Privacy Policy for ffotoaber.com

Ffoto Aber Ltd (“we”, “us”, “our”) is committed to protecting your privacy and handling your personal data responsibly, transparently, and in full compliance with applicable data protection laws, including the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other relevant legislation. This Privacy Policy outlines how personal data is collected, processed, used, and stored when you interact with our website, ffotoaber.com, and any related services.

1. Introduction

We respect your privacy and are committed to safeguarding the personal information of individuals who visit, access, or use ffotoaber.com. Our Privacy Policy reflects our dedication to processing data lawfully, fairly, and in a manner that ensures appropriate security and confidentiality.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all users of ffotoaber.com and associated services. Ffoto Aber Ltd is the data controller responsible for the processing of your personal data in connection with the use of our website and related services. If you have any inquiries about how your data is handled, you can contact us at [email protected].

3. Categories of Data We Process

We may collect and process the following categories of personal data depending on your interaction with our site:

a. Usage Data:
Includes information about how you use our website, such as your IP address, browser type, device operating system, pages visited, session duration, referring URL, and location data. This information helps us analyze, optimize, and secure our website.

b. Account Data:
Information provided when creating an account or placing an order, including name, email address, phone number, billing/shipping address, and login credentials.

c. Profile Data:
Details related to your past purchase history, account preferences, saved items, interactions with products and services, and customer behavior.

d. Communication Data:
Covers any correspondence between you and ffotoaber.com, including customer service queries, support requests, emails, and contact form submissions.

e. Technical Data:
Device-specific data such as operating system versions, internet service provider, browser settings, time zone settings, and plug-in types.

f. Transaction Data:
Information related to your purchases including order numbers, payment status, payment methods (excluding full credit card details), and delivery data.

g. Preference Data:
Consent and preferences for marketing communication, subscription settings, responses to promotions, survey responses, and expressed product interests.

4. Legal Bases for Processing Personal Data

We process personal data under the following lawful bases:

– Consent: When you voluntarily provide personal information or opt-in to receive marketing communications.
– Contractual Necessity: To perform a contract with you, such as fulfilling your purchases.
– Legitimate Interests: To maintain ffotoaber.com, improve user experience, monitor usage, ensure security, and conduct analytics.
– Legal Obligation: Where processing is required by applicable laws or regulations.

Where consent is the lawful basis, you may withdraw it at any time by contacting us at [email protected].

5. Your Rights

You have the following rights in accordance with GDPR and CCPA:

– Right to Access: Request access to the personal data we hold about you.
– Right to Rectification: Ask us to correct or update inaccurate or incomplete information.
– Right to Erasure: Request the deletion of your personal data (“right to be forgotten”), subject to our legal obligations.
– Right to Restrict Processing: Ask us to restrict processing under certain conditions.
– Right to Data Portability: Receive your personal data in a structured, commonly used, and machine-readable format.
– Right to Object: Object to certain types of processing, including direct marketing.
– Right to Withdraw Consent: At any time, where our processing relies on your consent.

To exercise your rights, contact us at [email protected].

6. Security Measures

We employ rigorous technical and organizational measures to safeguard your data, including but not limited to:

– Encryption of data in transit and at rest
– Role-based access controls and limited data access
– Regular data backups and secure storage
– Employee privacy and cybersecurity training
– Network monitoring and vulnerability assessments

Although we strive to protect your information, no method of transmission over the Internet is 100% secure, and we cannot guarantee absolute security.

7. International Data Transfers

Your personal data may be transferred to and processed in countries outside the European Economic Area (EEA). Where such transfers occur, we implement appropriate safeguards, such as Standard Contractual Clauses approved by the European Commission, to ensure that your rights are upheld and your data remains protected.

8. Data Retention

We retain personal data only as long as necessary to fulfill the purposes for which it was collected, including:

– Usage Data: Retained for up to 12 months for analytics purposes.
– Account Data & Profile Data: Retained for as long as the account is active plus 6 years for legal/statutory compliance.
– Communication Data: Retained for 3 years from last interaction for service quality.
– Technical Data: Retained for up to 12 months.
– Transaction Data: Retained for at least 6 years for financial and tax compliance.
– Preference Data: Retained for the duration of consent or until withdrawn.

Upon expiration of the retention period, personal data is securely deleted or anonymized.

9. Cookie Policy

Our website uses cookies and similar technologies to enhance user experience and collect data. Cookies fall under the following categories:

– Essential Cookies: Necessary for core website functionality, such as secure login and navigation.
– Functional Cookies: Help personalize your experience, e.g., remembering preferences.
– Analytical Cookies: Enable us to understand user behavior and improve website functionality.
– Performance Cookies: Monitor system performance and usage to enhance platform reliability.

10. Cookie Management and Compliance

In accordance with GDPR and CCPA, users are provided with the option to consent to or decline cookie usage (except for essential cookies). Upon first visit to ffotoaber.com, a cookie banner enables you to configure your preferences. You may adjust cookie settings at any time on our site or through your browser’s controls.

For California residents, please note:
– We do not sell your personal data.
– You have the right to request what personal data we collect and request deletion.
– We honor opt-out preferences signaled through a browser’s Global Privacy Control (GPC).

11. Children’s Privacy

Ffoto Aber Ltd does not knowingly collect or process personal information from children under the age of 13. If we learn that we have inadvertently collected data from a minor, we will promptly delete such information. Parents or guardians who believe their child’s information has been submitted may contact us at [email protected].

12. Policy Updates and Notifications

We reserve the right to modify or update this Privacy Policy at any time. Any material changes will be posted prominently on ffotoaber.com. You are advised to review this page periodically to stay informed about how we protect your information.

13. Contact Us

If you have any questions, concerns, or requests related to this Privacy Policy or your personal data, please contact us at:

Email: [email protected]
Website: www.ffotoaber.com

We are fully committed to ensuring that your privacy rights are respected and upheld under all applicable data protection laws. Please contact us if you believe your rights under GDPR or CCPA have been violated.