Privacy statement

1, THE IDENTITY OF THE DATA CONTROLLER AND THE DATA SUBJECT

With regard to personal data processing on www.canvassi.art, the data controller is Canvassi Art Kft.

Canvassi Art Kft.
Tax number: 32590555-2-17

Company registration number: 17-09-014075

Registered office: 7085 Nagyszékely, cad. 588.

Contact details: E-mail address: office@canvassi.art

The data subjects concerned by the processing are in particular: 

- Users visiting the website;

- Customers who place an order;

- Other natural persons involved in the procedure relating to the subject of the order.

Data processors:

Balaton Nyomda Kft. 

Seat: 8800 Nagykanizsa, Király u. 2. 

Tax number: 25580918-2-20 

Company registration number: 13-09-181570

FÜRGEFUTÁR.HU Kft.

Seat: 1027 Budapest, Horvát utca 14-26.

Tax number: 22966331-2-41

Company registration number: 01-09-946845 

Hosting provider:
Name: Shopify International Limited
Seat: 2nd Floor, 1-2 Victoria Buildings, Haddington Road, Dublin 4, D04 XN32, Ireland
Email: support@shopify.com

2, THE SCOPE OF PERSONAL DATA PROCESSED

On the website, we process the following personal data, specifying the legal basis:

  • CONTACT DETAILS

This includes any messages you send to us via the website, email, social media or any other form of communication. This data is processed and retained to enable us to fulfil orders and to provide a basis for a decision in the event of any legal claims. Our legal basis for processing this data is the verifiable interest of the user in our activities, which is manifested in the messages sent to us (data processing to establish a contract with the data subject).

  • CUSTOMER DATA

This includes all information related to the purchase of products and services, such as the customer's name, shipping and billing address, email address, phone number, product purchased. This data is processed to ensure the successful fulfilment of orders and to keep a legally compliant record of purchases. The legal basis for the storage of the data is the performance of the contract between the customer and the Data Controller resulting from the order.

  • USER DATA

This includes data generated during the use of the website to enable the technical operation of the site, to maintain the security of the site, to keep a record of users' activities and to ensure that you always have access to the most relevant content. The legal basis for the processing of data is the clear interest of the user in our activities, which is necessary to ensure and store them for the technical functioning of the site.

  • TECHNICAL DATA

This includes data generated from your use of the site, such as IP address, login information, browser information, time spent on each page, page views and navigation paths, number and time of visits to pages, time zones, and the device you are using to view the site. We process this data to analyse users' habits on the site, to keep our site secure and to understand the usefulness of our marketing decisions. The legal basis for processing this data is the user's clear interest in our activities, which allows us to process this data in accordance with security requirements and use it to enhance our business for more effective operations.

  • MARKETING DATA

Which includes visitor preferences, what marketing content they like to receive from us. This data is processed to enable us to enter prize draws and to send advertising related to our products/services in which the user has expressed an interest. The legal basis for processing the data is the user's clear interest in our activities, which allows us to process this data in accordance with security requirements and use it to increase business for more effective operation. The legal basis for processing the data is the user's clear interest in our activities, which allows us to process this data in accordance with security requirements and use it to enhance our business for more effective operation. We do not collect sensitive data such as ethnicity, religious beliefs, sexual life and orientation, political opinions and trade union membership, or health background, and genetic or biometric information in the course of our activities.

3, HOW CAN WE COLLECT DATA?

We may collect personal information in ways that the user provides directly to us (for example, by placing an order or sending a message).

In addition, certain information is collected automatically when you use the Site, for example by "cookies" and similar technologies. These are only activated after the user has given his consent.

We receive certain data from external partners, such as analytics providers like Google (non-EU partner), advertising networks like Facebook™/Meta™ (non-EU partner), and payment gateway partners like Barion.

4, OUR PRACTICAL STEPS ON DATA PROTECTION

It is of the utmost importance for the Data Controller to protect the privacy of its users and to comply with the applicable regulations. Therefore, after conducting a privacy impact assessment on this site, we have compiled a list of the data collected, its necessity and legal basis, and its legal compliance.

  • In order to protect the data entered on the forms and generated on the site, we use SSL certification throughout the website (Let's Encrypt Authority X3 certification).
  • To protect the site against attack, we use premium security software (iThemes Security Pro) to ensure that the site is secure. "brute force and virus attacks against the stored data.
  • Purchase and user data are stored in the site's databases in encrypted form (pseudonymised) and cannot be read by third parties.
  • In this privacy statement, we provide users with contact details to request information about the processing of their personal data, to modify or delete their personal data.

From time to time, it is necessary for our business to provide data to our service partners (such as a hosting provider, manufacturer, shipping company, or newsletter software).

In such cases, we will always choose to comply with the requirements of the GDPR regulation, ensuring that the data is handled responsibly.

5, DURATION OF DATA PROCESSING

We will only ever store users' data for as long as we are required to do so by our legal/accounting/data reporting obligations or as necessary for the operation of the service.

When deciding on the length of storage, we take into account the volume, nature and sensitivity of the data and the potential impact of a data leak in the event of a data breach.

For tax purposes, we need to retain customer billing and purchase data for at least 8 years to comply with our legal obligations.

In certain circumstances, we may use the data in an anonymised form for statistical purposes, in which case we will retain the data indefinitely without notice.

6, RIGHTS OF THE VISITOR

As a citizen of the European Union, the General Data Protection Regulation (GDPR) gives users of this site the following rights:

  1. Access to personal data

Users of the Site have the right to request a copy of the personal data held by the Controller. The request will normally be granted free of charge within 14 days of the request.

In the case of repeated, abusive, unjustified requests, the Data Controller may charge a moderate fee to provide the data and may require additional time to provide the data.

Furthermore, the Controller will request proof of identity before providing the data to prevent misuse. To request personal data, please use the contact form below:

If personal data have been modified or incorrectly provided, users have the right to request that the data be amended. To change your personal data, please contact our customer service.

  1. Request deletion of personal data

Users have the right to request the deletion of all their personal data. The request will be granted free of charge within 14 days of the request. After deletion of personal data, the user account will no longer be available and any material purchased will no longer be available, as the personal data associated with the user account is essential to access the service.

The Data Controller requests proof of identity before deleting personal data to prevent misuse. To delete personal data, please use one of the contact details above.

  1. Request restriction of processing of personal data

Users have the right to restrict the provision of their data to third parties (service partners) upon request. When submitting the request, the service partners to be restricted may be identified.

It is important to note that cooperation with certain service providers is essential for the functioning of the site, so that if they restrict access to the site, the services of the site will be unavailable to the user.

The Data Controller requests proof of identity before restricting the transfer of personal data to prevent misuse. To restrict the transfer of personal data, please use one of the contact details above.

The official data protection authority in Hungary is the National Authority for Data Protection and Freedom of Information (NAIH). Users can find out more about their data protection rights on the NAIH website.

National Authority for Data Protection and Freedom of Information (NAIH)

1055 Budapest, Falk Miksa utca 9-11., Postal address,

Phone: 06-1-391-1400,

Fax: 06-1-391-1410,

E-mail: ugyfelszolgalat@naih.hu

Website: http://www.naih.hu

7, ANONYMISED DATA AND "COOKIES"

On www.canvassi.art , in e-mail messages and advertisements, you can use so-called. "cookies" and similar technologies such as tracking codes, re-marketing tags, pixels, which are triggered after the user's consent.

These technologies help us to better understand users' behaviour and interests, thus helping us to operate more efficiently and effectively.

Our aim is to make www.canvassi.art as user-friendly and personal as possible. If the user wishes to opt-out of the collection of non-personal data by these technologies, they can do so in the following ways:

- you can disable the loading of cookies by using the cookie warnings on the website

- by disabling the "cookies" in the browser

INFORMATION ON THE USE OF COOKIES

What is a cookie?

The Data Controller uses so-called cookies when you visit the website. A cookie is a set of letters and numbers that our website sends to your browser to save certain settings, facilitate the use of our website and help us to collect some relevant statistical information about our visitors.

Some of the cookies do not contain any personal information and cannot be used to identify the individual user, but some of them contain a unique identifier - a secret, randomly generated sequence of numbers - that is stored on your device, thus ensuring your identification. The duration of each cookie is described in the relevant description of each cookie.

Legal background and legal basis for cookies:

The legal basis for processing is your consent pursuant to Article 6(1)(a) of the GDPR Regulation.

Main features of the cookies used by the website:

Strictly necessary cookies: these cookies are essential for the use of the website and allow you to use its essential functions. Without them, many of the site's features will not be available to you. The lifetime of these types of cookies is limited to the duration of the session.

    - *_shopify_fs*: Tracks the first visit to the website.
    - *_shopify_s*: Tracks the session start.
    - *_shopify_y*: Tracks the session end.
    - *_orig_referrer*: Stores the referrer to the site.
    - *_secure_session_id*: Stores session information for secure transactions.

Google Analytics cookie: Google Analytics is Google's analytics tool that helps website and app owners to get a more accurate picture of their visitors' activities. The service may use cookies to collect information and report statistics about website usage without individually identifying visitors to Google. The main cookie used by Google Analytics is the "__ga" cookie. In addition to generating reports from website usage statistics, Google Analytics, together with some of the advertising cookies described above, can also be used to display more relevant ads in Google products (such as Google Search) and across the web.

    - *_ga*: Used by Google Analytics to distinguish users.
    - *_gid*: Used by Google Analytics to distinguish users.
    - *_gat*: Used by Google Analytics to throttle request rate.

Functional cookies: help us to perform certain functionalities, such as sharing Site content on social media platforms, collecting feedback and other third-party services. You can turn off Functional Cookies by changing your settings.

    - *_shopify_sa_t*: Used for Shopify analytics relating to marketing and referrals.
    - *_shopify_sa_p*: Used for Shopify analytics relating to marketing and referrals.
    - *_ab*: Used for A/B testing of new features

Targeting and Advertising Cookies: Targeting and advertising cookies collect information about users to serve them more relevant, targeted ads based on their browsing behaviour. Targeting and advertising cookies may be first-party or third-party cookies. First-party targeting cookies are generated by the web server.

    - *_fbp*: Used by Facebook to deliver a series of advertisement products such as real-time bidding from third-party advertisers.
    - *_s*: Used to track Shopify analytics.
    - *_shopify_d*: Used for Shopify analytics.

Customer and Merchant Cookies:

    - *_shopify_m*: Manages customer privacy preferences.
    - *cart_sig*: Used to store cart information.
    - *cart_ts*: Used to store cart information.
    - *cart_currency*: Tracks currency for shopping.

These cookies help Shopify ensure the smooth functioning of its e-commerce platform, provide insights into how users interact with the site, and deliver targeted advertising. The specific cookies used may vary based on the Shopify store and the integrations enabled by the merchant.

If you do not accept the use of cookies, certain features will not be available to you. For more information on how to delete cookies, please click on the links below:

    Internet Explorer: http://windows.microsoft.com/en-us/internet-explorer/delete-manage-cookies#ie=ie-11

    Firefox: https://support.mozilla.org/en-US/kb/cookies-information-websites-store-on-your-computer

    Mozilla: https://support.mozilla.org

    Safari: https://support.apple.com/kb/ph21411?locale=en_US

    Chrome: https://support.google.com/chrome/answer/95647