be handed over to third-party service providers that process data on our behalf. We use third-party service providers to host our website, carry out targeted marketing including retargeting, and collect customer reviews of our website and products. These companies are data processors and follow our instructions for processing your data. The data processors may not use your personal data for any other aim than to fulfill their agreement with us, and the information that the data processors receive is subject to confidentiality.

6. transfer of your data to receivers outside of the eu/eea

We will transfer your personal data to data processors established outside of the EU/EEA. 

 

As mentioned in section 2 of this privacy policy, we share data with companies for targeted marketing as well as handling our website. Among these companies, some are located outside of the EU/EEA. 

 

Some of these data processors, including Google LLC, Facebook Inc., and others, are established in the USA. The necessary guarantees for transferring data to the USA are secured through data processor certification under the EU-U.S. Privacy Shield, according to EU GDPR article 45. 

 

Copies of certifications can be found via these links: 

• Google LLC Certification 

• Facebook Inc. Certification

7. storage of your personal data

Information collected when you make an order on our website as described in section 2.2 will normally be deleted 2 years after the calendar year in which you made your order. However, information can be stored for a longer period if we have a legitimate need for longer storage, e.g., if it is necessary to store the data for a legal requirement or for evidence. 

 

Information collected when you sign up for our newsletter will be deleted when you withdraw your consent unless we have another reason for using your data. 

 

If you decide to delete your customer account, we will delete all data we have stored about you. 

 

Information collected in connection with you making a post on our website will be deleted after 3 years unless we have another reason for using your information. Information collected when you give us feedback or contact us via email will be deleted after 1 year unless we have another reason for using your information. For information collected through your use of our website as described in section 2.1 including cookies, you can find information regarding the deletion of such data in our cookie policy.

8. the right to withdraw your consent

If we have collected and processed your personal information with your consent, then you can withdraw your consent at any time. To do this, please contact us via the contact information stated in section 1. Withdrawing your consent will not affect the lawfulness of any processing we conducted prior to your withdrawal, nor will it affect processing of your personal information conducted in reliance on lawful processing grounds other than consent.

9. your rights regarding the use of your information

According to GDPR you have several rights regarding our use of your personal data. To exercise any of these rights, please contact us.

 

Right to obtain access to the information

You can request access to the personal information we use about you as well as other information we process.

 

Right to get untrue information corrected

You have the right to get any untrue information about you corrected.

 

Right to get data deleted

On special occasions, you have the right to get information about you deleted before we normally would delete such data. 

 

You may change any of your Personal Data in your account by contacting info@mamaaura.com. You may request deletion of your Personal Data by us, and we will use commercially reasonable efforts to honor your request, but please note that we may be required to keep such information and not delete it (or to keep this information for a certain time, in which case we will comply with your deletion request only after we have fulfilled such requirements). We may also retain your information for fraud or similar purposes.

Right to restricted processing

In some cases, you have the right to get the processing of your personal data restricted. If you have the right to get the use of your personal data restricted, we cannot process personal data about you in the future - except storage - without your consent unless we as a result of any legal requirement are required to do so or to protect a person or important public interests.

 

Right to object

In some cases, you can object to our or legal processing of your personal data. You can also object to the processing of your personal data for direct marketing.

Right to portability of your data

In some cases, you have the right to receive your personal information in a structured, widely used, and machine-readable format as well as get access to any personal data that we have transferred to a third-party.

10. sms sending information

10.1 We may use your personal data to send you SMS messages for certain purposes, such as: 

 

10.1.1 Order Updates: We may send you SMS messages to provide updates about your order, such as order confirmation, shipment tracking information, and delivery notifications.

 

10.1.2 Marketing Communications: With your consent, we may send you promotional SMS messages about our products, special offers, discounts, or other marketing information.

 

10.2 Consent: By providing your phone number and opting in to receive SMS messages from us, you consent to the use of your personal data for the purposes mentioned in section

 

11.1. 10.3 Opt-out: If you no longer wish to receive SMS messages from us, you can opt-out by following the instructions provided in the SMS or by contacting us using the contact details provided in section

 

1.10.4 Data Transfer: We may transfer your phone number and other necessary personal data to third-party SMS service providers to facilitate the sending of SMS messages. These service providers are obligated to handle your personal data securely and in accordance with applicable data protection laws.

 

10.5 Data Retention: We will retain your personal data used for sending SMS messages for as long as necessary to fulfill the purposes mentioned in section

 

11.1 or as required by applicable laws.

 

10.6 Security: We take reasonable measures to protect the security and confidentiality of your personal data during the SMS sending process. However, please be aware that no method of transmission over the internet or electronic storage is completely secure, and we cannot guarantee absolute security.

 

10.7 Charges: Please note that standard messaging and data rates may apply when receiving SMS messages from us, depending on your mobile service plan.

11. complain to a data protection authority

You have the right to complain to a data protection authority about our collection and use of your personal information.