1. Data Controller and Definitions
-
The administrator of personal data of Customers / Users of the Online Store, also referred to as the Seller is Diamond Work Sp. Z o.o. Phone no is +48 509732807
NIP: PL 701 117 47 76
-
You can contact the Data Administrator:
- at the correspondence address: Żurawia 32/34, 00-515 Warszawa, Poland;
- at the e-mail address: support@diamondhome.shop.
- User - a natural person entering the website/websites of the Online Store or using the services or functionalities described in this Privacy and Cookies Policy.
- Customer - a natural person with full legal capacity, a natural person who is a Consumer, a legal person or an organizational unit without legal personality, to which the law grants legal capacity, which concludes a Distance Sale Agreement with the Seller.
- Online Store - an internet service operated by the Seller, available at the following electronic addresses (websites):https://diamondhome.shop, through which the Customer/User may obtain information about the Product and its availability, as well as purchase the Product or order the provision of a service.
- Newsletter - information, including commercial information within the meaning of the Act of 18 July 2002 on the provision of services by electronic means (Journal of Laws of 2020, item 344) originating from the Seller sent to the Customer/User electronically; its receipt is voluntary and requires the consent of the Customer/User.
- Account - a set of data stored in the Online Store and in the Seller's IT system concerning a given Customer/User and the orders placed by him/her and the agreements concluded, with the use of which the Customer/User may place orders and conclude agreements.
- GDPR - Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation).
2. Purposes, legal basis and duration of data processing
-
In order to execute the Distance Selling Agreement, the Seller processes:
- information about the User's device in order to ensure the correct operation of the services: the computer's IP address, information contained in cookies or other similar technologies, session data, web browser data, device data, data on activity on the Website, including on individual subpages;
- geolocation information, if the User has consented to the service provider's access to geolocation. Geolocation information is used to provide more tailored offers of products and services;
- Users' personal data: first name, last name, registered office address, correspondence address, e-mail address, telephone number, Tax Identification Number, bank account number or other personal data, the provision of which is necessary to complete the purchase and which the Administrator requires to be provided in the purchasing process.
- This information does not contain data relating to the identity of Users, but in combination with other information may constitute personal data and therefore the Administrator provides it with full protection under the GDPR.
- These data are processed in accordance with Article 6, paragraph 1, letter b of the GDPR, in order to perform the service, i.e. the contract for the provision of services by electronic means in accordance with the Regulations and in accordance with Article 6, paragraph 1, letter a of the GDPR, in connection with the consent to the use of specific cookies or other similar technologies, expressed through appropriate settings of the web browser in accordance with the Telecommunications Law or in connection with the consent to geolocation. The data are processed until the Customer/User ends the use of the Online Store.
- The Administrator undertakes to take all measures required under Article 32 of the GDPR, i.e., taking into account the state of technical knowledge, the cost of implementation and the nature, scope and purposes of processing and the risk of violating the rights or freedoms of natural persons with varying likelihood and severity, the Administrator implements appropriate technical and organisational measures to ensure a level of security appropriate to this risk.
3. Marketing activities of the administrator
- On the Online Store website, the Data Administrator may post marketing information about its products or services. The display of this content is made by the Data Administrator in accordance with Article 6 paragraph 1 letter f of the GDPR, i.e. in accordance with the legitimate interest of the Data Administrator consisting in the publication of content related to the services provided and the content of promotional campaigns in which the Data Administrator is involved. At the same time, this action does not violate the rights and freedoms of Customers/Users, Customers/Users expect to receive content of similar content, and even expect it or it is their direct purpose of visiting the website/pages of the Online Store.
4. Recipients of user data
- The Data Controller discloses the personal data of users only to entities processing personal data under concluded data processing agreements for the purpose of providing services to the Data Controller, e.g. hosting and maintenance of the Website, IT services, marketing and PR services.
5. Transfer of personal data to third countries
- Transfer of personal data to third countries. Please cross out that personal data will not be processed in third countries. Write 'Personal data may be processed by partners cooperating with the online store located in third countries.
6. Data Subject Rights
-
Every data subject has the right to:
- access (Article 15 of the GDPR) - to obtain from the Data Controller confirmation as to whether his or her personal data are being processed. If data about a person are being processed, he or she is entitled to access them and obtain the following information: about the purposes of processing, categories of personal data, recipients or categories of recipients to whom the data have been or will be disclosed, the period of data storage or the criteria for determining them, the right to request the rectification, deletion or restriction of the processing of personal data of the data subject and to object to such processing;
- to receive a copy of the data (Article 15, paragraph 3 of the GDPR) - to obtain a copy of the data being processed, the first copy being free of charge, and for subsequent copies the Data Controller may impose a reasonable fee resulting from administrative costs;
- to rectify (Article 16 of the GDPR) – to request the rectification of personal data concerning him or her that is incorrect or the completion of incomplete data;
- to delete data (Article 17 of the GDPR) - to request the deletion of his or her personal data if the Data Controller no longer has a legal basis for their processing or the data are no longer necessary for the purposes of processing;
-
to restrict processing (Article 18 of the GDPR) - to request the restriction of the processing of personal data when:
- the data subject questions the accuracy of the personal data – for a period enabling the Data Controller to verify the accuracy of such data,
- the processing is unlawful and the data subject opposes their deletion, requesting the restriction of their use,
- The data controller no longer needs this data, but it is required by the data subject to establish, pursue or defend legal claims,
- the data subject has objected to the processing – until it is determined whether the legitimate grounds on the part of the controller override the grounds for objection of the data subject;
- to transfer data (Article 20 of the GDPR) - to receive, in a structured, commonly used and machine-readable format, personal data concerning him/her which he/she provided to the Data Controller, and to request that such data be sent to another Controller, if the data are processed on the basis of the consent of the data subject or a contract concluded with him/her and if the data are processed by automated means;
- to object (Article 21 of the GDPR) - to object to the processing of their personal data for the legitimate purposes of the controller, for reasons related to their particular situation, including profiling. In such a case, the Data Controller assesses the existence of important legitimate grounds for processing that override the interests, rights and freedoms of the data subjects, or grounds for establishing, pursuing or defending claims. If, according to the assessment, the interests of the data subject are more important than the interests of the controller, the Data Controller will be obliged to cease processing the data for these purposes;
- to withdraw consent at any time and without giving any reason, but the processing of personal data carried out before the withdrawal of consent will still be lawful. Withdrawal of consent will result in the cessation of the processing of personal data by the Administrator for the purpose for which the consent was given.
- In order to exercise the above-mentioned rights, the data subject should contact the Data Controller using the contact details provided and inform him/her which right and to what extent he/she wishes to exercise.
7. President of the Personal Data Protection Office
- The data subject has the right to lodge a complaint with the supervisory authority, which in Poland is the President of the Personal Data Protection Office with its registered office in Warsaw, ul. Stawki 2, who can be contacted in the following way:
- by post: ul. Stawki 2, 00-193 Warsaw;
- via the electronic mailbox available at: https://www.uodo.gov.pl/pl/p/kontakt ;
- Hotline: 606-950-000.
8. Data Protection Officer
- In any case, the data subject may also contact the Data Protection Officer of the Controller directly by e-mail or in writing to the Data Controller's address provided in section 1, point 2 of this Privacy and Cookies Policy.
9. Changes to the Privacy Policy
-
The privacy and cookies policy may be supplemented or updated in accordance with the current needs of the Administrator in order to provide up-to-date and reliable information to Customers/Users.
10. Cookies Policy for Diamond Home
Introduction
This Cookies Policy explains how Diamond Home ("we," "us," or "our") uses cookies and similar technologies on our website https://diamondhome.shop. This policy provides detailed information about how and why cookies are used, as well as your rights regarding cookie preferences in compliance with the General Data Protection Regulation (GDPR) and other applicable EU laws.
By continuing to use our website, you consent to the use of cookies as described in this policy. You can manage your cookie preferences at any time through your browser settings.
What Are Cookies?
Cookies are small text files stored on your device (computer, tablet, smartphone) when you visit a website. They help the website recognize your device, remember your preferences, and improve your browsing experience. Cookies can also be used for analytics, advertising, and security purposes.
Cookies are either:
- Session Cookies: Temporary cookies that expire when you close your browser.
- Persistent Cookies: Remain on your device until deleted manually or automatically after their expiration date.
Types of Cookies We Use
At Diamond Home, we use the following categories of cookies:
Functional Cookies (Required)
These cookies are essential for the website's proper functioning. Without them, certain services or functionalities may not be available. They are usually set in response to your actions, such as logging in, adding items to your cart, or filling out forms.
Cookie Name | Duration | Purpose |
---|---|---|
session_id | Session | Maintains the user's session for secure browsing. |
cart_token | 14 days | Associates the session with the user's shopping cart to retain cart items. |
customer_login | 1 day | Identifies if the user is logged into their customer account. |
storefront_digest | Session | Verifies if the current visitor has access to the online store. |
_secure_session_id | Session | Stores secure session information for transactions. |
cookie_consent | 1 year | Records whether the user has accepted the use of cookies. |
language_preference | 1 year | Saves the user's language selection for a personalized experience. |
currency_preference | 1 year | Stores the preferred currency selected by the user. |
recently_viewed_items | 30 days | Tracks the items recently viewed to provide recommendations. |
affiliate_id | 90 days | Stores information about the affiliate through which the user accessed the website. |
basket_id | 365 days | Identifies the user's basket, assigned for the current session duration. |
filter_hidden | 365 days | Stores information about hidden product filters for a personalized browsing experience. |
login_status | Session | Tracks whether the user is currently logged in. |
discount_code_clicked | 1 day | Stores data on interactions with discount codes. |
shipping_option_selected | 30 days | Saves the preferred shipping method selected during checkout. |
Analytical Cookies
These cookies help us understand how visitors interact with our website by collecting and reporting information anonymously. We use this data to improve website performance and user experience.
Cookie Name | Duration | Purpose |
---|---|---|
_ga | 2 years | Tracks user behavior for Google Analytics. |
_gid | 24 hours | Provides user interaction insights on the website. |
_gat | 1 minute | Controls the request rate for Google Analytics. |
Marketing and Advertising Cookies
These cookies track your browsing behavior to deliver relevant ads based on your interests. They help us improve the effectiveness of our marketing campaigns on platforms like Google Ads and Meta (Facebook).
Cookie Name | Duration | Purpose |
---|---|---|
_fbp | 90 days | Used by Facebook to deliver targeted advertisements. |
fr | 90 days | Facebook cookie for ad relevance measurement. |
_gcl_au | 90 days | Tracks conversion rates for Google Ads. |
meta_pixel | 999 days | Measures the effectiveness of ads and user interactions. |
Why We Use Cookies
We use cookies for the following purposes:
- Website Functionality: To ensure the site works correctly, including navigation, security, and payment processes.
- Personalization: To remember your preferences like language, currency, and shopping cart items.
- Analytics: To track website performance and improve user experience.
- Marketing: To deliver personalized advertisements based on your browsing behavior.
Managing Cookies
You can control and manage cookies through your browser settings. Most browsers allow you to:
- View which cookies are stored on your device.
- Delete cookies individually or all at once.
- Block cookies from specific websites or all websites.
- Disable third-party cookies.
How to Manage Cookies in Popular Browsers:
Note: Disabling cookies may affect the functionality of our website.
Third-Party Cookies
We also use third-party cookies from trusted partners, including:
- Google Ads & Analytics: For website analytics and advertising.
- Meta (Facebook) Pixel: For personalized marketing.
- PayPal: For secure payment processing.
These third parties may process data outside the EU. We ensure appropriate safeguards, such as Standard Contractual Clauses (SCCs), are in place for data transfers.
Your Rights Under GDPR
Under GDPR, you have the right to:
- Access personal data we process about you.
- Request correction or deletion of your data.
- Object to data processing for marketing purposes.
- Withdraw consent for cookie usage at any time.
For privacy-related inquiries, contact us at support@diamondhome.shop.
Changes to This Cookies Policy
We may update this Cookies Policy to reflect changes in technology, legal requirements, or our business practices. The updated policy will be posted on this page with the effective date.
11. Newsletter
- The Customer may consent to receive commercial information electronically by selecting the appropriate option in the registration form or later in the appropriate tab. In the event of such consent, the Customer/User will receive information (Newsletter) from the Online Store, as well as other commercial information sent by the Seller, to the email address provided by them.
- The Customer may at any time resign from receiving the Newsletter independently, by unchecking the appropriate box on the page of his Account.
12. Account
- The Customer/User may not post content in the Online Store or provide the Seller with any content, including opinions and other data of an unlawful nature.
- The Customer/User obtains access to the Account after registration.
- As part of the registration, the Customer/User provides the type of account or gender, first name, last name, company name, Tax Identification Number, data for issuing a sales document, shipping data, e-mail address and selects a password. The Customer/User guarantees that the data provided by him/her in the registration form is true. Registration requires a thorough reading of the Regulations and marking on the registration form that the Customer/User has read the Regulations and fully accepts all of its provisions.
- At the moment the Customer/User is granted access to the Account, an agreement for the provision of electronic services concerning the Account is concluded between the Seller and the Customer for an indefinite period. The Consumer may withdraw from this agreement under the terms and conditions specified in the Regulations.
- Registering an Account on one of the pages of the Online Store simultaneously means registering to access the other pages where the Online Store is available.
- The Customer/User may terminate the agreement for the provision of services by electronic means at any time with immediate effect by informing the Seller by e-mail or in writing to the address of the Data Administrator, provided in section 1, point 2 of this Privacy and Cookies Policy.
- The Seller has the right to terminate the service agreement regarding the Account in the event of discontinuation of the provision or transfer of the Online Store service to a third party, breach of the law or provisions of the Regulations by the Customer/User, as well as in the event of the Customer/User's inactivity for a period of 6 months. The agreement is terminated with a seven-day notice period. The Seller may stipulate that re-registration of the Account will require the Seller's consent.