Free delivery for purchases over 79.99 €
BRT courier 7.99 BRT point 7.99 DHL courier 7.99 HR Parcel courier 7.49 GLS courier 3.99

PRIVACY POLICY

of the company Libristo Media s.r.o., ID No.: 04448367, with registered office at Sychrov 55, 755 01 Vsetín, Czech Republic, registered in the Commercial Register at the Regional Court in Ostrava, file No. C 63649, represented by Lukáš Kavina, Václav Kadlec, Josef Žák, Executive Directors,

for the sale of goods and digital content on https://www.libristo.it.

(hereinafter referred to as the “Controller” or “Us”)

 

The purpose of this document is to inform you of all information relating to the processing of your Personal Data. We encourage you to read this Privacy Policy. If you have any further questions about the processing of your Personal Data, please contact us by email at [email protected] or by post at the above address.

We process your personal data for statutory reasons, for the performance of a contract or on the basis of our legitimate interest. If the processing of personal data is not done on the basis of these three reasons, then we will ask for your consent. 

For better clarity and orientation, the terms that are often repeated in this policy are listed below.

E-shop an online shop operated by the Controller, available at https://www.libristo.it;
GDPR Regulation (EU) 2016/679 of the European Parliament and of the Council;
Business messages usually an e-mail or SMS message sent to the User for the purpose of promoting similar products and services;
Order a transaction completed by the customer by pressing the relevant "Buy now" button with the customer's intention to enter into a purchase contract;
Personal data any information about the User that can directly or indirectly identify the User;
User the natural person to whom the Personal Data relates, most commonly a customer or potential customer or user of our website, also referred to as "you";
Processor performs personal data processing activities on the basis of a contract or other authorization for the controller;
Processing of personal data means any operation or set of operations on Personal Data or sets of Personal Data that is carried out with or without the aid of automated processes, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or any other disclosure, alignment or combination, restriction, erasure or destruction;
Special categories of personal data Personal Data that reveals a person's racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, health, or sex life or sexual orientation. Genetic and biometric data are also considered to be a special category of data when they are processed for the purpose of uniquely identifying a natural person. (We do not process Special Categories of Personal Data.)

1 WHAT PERSONAL DATA WE PROCESS, HOW WE OBTAIN IT, FOR WHAT PURPOSE AND FOR HOW LONG WE KEEP IT

We process the following Personal Data about you: 

  • name and surname; 
  • contact details (especially e-mail, telephone number); 
  • billing details and bank details (details necessary for bookkeeping and payment for goods);
  • comments written during the order process;
  • information you provide to us in the course of communicating with us (in particular, your questions and answers to your questions, communication with you);
  • login to the user account and behavior in the user account (in particular the data filled in by the User in the user account, purchase history, time of registration, date of last profile update);
  • the comments you add to our posts on social media (in particular Facebook, Instagram, YouTube, TikTok, LinkedIn), as well as your profile name (nickname) on these social media and the information you make publicly available on your profiles,
  • IP address; 
  • cookies.

 We do not process Special categories of personal data. 

2 HOW DO WE PROCESS PERSONAL DATA?

The time of Processing of personal data in general. We process your personal data to the extent necessary and for the time necessary to protect our interests.  We process personal data: 

2.1 for the entire duration of the purchase contract and for the time necessary to exercise the rights and obligations arising from the contractual relationship between you and us and the possible exercise of claims arising from these contractual relationships;

2.2 for as long as necessary to fulfill our legal obligations;

2.3 the period for the processing of personal data is not longer than 5 years from your last communication with us or the termination of the purchase contract between us, or another period if it relates to an obligation imposed by law;

2.4 in some cases, the period for processing personal data may be up to 15 years after the execution of the purchase contract in order to protect our interests.

3 FOR WHAT PURPOSE DO WE PROCESS PERSONAL DATA?

3.1 Registration, setting up a user account. You voluntarily provide us with Personal Data by setting up a user account in the E-shop and its subsequent updates. By setting up a user account, you can take advantage of the user account's benefits. 

3.2 E-shop website. We also process information about your visit and viewing of our website. This information may include, for example, your IP address, the date and time you accessed our website, information about your internet browser, operating system or your language settings. We may collect this data as part of a log or through the use of cookies or other tracking technologies. The rules for the use of cookies and other tracking technologies are described in more detail in our Cookie Policy.

3.3 Performance of the contractual relationship. The statutory reason for the Processing of Personal Data is the performance of the Purchase Contract or proper Order processing and related obligations.

3.4 Improving our services, promotion of goods and services. We may process Personal Data from publicly available sources, our contractors and combine it with Personal Data voluntarily provided to us.  We take steps to ensure that third parties are legally entitled to provide this information to us. For example, this will include demographic information, IP addresses and cookies. This is to improve the provision of our services and the promotion of our goods.

3.5 Personalized advertising. We work with third parties to manage and display our advertising on third party websites. 

3.6 Competitions and other promotions. We may conduct surveys, contests or other promotions on our website or through social media. Your participation in our promotions is voluntary. As part of these surveys, contests and promotions, we may ask you for Personal Information such as your name, address, date of birth, phone number, email address, username and similar information. We will use the Personal Information you provide to us to administer these promotions or for other purposes if specified in the terms and conditions of a particular promotion.

3.7 Social media. We have a profile on Facebook, Instagram, LinkedIn, TikTok and YouTube. Any information, communication or materials that are provided via a social media platform are also provided in accordance with the privacy policies of these platforms. The privacy policy is handled separately within each of the aforementioned platforms. 

3.8 Communication with our customer support or other questions. If you have contacted us by email or via the Contact form or on social media, then we process your personal data for the purpose of dealing with the enquiry. 

3.9 Signing up for business communication (newsletter). If you sign up for our newsletter, we will send you interesting information and offers to promote our goods and services based on your consent. If you no longer wish to receive emails, then click on the unsubscribe link in the footer of each of our emails. 

3.10 Business communication to our customers (newsletter). We may send commercial communications on the basis of our legitimate interest to promote our goods and services to customers until they unsubscribe from receiving business messages. This is easily done by clicking the unsubscribe link in each of our e-mails. Based on our legitimate interest to promote our goods and services, we may also use the registered user's telephone number to distribute commercial communications by SMS. In this case, the user may unsubscribe from receiving SMS by sending a short message to the following e-mail address: [email protected]. You can object to the processing of your personal data on the basis of our legitimate interests at any time (see the section listing your rights for more details).

3.11 Customer reviews. You can share your experience and rate individual items in the Reviews section of our website. We may use other processors to evaluate your feedback regarding individual purchased goods.

3.12 Payment by card. If you provide us with your credit card details, we do not have access to your full details. We only know that you are paying by card and the card details are processed by the recipients of these details who process the payment for us.

4 A SUMMARY OF THE REASONS AND PURPOSES FOR PROCESSING YOUR PERSONAL DATA

We understand that sometimes it is difficult for you to wade through the amount of text that covers how and why we process your Personal Data and where we obtain it. In order to provide you with a quick and clear overview of the basics of how we process your Personal Data, we have summarized everything in this table:

 

Which Personal Data is involved 

Purpose of processing Personal Data 

Lawful Reason for Processing Personal Data

Processing time

Processors

Name, surname, e-mail of the Customer, phone number and information about the ordered goods

Order processing, user account management

Performance of the contract

For the duration of the Customer's contractual relationship with us and thereafter for a period of 4 years after termination

Webglobe.cz 

Cookiebot.com,

Zásilkovna, s.r.o.

Pošta bez hranic, s.r.o.

We will gladly inform you about our local carriers on request.

PayU S.A. 

 

Billing details, bank details and information about the goods ordered

Bookkeeping

Performance of the contract and fulfillment of legal obligation

Tax documents for 15 years

Webglobe.cz

ADK Vsetín 

Name, surname, e-mail of the Customer, phone number and information about the purchase contract, necessary information on payment

Processing of complaints

Fulfillment of legal obligation

For the duration of the Customer's contractual relationship with us and thereafter for a period of 4 years after termination

Asana.com

Slack.com

Name, surname, e-mail, telephone number

Marketing and promotion of our website

Legitimate interest or consent 

2 years from the last viewing of the commercial message, unless you withdraw your consent earlier

Webglobe.cz

Pseudo anonymized identifiers of registered users, 

IP address

Routine website traffic analysis, securing our website, detecting server errors and preventing fraud and server attacks

Legitimate interest or consent

The specific retention period for cookies varies according to the specific type of cookie

Google Analytics

Google Tag Manager

Hotjar

MS Bing

Name, surname, e-mail, telephone number

Reply to a message sent via contact form, email or social networks

Consent to processing for the purpose of handling an enquiry

Personal Data will be deleted after your enquiry has been dealt with, this does not apply if you become our customer

Facebook 

Instagram 

Youtube 

Twitter

LinkedIN

TikTok

Name, email, phone number of potential customers, IP addresses and other technical identifiers

Marketing and promotion of our website

Consent

For the duration of the consent period, the time cookies are stored may vary depending on the type of cookie

Google Ads 

Facebook

Instagram 

Youtube 

Twitter

LinkedIN

TikTok

Name, surname, e-mail of the Customer and information about the ordered goods

Providing customer email to a third party for the purpose of customer satisfaction ratings

Legitimate interest

For the duration of the Customer's and/or Distributor's contractual relationship with us and thereafter for a period of 4 years after termination

Heureka

Zbozi.cz 

Trustpilot 

5 WHAT MEASURES HAVE WE TAKEN TO PROTECT YOUR PERSONAL DATA?

5.1 Technical measures. We have adopted and undertaken to maintain appropriate technical measures, taking into account the state of the art, the cost of implementation, the nature, scope, context and purposes of the processing of Personal Data, as well as various probable and various serious risks to Users, in all areas where Personal Data is processed (in particular, website operation, E-shop operation, employee agenda, customer communication). The technical measures taken include:

5.1.1 regular backup of the User's data; 

5.1.2 updates to antivirus software systems; 

5.1.3 encrypted data on our servers;

5.1.4 access to our information system where Personal Data is processed is controlled on a per-user (employees) basis. 

5.2 Organizational measures. We have adopted and commit to maintain the following measures:

5.2.1 our employees who have access to Personal Data are bound by confidentiality; and

5.2.2 our employees are familiar with the rules of safe work with work equipment, including the principles of Personal Data protection.

6 WHEN DO WE TRANSFER YOUR PERSONAL DATA TO THIRD PARTIES?

Your Personal Data may be transferred to our business partners (Processors) or other third parties where required by law.

Processors. We only use verified Processors with whom we have a written contract and who provide us with at least the same guarantees as we provide to you. These are only Processors who are from the European Union, or from countries that have been declared and recognised as safe, or to countries with which we have standard contractual clauses in accordance with Article 46 of the GDPR, and who provide a comparable level of protection to your Personal Data as if the GDPR was applied. All such Processors are bound by our confidentiality obligations and may not use the Personal Data provided to them for any purpose other than that for which we have disclosed it in accordance with this Policy. We have listed the specific Processors above.

Legal obligations. We may disclose personal data to third parties outside the Processor if required to do so by law or in response to lawful requests by public authorities or at the request of a court in litigation.

7 WHAT RIGHTS DO YOU HAVE?

Where to contact us? By email to [email protected] or by post to our registered office. 

How fast do we respond? We will respond within one week at the latest. If providing the information would compromise the privacy of others, or if providing it would be disproportionate to the risks or costs of providing it, we may not be able to comply. We may need to verify your identity in order to better process your request.

Right of access to personal data 

  • Confirmation of whether we process your personal data.
  • Information on the purposes of processing, categories of personal data, recipients to whom they are disclosed, the duration of processing, the existence of the right to request the controller to exercise one of the rights listed below.
  • A copy of the personal data in the event that the rights and freedoms of other persons will not be affected.
Right to correct inaccurate data
  • You can request correction of inaccurate personal data.
  • You can correct some information in your user profile.
Right of erasure
  • If there is no other reason to continue processing this data, we will delete or completely anonymise the data you have requested.
Right to restrict processing
  • If you believe that we are processing data incorrectly, either in terms of the reasons for the processing or the extent of the processing, please let us know.
Right to be notified of correction, erasure, or restriction of processing
  • If you contact us with a request, we will inform you of the result, unless this is impossible (e.g. the email address from which you wrote to us is no longer working).
Right to transfer personal data
  • We may transfer the data that you have provided to us in a structured and machine-readable format to another controller at your request.
The right to object to the processing of personal data
  • If we process your data on the basis of legitimate interest (e.g. sending you a newsletter).
  • It is up to us to prove our legitimate interest, if we cannot do so, we will stop this processing.
Right to withdraw consent to the processing of personal data
  • If you have changed your mind, please contact us. Processing for marketing and business purposes can be revoked at any time.
Automated individual decision-making including profiling
  • You have the right not to be the subject of any decision based solely on automated processing, including profiling, which would have legal effects on you or similarly significantly affected you. However, we state that we do not make automated decisions without the influence of human judgment with legal effects for Users.

8 FINAL PROVISIONS

This Privacy Policy may only be amended in writing. Users will be informed of this via our website.

If you have any questions about our Privacy Policy, please contact us at [email protected].

If you are dissatisfied, then you may at any time make a complaint or lodge a complaint with your relevant data protection authority, which can be found here: https://edpb.europa.eu/about-edpb/about-edpb/members_en

This Privacy Policy is effective as of the date of 1.6.2024.


Login

Log in to your account. Don't have a Libristo account? Create one now!

 
mandatory
mandatory

Don’t have an account? Discover the benefits of having a Libristo account!

With a Libristo account, you'll have everything under control.

Create a Libristo account