Vite Naturals Privacy Statement

Last updated: 22/01/2019

Introduction

Vite Naturals Limited takes your privacy very seriously. This privacy policy has been prepared in line with the EU’s General Data Protection Regulation (GDPR) which takes effect on 25 May 2018. The GDPR promotes fairness and transparency for all individuals in respect of their personal data. This privacy policy applies to all data we process, and by using Vite Naturals Limited you consent to our collection and use of such data. If you would like to get in touch about anything in this policy or about your personal data then please contact us at info@wearevite.com

Contents

  • Data we collect
  • What personal data do we share with third parties and who are they?
  • Why do we share data outside of the EU
  • How do we keep your personal data secure?
  • Changes to our privacy policy and control
  • Your rights
  • About us
  • Age of consent
  • Shopify
  • Cookies

1. Data we collect

As a data controller, we collect a variety of data in order to deliver our services. We use a service called PORT to ensure that we collect and manage your personal data transparently, fairly and securely. In general, we collect the following data:

  • data we have collected from you
  • the basis on which we are holding it (e.g. because you gave us consent)
  • what we will do with it
  • how long we will hold it for
  • where it is stored
  • who it might be shared with
  • your rights in relation to the data, and
  • information on how you can access and manage this data.

We have provided further detail below about the specific types of data we collect and our reasons for doing so.

1.1. What data do we ask you to provide to us, and why?

We collect the following data: email, signup ip, email client, latitude, longitude, gmt off, dst off, country code, timezone, address, birthday, company, first name, last n ame, email, signup ip, email client, latitude, longitude, gmt off, dst off, country code, timezone, first name, last name, city, region, country

  • We use this data to: Send direct marketing
  • We collect this data using the lawful basis: Consent

 

1.2. What data do we collect when you visit our website, and why?

We collect cookies. Cookies are small pieces of data that websites send to a user's computer and are stored on the user's web browser. They are designed to enable the website to remember information, such as what a user might have put in a shopping cart for example.

 

2. What personal data do we share with third parties and who are they?

We share personal data with the following third parties:

Signifyd - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

MailChimp - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Shopify - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Shopify - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Shopify - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Shopify - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Shopify - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Shopify - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

MailChimp - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Beeketing for Shopify - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Google Apps for Business - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Privy for Shopify - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Recart for Shopify - Data is not transferred outside of the European Economic Area.

WooCommerce Add To Cart - Data is transferred outside of the European Economic Area to the United States under the protection of EU/US Privacy Shield.

Grizzly Apps SR - Data is not transferred outside of the European Economic Area.

There are certain situations in which we may share access to your personal data without your explicit consent; for example, if required by law, to protect the life of an individual, or to comply with any valid legal process, government request, rule or regulation.

3. Why do we share data outside of the EU

We may transfer personal data to a country outside of the European Economic Area (EEA), for example, if a third party we share data with has servers located outside of the EEA. If this is the case we will obtain your consent or otherwise ensure that the transfer is legal and your data is secure by following the EU's guidelines.

You can see above where we send data outside of the EEA and on what basis we do so.

4. How do we keep your personal data secure?

We keep your data secure:

  • by following internal policies of best practice and training for staff
  • by using Secure Socket Layer (SSL) technology when information is submitted to us online

In the unlikely event of a criminal breach of our security we will inform the relevant regulatory body within 72 hours and, if your personal data were involved in the breach, we shall also inform you.

5. Changes to our privacy policy and control

We may change this privacy policy from time to time. When we do, we will let you know by changing the date on this policy, adding notices to our website or mobile app. By continuing to access or use our services after those changes become effective, you agree to be bound by the revised privacy policy.

6. Your rights

  • the right to be informed about the collection and use of your personal data
  • the right of access to your personal data and any supplementary information
  • the right to have any errors in your personal data rectified
  • the right to have your personal data erased
  • the right to block or suppressing the processing of your personal data
  • the right to move, copy or transfer your personal data from one IT environment to another
  • the right to object to the processing of your personal data in certain circumstances, and
  • rights related to automated decision-making (i.e. where no humans are involved) and profiling (i.e. where certain personal data is processed to evaluate an individual).

Since we use PORT, we are able to give you direct access to your personal data so that you can exercise the above rights via the PORT portal, we also give you the option to manage your data via emailing us at info@wearevite.com

While we do not hold personal data any longer than we need to, the duration will depend on your relationship with us.

7. About us

We are Vite Naturals Limited and our address is 776-778 Barking Road, London, E13 9PJ, England. You can contact us at info@wearevite.com

8. Age of consent

By using this site, you represent that you are at least the age of majority in your state or province of residence, or that you are the age of majority in your state or province of residence and you have given us your consent to allow any of your minor dependents to use this site.

9. Shopify

Our store is hosted on Shopify Inc. They provide us with the online e-commerce platform that allows us to sell our products and services to you.
Your data is stored through Shopify’s data storage, databases and the general Shopify application. They store your data on a secure server behind a firewall.

10. Cookies

Here is a list of cookies that we use. We’ve listed them here so you that you can choose if you want to opt-out of cookies or not.
_session_id, unique token, sessional, Allows Shopify to store information about your session (referrer, landing page, etc).
_shopify_visit, no data held, Persistent for 30 minutes from the last visit, Used by our website provider’s internal stats tracker to record the number of visits
_shopify_uniq, no data held, expires midnight (relative to the visitor) of the next day, Counts the number of visits to a store by a single customer.
cart, unique token, persistent for 2 weeks, Stores information about the contents of your cart.
_secure_session_id, unique token, sessional
storefront_digest, unique token, indefinite If the shop has a password, this is used to determine if the current visitor has access.