Privacy Policy
This privacy policy explains how Uberto d.o.o. processes your personal data. Uberto d.o.o. is focused on protecting your personal data and processing it in accordance with the General Data Protection Regulation and the Law on the Implementation of the General Data Protection Regulation. Please read this policy carefully to understand why and how we collect your personal data and how it will be used.
UBERTO d.o.o. is the data controller of your personal data, which you can contact at the email: uberto@uberto.hr
1. Purposes for which we process personal data
We process your personal data because legal regulations require certain actions, or because processing is necessary for the execution of a contract, or to take actions before entering into a contract or based on our legitimate interests, except when those interests are overridden by the interests or fundamental rights and freedoms of individuals requiring the protection of personal data. We also process your personal data when opening your user account, processing orders, delivery, or sending ordered shipments, transferring commercial communications via email, phone, mail, or courier delivery, within the limits of consent, providing responses to inquiries, resolving any disputes or complaints, promoting brands, products, and assortments, sales, advisory, and marketing activities of Uberto d.o.o.
If we cannot process personal data based on the mentioned legal grounds, we will request your consent. If processing is based on your consent, you have the right to withdraw consent at any time. You must notify Uberto d.o.o. of the withdrawal of consent at the email address: uberto@uberto.hr. Such withdrawal will not affect the lawfulness of processing based on consent before its withdrawal.
We mainly collect personal data directly from you when you order certain products or services or fill out a specific form or when we collect data through monitoring (e.g., via video surveillance).
2. Categories of personal data
When concluding a sales contract, we need data such as name, surname, address, email address, phone number, age, OIB, and other data that we use to fulfill our obligation to deliver products and services.
3. What privacy rights do you have
If you decide to use one or more of your rights listed below, we have the right to verify your identity, all for the purpose of protecting your personal data.
Please note that at any time you have the right to request from Uberto d.o.o. :
3.1. Access to your personal data
You can ask Uberto d.o.o. for what purposes it uses data concerning you, as well as for access to such personal data. In addition, you have the right to know the purpose of processing, the groups of your personal data we store, third parties or groups of third parties with whom your personal data is shared, the period during which we retain the data, as well as our source of data that we did not collect directly from you.
3.2. A copy of your personal data we store
Feel free to contact us if you want a copy of some or all of the personal data we have about you.
3.3. Correction of incorrectly entered data
We want to ensure that your personal data is accurate and up-to-date. You can ask us to correct or remove data you consider inaccurate or outdated.
3.4. Deletion of your personal data
You can ask us to stop processing, or even delete personal data we hold. If your personal information is necessary for the execution of certain contractual obligations by Uberto d.o.o. towards you, Uberto d.o.o. may not be able to fulfill such contractual obligations. Likewise, if your personal data is required for Uberto d.o.o. to comply with certain legal obligations, your request cannot be resolved. You have the right to withdraw consent for further processing of personal data at any time. Withdrawal of consent does not affect processing carried out based on consent before its withdrawal.
3.5. To restrict access to your data and/or third parties in certain processes or completely
If you dispute the accuracy of your data, or we no longer need personal data for the purpose of processing, but you require them for the establishment, exercise, or defense of legal claims, or you have objected to processing on grounds that Uberto d.o.o. considers legitimate, you have the right to request restricted processing of your personal data. Restricting access does not affect processing carried out based on consent before its withdrawal.
3.6. Objection to the way we handle your data
Remember that you have the right to object to the processing of your personal data on legal grounds that Uberto d.o.o. considers legitimate. In addition, you have the right to object at any time to the processing of your personal data for direct marketing purposes, which includes profiling to the extent related to such direct marketing.
3.7. Transfer of data to another data controller (right to data portability)
If processing is based on your consent or is carried out by automated means, you have the right to request from Uberto d.o.o. the transfer of your data to another data controller.
To exercise the rights listed below, please use the contact details of Uberto d.o.o. provided in paragraph 1 of this Privacy Policy.
If you are not satisfied with the way we collect or use your personal data, you always have the right to personally contact the Agency for Personal Data Protection. If you want to learn more or wish to use one or more of the above rights, feel free to contact Uberto d.o.o., uberto@uberto.hr
You can also file a complaint with the Agency for Personal Data Protection.
4. Retention of personal data
The personal data we collect about you is stored in a secure environment. Your personal data is protected from unauthorized access, disclosure, use, alteration, or destruction by any organization or individual.
The data collected for the above purposes by Uberto d.o.o. will be stored only as long as necessary for the above purposes. Your personal data will not be kept in a form that allows you to be identified longer than Uberto d.o.o. reasonably considers necessary to achieve the purpose for which they were collected or processed. Uberto d.o.o. will retain certain personal data for the period prescribed by law or regulation that obliges Uberto d.o.o. to retain data.
If you have given us consent, we will process your personal data until the withdrawal of consent or until the achievement or cessation of the purpose of processing. If a court, administrative, or out-of-court proceeding is initiated, personal data may be stored until the end of such a proceeding, including any possible period for legal remedies. Uberto d.o.o. will retain certain personal data for the period prescribed by law or regulation that obliges the data controller to retain data.
5. Recipients of personal data
Uberto d.o.o. protection of your privacy is very important, so we will never share your personal data with third parties for purposes not described in this Policy. We consider your personal data a business secret and protect it as such in accordance with applicable legal regulations and best practices.
Sometimes we share your personal data within Uberto d.o.o. through our IT systems. When we do this, we transfer your data to servers located in the EU or in a country that provides the necessary level of protection in accordance with EU legislation.
In addition to the above, we may provide your personal data to our trusted partners, who may be located outside Uberto d.o.o. who maintain our IT systems or provide services on behalf of Uberto d.o.o. For example, for marketing, financial, or advertising purposes, for payment processing, delivery, or to ensure other services we provide on the website or outside it (e.g., at fairs, gatherings, forums, and other places.) These service providers, however, in accordance with relevant agreements, are obliged to use the data entrusted to them exclusively in accordance with our guidelines and strictly for the purpose we have specified. They are also obliged to properly protect your data and keep it confidential.
Competent authorities in the implementation of supervision over the legality of business and actions. In this case, they process your personal data in accordance with their legal powers. Transaction data is forwarded to business banks with which Uberto d.o.o. cooperates, and banks are considered data controllers that process personal data as banking secrets in accordance with relevant laws.
6. Newsletter
If you want to receive newsletters about our offers, new content on the websites, and more, you can choose a simple registration of your email address via the form with the necessary registration. Personal data collected for the purpose of newsletter registration will be used exclusively for sending our newsletter.
You can unsubscribe from receiving newsletters at any time by selecting the offered option to withdraw consent in the received newsletter or by contacting the email address: uberto@uberto.hr. Withdrawal of consent does not affect the lawfulness of processing until the moment of withdrawal. Receiving newsletters is voluntary, and the data subject does not bear any negative consequences if they do not give consent or if they withdraw consent.
In case of withdrawal of consent, you will no longer receive our newsletter, and the email addresses that are unsubscribed remain on our unsubscribe list for a maximum of 5 years from the day of unsubscription to prove compliance with legal obligations that Uberto d.o.o. has under applicable law.
7. Registration
Uberto d.o.o. allows user registration on the website. The user enters their name, surname, email address, and desired password for this purpose. By registering, the Customer/user/visitor additionally confirms acceptance of the General Terms and Conditions and can view the offer, create their wish list, compare products, order products faster and easier, and have access to special offers or immediately place products in the cart and order products.
During the registration process, a user account is created for only one person, and it is not allowed to disclose registration or user account information to third parties. The user is obliged to keep the information about their security code and user account and is responsible for all unauthorized activities authorized and performed under their username and/or password.
The legal basis for processing data for user registration on the website is the contractual obligation that arises from user registration on the website and acceptance of the General Terms and Conditions. If a registered user wants to delete their profile, they can send a request via email: uberto@uberto.hr.
8. Distance purchase
For the purpose of distance purchase (by phone, message, email, via the Internet), the buyer provides their personal data: name, surname, address, email address, phone/mobile number, for the execution of the contract and pre-contractual notifications in accordance with Croatian laws.
When purchasing through the website, the buyer confirms acceptance of the General Terms and Conditions and the Privacy Policy, which are available on the websites. The buyer can provide their data for the execution of the contract through a registered profile or as a guest.
Personal data of buyers, provided during the purchase, are processed for the purpose of contract realization, including prior verification of conditions for contract conclusion, as well as for the purpose of payment transaction processing and product delivery. Personal data will also be processed for the purpose of preventing possible abuses, preventing fraudulent actions, as well as for informing buyers about news and offers, all in accordance with legitimate interest and in accordance with the Electronic Communications Act.
Buyers are obliged to provide accurate, valid, and complete personal data. In case of violation of this obligation, UBERTO D.O.O. has the right to deny such a user access or deny the realization of all or part of the services or products offered to them. Processing of personal data for the purpose of contract execution is a condition for providing the service, and in this sense, it cannot be limited or revoked. If the buyer does not want to provide their personal data, they will not be able to conclude a contract or make a purchase.
Monri WSPay is a secure system for online payment, real-time payment, credit and debit cards, and other payment methods. Monri WSPay ensures secure entry and transfer of entered card data, as confirmed by the PCI DSS certificate that Monri WSPay has.
All payments Visa, Maestro, and MasterCard via Payment Getaway WSpay will be made in euros. Monri WSPay uses SSL certificate 256-bit encryption and TLS 1.2 cryptographic protocol as the highest levels of protection for data entry and transfer. Personal data used for authorization and collection or for the execution of a contract or contractual obligations are considered confidential. For contract execution (authorization and payment), the following personal data of the buyer are required:
- Name and surname
- Phone
- Address
- Place
- Postal code
- Country
- Card type
- Card number
- Card expiration dates
- CVV
Monri WSPay does not process or use personal data except for the purpose of concluding a contract for authorization and payment. WSPay guarantees compliance with all provisions and conditions prescribed by applicable data protection regulations for data controllers, especially taking all necessary technical, organizational, and security measures, especially with PCI DSS L1 Certified.
For payment, you can use the following credit cards:
UBERTO D.O.O. will not disclose or transfer personal data of buyers, except for the purpose of executing the purchase contract (which applies to financial institutions for payment realization, suppliers of the purchased product for calculation, delivery, and shipment of the ordered product, and persons authorized to maintain the IT system through which purchase transactions are performed), protection of buyers' interests, and prevention of possible abuses. Personal data will also be provided to competent authorities based on a law-based request. Personal data is stored in accordance with applicable law, currently 11 years from the end of the business year of the transaction.
If a buyer, who is a natural person, makes a purchase via a payment slip/general payment order, we also process the buyer's IBAN data for accounting reasons and transaction tracking.
Data on credit cards, security codes, UBERTO D.O.O. does not process and does not have access to the mentioned data because a data processor is engaged for card transactions in accordance with the General Terms and Conditions.
For sending automatic messages to its customers, UBERTO D.O.O. has engaged a data processor who acts in accordance with the data processing agreement.
If the buyer chooses to pay via PayPal account, the buyer agrees that purchase data will be forwarded to PayPal. UBERTO D.O.O. does not have access to the buyer's card data, and PayPal is considered the data controller. Data forwarded to PayPal includes name, surname, email address, IP address, phone/mobile number, purchase data. PayPal processes data for transaction execution, buyer identity verification, fraud prevention, and data exchange with credit agencies in accordance with its privacy policy.
Also, for the purpose of online purchase, certain cookies are necessary for placing products in the cart and the functionality of the online store, and they are stored on the buyer's device without consent, in accordance with the Electronic Communications Act. For more information, please read the text about cookies.
9. Inquiries and complaints
Our pages contain forms and information that allow quick contact with us, as well as direct communication via email address pofrishcanna@gmail.com
If a buyer contacts UBERTO D.O.O. via email or contact form, mail for inquiries, complaints, or contract termination, the personal data submitted is automatically stored and processed exclusively for providing the requested information. The legal basis for data processing is a legal obligation because UBERTO D.O.O. is obliged to communicate with customers and respond to complaints and instructions in accordance with applicable law. If you do not want to provide us with your data, we will not be able to process your complaint or inquiry/request.
Personal data necessary for resolving complaints, contract termination, etc., are stored for a maximum of 5 years from the day of receipt in accordance with regulations governing consumer rights.
10. Cookies
To maintain our website and ensure its functionality is at the expected level, UBERTO D.O.O. uses technology known as "cookies." Cookies are small files stored on your computer, and we can access them later. They can be temporary or permanent. Thanks to cookies, you can browse our pages, place products in the cart, and display results relevant to you.
Cookies necessary for the functionality of the website are stored without user consent. For cookies that require consent, you give your consent through a pop-up window on the website.
The site user can prevent the setting of cookies via our site at any time using the appropriate setting of the internet browser used and can therefore permanently deny the setting of cookies. Furthermore, already set cookies can be deleted at any time via the internet browser or other software programs. If the user deactivates the setting of cookies in the used internet browser, all functions on our site may not be fully available.
UBERTO D.O.O. uses cookies for the purpose of tracking statistical site visits to obtain necessary information about the site's success and also uses third-party services. If you leave a comment on our website, you can opt-in to save your name, email address, and website in cookies. This is for your convenience so that you do not have to re-enter your details when you leave another comment. These cookies last for one year.
If you have an account and log in to this website, we will set a temporary cookie to determine if your browser accepts cookies. This cookie does not contain personal data and is discarded when you close your browser.
When you log in, we will also set up several cookies to save your login information and screen choices. Login cookies last for two days, and screen option cookies last for a year. If you select "Remember Me," your login will persist for two weeks. If you log out of your account, the login cookies will be removed.
If you edit or publish an article, an additional cookie will be saved in your browser. This cookie does not contain personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.
The most significant cookies we use are:
- Strictly necessary cookies. They are necessary to ensure the operation of the website from a technical perspective.
- Functional cookies. They help us improve your experience by remembering your choices.
- Activity tracking cookies. They collect information about how you use our website and track performance.
- Targeted cookies: These cookies are used to place ads on other sites you visit or to avoid showing ads you already know.
- Social media plugins. These cookies are used to connect our clients with our social media channels. After that, the information provided by cookies can be used in various ways.
- Cookies stored on your computer can be accessed when you visit our website or open an email we send. If you want to delete cookies already on your computer, see the instructions in your internet browser by clicking "Help" in the browser menu.
We process cookies exclusively with your consent.
To withdraw consent or agree to the use of cookies, select the appropriate settings in your browser. However, some of the functions of our website may not work without cookies. When we request consent, we will present the purpose for which these types of data about you will be processed and inform you of your rights.
UBERTO D.O.O. collects information that does not identify a specific end user, including the internet URL (Uniform Resource Locator) of the page the User visited before opening the website, the URL of the website the User visited after leaving the website, the type of browser the user uses, and the user's IP address (Internet Protocol Address). Authorized service providers and advertisers may automatically collect this information when visiting our website or through "cookies" and other tools. UBERTO D.O.O. uses this data to troubleshoot problems, administer the website, analyze trends, gather demographic data, analyze compliance with positive regulations, and cooperate with law enforcement agencies.
11. Promotional prize games and contests
We occasionally organize prize games and contests. Personal data collected in this way is processed exclusively for the purpose of realizing the prize game or contest (e.g., announcing the winner's name for contacting them, delivering prizes, etc.). To participate in a prize game or contest, we need your name, surname, email, contact phone, and address for prize delivery. If necessary, we may request additional information that will be defined by the rules of the prize game or contest (e.g., account number). Participation in prize games and contests is voluntary. If the participant does not want to provide their personal data, they will not be able to participate in a specific prize game or contest. The participant can withdraw their consent for participation at any time. Withdrawal of consent does not affect the lawfulness of processing until the moment of withdrawal.
We keep data on winners and the record of winners in accordance with accounting regulations. We forward data to our data processors with whom we have a data processing agreement and postal service providers. In each set of rules for prize games and contests, we explain the processing of personal data in more detail, and the participant is directed to check the privacy policies of social networks where a specific contest is published.
12. Social networks
UBERTO D.O.O. processes data about people who follow published content, like, share our posts, and leave comments through social networks and channels. UBERTO D.O.O. collects data about its contacts on social networks through which it sends promotions to certain target groups (anonymous data that includes gender, age, etc.). UBERTO D.O.O. uses Facebook Business Tools, Instagram Business, and LinkedIn Marketing Solutions. The data we send includes data about your activities on the social network collected through clicks and cookies, and they include, among other things: information about your devices, purchases you have made, ads you have seen, and how you use services (e.g., whether you have a Facebook account and are logged in, etc.). Social networks, in relation to the processing of personal data carried out for the purpose of the mentioned marketing activities, are considered joint data controllers together with UBERTO D.O.O. For more information on data processing by the mentioned social networks, please read the Privacy Policies - Facebook, Linkedin, Instagram.
13. Recording and photographing events
Based on legitimate interest, we record and photograph public events we organize or participate in. In doing so, we publish on websites and social networks photos and recordings of people who participated in the events. We engage data processors who act in accordance with our instructions for photographing and recording.
In this purpose, consent is not required because photographing and recording is done in a way that does not exceed the rights and freedoms of the data subject, for example, if it is not a publicly exposed person, the person is photographed in a way that does not stand out from the crowd, and certain photos can be blurred and cropped to achieve a balance between our legitimate interests for event promotion and the rights of the data subject.
If you upload images to the website, you should avoid sending images with embedded location data (EXIF GPS). Website visitors can download and extract any location data from images on the website.
Also, be aware of whether images or other media and content on our websites are protected by copyright.
14. Participation in the recruitment process at Uberto d.o.o.
When accepting your application during the recruitment process at Uberto d.o.o., we will ask you for some information about you so that we can evaluate your application. For some positions, at a later stage of selection and recruitment, we may ask you to record a short video (online meeting) in which you will have to answer the questions asked. Participation in this stage of the selection and recruitment process is completely voluntary, and if you do not agree to it, we will invite you to a meeting. As part of the selection and recruitment process, your personal data may be available to our service providers. We will keep your data for a period of 2 years.
15. Workshops, competitions, lotteries
We may ask participants in such events for some personal data to efficiently carry out the events themselves and fulfill legal obligations, such as, for example, awarding prizes. When we ask you for personal data, we will inform you about the purpose of data processing and your rights. Data collected for the purposes of these events are usually kept until the end of the event, except in cases where it will be necessary to keep them in accordance with applicable law (e.g., information about awarded prizes). When we organize such events, we often use the help of external partners, so these will be, for example, agencies specialized in organizing such events or co-organizers of events, such as sub-distributors or other partners.
16. Other personal data you provide us
You can voluntarily and directly provide us with data about your personal choice regarding products, reasons for purchasing certain products, data about your family and lifestyle - with which we can learn more about your choices and further improve your experience.
In addition, we will obtain this data if you register or use special Uberto d.o.o. offers, coupons, or other promotions. In each of the mentioned cases, we will strive to provide you with reliable information regarding data processing.
Indirectly collected data - data that is publicly available on websites not belonging to Uberto d.o.o. (e.g., posts on social networks, open forums, etc.), data obtained using cookies, links, and similar technologies.
17. Protection of personal data
UBERTO D.O.O. implements appropriate technical and security protection measures aimed at ensuring the security and confidentiality of personal data, i.e., preventing unauthorized access or unauthorized disposal of personal data as well as the technical equipment used by UBERTO D.O.O. In the event of a security incident, which, in accordance with the General Data Protection Regulation, is considered a personal data breach, UBERTO D.O.O. will conduct a risk assessment and, in accordance with the assessment, take necessary actions and notify the supervisory authority and data subjects.
18. Final provisions
If any provision of this Privacy Policy is deemed or declared invalid, illegal, or unenforceable, such provision shall not apply to the extent that it is invalid or unenforceable, and the remaining provisions shall continue to apply with full legal effect.
During our business, we may sell or purchase certain assets. If another company acquires Uberto d.o.o. or part of our assets, the personal data we have collected may be transferred to that company.
UBERTO D.O.O. reserves the right to amend or update this Privacy Policy at any time and without prior notice. Please check from time to time for any changes or updates to our Privacy Policy on the page where the updated effective date of the Privacy Policy will be indicated.
This Privacy Policy is valid from 1.03. 2023.
If I fell in love with a woman for an artistic reason, or from the point of view of my work, I think it would rob her of something. We live in an era of globalization and the era of the woman. Never in the history of the world have women been more in control of their destiny.
Your imagination, our creation
Complexion-perfecting natural foundation enriched with antioxidant-packed superfruits, vitamins, and other skin-nourishing nutrients. Creamy liquid formula sets with a pristine matte finish for soft, velvety smooth skin. Made using clean, non-toxic ingredients, our products are designed for everyone...