Privacy policy
Privacy Policy
At Optimal Lifestyle, we are committed to protecting your privacy and ensuring that your personal data is handled with care and respect. This Privacy Policy explains how we process your personal information when you visit our Website and purchase DNA Services. It also outlines your rights regarding your personal data and how you can exercise them.
We recognize the importance of maintaining your trust and confidence, and we acknowledge the highest standards of data protection and privacy. Our goal is to provide a transparent and comprehensive overview of our data processing practices, so you can feel confident about how we manage your personal information.
This Privacy Policy is incorporated by reference into the Terms. Capitalized terms used and undefined have the meaning outlined in the General Terms and Conditions.
In this Privacy Policy, the terms "personal data", "data", "personal information" and "information" are used interchangeably and refer to any information relating to an identified or identifiable natural person.
-
When does this Privacy Policy apply?
Optimal Lifestyle as a controller
This Privacy Policy applies to the collection, use, and disclosure of personal data when you use our Website and place an order for DNA Services. It covers how we handle your personal data as a controller. As controllers, we determine the purposes and means of processing your personal data in various scenarios, including using our Website, participating in both online and physical events, engaging with our advertisements, and communicating via emails and other forms.
Our Testing Partners as controllers
This Privacy Policy does not apply regarding the processing of your personal data conducted independently by our Testing Partners. Our Testing Partners act as independent controllers of your personal data, including your genetic data, in relation to the provision of the DNA Services. Among other processing activities, this may include the processing of your genetic data when you submit a sample for DNA analysis. Please see our Testing Partners page to learn more about the identity, role, location, and privacy policy of our Testing Partners.
-
Data collection
The data we collect may include:
- personal details and contact information (for example: name, address, email, telephone number)
- device information identifiers (for example: the type of device, unique device identifying numbers, operating systems, browsers, your internet service provider or mobile network, IP address, location)
- financial information (for example: bank account details)
- contractual details (for example: details about the products or services provided, purchases, customer service interactions)
-
Data provided directly by you
Account: When you create an account we process information such as: your name, email address, password, profile image, and any other details you provide when setting up your account.
Payment: When you make a purchase we process information such as: billing address, and other financial information necessary to process your payments.
Please note that we do not directly process your payment instrument data (such as credit card numbers). Instead, all payment transactions are handled by our trusted payment processing partners, who act as independent data controllers in this context. These payment processing partners are responsible for the collection, use, and protection of your payment instrument data in accordance with their own privacy policies. If you have any questions or concerns regarding the handling of your payment data, please refer to the privacy policy of the respective payment processing partner.
Feedback and support: When you contact us for customer support or provide feedback, we process information such as details about your inquiry or issue, including any personal data you provide during the communication. For instance, if you contact us about a problem with your order, we may collect your name, order number, and details about the issue. We may also process any information you voluntarily share about your experience with our products or services. This could include feedback submitted through our Website or via email.
Website and social media: When you interact with our Website and social media platforms, we process information such as data about your visits to our Website, such as pages viewed, links clicked, and time spent on the site. For example, we track which pages you visit to understand which content is most popular. Information you share with us through social media platforms, including your social media handle, profile information, and any other details you make public may also be processed. For instance, if you tag us in a post or message us on Facebook, we may collect and store those interactions.
Surveys, promotions, events: When you participate in surveys, promotions, or events, we process information such as responses to any surveys we conduct, which may include personal opinions, preferences, and other feedback, information required to participate in promotions, such as your name, email address, and any other details needed to administer the promotion, registration details and any other information you provide when signing up for events.
-
Data collected automatically when using our Website
When you use our Website, we may automatically collect certain information through cookies and similar technologies. This data helps us understand how you interact with our Website, enabling us to improve your user experience and provide more personalized services. For detailed information on how we use cookies and other tracking technologies, please read our [Cookie Policy].
-
Data received from third parties and other sources
We may receive personal data about you from third parties and other sources, which we incorporate to enhance our services and provide a better experience. These sources include:
Third-party services and partners: We may obtain data from various third-party services and partners, including our Testing Partners, who provide the DNA Services. This data can include information about the status of your order and other details that may help us assist you regarding your purchase of DNA Services.
Social networks: We may receive data from social media platforms when you interact with us through these networks. This data can include information such as your username, profile picture, and other details you have made public on your social media accounts.
Payment processors: Our payment processing partners may share data related to your transactions with us. This data can include information about your payments, such as transaction ID, payment method, and billing information.
Marketing and analytics partners: We may collaborate with marketing and analytics partners who provide insights to help us understand user behavior and improve our services. This data can include: information about your interactions with our Website, such as page views, clicks, and other usage metrics, information used to deliver targeted advertisements and marketing communications.
Publicly available data: We may also collect information from publicly available sources to supplement our existing data. This data can include information from public records and databases that can help verify identity or provide additional context for our services.
3. Legal grounds for data processing
We rely on the following legal grounds to process your personal data:
Consent: In certain instances, we process your personal data based on your consent. This mainly includes activities such as direct marketing.
Performance of a contract: We process your personal data to fulfill our contractual obligations. This includes managing and processing your orders for DNA Services and providing access to our Website.
Legal obligations: We process your personal data to comply with legal requirements and obligations. This includes managing and reporting financial information as required by tax authorities and complying with lawful requests from law enforcement agencies and other governmental authorities.
Legitimate interests: We process your personal data to pursue our legitimate business interests, provided that such processing does not outweigh your rights and freedoms. This includes improving our services, ensuring the security of our Website, and conducting business analytics.
4. Purposes for data processing
We process your personal data for the following purposes:
Purpose |
Details |
Legal Grounds |
Provision of Our Website and DNA Services |
Facilitating access to our Website and managing your purchases of DNA Services. |
Performance of a contract |
Customer Support and Communication |
Providing customer support, responding to inquiries, and communicating with you about your orders. |
Legitimate interest |
Marketing |
Sending promotional materials, newsletters, and updates about our products and services. |
Consent |
Legal Compliance and Promotion of Rights |
Complying with legal obligations, managing tax-related processes, and responding to law enforcement. |
Legal obligations |
5. How do we share data?
We share your personal data with various parties to provide and improve our services, ensure compliance, and support our business operations:
Testing Partners: We share your personal data with our Testing Partners to conduct the DNA analysis and provide the DNA Services you have requested.
Processors: Our processors assist in processing data on our behalf, handling tasks such as payment processing, customer support, and other operational functions. For regarding our processor's identity, role, and location please see our Processors page.
External partners: Our external partners help us run our operations effectively. This includes accounting firms, legal advisors, security services, and other professional services.
Affiliates and business transitions: When managing business operations and potential business transactions we may share data with our affiliates or as part of business transitions such as mergers, acquisitions, or asset sales.
Compliance with legal requirements: To comply with legal obligations and respond to lawful requests we may disclose data to law enforcement agencies, regulatory bodies, or other governmental authorities as required by law.
Additional Scenarios with Explicit Consent: For specific purposes not covered by other categories we will obtain your explicit consent before sharing your data in these scenarios.
6. International data transfers
Your data may be processed in locations where we and our processors operate, which may be outside of your country of residence. We ensure that any international data transfers comply with applicable data protection laws, including the General Data Protection Regulation (GDPR).
We use Standard Contractual Clauses (SCCs) and other approved transfer mechanisms to ensure that your data is protected when transferred internationally. Our processors and partners are required to comply with our data protection standards, regardless of their location.
7. Your privacy rights
You have various privacy rights concerning your personal data. We are committed to ensuring that you can exercise these rights easily and effectively. Below is a list of your privacy rights and information on how to exercise them.
- Right to access: You have the right to request access to the personal data we hold about you. This includes information about the categories of data we process, the purposes for processing, and any third parties with whom we share your data.
- Right to rectification: You have the right to request corrections to any inaccurate or incomplete personal data we hold about you. If you find that your data is incorrect or incomplete, you can ask us to update it.
- Right to erasure: You have the right to request the deletion of your personal data. This is also known as the "right to be forgotten." You can request that we delete your data if it is no longer necessary for the purposes for which it was collected, if you withdraw your consent, or if you object to the processing and there are no overriding legitimate grounds.
- Right to restrict processing: You have the right to request that we limit the processing of your personal data in certain circumstances, such as when you contest the accuracy of the data or object to the processing.
- Right to data portability: You have the right to receive the personal data you have provided to us in a structured, commonly used, and machine-readable format. You can request that we transfer your data to another data controller where technically feasible.
- Right to object: You have the right to object to the processing of your personal data. You can object to our processing of your data for direct marketing purposes or when processing is based on our legitimate interests.
- Right to withdraw consent: If we are processing your data based on your consent, you can withdraw it at any time without affecting the lawfulness of processing based on consent before its withdrawal.
- Right to complain: If you believe that we have infringed your privacy rights, you can file a complaint with the relevant data protection authority.
How to exercise your privacy rights
If you have any questions or wish to exercise any of your privacy rights, please contact us using the information provided below.
We will respond to your request as soon as possible and within the timeframe required by applicable law. Please note that we may need to verify your identity before processing your request to ensure the security of your personal data.
8. Final terms
Changes to this privacy policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or for other reasons. We will notify you of any significant changes by posting the updated policy on our Website and indicating the date of the latest revision. We encourage you to review this Privacy Policy periodically.
Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data processing practices, please contact us at:
Optimal Lifestyle SRL
7 Cluj Street, 1st floor
Timisoara, Timis
Romania
Email: shop@optimallifestyle.ro