This privacy notice governs how $ustainability® (“$ustainability®”, “we”, “our” or “us”) collects, uses, maintains and discloses information collected from users (each, a "User" or “you”) of the sustainabilityclothing.com website (the “Site”) and customers in the retail stores we operate. 

Who Is Responsible For The Processing Of Your Personal Data?

$ustainability® is responsible for the processing of personal data obtained through the Site in accordance with the EU General Data Protection Regulation (GDPR) and other applicable laws and regulations, because we determine how and why your personal data is processed.

 

What Personal Data Do We Process, For What Purpose And On What Grounds?

Any information related to a person that can be used to identify them directly or indirectly is personal data.

Personal Data

Personal Information, which consists of: Contact information (first and last name; postal address; billing address; shipping address; email address and telephone number) and gender and language preference.

Purpose of processing: To create an account on our website; to fulfil your orders, process payments and manage returns and refunds; to inform you about your order and/or products that are back in stock; to complete a purchase in a retail store or online; to provide you with product repair services; to send you event notification e-mails and product review e-mails; to publish your product review; to send you our newsletters; to send you targeted e-mails based on your purchase history and your profile; to create and manage targeted advertising campaigns by using third party online advertising tools; to send you emails about products similar to those you purchased; to participate in a petition; to ask for User feedback; to make back-ups; to detect fraudulent activities on our website; and to respond to binding requests or orders from authorities and courts and comply with relevant legal and regulatory requirements.

Legal basis: Performance of our contract; explicit consent of the User; our legitimate interest to improve the quality of our products and services; or compliance with a legal obligation.

Survey Data

Survey Data, which consists of: Feedback in surveys; product reviews; customer service reviews; photos uploaded when providing product reviews; videos uploaded when providing product reviews.

Purpose of processing: To send you our newsletters and surveys and to respond to binding requests or orders from authorities and courts and comply with relevant legal and regulatory requirements.

Legal basis: Explicit consent of the User; or compliance with a legal obligation.

Details Of Purchases

Details of Purchases, which consists of: Details of purchases; details of returned goods; and correspondence exchanged between User and customer service team.

Purpose of processing: To fulfil your orders placed on our website; to process payments and refunds; to address customer service concerns; and to respond to binding requests or orders from authorities and courts and comply with relevant legal and regulatory requirements.

Legal basis: Performance of our contract; or compliance with a legal obligation.

Website Interaction Data

Website Interaction Data, which consists of: Universal Unique Identifier (UUID); and IP address.

Purpose of processing: To use cookies, JavaScript, HTML 5 and other digital technologies to improve site functionality by tracking usage; to measure the effectiveness of our ads and other communications on social media platforms; to provide social media functionality; and to respond to binding requests or orders from authorities and courts and comply with relevant legal and regulatory requirements.

Legal basis: Explicit consent of the User; or compliance with a legal obligation.

Profiling Data

Profiling Data, which consists of: Details of purchases and returns over the last 12 months.

Purpose of processing: To build a profile based on the purchases and returns of the User and to respond to binding requests or orders from authorities and courts and comply with relevant legal and regulatory requirements.

Legal basis: Performance of our contract; or compliance with a legal obligation.

Social Media

We have implemented one or more social media pixels or other Java script enabled trackers on the Site (“social media pixel”). Social media pixels are made available to us by the relevant social media platform. They enable us to identify you if you landed on the Site by clicking on an ad or a link that we published on the social media platform and identify to us which products you subsequently acquired from us. The tracker drops a cookie on your computer or mobile phone when it is first loaded by your browser or app. By means of the tracker, the social media platform and Plainandsimple collect your IP address (including associated location information), your user agent or browser string and specific information on how you interact with the Site. The user agent or browser string provides the basics as to which operating system your computer or mobile phone is running, basic security information, screen resolution and the Internet browser that you are using. The social media platform processes all personal data it obtains by means of the social media pixel in accordance with its privacy statement. 

 

Storage of Personal Data
We will retain your personal data for as long as you maintain an account or as otherwise necessary to fulfil our contractual relationship with you. Your purchase history over a period of 12 months will be retained to enable us to build a profile that is based on what products you buy from us and how you buy them.

We will also retain your personal data as necessary to comply with our legal obligations, resolve disputes and enforce our agreements. Where we no longer need to process your personal data for the purposes set out in this notice, we will delete your personal data from our systems. Where permissible, we will also delete your personal data upon your request; information on how to make a deletion request can be found in the section “Your rights and withdrawal of permission” below.

The storage period of personal data processed using social media pixels is determined by the relevant social media platforms. The storage period of personal data processed using cookies is determined by your engagement with our website. If you have not visited our website for at least 2 years we will remove the historic record of your interaction data. The storage period of personal data processed by our service providers and other third parties (see below) who are independent controllers is determined by their respective privacy notices.