Privacy Policy
Bonjour and welcome! At CSCECES ("we", "us", "our"), based at 14 Rue du Château, 77300 Fontainebleau, France, we value your trust deeply. Protecting your personal data is not just a legal obligation for us – it's a core part of our commitment to you. This policy explains how we collect, use, and safeguard your information when you visit our website csceces.com or make a purchase. ✨
We are the "Data Controller" for the personal data you provide to us. This means we decide how and why it is used, in compliance with the EU General Data Protection Regulation (GDPR) and French data protection laws (Loi Informatique et Libertés).
1. 🤝 What Personal Data We Collect & Why
We only collect data necessary to provide you with a seamless experience and fulfill your orders:
-
When You Place an Order: Name, billing/delivery address, email address, phone number (optional, for delivery updates), payment details (processed securely by our payment gateway, we do not store full card numbers). Why? To process your order, arrange shipping, send invoices, and manage returns. (Legal Basis: Contract).
-
When You Contact Us: Name, email address, your message content. Why? To respond to your inquiries, comments, or requests. (Legal Basis: Legitimate Interest / Consent).
-
When You Browse Our Site (Cookies & Similar Tech): IP address, browser type, device info, pages viewed, how you navigated the site. Why? To make our website function properly (essential cookies), understand how visitors use it to improve your experience (analytics cookies), and occasionally show relevant ads (marketing cookies - we will always ask for your consent first). (Legal Basis: Consent for non-essential cookies; Legitimate Interest for essential/analytics where minimal intrusion). Learn more in our Cookie Policy (link if you have a separate one, or state: "See details below").
-
If You Sign Up for Newsletters: Email address. Why? To send you updates about new collections, offers, and style inspiration (only if you explicitly opt-in!). (Legal Basis: Consent). You can unsubscribe anytime (link in every email).
2. 🔐 How We Protect Your Data
Your data's security is paramount. We implement appropriate technical and organizational measures:
-
Secure Website (HTTPS/SSL): Encrypts data transmitted between you and our site.
-
Trusted Partners: We only use reputable, GDPR-compliant service providers (e.g., payment processors, shipping carriers, email service providers). They only receive data essential for their specific task.
-
Internal Safeguards: Access to personal data is limited to staff who need it for their job duties (e.g., order fulfillment, customer service). We maintain internal security protocols.
-
Payment Security: Payment details are processed directly by our secure, PCI-DSS compliant payment gateway partner. We never see or store your full credit card number.
3. ⏳ How Long We Keep Your Data
We retain your data only as long as necessary for the purposes outlined, or as required by law (e.g., tax/accounting records):
-
Order Data: Typically retained for 6-10 years for legal/compliance reasons (e.g., tax records, warranty).
-
Customer Service Enquiries: Retained for the time needed to resolve your query, plus a short period for quality/record-keeping.
-
Newsletter Subscriptions: Retained until you unsubscribe or we stop the newsletter. We regularly review and clean inactive lists.
-
Website Analytics: Aggregated/anonymized data may be kept longer for trend analysis.
4. 📤 Sharing Your Data (We Don't Sell It!)
We never sell or rent your personal data to third parties for marketing. We only share it when strictly necessary:
-
Service Providers: Essential partners like payment gateways (e.g., Stripe, PayPal), shipping carriers (e.g., La Poste/Colissimo), email marketing platforms (e.g., Mailchimp - only for consented subscribers), and website analytics providers (e.g., Google Analytics - anonymized where possible). These partners act as "Data Processors" under our strict instructions.
-
Legal Obligations: If required by law, regulation, or legal process (e.g., court order).
5. 🌐 International Transfers (Minimal)
We store data primarily within the EU/EEA. If any service provider processes data outside the EU/EEA (e.g., US-based platforms), we ensure they provide adequate protection under GDPR (e.g., Standard Contractual Clauses, Privacy Shield certification where applicable).
6. 🛡️ Your Data Protection Rights (GDPR Rights)
Under GDPR, you have important rights regarding your data:
-
Right to Access: Request a copy of the personal data we hold about you.
-
Right to Rectification: Ask us to correct inaccurate or incomplete data.
-
Right to Erasure ("Right to be Forgotten"): Ask us to delete your data in certain circumstances (e.g., if no longer needed, you withdraw consent).
-
Right to Restriction: Ask us to limit how we use your data in certain situations.
-
Right to Data Portability: Request a machine-readable copy of data you provided based on consent/contract, or ask us to transfer it to another controller.
-
Right to Object: Object to processing based on our legitimate interests (including direct marketing).
-
Right to Withdraw Consent: Where processing relies on your consent (e.g., marketing emails), you can withdraw it anytime (e.g., use unsubscribe link).
-
Right to Lodge a Complaint: Contact the French Data Protection Authority (CNIL - www.cnil.fr) if you believe we haven't complied with GDPR.
To exercise these rights: Please contact us at cgarvi292@gmail.com. We will respond within one month (may extend for complex requests). We may need to verify your identity before processing your request.
7. 🍪 Cookies & Tracking Technologies
Our website uses cookies – small text files stored on your device. We use them for:
-
Essential Functions: Making the shopping cart and checkout work, user login.
-
Performance/Analytics: Understanding how visitors use our site (e.g., popular pages) to improve it. (e.g., Google Analytics - configured to anonymize IPs where possible).
-
Marketing/Advertising (Only with Consent): To show you relevant ads on other platforms (e.g., Facebook, Instagram) and measure ad effectiveness.
Your Cookie Choices: When you first visit our site, you'll see a banner asking for your consent for non-essential cookies (analytics, marketing). You can accept all, reject all, or customize your preferences. You can also manage cookies through your browser settings. Blocking essential cookies may impair site functionality.
8. 👶 Children's Privacy
Our website and services are not directed at children under 16. We do not knowingly collect personal data from children. If you believe a child has provided us with data, please contact us immediately.
9. 🔄 Changes to This Policy
We may update this policy occasionally to reflect changes in practices, services, or legal requirements. The "Last Updated" date at the bottom will indicate changes. Significant changes will be notified via email (if applicable) or a prominent notice on our website.
10. 📬 Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or your data, we’re here to help:
-
Email: cgarvi292@gmail.com (Preferred)
-
Postal Address: CSCECES, 14 Rue du Château, 77300 Fontainebleau, France.
-
(Subject Line Suggestion: "Privacy Inquiry"
Merci for trusting CSCECES with your style and your data. We are committed to protecting it with care and respect. 💌
Avec toute notre attention,
The CSCECES Team
(Last Updated: [06/26/2025])