This Privacy Policy explains how NOVADYNAMICST CO., LTD ("we") collects, uses, stores, and protects personal data of individuals located in the European Union (EU) in accordance with the General Data Protection Regulation (GDPR) and other relevant EU data protection laws.
1. Scope
This policy applies to all personal data processed through our website (novadnamics.com), commercial transactions, and customer interactions with individuals located in the EU. We adhere to the principles of lawfulness, fairness, and transparency in all data processing activities.
2. Personal Data We Collect
Depending on your interactions with us, we may collect the following categories of personal data:
Basic Identity Data: name, email address (e.g., business contact email: [email protected]), mailing address, and phone number.
Transaction Data: order details, payment information (processed by a third-party payment processor), and shipping address.
Website Usage Data: IP address, browser type, and pages visited (collected via cookies, see Section 8 for more information). Specific Child-Related Data: Given our focus on children's clothing, we may indirectly collect data related to children (e.g., age ranges for size selection). This data is only processed with the explicit consent of a parent or guardian, in accordance with Article 8 of the GDPR.
3. Legal Basis for Data Processing
Under the GDPR, we process personal data based on the following legal bases:
Performance of Contract: To fulfill orders, process payments, and deliver products.
Legitimate Interests: To improve our products, communicate with business partners, and ensure the proper functioning of our website (without infringing your fundamental rights).
Explicit Consent: For sending marketing communications and processing children's data, which you may withdraw at any time.
Legal Obligations: To comply with tax, customs, and product safety regulations.
4. Use and Retention of Data
Personal data is used only for the purposes stated at the time of collection, including:
Fulfilling orders and providing customer support.
(With consent) Sending product updates or promotional materials.
Ensuring compliance with EU product safety standards (such as OEKO-TEX® Standard 100, as reflected in our product practices). Data retention follows the "minimum necessary" principle:
Transaction data: 7 years (for tax purposes).
Customer communication data: 2 years after the last interaction.
Child-related data: Retained until the transaction is completed, unless longer retention is required by law or regulation.
5. Data Transfers Outside the European Economic Area
We may transfer personal data to countries outside the European Economic Area (EEA). Such transfers are made in accordance with Chapter V of the GDPR, based on the following criteria:
Adequacy determination: Transfers to countries recognized by the EU as having an "adequacy of data protection" (e.g., Japan, Canada Commercial Sector, Switzerland).
Standard Contractual Clauses: For countries not recognized as "adequacy," we use EU-approved standard contractual clauses to ensure equivalent data protection.
6. Your Data Rights
Under the GDPR, you have the following rights regarding your personal data:
Right of access: Request a copy of the personal data we hold about you.
Right of rectification: Request correction of inaccurate or incomplete personal data. Right to erasure: Request the deletion of your personal data when it is no longer necessary. Right to restriction of processing: Request the restriction of data processing under certain circumstances (e.g., if the accuracy of the data is contested). Right to data portability: Request access to your personal data in a structured, machine-readable format. Right to object: Object to processing based on legitimate interests or for direct marketing. To exercise any of these rights, please contact us at [email protected]. We will respond within one month of receiving your request. 7. Data Security We implement technical and organizational measures to protect personal data, including: Encryption during data transmission and storage. Regular system security audits. Access to personal data is restricted to authorized personnel. Employee training on GDPR compliance is provided. In the event of a data breach that may pose a risk to your rights, we will notify the relevant supervisory authority within 72 hours in accordance with Article 33 of the GDPR and will inform affected individuals without undue delay.
8. Cookies and Tracking Technologies
Our website uses cookies (small text files stored on your device) to enhance your user experience. These cookies include:
Necessary cookies: These enable basic website functionality (such as session management).
Analytical cookies: These are used to analyze website traffic (with your consent).
You can manage your cookie preferences through your browser settings. For more details, please see our Cookie Policy on our website (novadnamics.com).
9. Third-Party Processors
We use trusted third parties (such as payment processors and logistics providers) to process data on our behalf. These third parties are contractually committed to protecting personal data and acting only on our instructions.
10. Policy Updates
This policy may be updated due to legal and regulatory changes or business adjustments. Significant updates will be posted on novadnamics.com with the revised effective date. We recommend that you review this policy regularly.
11. Contact and Complaints
If you have any questions about this Policy or wish to exercise your data rights, please contact us through the following channels:
Email: [email protected]
Website: novadnamics.com
If you believe your data rights have been violated, you have the right to complain to your local data protection authority (e.g., the French National Commission on Information Technology and Freedoms (CNIL) or the UK Information Commissioner's Office (ICO).