Last updated:

1. Introduction

Welcome to Choglannthunis ("we," "our," or "us"). We are committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal information when you visit our website at https://choglannthunis.world or use our services.

This policy is designed to comply with the General Data Protection Regulation (GDPR) (EU) 2016/679, the German Federal Data Protection Act (Bundesdatenschutzgesetz - BDSG), and other applicable data protection laws.

2. Data Controller Information

The data controller responsible for your personal data is:

  • Company Name: Choglannthunis
  • Address: 50 Schildergasse, 50667 Cologne, Germany
  • Email: response@choglannthunis.world
  • Website: https://choglannthunis.world

For any questions regarding this Privacy Policy or your personal data, please contact us using the information provided above.

3. Personal Data We Collect

We may collect and process the following categories of personal data:

3.1 Information You Provide Directly

  • Contact Information: Name, email address, phone number (optional)
  • Order Information: Details provided when placing an order, including delivery address
  • Communication Data: Messages, inquiries, and correspondence with our customer service
  • Consent Records: Records of consents you have given

3.2 Information Collected Automatically

  • Technical Data: IP address, browser type and version, operating system, device type
  • Usage Data: Pages visited, time spent on pages, click patterns, referring website
  • Cookie Data: Information collected through cookies and similar technologies (see our Cookie Policy)

4. Legal Basis for Processing

We process your personal data based on the following legal grounds under Article 6 of the GDPR:

  • Consent (Art. 6(1)(a) GDPR): Where you have given explicit consent for specific processing activities, such as marketing communications or optional cookies
  • Contract Performance (Art. 6(1)(b) GDPR): Processing necessary to fulfill our contractual obligations to you, such as processing orders
  • Legal Obligation (Art. 6(1)(c) GDPR): Processing required to comply with legal obligations, such as tax and accounting requirements
  • Legitimate Interests (Art. 6(1)(f) GDPR): Processing necessary for our legitimate interests, such as improving our services and ensuring security, provided these interests do not override your rights

5. Purposes of Data Processing

We use your personal data for the following purposes:

  • Processing and fulfilling your orders
  • Communicating with you about your orders and inquiries
  • Providing customer support and responding to your requests
  • Sending order confirmations and shipping notifications
  • Improving our website, products, and services
  • Analyzing website usage and performance
  • Ensuring the security of our website and preventing fraud
  • Complying with legal and regulatory requirements
  • Sending marketing communications (only with your consent)

6. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including:

  • Order Data: Retained for 10 years after the transaction to comply with German commercial and tax law requirements (HGB, AO)
  • Communication Records: Retained for 3 years after the last interaction
  • Marketing Consent Records: Retained for as long as the consent is valid, plus 3 years
  • Website Analytics Data: Retained for up to 26 months
  • Cookie Preference Data: Retained for 12 months

After the retention period expires, your data will be securely deleted or anonymized.

7. Your Rights Under GDPR

Under the GDPR, you have the following rights regarding your personal data:

  • Right of Access (Art. 15 GDPR): You have the right to obtain confirmation of whether we process your personal data and to receive a copy of that data
  • Right to Rectification (Art. 16 GDPR): You have the right to request correction of inaccurate personal data
  • Right to Erasure (Art. 17 GDPR): You have the right to request deletion of your personal data under certain circumstances ("right to be forgotten")
  • Right to Restriction (Art. 18 GDPR): You have the right to request restriction of processing under certain circumstances
  • Right to Data Portability (Art. 20 GDPR): You have the right to receive your personal data in a structured, commonly used, machine-readable format
  • Right to Object (Art. 21 GDPR): You have the right to object to processing based on legitimate interests or for direct marketing purposes
  • Right to Withdraw Consent (Art. 7(3) GDPR): Where processing is based on consent, you have the right to withdraw consent at any time without affecting the lawfulness of prior processing

To exercise any of these rights, please contact us at response@choglannthunis.world. We will respond to your request within one month as required by GDPR.

8. Data Security

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • SSL/TLS encryption for all data transmitted via our website
  • Secure storage of personal data with access controls
  • Regular security assessments and updates
  • Employee training on data protection and confidentiality
  • Pseudonymization and encryption where appropriate

9. Data Sharing and Third Parties

We may share your personal data with the following categories of recipients:

  • Service Providers: Companies that provide services on our behalf, such as payment processing, shipping, and hosting
  • Professional Advisors: Lawyers, accountants, and auditors as necessary
  • Regulatory Authorities: When required by law or legal process

All third-party service providers are bound by data processing agreements and are required to process your data in compliance with GDPR and applicable data protection laws.

10. International Data Transfers

Your personal data may be transferred to and processed in countries outside the European Economic Area (EEA). When we transfer data internationally, we ensure appropriate safeguards are in place, such as:

  • Adequacy decisions by the European Commission
  • Standard Contractual Clauses approved by the European Commission
  • Other legally approved transfer mechanisms

11. Automated Decision-Making

We do not use automated decision-making or profiling that produces legal effects or similarly significantly affects you.

12. Right to Lodge a Complaint

If you believe that our processing of your personal data violates data protection laws, you have the right to lodge a complaint with a supervisory authority. In Germany, you may contact:

  • Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen (LDI NRW)
  • Kavalleriestraße 2-4, 40213 Düsseldorf, Germany
  • Website: www.ldi.nrw.de

13. Children's Privacy

Our website and services are not directed at children under the age of 16. We do not knowingly collect personal data from children. If you believe we have collected data from a child, please contact us immediately.

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will post the updated policy on this page with a new "Last updated" date. We encourage you to review this policy periodically.

15. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data protection practices, please contact us:

  • Email: response@choglannthunis.world
  • Address: 50 Schildergasse, 50667 Cologne, Germany

We are committed to resolving any concerns you may have about our data processing practices.