1) Information on the collection of personal data and contact details of the controller
1.1 We are pleased that you are visiting our website and thank you for your interest. In the following, we will inform you about how we handle your personal data when you use our website. Personal data is all data with which you can be personally identified.
1.2 The controller in charge of data processing on this website, within the meaning of the General Data Protection Regulation (GDPR). Email: hello@myfeettoy.com
1.3 For security reasons and to protect the transmission of personal data and other confidential content (e.g. orders or inquiries to the controller), this website uses SSL or TLS encryption.
2) Data collection when visiting our website
When you use our website for information purposes only (without registering, subscribing to the newsletter or placing an order), we only collect the data that your browser transmits to our server (so-called “server log files”):
- Our visited website
- Date and time of access
- Amount of data sent in bytes
- Source/reference from which you reached the page
- Browser used, operating system and IP address (if applicable: in anonymized form)
Processing is carried out in accordance with Art. 6 para. 1 sentence 1 lit. f GDPR on the basis of our legitimate interest in improving the stability and functionality of our website. The data will not be passed on or used in any other way. However, we reserve the right to check the server log files retrospectively if there are concrete indications of unlawful use.
3) Hosting
3.1 This website is hosted on servers managed by our hosting provider. Personal data collected on this website is processed on these servers. This includes IP addresses, browser type, operating system, pages accessed, and the date and time of access.
The processing is carried out on the basis of Art. 6 para. 1 lit. f GDPR, reflecting our legitimate interest in providing a stable and secure website.
4) Cookies
We use cookies to make our website more user-friendly, effective and secure. Cookies are small text files that are stored on your device and saved by your browser.
4.1 Necessary cookies
Some cookies ensure that our website works properly, such as recognizing your shopping cart or keeping you logged in (“necessary” cookies). These are placed based on Art. 6 para. 1 sentence 1 lit. f GDPR due to our legitimate interest in a technically functional website.
4.2 Advanced cookies
We only set non-essential cookies with your consent. When you visit our website for the first time, a pop-up will appear with an explanation about cookies. As soon as you click on the corresponding consent button, you agree that we may use the selected cookies described in the pop-up and in this privacy policy.
You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general, and activate the automatic deletion of cookies when closing the browser. Please note that the functionality of this website may be restricted if cookies are deactivated.
The processing of personal data when using advanced cookies is based on your consent (legal basis: Art. 6 para. 1 sentence 1 lit. a GDPR).
5) Making contact
Personal data is collected when you contact us (e.g. via contact form or email). This data is stored and used exclusively for the purpose of responding to your request or for contacting you and the associated technical administration.
If your contact is aimed at the conclusion of a contract, the legal basis for the processing is Art. 6 para. 1 sentence 1 lit. b GDPR. Otherwise, Art. 6 para. 1 sentence 1 lit. f GDPR serves as the legal basis, reflecting our legitimate interest in responding to your inquiries.
6) Data processing when opening a customer account and for contract processing
In accordance with Art. 6 para. 1 sentence 1 lit. b GDPR, personal data will be collected and processed if you provide it to us for the execution of a contract or when opening a customer account. Which data is collected can be seen from the respective input forms. You can delete your customer account at any time by sending a message to hello@myfeettoy.com.
After completion of the contract or deletion of your customer account, your data will be blocked with regard to tax and commercial retention periods and deleted after expiry of these periods, unless you have expressly consented to further use of your data or a legally permitted further use of data has been reserved by us.
7) Use of your data for direct advertising
7.1 Registration for our email newsletter
If you subscribe to our email newsletter, we will send you regular information about our offers. Your email address is mandatory for sending the newsletter. The provision of further data is voluntary and is used to address you personally.
We use the so-called double opt-in procedure for sending the newsletter. After registering, you will receive a confirmation email asking you to confirm that you wish to receive the newsletter in future by clicking on a corresponding link.
By activating the confirmation link, you give us your consent to the use of your personal data in accordance with Art. 6 para. 1 sentence 1 lit. a GDPR. When you register for the newsletter, we store your IP address entered by the Internet service provider (ISP) as well as the date and time of registration in order to be able to trace any possible misuse of your email address at a later date.
You can unsubscribe from the newsletter at any time using the link provided in the newsletter or by sending a message to hello@myfeettoy.com. Once you have unsubscribed, your email address will be deleted from our newsletter distribution list immediately.
7.2 Mailchimp
For sending our newsletter, we use the services of The Rocket Science Group LLC d/b/a Mailchimp, 675 Ponce de Leon Ave NE, Suite 5000, Atlanta, GA 30308, USA (“Mailchimp”).
Mailchimp is a service that enables us to organize and analyze the sending of newsletters. When you subscribe to our newsletter, your data (email address, name if provided) is transferred to Mailchimp and stored on their servers in the USA.
To ensure an adequate level of data protection, Mailchimp is certified under the EU-US Data Privacy Framework. Additionally, we have entered into a data processing agreement with Mailchimp that includes the European Commission’s Standard Contractual Clauses.
Mailchimp uses this data to send and statistically analyze newsletters on our behalf. This analysis may include information such as whether a newsletter was opened and which links were clicked. This data processing is based on your consent under Art. 6 para. 1 sentence 1 lit. a GDPR.
You can withdraw your consent at any time by unsubscribing from the newsletter via the link provided in each email.
For more information about Mailchimp’s data processing, visit: https://mailchimp.com/legal/privacy/
7.3 Sending the email newsletter to existing customers
If you have provided us with your email address when purchasing goods, we reserve the right to regularly send you offers for similar goods from our range by email. We do not need to obtain separate consent from you for this. In this respect, data processing is carried out solely on the basis of our legitimate interest in personalized direct advertising in accordance with Art. 6 para. 1 sentence 1 lit. f GDPR.
You can object to the use of your email address for this advertising purpose at any time by sending a message to hello@myfeettoy.com or using the unsubscribe link in each email.
8) Data processing for order fulfillment
To process your order, we work with service providers who assist us in executing completed contracts. Personal data is transmitted to these service providers in compliance with the GDPR. The legal basis is Art. 6 para. 1 sentence 1 lit. b GDPR.
8.1 Shipping companies
To deliver orders, we collaborate with shipping service providers. The personal data we collect (name and address) is shared with the shipping company responsible for delivery to the extent necessary for delivering the goods.
8.2 Payment service providers
For payment processing, your personal data may be transferred to the financial institution involved, insofar as it is necessary for the transaction.
Stripe: Payments are processed via Stripe Payments Europe, Ltd., 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, D02 H210, Ireland (“Stripe”). Privacy Policy: https://stripe.com/privacy
PayPal: Payments via PayPal are processed by PayPal (Europe) S.à r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (“PayPal”). Privacy Policy: https://www.paypal.com/webapps/mpp/ua/privacy-full
9) Online marketing
9.1 Facebook Pixel
This website uses the “Meta Pixel” from the social network Meta (Meta Platforms Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland).
Based on your explicit consent under Art. 6 para. 1 sentence 1 lit. a GDPR, when you visit our website, the Meta Pixel collects data about your browsing behavior, which is transmitted to Meta for advertising purposes. This allows us to display targeted advertisements to you on Facebook and Instagram and to measure the effectiveness of our campaigns.
Personal data may be transmitted to Meta Platforms Inc. servers in the USA. To ensure an adequate level of data protection, Meta is certified under the EU-US Data Privacy Framework and has implemented Standard Contractual Clauses.
You can revoke your consent at any time by disabling Meta Pixel tracking in your cookie settings.
For more information: https://www.facebook.com/about/privacy/
9.2 TikTok Pixel
This website uses the “TikTok Pixel” from the social network TikTok (TikTok Technology Limited, 10 Earlsfort Terrace, Dublin, D02 T380, Ireland).
Based on your explicit consent under Art. 6 para. 1 sentence 1 lit. a GDPR, the TikTok Pixel collects data about your browsing behavior on our website, which is transmitted to TikTok for advertising purposes.
To ensure an adequate level of data protection, TikTok has implemented Standard Contractual Clauses.
You can revoke your consent at any time by disabling TikTok Pixel tracking in your cookie settings.
For more information: https://www.tiktok.com/legal/privacy-policy-eea
10) Web analytics services
Google Analytics
This website uses Google Analytics, a web analytics service provided by Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland (“Google”). Google Analytics uses cookies to analyze your use of this website.
This website uses Google Analytics with IP anonymization. Your IP address is shortened by Google within member states of the European Union or the European Economic Area before being transmitted. Only in exceptional cases is the full IP address transmitted to a server of Google LLC in the USA and truncated there.
To ensure an adequate level of data protection, Google is certified under the EU-US Data Privacy Framework and has implemented Standard Contractual Clauses.
The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.
Data processing is based on your consent under Art. 6 para. 1 sentence 1 lit. a GDPR.
You can prevent the collection of data by Google Analytics by downloading and installing the browser plugin available at: https://tools.google.com/dlpage/gaoptout
For more information: https://policies.google.com/privacy
11) Age restriction
This website and its products are intended exclusively for persons aged 18 and over. We do not knowingly collect personal data from minors. If we become aware that personal data has been collected from a person under 18, we will delete this data immediately.
12) Discretion and data security
We take the protection of your personal data very seriously. All orders are processed and shipped in plain, unmarked packaging with no reference to Feettoy or the nature of the products. Bank statement labels are neutral and discreet.
We use appropriate technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction, or unauthorized access by third parties.
13) Data subject rights
Under applicable data protection law, you have the following rights:
- Right of access (Art. 15 GDPR): You have the right to request information about your personal data processed by us.
- Right to rectification (Art. 16 GDPR): You have the right to request the immediate correction of incorrect data and/or the completion of incomplete data.
- Right to erasure (Art. 17 GDPR): You can request the deletion of your personal data under the conditions of Art. 17 GDPR.
- Right to restriction of processing (Art. 18 GDPR): You have the right to request restriction of processing under certain circumstances.
- Right to data portability (Art. 20 GDPR): You can request your personal data in a structured, commonly used, and machine-readable format or request its transfer to another controller.
- Right to withdraw consent (Art. 7(3) GDPR): You can revoke your consent to data processing at any time with future effect.
- Right to object (Art. 21 GDPR): If we process your personal data based on legitimate interests, you have the right to object at any time for reasons arising from your particular situation. If your personal data is processed for direct marketing purposes, you have the right to object at any time, and we will stop processing your data for these purposes immediately.
- Right to lodge a complaint (Art. 77 GDPR): You have the right to lodge a complaint with a supervisory authority. In France, the competent authority is the CNIL (Commission Nationale de l’Informatique et des Libertés), 3 Place de Fontenoy, TSA 80715, 75334 Paris Cedex 07. Website: https://www.cnil.fr
To exercise any of these rights, contact us at: hello@myfeettoy.com
14) Duration of storage of personal data
The duration of storage depends on the applicable legal basis, the processing purpose, and any statutory retention periods.
- Data processed based on your consent will be stored until you withdraw your consent.
- Data processed for contractual obligations will be deleted once statutory retention periods expire.
- Data processed based on legitimate interests will be stored until you exercise your right to object, unless compelling legitimate grounds exist.
- Data processed for direct marketing purposes will be stored until you exercise your right to object.
All personal data will otherwise be deleted when it is no longer necessary for the purposes for which it was collected.
