This privacy policy sets out how Petkoff Design uses and protects any information that you give to us when you use this website.
We are committed to ensuring that your privacy is protected. Should we ask you to provide certain information from which you can be identified when using this website, then you can be assured that it will only be used in accordance with this privacy statement and with the requirements laid down by law in the Data Protection Act (DPA) 1998, The Privacy and Electronic Communications (EC Directive) Regulations (PECR) 2003 and the new General Data Protection Regulation (GDPR) 2018.
Petkoff Design may change this policy from time to time by updating this page. You should check this page from time to time to ensure that you are happy with any changes. This policy is effective from 25th May 2018.
What we collect
We may collect the following information:
What we do with the information we gather
We require this information to understand your needs and provide you with a better service, and in particular for the following reasons:
The legal basis for processing your data
We collect this data from you on at least one of the following legal bases:
How long do we keep your personal information for?
We will only retain your personal information for the minimum time that is necessary. For some purposes such as our business accounting obligations, this length of time will be determined by legislation.
Controlling your personal information
You may choose to restrict the collection or use of your personal information in the following ways:
We will not sell, distribute or lease your personal information to third parties unless we have your permission or are required by law to do so. We may use your personal information to send you promotional information about third parties which we think you may find interesting but only if you tell us that you wish this to happen.
You may request details of personal information which we hold about you under the Data Protection Act 1998 and the GDPR 2018. If you would like a copy of the information held on you please email us on office@petkoff.design.
Security
We are committed to ensuring that your information is secure. In order to prevent unauthorised access or disclosure, we have put in place appropriate physical, electronic and managerial procedures to safeguard and secure the information we collect online. All your information is stored either electronically on our secure servers. Any password(s) which you might use to access the website or other platforms that are operated by Petkoff Design using third-party providers are your own responsibility and you undertake not to share them with anyone else, save as to making provisions in your will. If you believe your password(s) has/have been compromised, you must inform us straight away and change it.
Links to other websites
Our website may contain links to other websites of interest. However, once you have used these links to leave our site, you should note that we do not have any control over those other websites. Therefore, we cannot be responsible for the protection and privacy of any information which you provide whilst visiting such sites and such sites are not governed by this privacy statement. You should look at the privacy policy statement applicable to the website(s) in question.
Introduction
This Privacy Policy is issued by Petkoff Design.
This Privacy Policy explains who we are; the purposes for which we process personal data & Imagery and our legitimate interests in so doing; the categories of data we process; third party disclosures; and details of any transfers of personal data & Imagery outside the Bulgaria.
Petkoff Design is committed to protecting the privacy and the confidentiality of the personal information of visitors to our website and of members/enquirers to our organisation. There is a lot of information here but we want you to be fully informed about your rights and how Petkoff Design uses your data.
We undertake to ensure that all personal information in our possession is processed in accordance with the requirements of the European General Data Protection Regulation (‘GDPR’) and Data Protection Act (‘DPA’).
We will only use your personal information in a way that is fair to you. We will only collect information where it is necessary for us to do so and we will only collect information if it is relevant to our dealings with you. We have implemented appropriate technology and policies to safeguard your data from unauthorised access and improper use.
We may update this Policy from time to time and you are welcome to come back and check it whenever you wish to.
Explaining the legal bases we rely on
The law on data protection sets out a number of different reasons for which a company may collect and process your personal data & Imagery, including:
Consent
In specific situations, we can collect and process your data with your consent.
For example, when you tick a box to receive emails from us, or make a purchase from us.
Contractual obligations
In certain circumstances, we need your personal data & Imagery to comply with our contractual obligations.
For example, if you order a product from us, we’ll collect your address to deliver your purchase, and if necessary we will need your telephone number to pass on to our courier.
Legal compliance
If the law requires us to, we may need to collect and process your data.
For example, we can pass on details of people involved in fraud, misbehaviour or other criminal activity to law enforcement.
Legitimate interest
In specific situations, we require your data to pursue our legitimate interests in a way which might reasonably be expected as part of running our business and which does not materially impact your rights, freedom or interests.
For example, we will also use your address details to send you direct marketing information, telling you about products and services that we think might interest you.
When do we collect your personal data & Imagery?
What sort of personal data & Imagery do we collect?
How and why do we use your personal data & Imagery?
We want to give you the best possible customer experience. One way to achieve that is to get the richest picture we can of who you are by combining the data we have about you.
We then use this to offer you promotions, products and services that are most likely to interest you. The data privacy law allows this as part of our legitimate interest in understanding our customers and providing the highest levels of service.
Of course, if you wish to change how we use your data, you’ll find details in the ‘What are my rights?’ section below.
Remember, if you choose not to share your personal data & Imagery with us, or refuse certain contact permissions, we might not be able to provide some services you’ve asked for.
For example, if you’ve asked us to let you know if a place on one of our fully booked events comes available, we can’t do that if you’ve withdrawn your general consent to hear from us.
Here’s how we’ll use your personal data & Imagery and why:
Any information you provide when inquiring to us and/or signing up for our service will be used for Petkoff Design purposes only.
We may disclose your information to companies who act as ‘data processors’ on our behalf, some of whom may be outside Bulgaria/EEA. This will be for our purposes only – for example sending out a mail shot to you from us. We have never, and will not ever sell, rent or otherwise distribute any personal information to third parties.
You may indicate your preference for receiving direct marketing by email from us. You will be given the opportunity on every electronic communication we send you to indicate that you no longer wish to receive our emails. Once properly notified by you, we will stop using your information in this way.
How we protect your personal data & Imagery
We know how much data security matters to all our customers. With this in mind we will treat your data with the utmost care and take all appropriate steps to protect it.
We secure access to all transactional areas of our websites and apps using ‘https’ technology.
Access to your personal data & Imagery is password-protected, and any sensitive data (such as payment card information) is not kept on record.
How long we keep your personal data & Imagery for
Whenever we collect or process your personal data & Imagery, we’ll only keep it for as long as is necessary for the purpose for which it was collected.
Who do we share your personal data & Imagery with?
We sometimes share your personal data & Imagery with trusted third parties.
For example, delivery couriers or other law enforcement agencies for fraudulent activity, to handle complaints.
Here’s the policy we apply to those organisations to keep your data safe and protect your privacy:
Examples of the kind of third parties we work with are:
Your rights
We operate under GDPR and DPA. We ensure lawful processing of personal data & Imagery by obtaining your consent; or where there is a contractual obligation to do so in providing appropriate products and services; or where processing the data is necessary for the purposes of our legitimate interests in providing appropriate products and services. The DPA and GDPR apply to ‘personal data & Imagery’ we process and the data protection principles set out the main responsibilities we are responsible for.
We must ensure that personal data & Imagery shall be:
Under GDPR you have the following specific rights in respect of the personal data & Imagery we process:
You can contact us to request to exercise these rights at any time as follows:
If we choose not to action your request we will explain to you the reasons for our refusal.
Your right to withdraw consent
Whenever you have given us your consent to use your personal data & Imagery, you have the right to change your mind at any time and withdraw that consent.
Where we rely on our legitimate interest
In cases where we are processing your personal data & Imagery on the basis of our legitimate interest, you can ask us to stop for reasons connected to your individual situation.
We must then do so unless we believe we have a legitimate overriding reason to continue processing your personal data & Imagery.
Direct marketing
You have the right to stop the use of your personal data & Imagery for direct marketing activity through all channels, or selected channels. We must always comply with your request.
Checking your identity
To protect the confidentiality of your information, we will ask you to verify your identity before proceeding with any request you make under this Privacy Notice.
If you have authorised a third party to submit a request on your behalf, we will ask them to prove they have your permission to act.
How can you stop the use of your personal data & Imagery for direct marketing?
You can stop direct marketing communications from us by clicking the ‘unsubscribe’ link in any email communication that we send you. We will then stop any further marketing emails from us.
Please note that you may continue to receive communications for a short period after changing your preferences while our systems are fully updated.
Contacting the Regulator
If you feel that your data has not been handled correctly, or you are unhappy with our response to any requests you have made to us regarding the use of your personal data & Imagery, you have the right to lodge a complaint with the CPDP’s Registry.
You can contact them by calling +35929153525.
Commission for Personal Data Protection’s Registry
2 Prof. Tsvetan Lazarov Blvd.
Sofia 1592
Or go online to www.cpdp.bg