toty will not collect any “Personal Data” about you, that is: your name, address, payment information, telephone number, or e-mail address, unless you provide it to toty voluntarily.
1.WHAT PERSONAL DATA DO WE COLLECT?
1.1 We may collect the following Personal Data:
1.1.1 Information that you provide to us (e.g., by completing a form on the Site or contacting us).
Your name and contact details (including telephone number, home address and email address);
Billing information (including delivery address and payment details, including credit card information). We reserve the right to request additional evidence or proof of billing information where we think this is necessary;
Expressed personal preferences (e.g., communications and language settings);
Interactions with us (e.g., transaction history);
and correspondence and communications between us and you.
1.1.2 Information we collect from your use of the Site. We may automatically collect the following information:
Technical information, including your computer’s IP address, browser type and version, time zone setting, browser plug-in types and versions, operating system and platform;
and Information about your visit, including the URL clickstream to, through and from our Site (including date and time);
products you viewed or searched for;
page response times, download errors, length of visits to certain pages, page interaction information (such as scrolling, clicks, and mouse-overs), and methods used to browse away from the page.
1.3 You do not have to provide Personal Data to access the Site but certain functionality (such as being able to purchase our products via the Site) will not otherwise be available to you.
1.4 You confirm that all information you provide to us at any time is true, accurate and complete.
1.5 You must not provide information about anyone else unless you have that party’s permission to do so.
WHY DO WE NEED YOUR PERSONAL DATA?
2.1 We may use your Personal Data for the following reasons:
Marketing and Promotional Purposes: Send you personal invitations to Toty events as well as marketing communications; to inform you of the scope of services offered; to contact you for upcoming events; provide you with information about Toty; and promote Toty services.
Business Purposes: Process and receive payments as well as inform you of needed financial information. Your purchase transaction data is stored only as long as it is necessary to complete your purchase transaction. After that is complete, your purchase transaction information is deleted.
Support Purposes: Provide you with information about our Site, products and services; answer your requests, comments and questions; administer, maintain and optimize our Site, providing support and security services.
Legal Purposes: Prevent and detect crimes; preventing fraud and other prohibited or illegal activities and guaranteeing the safety and security of our Site; complying with our billing and accounting requirements and other legal or regulatory obligations (e.g. anti-money laundering obligations).
2.3 We may also disclose Personal Data to third parties in the following circumstances:
Service Providers. We sometimes use third party providers to perform services on our behalf, like banks and the providers of credit reports for the purposes of transaction processing, which may keep a record of that information. If you choose a direct payment gateway to complete your purchase, we will store your credit card data. It is encrypted through the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction data is stored only as long as is necessary to complete your purchase transaction. After your purchase transaction is complete, your purchase transaction information is deleted. All direct payment gateways adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, MasterCard, and American Express. PCI-DSS requirements help to ensure the secure handling of credit card information by our store and its service providers. Other third-party service providers may be payment gateways and other payment transaction processors, who have their own privacy policies in respect to the information we are required to provide to them for your purchase-related transactions. We recommend that you read their privacy policies so you can understand the manner in which your Personal Data will be handled by these providers.
Third parties (such as social networks), where you direct us to do so. Your personal data will become subject to the privacy policies of those third parties when it is shared with them. We are not responsible for the privacy practices of other sites and encourage you to read their privacy statements. If we or substantially all of our assets are acquired by a third party, in which case Personal Data held by us about our customers will be one of the transferred assets that may be disclosed to the prospective and eventual buyers.
Affiliates and Associated Companies. To protect the rights, property, or safety of toty, our affiliates, our customers, or others. This includes exchanging information with other companies and organizations for the purposes of fraud protection and credit risk reduction.
2.4 In carrying out the above activities, we may transfer your Personal Data. Wherever we transfer your Personal Data, we will take steps to safeguard it.
2.5 By submitting your Personal Data, you agree to us transferring, storing, or processing your Personal Data as outlined above.
3.2 The cookies that we use can be categorized as follows:
Strictly necessary cookies are essential for your use of the Site and its features, such as making a product purchase. We have to use these cookies to make the Site work as it should, whether or not you agree to cookies being used.
Performance cookies collect information about how visitors use the Site, so that we can understand how our Site is used. We may use Google Analytics for this purpose: https://developers.google.com/analytics/resources/concepts/gaConceptsCookies
Functionality cookies allow the Site to remember you in order to provide enhanced customized features (e.g., language preferences).
3.3 To find out more about cookies, visit: http://www.allaboutcookies.org/manage-cookies/. Your browser settings may allow you to choose not to receive any cookies: you should consult the ‘Help’ section of your browser for more information. By rejecting or disabling cookies, certain Site content or functionality may not be available to you.
KEEPING YOUR PERSONAL DATA SECURE
4.1 We take steps to ensure that your Personal Data is protected against unauthorized loss or disclosure. However, the transmission of information via the internet is not completely secure. We cannot guarantee the security of your Personal Data transmitted to our Site. Any transmission is at your own risk. To protect your Personal Data, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately misused, accessed, disclosed, altered, lost, or destroyed.
4.2 You are responsible for maintaining the confidentiality of your account password and for any access to or use of our Site using your password, whether or not authorized by you. Please notify us immediately of any unauthorized use of your password or account or any other breach of security.
LINKS TO OTHER WEBSITES.
Our Site may contain links to and from third party websites. If you follow a link to any of these websites, please note that these websites have their own privacy policies and that we do not accept any responsibility or liability for these policies or how those third parties may use your Personal Data. Please check these policies before you submit any Personal Data to these websites.
SAFETY OF MINORS.
We do not knowingly collect information about anyone under 18 years of age or the age of majority in your state or province of residence. By using this Site, you represent that you are at least the age of majority in your state or province of residence, or that you are the age of majority in your state or province of residence and you have given us your consent to allow any of your minor dependents to use this Site.
7.1 In accordance with applicable law, users of our Site may have the right to: access to the Personal Data that we hold about you; request that we correct, amend, update your Personal Data; and request that we stop using your information for marketing purposes and, in certain circumstances, that we delete that information from our records. We will use reasonable efforts to delete this information from our existing files.
5.2 You may have additional rights under your local law.
NOTICE TO CALIFORNIA RESIDENTS.
7.1 Please note that the Site is directed towards users who reside in the United States, as well as users who reside outside the United States. By using the Site, you consent to the collection, storage, processing, and transfer of your information in and to the United States, or other countries and territories, pursuant to the laws of the United States. Some of these countries may not offer the same level of privacy protection as your own. Any such transfers will comply with safeguards as required by relevant law. If applicable, you may have a right to claim compensation for damages caused by a breach of relevant data protection laws.
7.2 If you are a resident of the EEA or Switzerland, the following information applies:
7.2.1 Right to lodge a complaint. Users that reside in the EEA or Switzerland have the right to lodge a complaint about our data collection and processing actions with the supervisory authority concerned. Contact details for data protection authorities are available here.
7.2.2 Purposes of processing and legal basis for processing. As explained above, we process Personal Data as defined under data protection laws in various ways depending upon your use of the Site. We process Personal Data on the following legal bases: (1) with your consent; (2) as necessary to sell products; and (3) as necessary for our legitimate interest in operating the Site where those interests do not override your fundamental rights and freedom related to data privacy.
7.2.3 Transfers of Personal Information. Information we collect may be transferred to, and stored and processed in, the United States or any other country in which we or our affiliates or subcontractors maintain facilities. Upon the start of enforcement of the General Data Protection Regulation (GDPR), we will ensure that transfers of Personal Data to a third country or an international organization are subject to appropriate safeguards as described in Article 46 of the GDPR.
7.2.4 Individual Rights. If you are a resident of the EEA or Switzerland, you are entitled to the following rights, which may be exercised by contacting us as described below. In order to verify your identity, we may require you to provide us with Personal Data prior to accessing any records containing information about you. The right to request data erasure. You have the right to have your data erased from our website if the data is no longer necessary for the purpose for which it was collected, you withdraw consent and no other legal basis for processing exists, or you believe your fundamental rights to data privacy and protection outweigh our legitimate interest in continuing the processing. The right to restrict or object to our processing. You have the right to restrict or object to our processing if we are processing your data based on legitimate interests or the performance of a task in the public interest as an exercise of official authority (including profiling); using your data for direct marketing (including profiling); or processing your data for purposes of scientific or historical research and statistics.
7.2.5 The provisions of this Section 7.2 are intended to comply with the provisions of the GDPR and should be interpreted in a manner to be consistent therewith.
TEXT MESSAGING/MOBILE TERMS
If you have any questions about our privacy or security practices or you would like to request access to or a correction to your Personal Data, please contact us via email at firstname.lastname@example.org. Your right to access or correct your Personal Data is subject to applicable legal restrictions. We may take reasonable steps to verify your identity before granting access or making corrections.