Privacy Policy
What this Privacy Policy is for
This policy explains what data is collected during website visits and how it is processed and stored. The site is designed for adults aged 18 and above and does not intentionally collect information from minors.
Under GDPR, individuals have the legal right to contact the company at any time to request data records, understand storage and processing methods, and request corrections or deletions. The organization emphasizes keeping personal data accurate and current.
Third-party websites, plug-ins, and applications linked from this site are beyond company control, and users should review those sites' privacy statements independently.
Your data
The company collects both personal and anonymous data. Personal data includes information identifying individuals, while anonymous data has identifying information removed.
Data categories collected:
- Identity Data (names)
- Contact Data (addresses, phone numbers, email)
- Financial Data (bank and card details)
- Transaction Data (purchase and return information)
- Technical Data (IP address, browser information, timezone, location)
- Usage Data (browsing behavior)
- Marketing Data (communication preferences)
The organization also collects Aggregated Data derived from personal information but not directly revealing identity. However, when aggregated data combines with personal data allowing identification, it receives personal data protections.
The company does not collect sensitive personal data including ethnicity, criminal records, sexual orientation, political opinions, religious beliefs, health information, or biometric data.
Collecting your data
Data collection occurs through:
Direct interactions - Completed forms, email responses, phone contact, postal communication during purchases, account setup, subscriptions, or marketing requests.
Automated interactions - Browsing behavior data collected through cookies, server logs, and similar technologies (see Cookie Policy for details).
Third parties - Analytics providers like Google, search information providers like Microsoft Bing, and publicly available sources such as electoral rolls.
Using your data
Personal data is used only within legal and GDPR frameworks and legitimate business interests. The organization maintains security through:
- Secured networks with limited access
- Special access rights requirements for personnel
- Confidentiality requirements for staff
- SSL encryption for sensitive information
- Third-party gateway processing (not stored on company servers)
Specific uses include:
- Registering new customers for purchases and order processing
- Registering for contact relationship programs including recommendations, competitions, surveys, and effectiveness measurement
- Managing relationships through updates on terms and policy changes
- Improving business efficiency and website safety through troubleshooting, analysis, testing, and system maintenance
Opting in and out of marketing and promotional activity
Communications about products and services are sent based on collected data only with consent from purchase, subscription, competition entry, or survey completion. Users may opt out at any time through account settings' "Marketing preferences" section.
We will never give your personal data to, or let it be used by, third parties for marketing purposes without your expressed consent by way of additional opt-in.
Opting out of marketing does not delete transaction-related data, though users can request alterations, reviews, or deletions at any time.
Change of purpose
Personal data is used only for original collection purposes unless compatible with those reasons. Users are notified if data must serve unrelated purposes, with explanation of legal basis.
Third Party disclosure and international transfer of Personal Data
Partner suppliers outside the EU and European Economic Area may receive personal data transfers. Protection occurs through:
- Transfer only to countries the European Commission deems providing adequate protection
- Specific EC-approved protective contracts
- EU-US Privacy Shield participation for US-based companies
The company may share personal data if ownership structure changes or new entity investments occur, with continued policy compliance by new ownership.
All third parties must respect data security and follow law. Service providers cannot use data for their own purposes and process only per company instructions.
Keeping your personal data safe
The company has implemented security measures preventing accidental loss, unauthorized access, alteration, or disclosure. Physical, electronic, and managerial procedures protect privacy. Access is strictly limited to employees, agents, contractors, and third parties with critical business need.
Security breach procedures include notification and regulatory reporting where required.
Data retention follows original collection purposes, with some Contact, Identity, Financial, and Transaction Data retained for up to seven years for EU tax compliance purposes.
Your rights under GDPR
Individuals possess these rights:
- Right to be informed
- Right of access (copy of held personal data)
- Right to rectification (correction of incorrect data)
- Right to erasure (deletion of unlawfully held data)
- Right to restrict processing (suspension if rights are impinged)
- Right to data portability (transfer in standard machine-readable format)
- Right to object (withdraw consent at any time)
The company aims to respond quickly to rights requests but allows up to four weeks. Complex requests may require extended timeframes with notification.
Contact Information for Privacy Matters
Privacy Policy Manager at J.Guillem Bicycles
- Email: info@jguillem.com
- Address: Energieweg 23, 3281 NH Numansdorp, NL
- Telephone: +31 (0)186 685941