Privacy policy

Privacy Policy

━━━━━━━━━━━━━━━━━━

1. Controller

The controller responsible for data processing on this website is:

GM Commerce GmbH
Chamerstrasse 172
6300 Zug
Switzerland

E-Mail: kontakt@maisongatore.com

━━━━━━━━━━━━━━━━━━

2. General Information on Data Processing

Protecting your personal data is important to us.
We process personal data exclusively in accordance with applicable legal regulations, in particular the General Data Protection Regulation (GDPR) and other applicable data protection laws.

Personal data refers to any information that can identify you personally or make you identifiable.

━━━━━━━━━━━━━━━━━━

3. Collection and Processing of Personal Data

We process personal data especially when you:

  • visit our website

  • place an order in our online shop

  • create a customer account (if available)

  • contact us by e-mail or via a contact form

  • subscribe to our newsletter (if available)

  • submit product reviews

  • request or process returns or exchanges

The following data may in particular be processed:

  • First and last name

  • Billing and shipping address

  • E-mail address

  • Phone number (if provided)

  • Payment information

  • Order and transaction data

  • IP address

  • Browser and device information

  • Website usage data

━━━━━━━━━━━━━━━━━━

4. Purposes and Legal Bases of Processing

We process your personal data for the following purposes:

a) Providing our website
Legal basis: Art. 6 para. 1 lit. f GDPR
(legitimate interest in a secure, stable, and user-friendly website)

b) Processing orders and contracts
Legal basis: Art. 6 para. 1 lit. b GDPR
(contract fulfillment and pre-contractual measures)

c) Handling inquiries
Legal basis: Art. 6 para. 1 lit. b or lit. f GDPR

d) Compliance with legal obligations
Legal basis: Art. 6 para. 1 lit. c GDPR

e) Analytics, marketing, and advertising purposes
Legal basis:

  • Art. 6 para. 1 lit. a GDPR (consent where required)

  • Art. 6 para. 1 lit. f GDPR (legitimate interest in economic operation and optimization of our services)

━━━━━━━━━━━━━━━━━━

5. Order Processing and Contract Fulfillment

When you place an order in our shop, we process your data to execute and handle the purchase contract.

This includes in particular:

  • Order acceptance and processing

  • Payment processing

  • Shipment of goods

  • Communication regarding your order

  • Returns and refund processing

  • Fraud prevention and abuse detection

Providing certain personal data is necessary for concluding the contract. Without this data, an order cannot be completed.

━━━━━━━━━━━━━━━━━━

6. Shipping, Logistics, and Returns

To process shipping, delivery, returns, and refunds, we share the necessary personal data with shipping, logistics, and returns service providers.

This particularly includes:

  • Name

  • Delivery address

  • Phone number or e-mail address where required for delivery or shipping information

  • Order information

The transfer only takes place insofar as it is necessary for contract fulfillment.

━━━━━━━━━━━━━━━━━━

7. Payment Service Providers

We use external payment service providers to process payments.
Depending on the selected payment method, the data required for payment processing is transferred to the respective provider.

This may include in particular:

  • Name

  • Billing address

  • E-mail address

  • Payment amount

  • Order reference

  • Payment or transaction data where applicable

Processing is based on Art. 6 para. 1 lit. b GDPR.

In addition, the privacy policies of the respective payment provider apply.

━━━━━━━━━━━━━━━━━━

8. Contacting Us

If you contact us via e-mail or other communication channels, we process your information to handle your inquiry.

This particularly includes:

  • Name

  • E-mail address

  • Content of your message

  • Additional voluntarily submitted information

Processing is based on:

  • Art. 6 para. 1 lit. b GDPR where your inquiry relates to a contract or order

  • Art. 6 para. 1 lit. f GDPR for general inquiries

We store this data only as long as necessary to process your inquiry or as required by statutory retention obligations.

━━━━━━━━━━━━━━━━━━

9. Hosting and Shop System (Shopify)

Our online store is operated via the e-commerce platform Shopify.

The provider is generally:

Shopify International Limited
Victoria Buildings, 2nd Floor
1–2 Haddington Road
Dublin 4, D04 XN32
Ireland

Shopify provides the technical infrastructure for operating our online store and processes personal data on our behalf or under its own responsibility where technically necessary.

The following data may in particular be processed:

  • IP address

  • Device and browser information

  • Shop usage data

  • Order and customer data

  • Technical log data

Personal data may also be transferred to countries outside the European Union or the European Economic Area, particularly Canada or the United States.

Where such transfers occur, they are based on appropriate safeguards pursuant to Art. 44 et seq. GDPR, particularly EU Standard Contractual Clauses or other recognized data protection mechanisms.

Further information:
https://www.shopify.com/legal/privacy

━━━━━━━━━━━━━━━━━━

10. Cookies and Similar Technologies

Our website uses cookies and similar technologies (e.g. pixels, tags, or local storage technologies).

Cookies are used in particular to:

  • ensure the technical operation of the website

  • enable the shopping cart and checkout

  • store user preferences

  • perform analytics and usage analysis

  • enable marketing and advertising measures

Types of Cookies

We particularly use the following categories:

Technically Necessary Cookies
Required for operating the shop and essential functions.

Analytics and Statistics Cookies
Help us better understand user behavior and optimize our services.

Marketing and Advertising Cookies
May be used to better understand user interests and display relevant advertisements.

Where legally required, non-essential cookies are only used based on your consent pursuant to Art. 6 para. 1 lit. a GDPR.

Technically necessary cookies may be used based on Art. 6 para. 1 lit. f GDPR.

You can adjust your cookie settings at any time via the consent tool used or through your browser settings.

━━━━━━━━━━━━━━━━━━

11. Analytics, Tracking, and Marketing Tools

We use analytics, tracking, and marketing tools on our website to evaluate the use of our shop, optimize our services, and manage advertising measures economically.

The following data may particularly be processed:

  • IP address

  • Device and browser information

  • Referrer URL

  • Visited pages

  • Click and interaction behavior

  • Cart and purchase data

  • Conversion and event data

Where legally required, processing only takes place based on your consent pursuant to Art. 6 para. 1 lit. a GDPR.

a) Google Services

We may use services from Google, including:

  • Google Analytics

  • Google Ads

  • Google Tag Manager

  • Google Conversion Tracking

  • Google Shopping / Merchant Technologies

Provider:

Google Ireland Limited
Gordon House
Barrow Street
Dublin 4
Ireland

Further information:
https://policies.google.com/privacy

━━━━━━━━━━━━━━━━━━

b) Meta Services

We may use marketing and tracking technologies from Meta, particularly the Meta Pixel and comparable conversion or remarketing technologies for Facebook and Instagram.

Provider:

Meta Platforms Ireland Limited
4 Grand Canal Square
Grand Canal Harbour
Dublin 2
Ireland

Further information:
https://www.facebook.com/privacy/policy

━━━━━━━━━━━━━━━━━━

c) TikTok Ads / TikTok Pixel

We may use technologies from TikTok, particularly the TikTok Pixel and comparable tools for conversion tracking, audience creation, and advertising optimization.

Providers:

TikTok Technology Limited
10 Earlsfort Terrace
Dublin
D02 T380
Ireland

and/or

TikTok Information Technologies UK Limited
One London Wall
London
EC2Y 5EB
United Kingdom

Further information:
https://www.tiktok.com/legal/page/eea/privacy-policy/en

━━━━━━━━━━━━━━━━━━

d) Shopify Analytics and Marketing Features

Shopify and related Shopify services may provide their own analytics, security, and marketing features contributing to the technical provision and optimization of our online store.

━━━━━━━━━━━━━━━━━━

12. Newsletter and E-Mail Marketing (if used)

If you subscribe to our newsletter or receive marketing communications in connection with an order, we process your e-mail address and, where applicable, additional voluntarily provided information in order to send you information about products, offers, or promotions.

Processing is based on your consent pursuant to Art. 6 para. 1 lit. a GDPR where consent is required.

You may revoke your consent at any time with future effect, e.g. via the unsubscribe link in each e-mail or by contacting:
kontakt@maisongatore.com

━━━━━━━━━━━━━━━━━━

13. E-Mail Marketing and Customer Communication via Klaviyo

We use Klaviyo for e-mail marketing, automated e-mail flows, newsletters, and potentially personalized customer communication.

Provider:

Klaviyo, Inc.
125 Summer Street
Boston, MA 02111
USA

The following personal data may particularly be processed:

  • E-mail address

  • Name

  • Order and purchase history

  • Interactions with e-mails

  • Website and shop behavior

  • Cart information where applicable

Further information:
https://www.klaviyo.com/legal/privacy

━━━━━━━━━━━━━━━━━━

14. Product Reviews and Customer Feedback (Loox)

We use Loox to display and manage product reviews, customer testimonials, and potentially user-generated content.

Provider:

Loox Online Ltd.
Rehov Har Sinai 2
Tel Aviv-Yafo
Israel

Further information:
https://loox.app/legal/privacy-policy

━━━━━━━━━━━━━━━━━━

15. Returns and Exchange Processing (Easy Returns)

We use Easy Returns or a comparable returns management system to process returns, exchanges, and refunds.

The following data may particularly be processed:

  • Name

  • E-mail address

  • Order number

  • Order information

  • Reason for return or exchange

  • Shipping and return data where applicable

Processing is based on Art. 6 para. 1 lit. b GDPR.

━━━━━━━━━━━━━━━━━━

16. Storage Duration

We store personal data only as long as necessary for the respective purposes.

Data is stored beyond this only where:

  • statutory retention obligations exist

  • we have a legitimate interest in further storage (e.g. legal defense or fraud prevention)

━━━━━━━━━━━━━━━━━━

17. Disclosure to Third Parties

Your personal data is only disclosed to third parties where this is:

  • necessary for contract fulfillment

  • legally required

  • based on your consent

  • or permitted based on our legitimate interest

Recipients may particularly include:

  • Hosting and IT providers

  • Payment providers

  • Shipping and logistics partners

  • Returns and support providers

  • Marketing and analytics providers

  • Review and communication tools

  • Legal, tax, and business advisors

  • Authorities where legally required

━━━━━━━━━━━━━━━━━━

18. Data Transfers to Third Countries

When using certain services (e.g. Shopify, Google, Meta, TikTok, Klaviyo), personal data may be transferred to countries outside the EU/EEA.

Where this occurs, we ensure an adequate level of data protection through:

  • Adequacy decisions by the European Commission

  • EU Standard Contractual Clauses

  • Other suitable safeguards pursuant to Art. 44 et seq. GDPR

━━━━━━━━━━━━━━━━━━

19. Your Rights

Under applicable legal provisions, you have the right to:

  • access your stored personal data

  • correct inaccurate or incomplete data

  • request deletion of your data

  • restrict processing

  • object to processing

  • data portability

  • withdraw previously granted consent with future effect

To exercise your rights, simply contact:
kontakt@maisongatore.com

━━━━━━━━━━━━━━━━━━

20. Right to Lodge a Complaint

You have the right to lodge a complaint with a data protection supervisory authority if you believe that the processing of your personal data violates applicable data protection law.

━━━━━━━━━━━━━━━━━━

21. Data Security

We implement appropriate technical and organizational security measures to protect your personal data against loss, manipulation, unauthorized access, or other unlawful processing.

Our security measures are continuously improved in line with technological developments.

━━━━━━━━━━━━━━━━━━

22. Changes to This Privacy Policy

We reserve the right to amend this privacy policy where necessary to adapt it to changing legal requirements, technical developments, or changes to our services.

The version published on our website at the time of your visit shall apply.