Privacy Policy

Privacy Policy

This privacy policy informs you about the processing of personal data.

Updated December 12, 2024

Data Controller

FabPatch Ltd. (Business ID: 2934831-8)
Address: Kirkkokatu 17 B 15, 90100 Oulu, Finland
Contact: info@fabpatch.com

Collection, Purpose, and Legal Basis of Data Processing

We collect personal data directly from individuals during orders, contracts, or collaborations, as well as partially through analytics during the use of our online store. The basis for processing such data includes contracts related to orders or collaborations and, where applicable, legitimate interest arising from customer relationships or collaborations, such as customer communication or marketing. When necessary, we obtain separate consent for processing, such as for cookies. Another basis for processing is compliance with legal obligations.

Personal data may also be processed for conducting surveys and competitions. In such cases, the purpose of processing is to enable participation in the survey, contact the potential winner, and deliver the prize. This type of processing is based on the consent of the data subject.

We use the data to serve our customers, facilitate customer service and communications, and support marketing efforts, collaborations, product development, operational improvements, and participation in surveys and competitions* in ways informed in advance. If we collect your personal data for other purposes, we will seek your consent in advance, if required, and provide information about the processing and its basis at the same time.

What Data Do We Collect?
  • Name, address, email address, and phone number
  • Order, payment, and delivery information
  • Business details and job titles for corporate customers and partners
  • Communication history (e.g., customer inquiries)
  • Consent to receive marketing communications (if applicable)
  • Case-specific survey and competition responses* (excluding sensitive information)
  • For the winner of a draw, the delivery address for the prize
  • Survey and competition responses (if applicable)*
  • Online store usage and browsing data, along with device identification data, per our cookie policy**
Data Recipients

We use trusted contractual partners who comply with the requirements set by the EU General Data Protection Regulation (GDPR) and other applicable legislation in their operations. If data is transferred or disclosed, we apply the measures required by the applicable laws. For such transfers or disclosures, agreements are made following the standard contractual clauses adopted by the European Commission, along with other necessary conditions, or the transfer is based on another lawful basis, such as establishing, exercising, or defending legal claims.

Your contact information is used to deliver orders and related communications. We employ external service providers for payment processing. Various applications are used to provide additional e-commerce services, for instance, in our marketing through social media channels. Digital marketing is conducted utilizing cookies, among other tools**.

Some systems are locally installed, with access limited to our internal staff. Others are cloud-based, requiring us to transfer personal data to the respective service provider. In such cases, the service provider or IT supplier acts as a data processor, handling the information on our behalf and according to our instructions. In certain instances, we may be legally required to disclose personal data, such as in criminal investigations or legal proceedings upon the request of authorities. Additionally, data may be transferred or disclosed as part of corporate reorganizations or business acquisitions.

Personal data will not be disclosed to third parties without the explicit consent of the data subject, except when required by law. Personal data will not be transferred outside the EU or EEA.

Exercising Rights and Data Deletion

Under applicable law, you have the right to:

  • Access and obtain information about your personal data
  • Rectify your data
  • Delete your data ("right to be forgotten")
  • Restrict data processing
  • Transfer your data
  • Object to data processing
  • Avoid automated decision-making

To exercise these rights, contact us at info@fabpatch.com. Note that limitations may apply; for example, we may retain data to meet statutory obligations. You can always object to your data being used for direct marketing purposes. We will promptly correct or delete outdated, incorrect, or unnecessary data upon request unless we are legally required to retain it.

Complaints

If you believe your data is not processed in compliance with GDPR or other relevant laws and we cannot resolve the issue, you may file a complaint with a supervisory authority in the EU. In Finland, contact the Office of the Data Protection Ombudsman at tietosuoja@om.fi.

The data subject may also file a complaint regarding surveys and prize draws with the Data Protection Ombudsman if they believe that personal data has been processed in violation of data protection regulations.

Data Retention

In our customer management system, your customer data is retained by default for five (5) years from the last time you were active. Activity is defined in the system as one of the following actions: making a purchase in the online store, logging into your account, communicating with us, or subscribing to the newsletter. Personal data provided in the My Account section of our online store is retained as long as your user account is active. If you subscribe to our newsletter, your contact information is stored for as long as you wish to receive the newsletter.

Customer service data is processed for the time required to resolve the issue and as long as either party may present legal claims against the other. Contact information for marketing and campaign-specific competitions is typically deleted once the winner has been contacted, and the prize has been delivered. Data related to cooperation agreements is retained as long as the collaboration continues under the agreement, the parties may present claims based on the agreement, and there is a legal or regulatory obligation to retain the data. Additional details are available in our [Cookie Policy]**.

For surveys and prize draws, personal data is retained only as long as necessary to conduct the survey or draw and to deliver the prize. After this, the data is deleted.

Data Protection Principles

We use administrative, organizational, technical, and physical safeguards to protect the personal data we collect and process. These measures include, where necessary, encryption, firewalls, secure facilities, and access control systems. Our security measures are designed to maintain the appropriate confidentiality, integrity, availability, resilience, and recoverability of data. We regularly test our services, systems, and other assets. Furthermore, employee access to personal data is restricted, and access and processing are granted only when necessary to perform their duties.

Policy Changes

As a result of service development and changes in legislation, we may need to update our privacy policy. Registered customers will be informed of significant changes to the privacy policy when the terms are updated.

*Survey and Competition Responses

The purpose of surveys and competitions (e.g., applications for test groups, surveys related to product and service development, and responses to raffles) is to gather information to support customer service, product development, and marketing. Respondents' contact information is requested only if the customer wishes to be contacted or if the contact information is needed, for example, to deliver a prize or arrange participation in a test group. Contact information is retained only for a limited time, up to one year after the survey or competition ends. Responses may be used for research, product development, training, and marketing purposes only in a way that does not allow the respondent to be identified unless the individual has explicitly given permission for the information to be published.

**Cookies

Our website uses cookies. By clicking the "Accept Cookies" button, you consent to the use of cookies. Cookies make using our website easy, fast, and user-friendly. Cookies are categorized into subgroups: functional cookies, product development and business reporting, advertising reporting, and targeted advertising.

Some third-party tools or plugins essential for the service's functionality are also used. Examples include social media or video service embeds on the website or social media sharing and like functionalities. Such third-party plugins may also collect information about users of the web services, for instance, to recommend content or monitor visitor traffic. You can choose to block cookies in your browser settings, delete stored cookies, or request notifications from your browser about new cookies. Blocking or deleting cookies may interfere with some functionalities of our website. Site analytics (Google Analytics) forwards data to Google without personal identifiers. Google Analytics, Google Ads tracking code, and Facebook Pixel will only load on the site if you accept analytics and marketing cookies.