We encourage you to ask questions and to be very cautious before you disclose your personal information to others. Please read the following to learn more about our data collection policies and practices.
1. Types of information that may be collected
The personally identifiable information we collect is used to facilitate delivery of products and/or services to our customers. In the process of providing these products and/or services, we require our customers to provide certain personally identifiable information. Specific details may include, but are not limited to, the following and may be subject to change: customer’s first name, last name, postcode, phone number, age and email address, postal address. In order to complete the purchase of a product and/or service, an online debit/credit card or bank account number may be required. During this process our payment processor Viva Wallet generates and collect certain verifiable personally identifiable information, which includes the customer’s first and last name, first and last name of the credit/debit card owner, credit/debit card billing address, credit/debit card number, credit/debit card expiration date, customer’s shipping address, phone number, and email address. If a customer sends us personal correspondence, such as emails or letters, we may collect such information into a file specific to such customer.
2. How is information collected?
We may collect information from you in several areas on the Site, including but not limited to those described below:
You may be asked first to complete a registration form and provide personally identifiable information; you may also be asked to choose a user ID and password in order to take advantage of certain features the Site may choose to offer, including, but not limited to, Newsletters, Contests, or other subscription based services.
Newsletters and Site Emails
We may offer free newsletters to share information with you about the Site, about us and our affiliates and subsidiaries, or about our business partners and advertisers and sponsors. You may receive a newsletter either by registering for a particular newsletter or in conjunction with a special feature or membership for which you have registered on the Site. When you do register with us or give us personally identifiable information, you will have an opportunity at the time we collect your information to option out and limit e-mail communications from Dodd Heres. You may cancel your email subscription at any time by following the instructions provided on the Site or, in some instances, in the designated area of certain newsletters or emails.
Surveys or Voting
From time-to-time we may request personally identifiable information from you via surveys or voting polls. Participation is voluntary and you will have the opportunity to decide whether or not to disclose information. At times, you may have to register to vote or to take part in a survey.
IP Addresses and Click-stream Data
We may collect IP addresses and/or click-stream data for purposes of system administration and to report aggregate information to our advertisers and sponsors. An IP address is a number that is automatically assigned to your computer whenever you access the Internet. Our computers identify your computer by its IP address. When you request Web pages from the Site, our computers log your IP address. Click-stream data is information collected by our computers when you request Web pages from the Site. Click-stream data may include such information as the page served, the time, the source of the request, the type of browser making the request, the preceding page view and other such non-personal information. When analysed, this data helps us analyse how visitors arrive at the Site, what type of content is most popular, what type of visitors in the aggregate are interested in particular kinds of content and advertising, and the like. Transaction Information If you order any information from our Site, buy any of our products or subscribe for any of the services offered on our Site, we will ask you to complete an order form that will request certain information from you, including financial information such as bank account number or a credit/debit card number and expiration date and general contact, billing information. We will use this information to complete the transaction that you have requested, i.e., to deliver the information, products or other services that you order, and to invoice you. Such information is collected and stored through encrypted means for your protection.
3. How we use the information we collect?
We internally use personally identifiable information about our customers to improve our marketing and promotional efforts, to statistically analyse site usage, to improve our content and product offerings and to customize our Site’s content and layout. We believe these uses allow us to improve our Site and provide better service to our customers. We may occasionally use a customer’s email address and, in rare situations mailing address or phone number, to contact a customer regarding administrative matters or notices. We may use information in the file we maintain about a customer to resolve disputes and troubleshoot problems.
4. With whom the information may be shared
Dodd Heres relies on numerous third-party service providers to provide certain products and services on our behalf, including IT services, customer care, email delivery services, communication and delivery of promotional and marketing materials via email and direct mail, administering guest surveys and promotions, administration, data analysis, and other similar services. We may share your Personal Data for the purpose of enabling these third parties to provide such services or is otherwise necessary for the ongoing operation of the website and Dodd Heres business. Some of these third-party service providers may be located overseas and in particular outside the UK/EEA. When we do outsource the processing of your Personal Data to 3rd parties or provide your personal data to third-party service providers, will require those third parties to protect your Personal Data with reasonable security measures and to limit their use only to the purposes for which we have disclosed it to them.
5. What choices do I have about Dodd Heres collecting, using, and sharing my information?
It is possible for you to use much of our site without giving us any personally identifiable information. When you do register with us or give us personally identifiable information, you will have an opportunity at the time we collect your information to option out and limit e-mail communications from Dodd Heres. You can request at any time that Dodd Heres not send future e-mail to you either by unsubscribing from the communication or by contacting us at [email protected]. Also, as mentioned above, there are ways to limit the information collected through technology — though some of our Site features won’t work if you decide to do this.
L. What security precautions are in place to protect against the loss, misuse, or alteration of your information?
We use industry standard efforts to safeguard the confidentiality of your personally identifiable information. However, please keep in mind that “perfect security” does not exist on the Internet and/or the World Wide Web.
Links to other Websites
Limitation of Liability
By providing us with any personal information you expressly and unconditionally release and hold harmless Dodd Heres Ltd its owners, members, managers, shareholders, officers, directors employees and agents and each of their subsidiaries, affiliates, directors, officers, employees and agents (collectively, the “Releasees”) from any and all liability for any injuries, loss or damage of any kind arising from or in connection with the use and/or misuse of your collected personal information. In addition, while Dodd Heres takes efforts to ensure the proper and appropriate use of Dodd Heres data provided by Dodd Heres to third party companies, promotional partners or vendors, the Releasees are not liable for any injuries, loss or damage of any kind arising from or in connection with the use and/or misuse of your collected personal information by such third parties.
Correcting and updating personal information
If your personally identifiable information changes (such as your postcode), or if you no longer desire to access our Site, we will endeavour to provide a way to correct, update or remove the personal data you have provided to us. This can be done by making changes to your profile, by using an option out message in an email, or by emailing us at [email protected].
If you purchase services from our cannapharmastore.com website, we will process the necessary data to carry out the order and all related tasks such as pre-contractual measures or the handling of complaints. This data includes your name and shipping address as well as contact and payment data. The legal basis for the processing Art. 6 (1) (1) (b) GDPR. Your personal data will be processed as long as this is necessary to carry out pre-contractual measures or to fulfil the contract. Beyond that, we process the data only, if we are obligated to do so by law (e.g. by statutory recording obligations). Data processing in connection with purchases from the Site is performed on our behalf and under our supervision by fulfilment-contractors and platform providers. In this process, your data will also be processed in a third country. We have provided appropriate safeguards for the protection of your data by signing standard data protection clauses provided by the European Commission with the respective processors. You are not obliged to provide your personal data, but it is not possible to buy services from cannapharmastore.com without providing it.
Most browsers automatically accept Cookies. However, you can configure your browser so that no Cookies are stored on your computer or a message always appears before a new Cookie is created. The complete deactivation of Cookies can lead to the fact that you cannot use all functions of our website. The following links provide information on this option for the most frequently used browsers:
- Microsoft Internet-Explorer: https://support.microsoft.com/de-de/help/17442/windows-internet-explorer-delete-manage-cookies
- Mozilla Firefox: https://support.mozilla.org/de/kb/Cookies-blockieren
- Google Chrome: https://support.google.com/chrome/answer/95647?co=GENIE.Platform%3DDesktop&hl=de
- Safari: https://support.apple.com/kb/ph21411?locale=de_DE
For the purpose of demand-oriented design and continuous optimization of our website, we use Google Analytics, a web analysis service provided by Google Inc. (https://www.google.de/intl/de/about) (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; hereinafter “Google”). In this context, pseudonymized user profiles are created and Cookies are used (see No. 7). The information generated by the Cookie about your use of this website such as
- Browser type/version,
- operating system used,
- referrer URL (the previously visited page),
- host name of the accessing computer (IP address) and
- time of the server request
- are transferred from your browser to a Google server in the USA and stored on Google servers.
Google Analytics is used for statistical purposes of our website, to evaluate them for the purpose of optimizing our offer for you and to further develop our offer and in particular our website. This constitutes a legitimate interest within the meaning of Art. 6 (1) (1) (f) GDPR. Data transmission to the USA is in accordance with EU Commission Decision 2016/1250 (EU-US Data Protection Shield). If your browser does not support Google Analytics or you deactivate this function, no data transfer takes place.
The pseudonymized user profiles are deleted after 14 months. The information is used to evaluate the use of the website, to compile reports on the website activities and to provide further services associated with the use of the website and the Internet for the purposes of market research and demand-oriented design of these websites. This information may also be transferred to third parties if this is required by law or if third parties process this data on behalf of the company. Under no circumstances will your IP address be merged with other data from Google. The IP addresses are anonymized so that an assignment is not possible (IP masking). You can prevent the installation of cookies by setting your browser software accordingly (DO-NOT-TRACK).
You can also prevent the collection of data generated by the Cookie and related to your use of the website (including your IP address) and the processing of this data by Google by downloading and installing a browser add-on https://tools.google.com/dlpage/gaoptout?hl=en.
For more information about privacy in connection with Google Analytics, please visit the Google Analytics Help Center https://support.google.com/analytics/answer/6004245?hl=en.
Google Tag Manager
Google Tag Manager does not access this data. Further information can be found here: https://www.google.com/intl/de/tagmanager/faq.html and http://www.google.com/intl/de/policies/privacy.
The “Google Optimize” web analytics and optimization service is used on our Website (hereinafter referred to as “Google Optimize”). The service is made available by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
We use the Google Optimize service to enhance the presentation, content, and functionality of our website by displaying new functions and content to a percentage of our users, and statistically analyzing their changing usage. Google Optimize is a sub-service from Google Analytics.
You can prevent the storage of cookies by applying the corresponding setting in your browser. In addition, you can prevent the acquisition of data generated by the cookie and relating to your use of the website (including your IP address) by Google, as well as the processing of this data by Google, by downloading and installing the browser plugin available at the following link: https://tools.google.com/dlpage/gaoptout?hl=de.
Google Optimize is used on the basis of our legitimate interest in the purposes stated above. The legal basis is point (f) of Article 6(1) GDPR.
Google Web Fonts
When visiting our website, so-called web fonts are downloaded for the uniform display of fonts. This content is provided by Google Inc, 1600 Amphitheatre Parkway Mountain View, CA 94043, USA (“Google”). When accessing our website, your browser loads the required web fonts into your browser cache to display texts and fonts correctly. To do this, the browser you are using must connect to Google’s servers. This gives Google knowledge that our website has been accessed via your IP address.
Google Web Fonts are used for the purpose of uniform and appealing presentation of our website. This constitutes a legitimate interest within the meaning of Art. 6 (1) (1) (f) GDPR. Data transmission to the USA is in accordance with EU Commission Decision 2016/1250 (EU-US Data Protection Shield). If your browser does not support web fonts or you deactivate this function, no data transfer takes place.
For more information about Google Web Fonts, visit https://developers.google.com/fonts/.
On our website we may use Google reCAPTCHA (“reCAPTCHA”). This content is provided by Google Inc, 1600 Amphitheatre Parkway Mountain View, CA 94043, USA (“Google”). reCAPTCHA is a free service that protects our website from spam and abuse. It uses advanced risk analysis techniques to tell humans and bots apart. With the new API, a significant number of our valid human users will pass the reCAPTCHA challenge without having to solve a CAPTCHA.
reCAPTCHA is used to prevent abuse of the contact form and to guarantee the security of our IT systems of our website. This constitutes a legitimate interest within the meaning of Art. 6 (1) (1) (f) GDPR. Data transmission to the USA is in accordance with EU Commission Decision 2016/1250 (EU-US Data Protection Shield). If your browser does not support Google reCAPTCHA or you deactivate this function, no data transfer takes place.
For more information about Google reCAPTCHA, visit https://developers.google.com/recaptcha/.
The Dodd Heres newsletter contains so-called tracking pixels. A tracking pixel is a miniature graphic embedded in such e-mails, which are sent in HTML format to enable log file recording and analysis. This allows a statistical analysis of the success or failure of online marketing campaigns. Based on the embedded tracking pixel, the Dodd Heres may see if and when an e-mail was opened by a data subject, and which links in the e-mail were called up by data subjects.
Such personal data collected in the tracking pixels contained in the newsletters are stored and analysed by us in order to optimize the shipping of the newsletter, as well as to adapt the content of future newsletters even better to the interests of the data subject. These personal data will not be passed on to third parties. Data subjects are at any time entitled to revoke the respective separate declaration of consent issued by means of the double-opt-in procedure. After a revocation, these personal data will be deleted by us. Dodd Heres automatically regards a withdrawal from the receipt of the newsletter as a revocation.
Integration of social media
On the basis of Art. 6 (1) (1) (f) GDPR we use the social networks YouTube, Twitter, Facebook, Instagram, and Google My Business in order to make our website better known and to interact with our target groups. Responsibility for the data protection-compliant operation of these services is guaranteed by the respective provider. We integrate these services exclusively via a link so that visitors to our website have the best possible control over their personal data.
These social networks are operated exclusively by third parties, some of whom have their register office outside the E.U. or the EEA – there may therefore be no adequate level of data protection in accordance with the GDPR. The browser plug-ins and links on our website are identified by logos or other references. When you visit our website, which contains such a browser plug-in, a connection is automatically established between your device (browser) and the servers of the respective social network. This forwards the information that you have visited our website to the social network. If you are logged in to the social network via your personal user account or during your visit to our website, your visit to our website will be assigned to your account. By interacting with browser plug-ins or links, e.g. by pressing a “like” button or leaving a comment, this information is transmitted to the respective social network and stored there. The allocation of the data to your account can therefore be prevented on the one hand by logging out of your account (of the respective social network) before visiting our website. On the other hand, you can also completely prevent the loading of the respective plug-ins with an add-on for your browser, e.g. with the script blocker “NoScript” (http://noscript.net/).
The purpose and scope of data collection through social networks as well as the further processing and use of your data and your rights and setting options for the protection of your privacy can be found in the respective data protection information of the operators:
- YouTube: https://policies.google.com/privacy?hl=de
Provider: Google Inc., Amphitheater Parkway, Mountain View, CA 94043, USA
- Twitter: https://twitter.com/privacy?lang=de
Provider: Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA
- Facebook: https://www.facebook.com/policy.php
Provider: Facebook Inc., 1601 Willow Road, Nelo Park, CA 94025, USA
- Instagram: https://help.instagram.com/478745558852511
Provider: Instagram LLC, 1601 Willow Rd, Menlo Park, CA 94025, USA