Privacy policy
Privacy Policy
-
Introduction
1.1. This policy describes how PIKASTORE s.r.o., Rybná 716/24, 110 00 Prague 1, ID No.: 19693311 (hereinafter "PIKASTORE") processes personal data and sets the rules for such processing. It applies in particular to visitors of the website www.pikastore.cz (hereinafter "Website"), registered users (hereinafter "User"), and customers of PIKASTORE who place an order on the Website (hereinafter "Customer").
1.2. PIKASTORE acts as the controller of personal data, meaning it determines the purposes and means of processing.
-
Types of Data Processed
2.1. Data Provided by Customers – PIKASTORE processes personal data that customers provide when registering or placing an order. Such data includes:
-
First and last name
-
Address and contact details (email, phone)
-
Payment details
-
Any additional information (e.g., delivery instructions)
2.2. Data Collected via Cookies – PIKASTORE uses necessary, analytical, and marketing cookies. If the customer consents to the use of cookies, we have access to data about:
-
Visited pages
-
Viewed products
-
Behavior on the Website
For more information about cookies, please see our Cookie Policy [link].
2.3. Automated Processing and Profiling – PIKASTORE uses automated analysis of purchasing behavior for offer personalization. This process does not have legal or similarly significant effects on the customer.
2.4. PIKASTORE does not process sensitive personal data (e.g., health data, political opinions, etc.).
-
Legal Grounds for Data Processing
3.1. We process personal data based on:
-
Performance of a contract (Art. 6(1)(b) GDPR) – to fulfill orders.
-
Compliance with a legal obligation (Art. 6(1)(c) GDPR) – e.g., accounting and tax laws.
-
Legitimate interest (Art. 6(1)(f) GDPR) – website traffic analysis, marketing.
-
Consent of the customer (Art. 6(1)(a) GDPR) – for cookies, newsletters, etc.
-
Withdrawal of Consent and Unsubscribing from Commercial Communications
4.1. Customers may withdraw consent to commercial communications at any time by clicking the unsubscribe link in emails or by contacting PIKASTORE at info@pikastore.cz.
-
Who Has Access to Data?
5.1. Personal data are primarily processed by PIKASTORE.
5.2. PIKASTORE may engage third-party processors only to the extent necessary to provide services, such as:
-
Goods delivery (e.g., Zásilkovna, Česká pošta, PPL)
-
Payment services (e.g., Shopify Payments, banks)
-
Marketing and analytics (e.g., Google, Meta)
5.3. Personal data are not transferred outside the EU/EEA, except when customers use services of third parties (e.g., Google, Meta – Facebook, Instagram) or when data are processed by service providers that comply with GDPR requirements (e.g., based on standard contractual clauses approved by the European Commission).
-
Data Retention Period
6.1. Personal data are retained for as long as necessary to process the order. After delivery of goods, data are kept for 10 years to meet accounting and tax obligations. Data required for handling complaints or legal claims may be retained for the period necessary to protect PIKASTORE's legitimate interests (e.g., until the limitation period under the Civil Code expires).
6.2. Marketing and Cookies – Data are processed for the duration of consent (i.e., until the customer withdraws consent or changes browser settings).
6.3. Commercial Communications (Newsletters) – Customers may unsubscribe at any time, and their data will be deleted.
-
Customer Rights
7.1. Under GDPR, customers have the right to request erasure of personal data ("right to be forgotten") if retention is not necessary for contract performance or legal obligations (e.g., accounting records, legal claims, or safeguarding legitimate interests). Erasure requests are subject to identity verification.
7.2. Complaints to the Data Protection Authority – If a customer believes their data are processed unlawfully, they may lodge a complaint with the Office for Personal Data Protection at www.uoou.cz.
-
Data Security
8.1. PIKASTORE implements technical and organizational measures to protect personal data from unauthorized access, misuse, or disclosure.
8.2. Access to data is granted only to authorized personnel on a need-to-know basis. PIKASTORE applies appropriate technical and organizational safeguards. Customers are obliged to protect their account login credentials and prevent unauthorized access.
-
Contact
9.1. Questions regarding data processing or exercising rights can be sent to info@pikastore.cz.
-
Effective Date
10.1. This Privacy Policy is effective as of October 18, 2023.