Privacy Policy

SPA by M.Nectar is committed to protecting the privacy of our customers and users. Accordingly, we have established the following privacy policy principles that address the collection, use, disclosure, transmission, and storage of customer data. Our online activities comply with all relevant activities and applicable European Union regulations and Estonian Republic laws. Please take some time to familiarize yourself with our privacy principles.

Collection and Use of Personal Data

Personal data refers to information that can be directly or indirectly associated with you as an individual, which SPA by M.Nectar collects and processes to fulfill agreements with individuals or to comply with legal obligations. SPA by M.Nectar does not collect special categories of personal data and does not profile systematically and extensively clients by automated processing.

The collection of personal data from permanent customers can occur through the following methods:

Providing contact information (including your name, personal identification code, mailing address, phone number, email address, preferred method of contact) on our website or elsewhere (e.g., stores).

Using customer account information or cookies when using the website.

Storing data related to personal contact information or purchase preferences when making a purchase or placing an order in our physical store or online store.

When submitting a hire-purchase application.

Collection of Other Data

We also collect non-personalized data - data that cannot be directly linked to a specific individual (gender, age, language preference, location).

We may also collect data about customer activities on our website. This data is aggregated and used to provide more useful information to customers and to understand which parts of the website, products, and services are most interesting. Aggregated data is treated as non-personalized data in this privacy policy.

Use and Storage of Collected Personal Data

We use collected personal data to inform customers about SPA by M.Nectar product updates, campaigns, and upcoming events. A customer who does not wish to be on our mailing list or receive information about products of interest can remove themselves from the recipient list at any time.

We also use collected personal data to deliver goods and fulfill obligations to customers.

Cookies are used under your consent and regarding cookies which are necessary for functioning of the webpage, under legitimate interest. Legitimate interest of SPA by M.Nectar lies in the functioning of the online store and the need to fulfill orders. You can always withdraw your consent for use of cookies through our website or by submitting a written request. Retroactive effect does not apply to the withdrawal of consent.

To better serve the customer, SPA by M.Nectar may disclose information about individual users to third parties who provide services to SPA by M.Nectar and are contractually obligated to keep shared information confidential. Examples of third parties include our partners responsible for transporting goods sold in the online store or providing installment payment services. SPA by M.Nectar does not transfer data to third countries.

SPA by M.Nectar retains customer personal data until the termination of the permanent customer agreement. Data that SPA by M.Nectar is obligated to retain according to legal requirements (e.g., accounting data) will be retained in accordance with the requirements of the law.

Modification of Collected Personal Data

Customers can request information about personal data collected for identification and contact purposes by writing to mnectarspa@gmail.com.

Protection of Personal Data

SPA by M.Nectar employs all necessary precautions (including administrative, technical, and physical measures) to protect customer personal data. Access to data for modification and processing is limited to authorized individuals.

If you suspect that your personal data has been handled contrary to what is described in this privacy policy or if there is a risk that your data has been disclosed to unauthorized individuals, please inform us immediately. Only in this way can we minimize potential harm.

Customers have the right to request the rectification or erasure of incorrect data, the cessation of data processing, information about data use, and the transfer of data in a publicly accessible format to themselves or a third party, the restriction of data processing. To prevent misuse of customer data and rights, requests must be submitted in a form where the requester`s identity is verifiable (digitally signed or personally signed in person). We have the right to respond to such requests within 30 days.

A request to cease data processing will be treated as a request to terminate the permanent customer agreement.

Security

All customer personal data obtained during visits to SPA by M.Nectar`s online store and during the purchase process is treated as confidential information. Encrypted communication channels with banks ensure the security of the purchaser`s personal data and banking details.

Terms and Changes to the Privacy Policy

By using our website or submitting a permanent customer application, you have familiarized yourself with and agreed to these principles and terms of the privacy policy. We reserve the right to change the general terms of the privacy policy as needed, informing all permanent customers, but we will do our best to keep our privacy policy up-to-date and available to you on our website.

MNECTAR OÜ is the responsible data processor for customer personal data. For any questions or concerns regarding the privacy policy or data processing, please contact us at mnectarspa@gmail.com.

You always have the right to contact the Data Protection Inspectorate or the court to protect your data. The Data Protection Inspectorate is a national authority that can be consulted or sought assistance on matters related to data protection.