01Data Controller
Petfect is the data controller responsible for the personal data collected through our website. We commit to protecting our users' privacy in accordance with the General Data Protection Regulation (GDPR).
- Company Name / Owner: ___________
- Tax ID / CIF: ___________
- Registered Address: ___________
- Email: petfectclean@gmail.com
02Personal Data We Collect
Depending on your interactions with us, we collect the following data:
- Identity Data: name and surname.
- Contact Data: email address, telephone number (optional).
- Shipping Data: complete postal address for product delivery.
- Payment Data: securely processed by our payment processors. We do not store complete card numbers.
- Browsing Data: IP address, browser type, and pages visited collected through cookies (see Cookie Policy).
03Purpose and Legal Basis of Processing
We process your data under the following purposes and legal grounds:
- Order and Return Management: Necessary for the execution of the purchase agreement (Art. 6.1.b GDPR).
- Order Confirmation and Tracking: Necessary for the execution of the contract (Art. 6.1.b GDPR).
- One-Click Post-Purchase Offers (OTO): Optional saving of the tokenized payment method in Stripe to allow immediate post-purchase checkouts. Based on your explicit consent (Art. 6.1.a GDPR).
- Tax and Accounting Obligations: Necessary for compliance with legal obligations (Art. 6.1.c GDPR).
- Newsletter and Marketing: Based on your explicit consent (Art. 6.1.a GDPR).
- Fraud Prevention: Legitimate interest of the controller (Art. 6.1.f GDPR).
04Data Recipients
We only share data with essential providers who guarantee the correct management of your purchase:
- Authorized Logistics and Distribution Centers: responsible for preparing, packaging, and shipping your orders.
- Payment Gateways (Stripe, PayPal): responsible for securely processing charges.
- Marketing and Analytics Tools: for statistical purposes and promotional newsletters (Google Analytics, email platforms, subject to consent).
05International Data Transfers
Some product fulfillment and shipping tasks may be processed by authorized international logistical partners located outside the European Economic Area (EEA). These operations are always carried out under the requirements of the GDPR, using Standard Contractual Clauses (SCC) approved by the European Commission to ensure your data is securely protected.
06Data Retention Period
We retain your data only for as long as necessary to fulfill the indicated purposes:
- Billing and Tax Records: 5 years (legal tax obligations).
- Payment Consent (Stripe OTO): remains active until you revoke consent or 12 months pass without purchase activity.
- Marketing Communications: until you decide to unsubscribe from the newsletter.
07Your Rights
As a data subject, you have the right to access, rectify, erase, restrict, object to processing, and request data portability.
To exercise these rights, please email us at petfectclean@gmail.com with a copy of your ID. You also have the right to lodge a complaint with your local data protection agency (in Spain, the AEPD at www.aepd.es).
08Payment Security
All website navigation and checkouts are protected with SSL/TLS (HTTPS) encryption. Credit card payments are processed via Stripe in compliance with PCI-DSS Level 1 security standards. When you consent to OTO offers, Stripe tokenizes your bank details: we only receive a secure, non-transferable authorization key, ensuring your card numbers are never exposed.
09Minors
This website is not intended for individuals under 14 years of age. We do not intentionally collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at petfectclean@gmail.com to request deletion.
10Behavioral Advertising & Opt-Out
We use your personal data to provide you with targeted advertisements or marketing communications we believe may be of interest to you. You can opt out of targeted advertising by using the following platform links:
- FACEBOOK: https://www.facebook.com/settings/?tab=ads
- GOOGLE: https://www.google.com/settings/ads/anonymous
- BING: https://advertise.bingads.microsoft.com/en-us/resources/policies/personalized-ads
Additionally, you can opt out of some of these services by visiting the Digital Advertising Alliance (DAA) opt-out portal at http://optout.aboutads.info/.
11Do Not Track Signals
Please note that we do not alter our website's data collection and usage practices when we detect a "Do Not Track" signal from your browser, due to the lack of a consistent industry standard.
12Automated Decision-Making
As an EEA resident, you have the right to object to processing based solely on automated decision-making (including profiling). Our payment processors (such as Stripe) use limited automated decision-making to prevent fraud (e.g. temporary blocking of credit cards or IP addresses after repeated failed transaction attempts), which has no legal effect on you and is necessary to perform our contract.