-USER INFORMATION
In accordance with the provisions of Regulation (EU) 2016/679 of 27 April 2016 (GDPR) and Organic Law 3/2018 of 5 December on Personal Data Protection and Guarantee of Digital Rights, we inform you of the identity of the Data Controller, the purpose of the processing, the legitimacy for the processing of your data, the categories of recipients to whom your data may be disclosed (if any), the origin of your data if it is different from your voluntary submission, and the rights that you are entitled to as a data subject.
INFORMATION REGARDING THE DATA CONTROLLER
Name of Controller: CHRISANDGER S.L. Tax ID: B16652927
Complete address: Plaça Navegación s/n (Mercat Santa Catalina 82-83), – 07013 Palma (Illes Balears) Contact email: contacto: fleurs.santacatalina@gmail.com.
INFORMATION REGARDING THE PURPOSE AND LEGITIMACY OF THE PROCESSING
The operations foreseen for the processing are:
Based on the legitimate interest of the Controller:
Economic and accounting management, tax management, administrative management, billing management, customer and supplier management, management of payments, collections and related services, commercial relationship history.
Based on the explicit, unequivocal and informed consent of the data subject:
Sending commercial advertising communications by email, fax, SMS, MMS, social networks or any other electronic or physical means, present or future, that allows commercial communications to be made. These communications will be made by the CONTROLLER and will be related to its products and services, or those of its collaborators or suppliers with whom it has reached a promotion agreement. In this case, third parties will never have access to the personal data.
Conducting statistical studies.
Processing orders, requests or any type of petition made by the user through any of the contact forms made available.
Sending the newsletter from the website.
Criteria for data retention: The data will be kept as long as the commercial relationship between the parties lasts. Once this commercial relationship has ended, the data will be blocked in order to prevent access, and will only be unblocked if the data is required by the Data Controller by any legal authority (tax, commercial, labor or judicial) and only until the expiration or legal prescription date. Subsequently, the data will be destroyed appropriately and with the appropriate guarantees to prevent its recovery.
INFORMATION REGARDING THE TRANSFER OR DISCLOSURE OF DATA
Personal data may be transferred for the maintenance of the commercial relationship and/or for the execution of operations, to Fiscal, Accounting, Mercantile, Banks, Savings Banks and Financial Entities, Tax Authorities and other competent Public Bodies. Data will not be communicated to other third parties, except for legal obligation.
There are no transmissions of data to third countries outside the European Economic Area or to International Organizations.
INFORMATION REGARDING THE RIGHTS OF THE DATA SUBJECT AND HOW TO EXERCISE THEM
THE RIGHTS OF THE DATA SUBJECT AND HOW TO EXERCISE THEM
The data subject has the following rights: to access their data, to rectify their data, to erase their data, to data portability, to restrict the processing of their data, to object to the processing of their data, to withdraw the consent given, to file a complaint with the Supervisory Authority, to lodge a legal claim.
These rights can be exercised by means of a reasoned request, addressed to the Data Controller or their representative, specifying the right that the data subject wishes to exercise and including a copy of their identification document. The data subject may also request that the Data Controller provide them with a standard form for the right they wish to exercise.
Exercising these rights will not incur any management costs for the data subject, except for postage costs if they choose to send it by mail.
The data subject may exercise their rights:
In person at the premises of the Data Controller, identifying themselves with their national identity document or equivalent.
By email addressed to the address listed in the identification section of the Data Controller and including a copy of their national identity document or equivalent.
By postal mail (preferably certified) addressed to the address listed in the identification section of the Data Controller and including a copy of their national identity document or equivalent.
Contact details for exercising these rights are:
Plaça Navegación s/n (Mercat Santa Catalina 82-83), – 07013 Palma (Illes Balears), fleurs.santacatalina@gmail.com
COMPULSORY OR OPTIONAL NATURE OF THE INFORMATION PROVIDED BY THE USER
By checking the corresponding boxes and entering data in the fields marked with an asterisk (*) on the contact form or presented in download forms, Users expressly and freely and unequivocally accept that their data is necessary to attend to their request, by the provider, and that the inclusion of data in the remaining fields is voluntary. The User guarantees that the personal data provided to the CONTROLLER is true and is responsible for communicating any modification thereof.
The CONTROLLER informs and guarantees expressly to the users that their personal data will not be transferred in any case to third parties, and that whenever any type of transfer of personal data is carried out, the express, informed and unequivocal consent of the Users will be requested beforehand. All data requested through the website are mandatory, as they are necessary for the provision of an optimal service to the User. If not all data is provided, it is not guaranteed that the information and services provided will be completely tailored to their needs.
SECURITY MEASURES
In accordance with the provisions of the current regulations on personal data protection, the RESPONSIBLE is complying with all the provisions of the RGPD regulations for the processing of personal data under its responsibility, and manifestly with the principles described in article 5 of the RGPD, for which they are treated in a lawful, fair and transparent manner in relation to the interested party and are adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed.
The RESPONSIBLE guarantees that it has implemented appropriate technical and organizational policies to apply the security measures established by the RGPD in order to protect the rights and freedoms of the Users and has provided them with the appropriate information so that they can exercise them.