GDPR Compliance
1. Introduction
Kadoono.com is committed to complying with the General Data Protection Regulation (GDPR) to ensure the privacy and security of our EU users’ personal data. This document outlines our practices for data collection, processing, and protection.
2. Data We Collect
We collect the following personal data:
Identifiers: Name, email, shipping address, phone number.
Financial Data: Payment information (processed securely via third-party gateways).
Technical Data: IP address, browser type, device information.
Usage Data: Website interactions, purchase history, cookies.
3. Purposes & Lawful Basis for Processing
We process data based on:
Consent: For newsletters or marketing communications.
Contractual Necessity: To fulfill orders, process payments, and deliver services.
Legitimate Interest: Website analytics, fraud prevention, and service improvements.
4. User Rights
Under GDPR, you have the right to:
Access, Rectify, or Erase your data.
Restrict Processing or Object to specific uses (e.g., marketing).
Data Portability: Request a copy of your data in a machine-readable format.
Withdraw Consent at any time.
To exercise these rights, contact us at info@kadoono.com with proof of identity. We respond within 30 days.
5. Data Security Measures
We implement:
Encryption: SSL/TLS for data transmission.
Access Controls: Restricted staff access to sensitive data.
Regular Audits: Security assessments and employee training.
6. Data Retention
We retain data only as necessary:
Order Data: 7 years (for legal/tax compliance).
User Accounts: Until deletion request.
Marketing Data: Until consent withdrawal.
7. Third-Party Sharing
We share data with:
Payment Processors (Stripe, PayPal) for transaction completion.
Shipping Providers (e.g., DHL, FedEx) for order delivery.
Analytics Tools (Google Analytics) to improve services.
All third parties are GDPR-compliant with Data Processing Agreements (DPAs) in place.
8. International Data Transfers
Data transferred outside the EU (e.g., to US providers) uses safeguards like Standard Contractual Clauses (SCCs).
9. Cookies & Tracking
Essential Cookies: Required for site functionality (no consent needed).
Analytics/Advertising Cookies: Enabled only with user consent via our cookie banner.
Manage preferences via our [Cookie Settings] page.
10. Data Breach Procedures
In case of a breach, we will:
Notify the relevant supervisory authority within 72 hours.
Inform affected users if the breach poses high risk.
11. Children’s Privacy
We do not knowingly collect data from children under 16. Parents/guardians may contact us to remove such data.
12. Data Protection Officer (DPO)
While not legally required, our Privacy Team oversees GDPR compliance. Contact: info@kadoono.com
13. Updates to This Policy
Changes will be posted here with an updated effective date. Significant changes will be notified via email or site banners.
14. Contact Us
For questions or complaints:
Email: info@kadoono.com
Postal Address: 148 High Street, London, England, NW10 4SP
You may also lodge a complaint with your local supervisory authority.
Kadoono.com is committed to transparency and accountability under GDPR. Thank you for trusting us with your data.