The entity responsible for the handling of your data
The party responsible for the handling of data is NutriTienda Healthcare & Beauty, S.L hereafter referred to as “Nutritienda” - CIF B86658606. The contact details for Nutritienda are the following:
- Postal address: Calle Holanda, nº5. 28971, Griñón (Madrid)
- The user can contact us via email at help@nutritienda.com Monday to Friday from 09:00 to 19:00.
How do we handle your data?
At NutriTienda® we handle your data in accordance with the current regulations of the personal data protection, according to Regulation (EU) 2016/679 of 27 April 2016 (GDPR), manually and/or automated for the following purposes:
- Manage and improve registration on the WEB/APP/BLOG. Registration will presume the creation of navigation profiles from the user’s search history on the WEB/APP/BLOG. Said (data) profiling consists in the use of the client’s personal and search information, such as viewed products or products added to the basket, viewed sections of the WEB/APP/BLOG, and location, in order to evaluate preferences and or personal interests, with the aim of offering the appropriate contents of the WEB/APP/BLOG, offers, services and products for their profile.
- Manage and improve the online shopping experience. We use the client’s personal information to process and carry out his/her orders and inform him/her of the status of his/her order via email and/or SMS.
- Reply to queries, doubts, or any request, whether carried out by the user on Nutritienda’s WEB/APP/BLOG, by whichever of the methods made available to him/her.
- Send offers, promotions, gifts, raffles/prize draws, and important news by email or through the app, or via post, telephone, and/or SMS, previous authorization and unless stated otherwise or the user refuses or revokes his/her consent. These communications will be carried out by Nutritienda and will relate to their products and services, or to those of their collaborators or providers with which they have an agreement. When undertaken, the sending of this information will presume the processing of user profiles which consists in utilizing personal data and purchase history, such as search history in the WEB/APP/BLOG in order to evaluate certain characteristics.
- Manage the notifications service for when a certain product is available on the WEB/APP/BLOG.
- Comply with the established legal obligations.
- Submitted data https://www.nutritienda.com/es/work-for-us or the sending of CVs by other methods, will be treated as having the purpose of completing selection processes and maintaining communication with the candidate.
The content of the communications will be personalized, referring to for example, products or services according to the interests of the client. The client can manage communications from the “Communications” section in My Account.
What type of information do we collect?
Nutritienda can collect the following personal information from the users, through the necessary channels, from its WEB/APP/BLOG: name, email address, postal address, telephone number, date of birth, sex and credit card (PAN+CVV2) in accordance with PCI DSS standards or account number (provided by the client in the event of a return) when the client visits the WEB/APP/BLOG, registers, places an order online, gets in contact with Nutritienda, subscribes to the blog, makes enquiries and/or participates in special offers or prize draws.
Furthermore, Nutritienda collects all information relating to the client’s browsing on the WEB/APP/BLOG and his/her interaction with the brand.
All personal data collected by Nutritienda comes from the data subject in question, except contact information which can be provided to us by his/her friends or family.
- Purchases or other web services
- Affitiate program
How long do we keep the data for?
Nutritienda keeps your data for the duration of the established contractual/commercial agreement, while there is mutual interest, and subsequently, during the established legal periods, for the resolution of possible liabilities resulting from said agreement. In the event the user requests to close his/her account, his/her data will be deleted using the appropriate methods in order to guarantee either the pseudonymisation or complete destruction of said data.
Data relating to payments and invoicing are kept for the legal periods laid out in the relevant legislation concerning economic/accountancy and fiscal matters.
What legitimises our use of customer data?
Execution of the contract
The legal foundation for the handling of the data subject’s personal information collected is the execution of the purchase agreement contract. To this effect, the data subject is obliged to provide the necessary personal data for its execution. In the event that this information is not provided, it will not be possible to carry out the purchase agreement.
Legal obligations
The management and issuing of the sales invoice is based on the legal obligation of Nutritienda in its relationship with its clients.
Consent
In relation to the following purposes, the legal foundation for the handling of the data subject’s personal information is consent to the aforementioned, in the case of it having been given:
- Management of registration on the WEB/APP/BLOG
- Management of subscription to our newsletter, sending of contact form, any enquiry through the available channels, or the sending of a CV. The legitimising foundation for this handling is the consent of the data subject through voluntary subscription.
- Management of the notification service for available products on the WEB/APP/BLOG.
- Response to the exercise of ARCO rights, enquiries and complaints by the data subject.
- Management of the sending of information relating to exclusive special offers, new in, and personalised information, adapted to the data subjects account.
Withdrawal of consent to the handling of personal data by the data subject shall not condition the execution of the purchase contract concluded between the former and Nutritienda.
Legitimate interest
In relation to the following purposes, the legal foundation for the handling of the data subject’s personal information will be the legitimate interest of Nutritienda:
- The creation of profiles while browsing the WEB/APP/BLOG on the part of the registered user, or any other user who has provided us with their data for any other purpose.
- Management of the sending of information relating to exclusive special offers, new in, and personalised information, adapted to the data subjects account.
-The sending of satisfaction surveys to Nutritienda clients in order to improve our products and services.
Our legitimate interest consists of being able to guarantee that our WEB/APP/BLOG remains safe, as well as being able to help Nutritienda to understand the necessities, expectation and the satisfaction level of its users and, therefore, improve our services, products, and brands. All operations are carried out with the aim of improving client satisfaction and assuring a unique browsing and shopping experience.
To whom can the data be disclosed?
On no occasion does Nutritienda sell client data to third parties. Client data is given/released to companies and providers who provide services to Nutritienda (shipping companies for delivery management, tax advisors for tax processing, banks and financial institutions for the collection of the services offered, hosting companies for our servers and databases for the handling of online communications and agencies for advertising purposes). All the above have regulated access to the data for the purpose exclusively here outlined.
Government Bodies and Agencies when Social Security fiscal, labour, or any other applicable regulations require it.
Data will be disclosed in scenarios in which it is necessary for the observation of the established contractual relationship and in the legally stipulated scenarios. The transfer of data to recipients located outside The European Economic Area, including those countries which provide a level of data protection equivalent to the European Union, is not anticipated.
How does Nutritienda protect your personal data?
The WEB/APP/BLOG uses security methods such as firewalls, authentication procedures, and cryptographic mechanisms/encryptions with the aim of preventing unauthorised access to and guaranteeing the confidentiality of personal data. To fulfil these aims, the user accepts that Nutritienda will collect/receive data for the purpose of authentication of access controls.
Additionally, any transaction carried out on the WEB/APP is executed using secure payment systems. Confidential payment data are encrypted (SSL) and sent/transferred directly to the corresponding entity.
Nutritienda declares that it adopts all the technical and organisational methods necessary in order to guarantee the security and integrity of personal data, as well as to avoid loss, alteration, and/or access by unauthorized third parties.
What are your rights regarding personal data?
The following rights apply, which can be exercised via the following e-mail address help@nutritienda.com :
Right to erasure/right to be forgotten
Right to access | You have the right to confirmation that Nutritienda is, or is not, handling your personal data, as well as the right to access your data held by Nutritienda. |
Right to rectification | You have the right to request that Nutritienda amends personal data when they are incorrect, or that they are completed in the case they are incomplete. |
Right of erasure/right to be forgotten | You can request that personal data be removed when, among other reasons, the data are no longer necessary for the purpose for which they were collected. |
Limitation rights | You have the right to request the limitation of the handling of your data, in which case, they will be kept exclusively for the exercising or defence of complaints. |
Portability rights | You have the right to receive personal data in a structured format, for common use and machine reading, and to relay them to other accountable parties, when the handling is built upon consent or a contract and is conducted through automated procedures. |
Right of opposition | You can object to personal data being used by Nutritienda for public or lawful interest, including for the creation of profiles. In this case, Nutritienda will refrain from handling your data, except for imperative, lawful reasons, or the exercising or defence of possible complaints. |
Right to file a complaint | You have the right to file a complaint with the Spanish Data Protection Agency. |
In order to process a request, we have the right to request you verify your identity.
Last revision: 21 May 2018.