Privacy policy

Privacy Policy – Bysha London


PRIVACY POLICY

1. INFORMATION ON THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER

1.1 General information

We are pleased that you are visiting our website and thank you for your interest. Below we inform you about how your personal data is handled when using our website. Personal data is all data with which you can be personally identified.

1.2 Controller

The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is Byshalondon.

The controller is the natural or legal person who alone or jointly with others determines the purposes and means of processing personal data.

1.3 SSL/TLS encryption

For security reasons and to protect the transmission of personal data and other confidential content (e.g. orders or inquiries), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the character string “https://” and the lock symbol in your browser.


2. DATA COLLECTION WHEN VISITING OUR WEBSITE

When you use our website for informational purposes only, we only collect data that your browser transmits to our server (server log files). When you access our website, the following data may be collected:

  • Visited website
  • Date and time of access
  • Amount of data transferred
  • Source/referrer
  • Browser used
  • Operating system used
  • IP address (possibly anonymized)

Processing is carried out in accordance with Art. 6(1)(f) GDPR based on our legitimate interest in improving stability and functionality of the website.


3. COOKIES

We use cookies to make our website more user-friendly and functional. Cookies are small text files stored on your device.

Some cookies are deleted after your session ends (session cookies), others remain stored (persistent cookies).

Cookies may process information such as browser data, location data and IP addresses.

Where required, processing is based on Art. 6(1)(b) GDPR or Art. 6(1)(f) GDPR.

You can disable cookies in your browser settings, but this may limit website functionality.


4. CONTACTING US

When you contact us (e.g. via email or contact form), we collect personal data to process your request.

Processing is based on:

  • Art. 6(1)(f) GDPR (legitimate interest in responding to inquiries)
  • Art. 6(1)(b) GDPR (if related to contract negotiations)

Your data will be deleted once your request has been fully processed, unless legal retention obligations apply.


5. CUSTOMER ACCOUNT AND CONTRACT PROCESSING

Personal data is collected when you open a customer account or place an order.

Processing is based on Art. 6(1)(b) GDPR for contract fulfillment.

Data may be stored for tax and commercial law retention periods.


6. USE OF DATA FOR DIRECT MARKETING

6.1 Newsletter

If you subscribe to our newsletter, we will use your email address to send updates and offers.

We use a double opt-in system. You may unsubscribe at any time via the unsubscribe link or by contacting us.

6.2 Existing customers

We may send marketing emails for similar products based on legitimate interest (Art. 6(1)(f) GDPR). You can object at any time.


7. DATA PROCESSING FOR ORDER HANDLING

We share necessary data with:

  • Shipping providers (for delivery)
  • Payment providers (for transaction processing)

Examples:

  • PayPal
  • Klarna / Sofort

Payment providers may perform credit checks.


8. REVIEW REMINDER

We may send a one-time email reminder to leave a review if consent has been given.


9. SOCIAL MEDIA PLUGINS

We may use social plugins such as:

  • Facebook
  • Instagram
  • Google

These are implemented in a privacy-friendly way to reduce data exposure.


10. ONLINE MARKETING

We may use services such as:

  • Google Ads
  • Conversion tracking tools

These help measure advertising performance.


11. WEB ANALYTICS

We may use Google Analytics with IP anonymization to analyze website usage and improve services.


12. RETARGETING / REMARKETING

We may use tools such as:

  • Facebook Pixel
  • Google Ads Remarketing

These help display relevant advertising.


13. RIGHTS OF THE DATA SUBJECT

You have the following rights under GDPR:

  • Right of access (Art. 15)
  • Right to rectification (Art. 16)
  • Right to erasure (Art. 17)
  • Right to restriction of processing (Art. 18)
  • Right to data portability (Art. 20)
  • Right to withdraw consent (Art. 7(3))
  • Right to lodge a complaint (Art. 77)

You may also object to processing based on legitimate interests or direct marketing at any time.


14. STORAGE DURATION

We store personal data only as long as necessary for the purposes described or as required by legal retention periods. After that, data is deleted.