General Data Protection Regulation

Villa Bellissima D.O.O.
Krčka ul. 53A
51512 Njivice
Croatia

The protection of your personal data is of particular concern to us. We therefore process your data exclusively on the basis of the statutory provisions (GDPR, TKG 2003). In this data protection information, we inform you about the most important aspects of data processing on our website.

Controller

Villa Bellissima GmbH, based in Burggasse 120, 1070 Vienna, is responsible for data processing. You can reach us by telephone at +43 660 3280202, by e-mail at info@villa-bellissima.com or by post at Burggasse 120, 1070 Vienna

Data security

We take appropriate precautions to protect your personal data in accordance with Art 32 GDPR. These relate in particular to protection against unauthorised, unlawful or accidental access, processing, loss, use and manipulation.

Website
Personal data, purpose of data processing and legal basis

Personal data is information that can be clearly assigned to a person. This includes information such as full name, address, e-mail address and telephone number. When you visit our website, further data is automatically collected for technical reasons (IP address, start and end of the session, date and time of the enquiry, sub-page visited on our website, type and version of browser, operating system, referrer URL). This technical information may be personal data in individual cases. As a rule, we only use this technical information if this is necessary (for technical reasons) for the operation and protection of our website against attacks and misuse as well as pseudonymised or anonymised for statistical purposes.

The following data is also stored by us for the purpose of contract processing: first name, surname, address, email address, telephone number, company name, VAT number. The data provided by you is required for the fulfilment of the contract or for the implementation of pre-contractual measures and for proper invoicing. We cannot conclude the contract with you without this data.

If you contact us via the enquiry form on the website or by e-mail, the data you provide (first name, surname, address, telephone number, e-mail address) will be stored by us for six months for the purpose of processing the enquiry and in the event of follow-up questions. We will not pass on this data without your consent. Your personal data may also be processed for specific purposes (e.g. use of your e-mail address for newsletters, advertising) on the basis of your consent. You can revoke your consent at any time with effect for the future. This also applies to the revocation of declarations of consent that were given to us before the GDPR came into force. You will be informed separately about the purposes and consequences of revoking or not granting consent in the corresponding text of the consent.

We may process your data (first name, surname, address, telephone number, email address) for the fulfilment of contracts or pre-contractual measures and beyond if it is necessary to protect our legitimate interests or those of third parties, in particular for the following purposes:

  • Answering enquiries
  • Technical administration
  • Advertising or market and opinion research, provided you have not objected to the use of your data
  • Testing and optimisation of procedures for needs analysis
  • the further development of services and products as well as existing systems and processes
  • Statistical evaluations or market analyses
  • the assertion of legal claims & defence in legal disputes that are not directly attributable to the contractual relationship
  • the prevention and investigation of criminal offences, unless exclusively for the fulfilment of legal requirements

We would like to point out that for the purpose of simplifying the shopping process and for subsequent contract processing, the webshop operator stores the IP data of the connection owner as part of cookies, as well as the name, address and credit card number of the buyer.

The legal bases for data processing are

  • Contract initiation and fulfilment in accordance with Art 6 para 1 lit b GDPR
  • Your consent, if any, pursuant to Art. 6 (1) (a) GDPR
  • legitimate interest pursuant to Art 6 para 1 lit f GDPR

Storage period
The stored personal data will be deleted if you as a user of our website and/or customer revoke your consent to storage, if your data is no longer required to fulfil the purpose for which it was stored and after expiry of the statutory retention obligations or after expiry of the duration of any ongoing legal disputes or if your storage is or becomes inadmissible for other legal reasons.

After cancellation of a purchase process, the data stored by us will be deleted. If a contract is concluded, all data from the contractual relationship will be stored until the expiry of the retention period under tax law (7 years).

The data name, address, purchased goods and date of purchase are stored until the expiry of product liability (10 years). Data processing is carried out on the basis of the legal provisions of § 96 para. 3 TKG and Art. 6 para. 1 lit a (consent) and/or lit b (necessary for contract fulfilment) of the GDPR.

Disclosure of data / recipients or categories of recipients
Your data will only be passed on to external bodies in connection with the processing of the contract, for the purpose of fulfilling legal requirements according to which we are obliged to provide information, report or pass on data or if the passing on of data is in the public interest or you have given your prior consent. You have the right to withdraw your consent at any time with effect for the future.

We pass on or transmit personal data to the third parties listed below:

  • Various service providers or partner companies that support us in processing orders, providing customers with information, advertising and providing services, IT service providers and technical processors (processors pursuant to Art. 28 GDPR). These companies are obliged to comply with all data protection regulations. Strict data protection regulations apply to commissioned data processing; in particular, these companies may only use the data to fulfil their tasks on our behalf. We are responsible for compliance with data protection regulations by these companies and have concluded corresponding order processing agreements with the service providers
  • Transmission of the credit card data to the processing banking institutions / payment service providers for the purpose of debiting the purchase price

  • to the transport company/shipping company commissioned by us to deliver the goods and

  • to our tax advisor for the fulfilment of our tax obligations

Cookies
Our website uses so-called cookies. We use cookies to make our website more user-friendly. These are small text files that are stored on your end device with the help of the browser. They do not cause any damage. If you call up the corresponding server of our website again, your browser sends the previously received cookie back to the server. The server can then analyse the information obtained through this procedure in various ways. Cookies can be used, for example, to control the display of adverts or make it easier to navigate a website.

If you wish to prevent the use of cookies, you can do so by making local changes to your settings in the Internet browser used on your computer (e.g. Internet Explorer, Mozilla Firefox, Safari, etc.). You can set up your browser so that it informs you about the setting of cookies and you only allow this in individual cases. Deactivating cookies may restrict the functionality of our website.

Web analysis with Google Analytics
Our website uses functions of the web analysis service Google Analytics, a web analysis service of Google LLC ("Google"), Amphitheatre Parkway, Mountain View, CA 94043, USA. The data collected is also processed outside the EU. Cookies are used to analyse the use of the website by its users. The information generated in this way is transferred to the provider's server and stored there.

You can prevent this by configuring your browser so that no cookies are stored.

However, if IP anonymisation is activated via your browser, your IP address will first be truncated by Google within member states of the European Union or in other signatory states to the Agreement on the European Economic Area. This means that only a rough localisation is possible.

The relationship with the web analytics provider is based on the standard contractual clauses of the EU under the Privacy Shield Agreement. Further information: Google Privacy Policy & Terms of Use.

Data processing is carried out on the basis of the legal provisions of § 96 para. 3 TKG and Art. 6 para. 1 lit a (consent) and/or lit f (legitimate interest) of the GDPR.

Our concern within the meaning of the GDPR (legitimate interest) is the improvement of our offer and our website. As the privacy of our users is important to us, the user data is pseudonymised.

Your rights
In principle, you have the rights to information, rectification, erasure, restriction, data portability, cancellation and objection.

If you believe that the processing of your data violates data protection law or your data protection claims have otherwise been violated in any way, you can complain to us at info@villa-bellissima.com or the data protection authority.

Sveti Anton 58A
51511 Sveti Anton (Krk),
Croatia