Effective Date: 20 February 2024
Last Updated: 21 October 2024
Introduction
PixelPalace OU ("PixelPalace", "we", "us", or "our") respects your privacy and is committed to protecting your personal information. This Privacy Policy outlines how your data is collected, used, and shared when you visit our website, and use our services. Please read this policy carefully to understand our practices.
By using the website, you agree to the terms of this Privacy Policy. If you disagree with any part, please discontinue use of our services.
Data Collection
We collect several types of information from and about users of our website, including:
A. Personal Data
"Personal data" refers to any information that can directly or indirectly identify you. This includes:
Identification Information: Your name, email address, billing addresses.
Account Information: password, and profile information when you register for an account.
Transaction Data: Purchase history, order details, and payment confirmations.
Communications: Messages, inquiries, or customer service requests submitted through our website or email.
B. Non-Personal Data
"Non-personal data" includes information that cannot be used to identify you. We may collect:
Device Information: The type of device you use (e.g., smartphone, computer), browser type, IP address, and operating system.
Website Usage Data: Pages viewed, time spent on pages, the referring website, and how you interact with the website.
Geolocation Information: Your general location based on your IP address (e.g., city or country).
C. Data from Cookies and Similar Technologies
We also use cookies, web beacons, and similar tracking technologies to automatically collect information about how you use the website:
Cookies: Small text files stored on your device to track your preferences and activity on the website.
Web Beacons: Small graphics embedded in emails or web pages that track user interactions, such as email open rates or page visits.
Log Files: Information automatically collected when you interact with the website, including IP addresses, browser type, and timestamps.
You can manage cookie preferences through your browser settings.
How We Use Your Information
We use the collected data for various purposes, including to provide, maintain, and improve our services.
A. Service Delivery
We use your personal data to:
Process your orders and deliver 3D models.
Manage your user account and preferences.
Communicate with you regarding purchases, refunds, and support inquiries.
B. Service Improvement and Analytics
We analyse non-personal and aggregated data to:
Improve the performance and design of the website.
Monitor trends and optimize product offerings.
Conduct research to improve the user experience.
Detect and prevent technical issues or fraudulent activity.
Strong Customer Authentication (SCA)
In compliance with the Strong Customer Authentication (SCA) requirements mandated by the European Union’s Payment Services Directive 2 (PSD2), our payment gateway provider has implemented enhanced security measures for all payment transactions on our website. SCA requires multi-factor authentication to reduce the risk of fraud and increase the security of electronic payments. These standards ensure that all transactions are processed securely, providing an additional layer of protection for purchases made on our website.
A. 3D Secure Protocol
Our payment gateways provider uses the 3D Secure (3DS) protocol for credit and debit card payments, which requires customers to authenticate their identity through their card issuer's secure environment.
B. Security Tokens
Where applicable, our payment gateway provides tokenization services, which replace sensitive card data with a secure token, reducing the risk of data breaches.
PCI DSS Compliance
We ensure that all payment card transactions are handled securely in accordance with the Payment Card Industry Data Security Standards (PCI DSS). These standards are designed to protect cardholder data, and we work with PCI DSS-compliant payment gateway provider to safeguard your financial information. Your payment details are encrypted and securely processed, and we do not store sensitive card information on our systems.
GDPR Compliance
PixelPalace OU complies with the General Data Protection Regulation (GDPR), ensuring that the personal data of individuals is collected and processed in a transparent, secure, and lawful manner.
Data Sharing and Disclosure
We value your privacy and will not sell, trade, or rent your personal data. However, we may share your data in the following situations:
A. Service Providers
We work with trusted third-party providers who assist us with various aspects of our business, including:
Payment Processing
Cloud Hosting
Analytics
These providers are required to handle your data securely and only use it for the services they provide on our behalf.
B. Legal Compliance
We may disclose your information if required to do so by law, such as in response to a court order, or other legal process, or when necessary to protect our rights or comply with regulatory obligations.
Data Security
We are committed to protecting your personal data from unauthorized access, disclosure, alteration, or destruction. To achieve this, we use a combination of technical, administrative, and physical security measures, including:
Encryption: We use SSL/TLS encryption for all sensitive data transmitted over our website.
Access Controls: We limit access to personal data to authorized employees and contractors who need it to perform their job duties.
Regular Security Testing: We conduct regular vulnerability assessments, and security checks to detect and address potential risks.
Secure Storage: We store your personal data in secure systems protected by firewalls, encryption, and multi-layered security protocols.
Data Retention
We will retain your personal data for as long as necessary to fulfil the purposes for which it was collected, as outlined in this Privacy Policy. This includes retaining your data to meet legal, or regulatory obligations, resolve disputes, or enforce agreements.
Once your data is no longer necessary, we will securely delete or anonymize it in accordance with applicable laws and regulations.
Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices or applicable laws. The latest version will always be available at our Website, and it is your responsibility to review the updated policy. If there are significant changes (such as modifications to the types of data we process or the purposes of processing), the updated Privacy Policy will be posted, and your continued use of our services will constitute acceptance of those changes.