Privacy Statement
This website (hereinafter referred to as the “Website“) is provided by Blik d.o.o., Ulica Jožeta Jame 14, 1210 Ljubljana-Šentvid, Slovenia (hereinafter referred to as “we” or “us“).
In the company, we pay special attention to the protection of your data and respect for your right to privacy and information independence in the collection, processing and use of your personal data. The following information explains what data we collect and process about you in connection with your use of our website. Insofar as we have links to other sites, however, we have no influence or control over the linked content or the relevant data protection regulations, we recommend that you check the privacy policies of the linked websites to determine whether and to what extent personal data is collected, processed, used and accessible to third parties.
For additional information about the provider of the website and questions related to the security and processing of personal data, please call us at the telephone number published on our website – customer service.
1. Definitions and conditions
Below is a selection of some of the legal definitions that will help you understand the Privacy Statement. The full text of the General Data Protection Regulation (GDPR) together with further definitions and terms can be found here.
Personal data
Any information relating to an identified or identifiable natural person (“Concerned Person”). A natural person shall be considered to be identifiable if that person can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier, or by reference to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that individual.
Processing
Any operation or set of operations, carried out with or without the aid of automated processes relating to personal data, such as collection, recording, editing, archiving, storage, adaptation, processing, reading, querying, use, disclosure by transmission, distribution or otherwise providing, rectifying, linking, restricting, erasure or destruction.
Responsible person
It refers to the natural or legal person, public authority, agency or any other body which, alone or jointly with others, decides on the purposes and means of the processing of personal data. Where the purposes and means of the processing are prescribed in accordance with EU law or the laws of the Member States, the responsible person or certain criteria for determining the responsible person may be envisaged in accordance with EU or Member State law.
Recipient
It refers to a natural or legal person, public authority, agency or other body to which public data may be disclosed, whether or not a third party. Authorities may obtain personal data in the context of a specific investigation in accordance with EU or Member State law, but are not considered recipients. The processing of such data by the designated authorities shall be carried out in accordance with the relevant data protection regulations and in accordance with the purposes of the processing.
Third party
This means a natural or legal person, public authority, agency or other body, with the exception of the person concerned, the responsible person, the order processor and persons under the direct authority of the responsible person or the order processor authorised to process personal data.
2. Processing of personal data
In the following, we would like to provide you with information on how your personal data is processed when you use our website. Unless otherwise stated in the following sections, the legal basis for the processing of your personal data is based on the fact that such processing is indispensable for access to the functions of the website you request (point b of the first paragraph of Article 6 of the GDPR).
3. Use of our website and the categories of personal data processed on our website:
Subject area: Website visit, web analytics
Personal data: IP address, cookie identifier
Description and purpose of data processing
We use so-called tracking and web analytics tools on our website. It describes the collection of data on accesses to our website and the evaluation of the behavior of our visitors in order to optimize our offers.
With these tools, it is possible to explore where visitors come from, how they accessed our website, which areas of the website are visited more often, and how often and for how long which subpages and categories are viewed. We can also determine which search terms and websites the user has entered and estimate how many users visit our pages in total and which information or offers are in the greatest demand. The goal is to use this acquired knowledge to help design our offers and website in a user-friendly way.
Interest in data processing
By statistically analysing user profiles, we can derive information about the operation and success of our website, such as how often information pages for certain product groups are accessed and how many visitors have clicked on a particular offer. With the help of tracking tools, we can better target our offers to our customers, visitors and interested parties. Details about the provider and functionality, as well as information on how to delete the cookies used and prevent tracking can be found by clicking on the cookie setting button in the bottom left corner of our website.
Recipient and processor of data
The following providers of tracking and web analytics tools process access data on our behalf for the purpose of user analysis and statistical processing. In order to be able to do this, we have concluded appropriate contract processing agreements with suppliers. For further details on the technical operation of the tools, as well as information on how to prevent the transmission of data (tracking), you can find out by clicking on the cookie settings button in the bottom left corner of our website.
| Pomudnik | Tool | Provider details and privacy policy |
| Google Inc. 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA | Google Analytics, Google Adwords, Double Click
| www.google.com/policies/ |
| Facebook, Inc., 1601 Willow Road Menlo Park, California 94025 | Facebook Pixel | https://www.facebook.com/about/privacyshield |
| Optimizely, Inc., San Francisco, 631 Howard Street, Suite 100. San Francisco, California 94105 (USA) | Optimizely | https://www.optimizely.com/de/privacy/ |
| Hotjar Ltd., Level 2, St Julian’s Business Centre, 3, Elia Zammit Street, St Julian’s STJ 1000, Malta | Hotjar | https://www.hotjar.com/legal/policies/privacy
|
Data retention period: Details of the cookies and technologies used within these tracking tools, the storage period of which can be found slightly lower in this document. To request the deletion of personal data, please contact us at info@blikpaint.com . Legal basis: 6 (1 f). Article of the General Data Protection Regulation
Intended or required provision of data: The provision of the aforementioned personal data is neither legally nor contractually required.
Profiling
With the help of these tracking tools, we can evaluate and analyze the interests and behaviors of website visitors. To do this, we create a pseudonymous user profile. In addition, when you log in to “my account” with your user data, we may use this profile to determine your identity.
Field concerned: Online shop, order
Personal data: E-mail address, title, first and last name, recipient’s address, billing address, payment details (excluding credit card details!), login details (in the case of registered customers), IP address, cookie identifier
Description and purpose of data processing
We process the data as part of the original order or, if you are an existing customer, in order to provide you with your customer account with blikpaint. With the help of the data provided, we can enter your order, adjust the selection of products according to your taste and preferences and thus offer you recommendations. The data is then used to process, handle and deliver your ordered products to you. If you have a customer account, we will need your login details to verify your account.
With the help of analytical and tracking tools used in the context of your order or selection process (search in the online store), we can tailor our offer for you with special product suggestions.
Recipient and processor of data
We share your data with the recipient exclusively on the basis of contracts relating to the processing of the order and only to the extent necessary for the fulfilment of the contractual provisions of the service (e.g. in the case of logistics companies). Upon payment of the invoice, we conduct a credit inquiry before approving your order. To this end, the said data is transmitted to specially designated service providers in order to provide them with information about your payment history and credit information based on a mathematical-statistical evaluation process. This processing is carried out exclusively on the basis of your separate consent (Article 6(1a) of the General Data Protection Regulation).
Depending on your chosen payment method, your payment data will be transferred to the respective payment service provider. The responsibility for your payment data lies with the payment service provider.
Delivery service providers
- Purpose of data processing: Dispatch and delivery of goods
Payment service providers
- Purpose of data processing: Settlement of a payment by credit card (for more details, please contact the relevant payment service provider
Data retention period
We process and/or delete invoices and/or order confirmations according to the appropriate tax and business retention periods, unless you have given your explicit consent to the further use of your data. In addition, we keep your data for the limitation period for claims for defective items (usually 2 years after purchase). When you have a customer account, we also store your data for the period of existence of your customer user account. Deletion of your customer account is possible at any time and can be requested by sending a message to one of the contact options listed below.
Legal basis: 6 (1 a, b, f). Article of the General Data Protection Regulation
Intended or required provision of data: The provision of the aforementioned personal data for the trade is contractually required. Otherwise, the order cannot be executed.
4. Cookie settings
What are cookies?
This website uses so-called “cookies”. Cookies are small text files that are stored in the memory of your terminal via your browser. In doing so, they store certain information (such as your preferred language or site settings) that your browser (depending on the lifetime of the cookie) can send to us the next time you visit our website.
What cookies do we use?
We distinguish between two types of cookies: (1) functional cookies are those without which the functionality of our website would be impaired, while (2) optional cookies are used for website analysis and marketing purposes. The following tables contain a detailed description of the cookies we use:
Functional cookies
| Cookies | Lifespan | Purpose and content |
| PHPSESSID | 1 hour | PHP data retention identifier set when using the PHP session method |
| UniqueID | 6 months | Anonymous definition of the duration of the visit for statistical analysis, which allows the optimization of the website. No personal data is collected. |
| WHGACE | 1 day | Load balancer cookie that ensures proper website behavior |
| WHGCOOKIECONSENT | 6 months | Record a user’s decision to consent |
Optional cookies
| Cookies | Purpose and content | |
| Google Analytics | _ga: Assigns your device a unique, randomly generated ID number that we use to recognize your device the next time you enter our website. Lifespan: 6 months _gat: Balances the load on the website. Lifespan: 1 min _gid: Stores and updates unique values for each page visited. Lifespan: 24 hours Cookie provider: Google Inc. | |
| Google Ads, Double click | _gat: Assigns your device a unique, randomly generated ID number that we use to recognize your device the next time you enter our website. Lifespan: 3 months IDE: A cookie from Doubleclick that measures the effectiveness of an ad and ensures that ads are correctly targeted to the user. Lifetime: until the end of the session Cookie provider: Google Inc. | |
| fr: A Facebook cookie that is intended to provide advertising services. Lifespan: 3 months tr: A Facebook cookie that associates a Facebook pixel event with a user when the Facebook cookie is not present in the browser. Lifetime: until the end of the session Cookie provider: Facebook Inc. |
In accordance with your consent
We only use optional cookies if we have previously obtained your consent to their use (Art. 6, first paragraph (a) of the General Data Protection Regulation). On your first visit to our website, you will be asked for consent to install optional cookies. If you give your consent, we will place a cookie on your computer, and the request will then no longer appear as long as the installed cookie is active. After the expiry of the cookie’s lifespan or if you delete the cookie yourself, the request for consent will reappear the next time you visit our website.
How you can prevent cookies from being installed
Of course, you can also use our website if you do not install cookies. You can set or completely disable the use of cookies in your browser at any time. However, this may limit the features or negatively affect the user-friendliness of the website. By selecting the opt-out option listed in the table above, you can refuse the installation of optional cookies at any time.
Site Analysis
On our website, we use the web analytics service Google Analytics of Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, United States of America (hereinafter referred to as “Google”).
Google will analyse your use of our website on our behalf. For these purposes, we will use cookies, which are described in more detail in the table above. The data collected by Google in connection with your use of our website (e.g. referrer URL, the websites you have visited, your browser type, language settings, your operating system and your screen resolution) will be transmitted to a Google server in the United States of America, where this data will be stored and analysed. The relevant data will then be forwarded to us in anonymous form. In this process, your usage data will not be linked to your full IP address. On our website, we have activated the IP anonymisation function offered by Google, whereby the last 8 bits (IPv4) of the IP address or the last 80 bits (IPv6) of your IP address are deleted. In addition, Google certified in accordance with the EU-U.S. Privacy Shield; which ensures an adequate level of data protection with regard to the processing of personal data by Google in the USA.
You can withdraw your consent to the use of web analytics at any time by downloading and installing the Google browser plugin or by selecting “Off” in the top Browsers, whereby an opt-out cookie will be placed. Both options will prevent web analysis from being carried out, but only if you use the browser on which you have installed the plug-in or until you delete the opt-out cookie.
For more information about Google Analytics, see Google Analytics Terms of Use, in Google Analytics Privacy and Data Protection Guidelines and in Google Privacy Policy.
5. Use contact forms
You can contact us directly through the forms available on our website. In particular, we ask you to provide us with the following information:
e-mail address, name and surname, address, telephone number
The information you provide to us via the contact form will be collected and processed exclusively in connection with the processing of your request.
6. External services or content on our website
We use third-party services and/or content on our website. When you use third-party services or display third-party content, you exchange communication data with the respective providers for technical reasons.
The respective service or content provider may also process your data for its own purposes. We have done our best to set up the services and content of providers who process data for their own purposes in such a way that all communication that is not intended solely to present services and content on our website is blocked, or such communication only takes place if you have chosen to use the service in question yourself. However, we have no control over the data collected and processed by third parties, so we cannot provide binding information about the scope and purpose of this type of data processing.
Further information regarding the scope and purpose of the collection and processing of your data can be found in the privacy statements of the providers whose services and/or content we use and who are responsible for the protection of your data in this area:
| · Facebook Share Button | · Share button on Digg |
7. Transfer of data for contractual processing
To a certain extent, we will use specialized subcontractors to process the data. We carefully select these subcontractors and regularly monitor their work. On the basis of appropriate data processing agreements, these subcontractors will process personal data in accordance with our instructions, strictly adhering to our directives.
8. Transfer of data to third parties
We share your information with the following third parties and for the following purposes:
| Third party/company | Scope and purpose of data transfer | Legal bases |
| REF d.o.o., Bezjakova 29, 2341 Limbuš, Pekre. | Unrestricted for statistical processing and online advertising purposes. | Umbrella agreement on data sharing |
9. Information in relation to your rights
In accordance with the applicable data protection legislation, you are generally granted the following rights:
- The right to information in relation to your personal data that we store.
- The right to request rectification, erasure or restricted processing of your personal data.
- The right to object to data processing for our legitimate interest, public interest or market research, unless we can prove that there are compelling, legitimate reasons that override your interests, rights and freedoms, or if such data processing is necessary for the establishment, exercise or defence of legal claims.
- Right to data portability.
- The right to lodge a complaint with a data protection supervisory authority.
- You can withdraw your consent to the collection, processing and use of your personal data at any time with effect from further withdrawal. For more information, please refer to the section above, which describes the processing of data on the basis of your consent.
To exercise your rights, please address your request to: info@blikpaint.com
10. Contact
If you have any questions regarding data protection, please use the contact form or contact the person responsible for data protection at Blik d.o.o.
Data Protection Officer:
Mr. Primož Šiftar,
Blik d.o.o., Ulica Jožeta Jame 14,
1210 Ljubljana – Šentvid
E-mail: info@blikpaint.com
11. Modification of the Privacy Statement
We may update this Privacy Statement from time to time. Updates to the Privacy Statement will be posted on our website. All changes take effect on the day they are posted on our website, so we recommend that you visit it regularly to familiarize yourself with any updates.
