Privacy Policy

PRIVACY POLICY

Last updated: February 2025

1. INTRODUCTION

SpinnDuo ("we", "our", or "us") respects your privacy and is committed to protecting your personal data. 
This Privacy Policy explains how we collect, use, and safeguard your information in compliance with the General Data Protection Regulation (GDPR).

2. DATA CONTROLLER

Data Controller:
Roman Smékal – SpinnDuo (OSVČ)
IČO: 74760106

Registered Address:
Fr. Ondříčka 10
370 11 České Budějovice
Czech Republic

Email: info@spinnduo.com  
Website: https://spinnduo.com

3. WHAT DATA WE COLLECT

We may collect the following types of personal data:

• Identification and Contact Data: name, email address, phone number, billing and shipping address  
• Order Data: products purchased, order history, delivery details  
• Payment Data: processed securely by our payment providers (we do not store full card details)  
• Technical and Device Data: IP address, browser type, device type, website usage activity  
• Marketing and Communication Preferences: your choice regarding newsletter / promotional messages  

4. HOW WE USE YOUR DATA

We use your data to:

• Process and deliver your orders  
• Communicate with you about your order status  
• Provide customer support  
• Improve our products and website experience  
• Send marketing emails (only with your consent)  
• Comply with tax and accounting laws  

5. LEGAL BASIS FOR PROCESSING

The legal bases under GDPR include:

• Contract performance: to process and deliver your orders  
• Legitimate interest: to improve products, prevent fraud, and support customers  
• Legal obligation: to comply with accounting and tax regulations  
• Consent: for receiving marketing communications (which you may withdraw anytime)  

6. DATA SHARING

Your data may be shared with:

• Shipping carriers (for order delivery)  
• Payment processors such as Stripe / PayPal (for secure payment handling)  
• Email and communication platforms (for order updates and marketing, with consent)  
• Analytics providers (for website performance improvements)  

We **never** sell your personal data to third parties.

7. DATA RETENTION

Your personal data is stored only as long as necessary:

• Order and invoice data: 10 years (legal requirement)  
• Marketing email consent data: until withdrawn  
• Website analytics data: up to 2 years  

8. YOUR RIGHTS UNDER GDPR

You have the right to:

• Request access to your personal data  
• Correct inaccurate or incomplete data  
• Request deletion of your data (“right to be forgotten”)  
• Restrict processing of your data  
• Request data portability  
• Withdraw consent to marketing anytime  

To exercise any of these rights, contact us at **info@spinnduo.com**.

9. COOKIES

We use cookies to improve website functionality and user experience.  
You can manage cookie preferences in your browser settings.

10. DATA SECURITY

We use appropriate technical and organizational safeguards to protect personal data from unauthorized access, modification, or disclosure.

11. INTERNATIONAL DATA TRANSFERS

If personal data is transferred outside the EU, such transfers are protected by legally recognized safeguards such as Standard Contractual Clauses (SCCs).

12. CHANGES TO THIS POLICY

We may update this Privacy Policy from time to time. Changes will be posted on this page.

13. CONTACT & COMPLAINTS

If you have privacy-related questions or requests, contact us at:
info@spinnduo.com

Supervisory Authority:
Úřad pro ochranu osobních údajů (ÚOOÚ)
Pplk. Sochora 27
170 00 Praha 7, Czech Republic
https://www.uoou.cz