Privacy Policy
At UVN LTD (“we,” “our,” or “us”), headquartered in London, United Kingdom, we are committed to safeguarding your privacy and ensuring the confidentiality of your personal information. This Privacy Policy provides comprehensive details on how we collect, use, share, and protect your information when you interact with our websites, mobile applications, and services. By using our platforms, you acknowledge that you have read and agree to the data practices outlined in this policy.
Table of Contents
- Scope of This Privacy Policy
- Privacy Regulations We Follow
- Information We Collect
- Personal and Contact Information
- Transactional Data
- Interaction Data
- Online Usage Data
- Career-Related Inquiries
- Media and Location Data
- How We Use Your Information
- Legal Basis for Processing
- Data Retention
- Sharing Your Information
- International Data Transfers
- Data Security Measures
- Children’s Privacy
- Your Data Protection Rights
- Exercising Your Rights
- Third-Party Links
- Cookie Policy
- Policy Updates
- Data Breach Notification
- Data Minimization
- Data Portability
- Automated Decision-Making and Profiling
- Do Not Track (DNT) Signals
- California Privacy Rights (CCPA)
- Data Subject Access Requests (DSAR)
- Contact Us
1. Scope of This Privacy Policy
This policy applies to:
- Websites operated by UVN LTD, including uvnltd.com and affiliated e-commerce platforms like BELLECTION, RemalMart, RaflHub, ROYVIS, and any new Online Store or Platform.
- Mobile applications and services provided by UVN LTD.
- Online and offline interactions with our customer service and support teams.
This policy does not cover third-party websites or services linked from our platforms. We encourage you to review the privacy policies of those third parties to understand how your information may be handled. We take your privacy seriously and aim to ensure that you are fully informed about how your information is managed. This comprehensive policy outlines the principles and practices that guide our approach to data privacy and security.
2. Privacy Regulations We Follow
We comply with international privacy laws to ensure your data is handled responsibly and transparently. Our compliance includes but is not limited to:
- General Data Protection Regulation (GDPR) – EU: We adhere to the GDPR standards, ensuring that your data is processed lawfully, fairly, and transparently.
- California Consumer Privacy Act (CCPA) – California, USA: We comply with the CCPA, providing California residents with transparency and control over their personal information.
- Lei Geral de Proteção de Dados (LGPD) – Brazil: We follow the LGPD to protect the personal data of individuals in Brazil.
- Personal Information Protection and Electronic Documents Act (PIPEDA) – Canada: We comply with PIPEDA to safeguard personal information in commercial activities.
- Act on the Protection of Personal Information (APPI) – Japan: We adhere to APPI to ensure the protection of personal information in Japan.
- Personal Data Protection Act (PDPA) – Singapore: We comply with PDPA to protect personal data in Singapore.
- Data Protection Act 2018 – United Kingdom: We follow the UK Data Protection Act to ensure compliance with data protection standards.
- Privacy Act 1988 – Australia: We adhere to the Privacy Act to protect personal information in Australia.
- Data Protection Law (DPA) – UAE: We comply with the UAE DPA to ensure the protection of personal data in the UAE.
By adhering to these regulations, we ensure that your data is managed with the highest standards of privacy and security. Our commitment to privacy is reflected in the measures we adopt to align with evolving global standards, ensuring consistent compliance across jurisdictions.
3. Information We Collect
We collect various types of information depending on how you interact with us. Below are the categories of data we may collect:
a. Personal and Contact Information
- Full name, email address, phone number, postal address, username, password, and other identifiers you provide when registering or making purchases.
- Information necessary for verifying your identity and securing your account, such as security questions or two-factor authentication data.
b. Transactional Data
- Payment card details, billing and shipping addresses, transaction amounts, order details, and delivery tracking.
- Records of refunds, cancellations, and chargebacks, along with relevant communication logs.
c. Interaction Data
- Correspondence via email, chats, phone calls, and social media.
- Feedback from surveys, reviews, and customer satisfaction ratings.
- Insights from customer interactions that help us improve our services and tailor solutions to your needs.
d. Online Usage Data
- Details about your device, browser, operating system, IP address, geolocation, cookies, and browsing history (e.g., pages viewed, search queries).
- Data collected through analytics tools to monitor usage patterns and improve platform functionality.
e. Career-Related Inquiries
- Resumes, CVs, job application details, employment history, qualifications, and professional achievements submitted via our careers page.
- Additional information collected during interviews or background checks as permitted by law.
f. Media and Location Data
- Photos, videos, location-based information, and engagement with embedded content from platforms like Spotify and Netflix.
- Metadata associated with media files, such as timestamps and geotags, where applicable.
4. How We Use Your Information
We process your information for the following purposes:
a. To Provide Services
- Processing and fulfilling orders: We use your personal and transactional data to process your orders, manage payments, and arrange for delivery.
- Managing accounts and subscriptions: We use your account information to manage your subscriptions and provide access to our services.
- Delivering customer support and resolving issues: We use your interaction data to provide customer support and resolve any issues you may encounter.
b. For Communication
- Sending order confirmations, delivery updates, and promotional emails: We use your contact information to keep you informed about your orders and to send you promotional offers.
- Providing information about policy changes or service updates: We use your contact information to inform you about any changes to our policies or services.
c. For Personalization and Marketing
- Displaying tailored advertisements and recommendations: We use your online usage data to display advertisements and recommendations that are relevant to your interests.
- Improving your experience with personalized content based on preferences: We use your interaction data to personalize your experience on our platforms.
- Conducting promotional campaigns and loyalty programs to reward engagement: We use your interaction data to conduct promotional campaigns and loyalty programs.
d. For Business Operations and Development
- Conducting research and analytics to enhance our offerings: We use your online usage data to conduct research and analytics to improve our services.
- Monitoring platform usage for performance and security: We use your online usage data to monitor the performance and security of our platforms.
- Evaluating the effectiveness of marketing campaigns and product launches: We use your interaction data to evaluate the effectiveness of our marketing campaigns and product launches.
e. For Legal Compliance
- Adhering to tax regulations, fraud prevention measures, and other legal obligations: We use your transactional data to comply with tax regulations and prevent fraud.
- Responding to legal requests and resolving disputes as required by law: We use your personal data to respond to legal requests and resolve disputes.
5. Legal Basis for Processing
Under the GDPR and similar regulations, we rely on the following legal bases:
- Consent: When you agree to receive marketing emails or participate in surveys.
- Contractual Necessity: To process orders and provide services.
- Legal Obligation: For tax compliance and fraud prevention.
- Legitimate Interests: To improve our services and secure our systems.
We evaluate our legal basis for processing regularly to ensure compliance with changing regulations and to respect your privacy preferences.
6. Data Retention
We retain your data only as long as necessary for the purposes outlined in this policy:
- Transactional Data: Retained for 7 years to comply with tax regulations.
- Customer Interaction Records: Retained for 3 years unless required for ongoing legal obligations.
- Account Information: Retained while your account is active or as needed for legal purposes.
To ensure transparency, we periodically review our data retention policies and notify users of significant changes.
7. Sharing Your Information
We may share your information with:
- Service Providers: Payment gateways (e.g., PayPal, Stripe), shipping companies (e.g., DHL, FedEx), and analytics providers (e.g., Google Analytics).
- Legal Authorities: For fraud prevention, legal claims, or compliance with regulations.
- Business Transfers: In the event of a merger, acquisition, or sale of assets.
We do not sell or rent your personal data to third parties for their own marketing purposes. Any sharing is conducted with strict safeguards to protect your information.
8. International Data Transfers
Your data may be transferred to countries with different privacy standards. We safeguard such transfers with:
- Standard Contractual Clauses (SCCs).
- Data protection agreements.
We continually assess the adequacy of safeguards in place for international data transfers to ensure your rights are protected.
9. Data Security Measures
We protect your data through:
- Advanced encryption protocols.
- Regular security audits and system monitoring.
- Secure payment processing systems.
- Employee training and awareness programson data security best practices.
10. Children’s Privacy
Our services are not intended for users under 18. If we become aware of any unauthorized data collection from minors, we will delete it immediately. Parents and guardians are encouraged to monitor their children’s online activities to ensure safe internet use.
11. Your Data Protection Rights
Depending on your jurisdiction, you may have rights including:
- Accessing your data.
- Requesting corrections or updates.
- Deleting your information.
- Limiting or objecting to data processing.
- Transferring your data to another service provider.
We aim to respond to all data rights requests within the timelines specified by applicable laws.
12. Exercising Your Rights
To exercise your rights, contact us at privacy@uvnltd.com with details about your request. We may require verification of your identity before processing.
13. Third-Party Links
Our websites may include links to third-party platforms. We are not responsible for their privacy practices or content. These links are provided for your convenience, and we encourage you to review their privacy policies before interacting with them.
14. Cookie Policy
For details about how we use cookies, refer to our Cookie Policy. Cookies help us enhance your browsing experience by remembering your preferences and optimizing website performance.
15. Policy Updates
This Privacy Policy may be updated periodically to reflect changes in legal obligations or business practices. Updates will be posted on our website with the revised effective date. Significant changes will be communicated through email or website notifications.
16. Data Breach Notification
In the unlikely event of a data breach that compromises your personal information, we are committed to taking prompt and appropriate action to mitigate any potential harm. Our data breach notification procedures include:
- Immediate Investigation: Upon detecting a breach, our security team will immediately investigate the incident to determine its scope and impact.
- Notification to Authorities: If required by law, we will notify the relevant data protection authorities within the stipulated timeframe (e.g., 72 hours under the GDPR).
- Notification to Affected Users: If the breach poses a significant risk to your rights and freedoms, we will notify you without undue delay. The notification will include:
- A description of the nature of the breach.
- The categories of data affected.
- The likely consequences of the breach.
- Measures taken or proposed to address the breach and mitigate its effects.
- Remedial Actions: We will take all necessary steps to contain the breach, prevent further unauthorized access, and strengthen our security measures to prevent future incidents.
We prioritize transparency and accountability in handling data breaches to ensure you are informed and protected.
17. Data Minimization
We adhere to the principle of data minimization, which means we only collect and process the personal information that is necessary for the specific purposes outlined in this Privacy Policy. Our data minimization practices include:
- Purpose Limitation: We clearly define the purposes for which data is collected and ensure that the data collected is adequate, relevant, and limited to what is necessary.
- Avoiding Excessive Data Collection: We do not collect excessive or irrelevant information. For example, we only request the minimum details required to process your orders or provide customer support.
- Regular Data Audits: We conduct periodic reviews of the data we collect to ensure it aligns with our stated purposes and delete any data that is no longer needed.
By minimizing data collection, we reduce the risk of unauthorized access, misuse, or loss of your personal information.
18. Data Portability
Under applicable data protection laws, such as the GDPR, you have the right to request a copy of your personal data in a structured, commonly used, and machine-readable format. This allows you to transfer your data to another service provider if you choose to do so. Our data portability process includes:
- Request Submission: You can submit a data portability request by contacting us at privacy@uvnltd.com.
- Verification: We will verify your identity to ensure the security of your data.
- Data Compilation: We will compile your data in a secure and accessible format, such as a CSV or JSON file.
- Delivery: The data will be delivered to you securely, either via email or through a secure download link.
We aim to fulfill data portability requests within the timelines specified by applicable laws, typically within 30 days.
19. Automated Decision-Making and Profiling
We may use automated decision-making and profiling in certain circumstances to enhance your experience and improve our services. Examples include:
- Personalized Recommendations: Using algorithms to suggest products or content based on your browsing and purchase history.
- Fraud Detection: Automatically analyzing transaction patterns to detect and prevent fraudulent activities.
If automated decision-making significantly affects you (e.g., denying a loan application), you have the right to:
- Request Human Intervention: Ask for a manual review of the decision.
- Express Your Point of View: Provide additional information or context to influence the decision.
- Challenge the Decision: Request a reconsideration of the automated decision.
We ensure transparency in our use of automated systems and provide clear information about how decisions are made.
20. Do Not Track (DNT) Signals
Some web browsers offer a “Do Not Track” (DNT) feature that allows you to signal your preference regarding online tracking. Currently, there is no universal standard for interpreting DNT signals. However, we respect your privacy preferences and provide the following options:
- Cookie Management: You can manage or disable cookies through your browser settings. For more details, refer to our Cookie Policy.
- Opt-Out Tools: We provide opt-out mechanisms for targeted advertising and analytics tracking.
While we do not respond to DNT signals at this time, we are committed to providing you with control over your data and will continue to monitor developments in this area.
21. California Privacy Rights (CCPA)
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA). These rights include:
- Right to Know: You can request information about the categories and specific pieces of personal data we have collected about you, the sources of that data, the purposes for which it was collected, and the third parties with whom it was shared.
- Right to Delete: You can request the deletion of your personal data, subject to certain exceptions (e.g., legal obligations).
- Right to Opt-Out of Sale: You can opt-out of the sale of your personal data to third parties. Note that we do not sell your personal data for monetary gain.
- Right to Non-Discrimination: You have the right to receive equal service and pricing, even if you exercise your privacy rights.
To exercise your CCPA rights, please contact us at privacy@uvnltd.com. We will respond to your request within 45 days, as required by law.
22. Data Subject Access Requests (DSAR)
Under data protection laws such as the GDPR, you have the right to submit a Data Subject Access Request (DSAR) to access, correct, or delete your personal data. Our DSAR process includes:
- Request Submission: You can submit a DSAR by contacting us at privacy@uvnltd.com.
- Verification: We will verify your identity to ensure the security of your data.
- Processing: We will process your request and provide the requested information or take the requested action within the timelines specified by applicable laws (e.g., 30 days under the GDPR).
- Fees: In most cases, DSARs are free of charge. However, we may charge a reasonable fee for repetitive or excessive requests.
We are committed to facilitating your rights and ensuring a transparent and efficient DSAR process.
23. Contact Us
For questions or concerns about this policy, contact us via:
- Email: privacy@uvnltd.com
- Phone: +44 (0) 7366485844
- Mailing Address: UVN LTD, 71-75 Shelton Street, Covent Garden, London WC2H 9JQ, United Kingdom