The policy applies to the information I collect on the website and in email, text, or other messages between you and HAC design.
Who is HAC design
HAC design is a jewelry shop with this website address: https://hacdesign.com. The owner, designer and general manager of HAC design is Angelica Corneliussen.
What personal data is collected on this site and why I collect it
This site uses HTTP cookies (also called browser cookie, or simply cookie) to enhance your experience using the website. That’s a small text file sent from this website and stored on your computer by your web browser while on this site (or any other website, since most websites use them). This is allowed by default in every Web browser, and you can change this in your browser settings. However, if you decide not to accept cookies from me, the website may not function properly (etc. buy more than one product in the same order).
If you have an account and you log in to this site, I’ll set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.
When you log in, I’ll also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.
If you leave a comment on my site you may opt-in to save your name, email address and website in cookies. These are for your convenience so that you don’t have to fill in your details again when you leave another comment. These cookies will last for one year.
Third Party Cookies
When you order a product from HAC design, I collect information about you during the checkout process so I can fulfill your order and send it to you. This information may include, but is not limited to, your name, billing address, shipping address, email address, phone number, credit card/payment details and any other details that might be requested from you for the purpose of processing your orders. For legal reasons, I have to keep that information for ten years.
Handling this data also allows me to:
– Send you important account/order/service information.
– Respond to your queries, refund requests, or complaints.
– Process payments and to prevent fraudulent transactions. I do this on the basis of my legitimate business interests.
– Set up and administer your account, provide technical and/or customer support, and to verify your identity.
Additionally, I may also collect the following information:
– Location, IP address and browser type: for purposes like estimating taxes and shipping
– Product pages visited and content viewed while your session is active: to, for example, show you products you’ve recently viewed
– Your comments and product reviews if you choose to leave this: to inform visitors and myself.
– Account email/password: to allow you to access your account, if you have one.
– If you choose to create an account: your name, address, and email address will be used to populate the checkout for future orders.
Contact forms and emails
If you use the contact form on the Contact-page or send a direct email, all the data you fill in are captured and are kept for customer service purposes. When the data is no longer relevant it’s deleted. I will never use that information for marketing purposes or share it with anyone else.
When visitors leave comments on the site I collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection. All comments are also checked through an automated spam detection service.
An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. After approval of your comment, your profile picture is visible to the public in the context of your comment.
Who I share your data with
I accept payments through PayPal and Stripe. When processing payments, some of your data will be passed to the one you choose for your payment. This includes information required to process or support the payment, such as the purchase total and billing information.
To manage and to send emails to my subscribers (also known as the HAC Tribe) I use MailerLite. They’re a third-party provider, which may process your data using industry standard technologies. If you’re part of the HAC Tribe / a subscriber, you can unsubscribe from my newsletter anytime by clicking on the unsubscribe link provided at the end of every email.
To analyze the traffic and optimize my website I use the tool Google Analytics to collect data. This will include information about statistics on page use, technology used to browse, user locations, and time/date of the browsing. Google Analytics also collects your IP address, but I anonymize it by automatically remove the last three numbers so it isn’t identifiable.
I embed a Facebook widget to allow you to “like/share/recommend” products and/or blog posts from my website to Facebook. This widget may collect your IP address, your web browser User Agent, store and retrieve cookies on your browser, embed additional tracking, and monitor your interaction with the widget, including correlating your Facebook account with whatever action you take within the widget (such as “liking/sharing/recommending” my webpage), if you are logged in to Facebook.
This website reserves the right to use pixels. Pixel tags enable me and social media sites to track visitors from outside websites in order to tailor advertising messages users see while visiting that social media website. I reserve the right to use these pixels in compliance with the policies of the various social media sites.
Embedded content from other websites
Articles on my site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.
How long I retain your data
If you register on HAC designs website, I store the personal information you provide in your user profile for as long as you’re registered. You can see, edit, or delete your personal information at any time (username cannot be changed). Website administrator can also see and edit that information.
All comments that are left on the website and its metadata are retained indefinitely. This is so I can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.
Where I send your data
Data collected when you order from the shop, make an account, comment on site content or use the contact form is saved in the site’s database and sent as a notification email to me. I use this data to process your order and to provide support and services to you. This information isn’t shared with anyone.
How I protect your data and data breach procedures
I have website security in place to prevent the data of this site from loss, misuse, and unauthorized access, alteration, or destruction. Please understand, however, that no security system is impenetrable. I cannot guarantee the security of my databases, nor can I guarantee that the information that you supply will not be intercepted while being transmitted to and from us over the Internet. In particular, e-mail sent to or from the website may not be secure, and you should therefore take special care in deciding what information you send to us via email.
Should the website experience a data leak, will I immediately report this to those who may be affected.
Also, illegally login attempts get their IP addresses stored and will be banned from the site.
What rights you have over your data
If you have an account on this site, shopped, left comments or are a subscriber of my newsletter, you can request to receive the personal data I hold about you, including any data you have provided. You can also request that I erase any personal data I hold about you. This does not include any data I am obliged to keep for administrative, legal, or security purposes.
HAC design do not wish to collect or otherwise treat personal data about children under the age of 16. If you’re under the age of 16, please don’t give me your personal information.
If someone under this age has provided me with personal info, I will delete it as soon as I become aware of this.
If you have reason to believe that a child under the age of 16 has provided personal information to me, please contact me and I will delete that information from my database.
Last updated June 2018.