Datenschutzerklärung

Privacy Policy

1. This document (hereinafter referred to as the Privacy Policy) outlines the principles of storing, collecting, processing, and protecting the personal data of customers of the online store www.qualash.com, as well as the rules for the use of cookies by the online store.

2. The personal data of the online store's customers are protected to the extent and in the manner specified in Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, repealing Directive 95/46/EC (General Data Protection Regulation, hereinafter referred to as GDPR).

3. The Administrator selects and applies appropriate technical and organizational measures with due care to ensure the protection of processed data. Your data is protected against unauthorized access and against processing that violates applicable laws.

4. In compliance with the information obligation under Article 13 of the GDPR, we inform you of the following data processing rules:

1. Personal Data Administrator

The Administrator of your personal data is Quacosmetics Sp. z o.o., with its registered office in Warsaw, entered into the Register of Entrepreneurs maintained by the District Court for the capital city of Warsaw in Warsaw, 13th Commercial Division of the National Court Register under KRS number 0001136660, REGON 540149184, NIP 5214093556.

You can contact the Administrator in the following ways:

  • by post: ul. Domaniewska 37/2.43, 02-672 Warsaw
  • by email: office@qualash.com

2. Data Protection Officer

We have/have not appointed a Data Protection Officer. This is the person you can contact in all matters regarding the processing of personal data and the exercise of rights related to data processing.

You can contact the Data Protection Officer via email: office@qualash.com

3. Purposes and Legal Basis for Data Processing

The Administrator will process your personal data for the following purposes:

    • execution of the concluded sales contract (handling your order, delivering the goods, informing you of the order status, modifying it, issuing accounting documents, handling complaints, etc.),
    • potential establishment and pursuit of claims related to contract performance or defense against such claims, including the conduct of any proceedings related to those claims,
    • responding to inquiries.

The Administrator will also process your personal data for the following purposes:

      • to fulfill obligations arising from generally applicable laws, in particular tax regulations,
      • to provide electronic services, especially the service of setting up and maintaining a user account (if you choose to create one),
      • you may also give consent for your data to be processed for marketing purposes, specifically to receive promotional offers and commercial information via electronic means in the form of a newsletter sent to the email address you provided,
      • to express opinions about products purchased in the online store.

The legal basis for processing your personal data is:

      • necessity for the performance of a sales contract concluded with us and for managing the user account (Article 6(1)(b) GDPR),
      • compliance with legal obligations incumbent on the Administrator, such as fulfilling tax law requirements (Article 6(1)(c) GDPR),
      • your consent to the processing of data for the purpose of receiving the newsletter (commercial and marketing information) and providing product reviews (Article 6(1)(a) GDPR),
      • our legitimate interest (Article 6(1)(f) GDPR). We have a legitimate interest, for example, in preventing fraud, defending against claims, ensuring network and information security, and marketing in the form of contextual advertising.

We cannot process your data on the basis of legitimate interest if your rights and freedoms override our interest.

4. Categories of Your Data That We Process

Depending on the scope of services provided electronically and the terms of the sales contract, we may process the following personal data:

      • first and last name,
      • residential address (and/or delivery address if different),
      • email address,
      • phone number,
      • user account login and password,
      • business name (for entrepreneurs),
      • tax identification number (NIP), if necessary for issuing a VAT invoice.

5. Data Retention Period

We will retain your personal data until the expiration of any potential claims resulting from the concluded sales agreement, including those arising from warranty or guarantee obligations.

Data processed based on your consent to receive the newsletter will be stored until you object to its processing for this purpose or withdraw your consent.

6. Data Recipients

Your personal data may be shared with:

      • courier companies in order to deliver the goods you have ordered,
      • payment system operators, i.e. PayPal, ShopPay, Stripe,
      • other entities, if necessary for fulfilling your order (e.g. intermediaries in order processing),
      • accounting firms for accounting purposes and contract settlements (e.g. data included in issued VAT invoices),
      • law firms if necessary to protect or pursue our legal claims,
      • companies providing hosting services on our behalf.

Such entities process data based on a contract concluded with us and only in accordance with our instructions.

7. Transfer of Data to Third Countries or International Organizations

Your personal data will not be transferred to third countries or international organizations.

8. Your Rights Related to the Processing of Personal Data

You have the following rights in relation to the processing of your personal data:

      • the right to access your personal data and receive a copy of it,
      • the right to request rectification (correction) of your personal data,
      • the right to request deletion of your personal data,
      • the right to request restriction of the processing of your personal data,
      • the right to object to the processing of your data due to your particular situation (in cases where the processing is based on the Administrator’s legitimate interest),
      • the right to data portability.

You also have the right to lodge a complaint with the supervisory authority, which in Poland is the President of the Personal Data Protection Office (UODO).

Right to Withdraw Consent

If your personal data is processed based on your consent (e.g., for receiving our newsletter), you have the right to withdraw your consent at any time. Withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal. You can withdraw your consent by sending a statement to our mailing address or by email, as indicated in section 1.

9. Information on the Requirement/Voluntary Nature of Providing Data

Providing your data is a condition for concluding a sales contract. It is voluntary but necessary to make purchases in our store or to create a user account.

If you do not provide your data, we may refuse to conclude the sales contract.

Providing data and consenting to the processing of personal data for marketing purposes is entirely voluntary.

10. Information About Automated Decision-Making

The Administrator may, in order to tailor advertisements and offers of the online store to your preferences, analyze your shopping behavior. These actions may be carried out automatically by the system, enabling the presentation of content that is up-to-date and personalized.

Cookies and Access to Personal Data

The store automatically collects only the information contained in cookies. The way we use cookies is described in sections 6–10 of this Privacy Policy.

5. Right to Access and Correct Your Personal Data

If you have created a user account, you can access and update your personal data through the User Account available after logging in. If you do not have an account, you may exercise your rights by contacting us using the information provided in section 4.1 of this Privacy Policy.

6. Cookie Usage

The online store automatically collects information contained in cookies, which are small data files (mainly text files) stored in the memory of your end device (e.g., computer, tablet, smartphone). These files include the name of the website, the storage duration on your device, and a unique identifier.

7. Cookies are used for the following purposes:

      • customizing the content of the Store's pages to match your preferences — this allows us to recognize your device and adjust the website layout accordingly,
      • remembering your session information and maintaining it,
      • generating statistics to help us understand how users interact with the Store, enabling us to improve its functionality,
      • delivering advertising content that is better tailored to your interests.

8. Types of Cookies Used

The online store uses both persistent cookies — stored on your end device for a specific period defined in their parameters (until deleted), and session cookies — temporary cookies stored only until you log out, leave the store's website, or close your browser.

Within the online store, we may use cookies that:

      • enable the use of services available within the Store,
      • enhance security,
      • collect information on how users interact with the Store,
      • remember user-selected Store settings,
      • deliver advertising content tailored to user interests.

9. Browser Settings

By default, web browser software allows cookies to be stored on your end device. You can change these settings at any time (e.g., to delete cookies or block their future use) using your browser’s settings panel.

10. Consequences of Changing Cookie Settings

Changing your browser’s cookie settings may cause difficulties in using some functions available through the online store.