Privacy Policy
Last updated:
1. Introduction
Vivtorexghapio ("we", "us", or "our") is committed to protecting the privacy and security of your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at https://vivtorexghapio.world (the "Website") and use our services.
This policy is provided in compliance with the General Data Protection Regulation (EU) 2016/679 ("GDPR"), the Swedish Data Protection Act (Dataskyddslag 2018:218), and other applicable data protection laws.
2. Data Controller
The data controller responsible for your personal data is:
Vivtorexghapio
Sveavägen 9, 111 57 Stockholm, Sweden
Email: managers@vivtorexghapio.world
If you have any questions about this Privacy Policy or our data practices, you may contact us at the address or email above.
3. Personal Data We Collect
We may collect and process the following categories of personal data:
3.1 Data You Provide Directly
- Full name — provided when you submit the order form.
- Email address — provided when you submit the order form.
- Phone number — optionally provided when you submit the order form.
- Message content — any information you include in the message field.
- Consent records — your consent to our Privacy Policy and Terms of Use.
3.2 Data Collected Automatically
- IP address and approximate geolocation.
- Browser type, version, and language.
- Operating system and device type.
- Pages visited, time spent on pages, and navigation paths.
- Referring URL and exit pages.
- Cookie identifiers and similar tracking data (see our Cookie Policy).
4. Legal Basis for Processing
We process your personal data based on the following legal grounds under GDPR Article 6:
| Purpose | Legal Basis |
|---|---|
| Processing your order and responding to inquiries | Performance of a contract or steps prior to entering into a contract (Art. 6(1)(b)) |
| Sending service-related communications | Legitimate interest (Art. 6(1)(f)) |
| Analytics and website improvement | Consent (Art. 6(1)(a)) — only with your explicit cookie consent |
| Marketing communications | Consent (Art. 6(1)(a)) — only with your explicit consent |
| Compliance with legal obligations | Legal obligation (Art. 6(1)(c)) |
5. How We Use Your Data
We use the personal data we collect for the following purposes:
- To process and fulfill your orders and requests.
- To communicate with you regarding your orders, inquiries, and customer support.
- To improve our Website, products, and services based on aggregated analytics.
- To comply with applicable legal obligations and regulatory requirements.
- To prevent fraud and ensure the security of our Website.
- To send promotional communications only where you have given explicit consent.
6. Data Sharing and Disclosure
We do not sell, rent, or trade your personal data. We may share your data with:
- Service providers who assist us in operating the Website and processing orders (e.g., hosting providers, payment processors), bound by data processing agreements.
- Legal authorities when required by applicable law, regulation, or legal process.
- Professional advisors (e.g., legal counsel, accountants) as necessary for business operations.
All third-party service providers are contractually obligated to protect your data and process it only for the purposes we specify.
7. International Data Transfers
Your personal data is primarily stored and processed within the European Economic Area (EEA). If any data is transferred outside the EEA, we ensure appropriate safeguards are in place, including:
- EU Standard Contractual Clauses (SCCs) approved by the European Commission.
- Adequacy decisions by the European Commission for the recipient country.
- Other legally approved transfer mechanisms under GDPR Chapter V.
8. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:
- Order and inquiry data: retained for up to 3 years after the last interaction, or as required by applicable commercial and tax laws.
- Consent records: retained for the duration of consent plus 5 years as evidence of compliance.
- Analytics data: retained in anonymized/aggregated form for up to 26 months.
- Cookie data: retained according to cookie-specific durations outlined in our Cookie Policy.
When personal data is no longer needed, it is securely deleted or anonymized.
9. Your Rights Under GDPR
Under the GDPR, you have the following rights regarding your personal data:
- Right of Access (Art. 15): You have the right to obtain confirmation of whether we process your personal data and to request a copy of that data.
- Right to Rectification (Art. 16): You have the right to request correction of inaccurate or incomplete personal data.
- Right to Erasure (Art. 17): You have the right to request deletion of your personal data under certain circumstances ("right to be forgotten").
- Right to Restriction of Processing (Art. 18): You have the right to request that we limit the processing of your data in certain situations.
- Right to Data Portability (Art. 20): You have the right to receive your personal data in a structured, commonly used, machine-readable format.
- Right to Object (Art. 21): You have the right to object to processing based on legitimate interests or for direct marketing purposes.
- Right to Withdraw Consent (Art. 7(3)): Where processing is based on consent, you may withdraw consent at any time without affecting the lawfulness of processing before withdrawal.
- Right to Lodge a Complaint: You have the right to lodge a complaint with the Swedish Authority for Privacy Protection (Integritetsskyddsmyndigheten, IMY) or another competent supervisory authority.
To exercise any of these rights, please contact us at: managers@vivtorexghapio.world. We will respond to your request within 30 days.
10. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using TLS/SSL protocols.
- Access controls limiting data access to authorized personnel only.
- Regular security assessments and monitoring.
- Secure data storage with industry-standard protections.
- Employee training on data protection and security awareness.
While we take all reasonable steps to protect your data, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security but are committed to promptly addressing any data breach in accordance with GDPR requirements.
11. Children's Privacy
Our Website and services are not directed to individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have collected personal data from a child, we will take steps to delete that information promptly.
12. Links to Third-Party Websites
Our Website may contain links to third-party websites. We are not responsible for the privacy practices of those websites. We encourage you to read the privacy policies of any third-party sites you visit.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. The updated policy will be posted on this page with a revised "Last updated" date. We encourage you to review this page periodically.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data processing activities, please contact us:
Vivtorexghapio
Sveavägen 9, 111 57 Stockholm, Sweden
Email: managers@vivtorexghapio.world
You also have the right to contact the Swedish Authority for Privacy
Protection (Integritetsskyddsmyndigheten, IMY):
Website: https://www.imy.se
Phone: +46 8 657 61 00