WE NOW DELIVER TO SLOVAKIA
Personal data protection principles
Privacy Policy (GDPR)
Bohemian Cosmetics sro
with registered office: Koželužská 3034/1, 301 00 Pilsen
Company ID: 22509984, registered at the Regional Court in Pilsen, file number C 46244
E-shop: www.bohemiancosmetics.cz
Email: info@bohemiancosmetics.cz
We process certain personal data for the purposes of selling goods and operating our website. The processing of personal data is governed by Regulation (EU) 2016/679 (GDPR) and related legal regulations.
I. What data do we process and why?
A) Inquiries and contact forms
What data: name, surname, e-mail, telephone number, or address and content of the message.
Why: so that we can contact you and handle your inquiry/request.
Legal basis: pre-contractual negotiations (Article 6(1)(b) GDPR) or our legitimate interest in handling the inquiry (Article 6(1)(f)).
Processing time: for the duration of communication and max. 12 months from the last interaction.
B) Purchase and delivery of goods
What data: identification and contact information (name, surname, address, e-mail, telephone number), order and payment information, or complaints.
Why: to conclude and fulfill the purchase contract, deliver the goods and keep accounting records.
Legal basis: performance of a contract (Article 6(1)(b)) and legal obligation (accounting, taxes – Article 6(1)(c)).
Processing period: for the duration of the contract and subsequently for the period required by law (usually 10 years from the end of the accounting period).
C) Newsletters and commercial communications
What data: e-mail (or name).
Why: sending news, events and product tips.
Legal basis:
-
for " soft opt-in " customers pursuant to Section 7, Paragraph 3 of Act No. 480/2004 Coll., if the mailing was not refused during the purchase,
-
otherwise consent (Article 6(1)(a)).
Processing time: until unsubscribe/withdrawal of consent, no longer than 3 years from the last interaction. You can unsubscribe at any time in the email footer.
II. Who has access to the data (recipients)
Personal data is processed by us and by entities authorized by us (processors) who help us operate the e-shop and services:
-
E-shop platform: Shopify (Shopify International Ltd./Shopify Inc.)
-
Webhosting/DNS: Forpsi (INTERNET CZ, as)
-
E-mail marketing: Ecomail.cz, s.r.o
-
Payment gateway: Comgate as
-
Logistics/expedition: Servant as (fulfilment), Zásilkovna sro, DPD Czech Republic sro
-
Marketing and analytics: Google (Analytics/Ads), Meta (Facebook/Instagram), Seznam.cz (Sklik), Heureka.cz (customer verified/comparison tool)
Processors process data only according to our instructions and in accordance with the GDPR.
Transfers outside the EU/EEA: Some partners (e.g. Shopify, Google, Meta) may transfer data to third countries. In such cases, appropriate security measures are in place in accordance with the GDPR (in particular EU standard contractual clauses and supplementary measures).
III. Other important information
-
Data Protection Officer (DPO): we do not have one appointed.
-
Automated decision-making/profiling: we do not make decisions with legal effects; advertising personalization may be based on cookies/consent (see below).
-
Contact: please direct questions about personal data protection to info@bohemiancosmetics.cz .
IV. Cookies
Cookies are small files stored on your device. They help ensure website functionality, measure traffic, and personalize content/advertising.
Types of cookies we use
-
Essential – required for website operation (login, shopping cart, security). They cannot be turned off.
-
Analytical/statistical – measures website performance and visitor behavior (Google Analytics). Consent only.
-
Marketing – personalization and advertising measurement (Meta, Google Ads, Seznam, Heureka). Only based on consent .
You can consent to optional cookies in the cookie bar ; you can change/reject it there at any time. You can also adjust the settings in your browser:
-
Firefox: https://support.mozilla.org/cs/kb/allow-zakazani-cookies
-
Safari: https://support.apple.com/cs-cz/guide/safari/sfri11471/mac
-
Opera: https://help.opera.com/cs/latest/security-and-privacy/
Third parties using cookies: Google, Meta (Facebook/Instagram), Heureka, Seznam.cz.
You can find the current list and settings in the cookie bar of our website.
V. Your rights under GDPR
You have the right to request: access to data, rectification or erasure , restriction of processing, data portability , and to object to processing (in particular processing based on legitimate interest or for direct marketing). Consent can be withdrawn at any time without affecting the lawfulness of its withdrawal.
If you believe that the processing is not correct, you can file a complaint with the Office for Personal Data Protection ( www.uoou.cz). ) or go to court.
VI. Security and storage
We protect data with technical and organizational measures (encryption of transmission, access control, backups). We only retain it for the time necessary for the purpose and legal requirements (see Part I).
Effective: from 3. 11. 2025
We may update this document – the current version is always available on our website.