Processed data

Ordering and browsing through our site

When you make a purchase or create a customer account on our website as part of our buying and selling process, we collect the personal information you provide to us, which is necessary to prepare and deliver your package, such as your name, address, email address, postal address, and telephone number. These order data are transmitted to our logistics service providers who prepare and transport the package to your address. They are strictly prohibited from using your data for any other purpose than processing your order and must delete this data from their computer system after processing. If you choose to have your order delivered outside of Europe, your data, including your postal address, will necessarily be transmitted to the logistics services of the carrier who will deliver to that country. When you browse our website, we automatically receive your computer's Internet Protocol (IP) address, which provides us with more details about the browser and operating system you are using. Additionally, data may be stored or retrieved from your browser, usually in the form of cookies. These cookies gather information about you, your preferences, or your device and browser. They are generally set in response to actions you have taken, which constitute a request for services (e.g., placing an order).

Emails

If you have chosen to receive updates from Laboratoires üma via email (through the form on our website or by checking the corresponding box during the purchase process), we use your email address to send you updates about Laboratoires üma (new products, sports events, meetings organized by Laboratoires üma, etc.) or to provide you with information related to your purchase or browsing history on our website. Please note that if you no longer wish to receive these emails, you can unsubscribe at any time by clicking on the "unsubscribe" link located at the bottom of the emails or by contacting us at bonjour@umawell.com. The unsubscribe will take effect immediately. The email tool we use is based in the United States. It complies with the principles of the EU-U.S. and Swiss-U.S. Privacy Shield Frameworks. Furthermore, as a "processor," this email tool is obligated to comply with the legal requirements of the General Data Protection Regulation (GDPR).

Audience analysis

We use audience analysis tools (such as Google Analytics) to better understand the activity on our website, how you interact with it, and to improve its performance to align with your preferences. In this context, we provide these tools with data about your browsing history on our website and information about the products ordered. All data processed for statistical purposes outside of Europe is fully anonymized.

Product reviews

Your email address, name, surname, and order reference are transmitted to our partner who will send you an email containing a review form. Your email address is not published on our website when your review is posted. These data are not transmitted to any other company and are only used to evaluate your experience with our products.

Advertisement

Like many other websites, advertising cookies are deposited when you visit our site, which allows targeted advertising messages to be displayed when you browse other sites. The data collected is anonymous and is only used for advertising purposes.

How long is my personal data stored?

The duration for which we retain personal data depends on our business needs and legal obligations. Regarding the purchase of products, we retain your data for as long as necessary for the purposes for which it was collected (e.g., managing the business relationship between you and us) and for other related purposes such as inventory tracking, while complying with applicable legislation on data security and retention. If you agree to receive emails from Laboratoires üma to stay updated on our news, your data will be retained until you request to unsubscribe or delete your personal data, or after a certain period of inactivity (for a maximum of 3 years from the last contact, e.g., clicking on one of our emails). In case of creating a customer account, the data will be retained until you send a request for deletion or after a period of inactivity (for a maximum of 3 years from the end of the business relationship, e.g., last order, or the last contact, e.g., clicking on one of our emails). When you contact us to obtain information about our products, our brand, or when you apply for a job offer, the data is retained for only 3 years from the date of collection or the last contact initiated by you.

Consent

How do you get my consent?

When you provide us with your personal information to complete a transaction, verify your credit card, place an order, arrange for a delivery, or return a purchase, we assume that you consent to the collection and use of your information for that specific purpose only. If we ask for your personal information for any other reason, such as marketing purposes, we will directly ask for your explicit consent or provide you with the opportunity to refuse.

How can I withdraw my consent?

If you have previously given us your consent but have changed your mind and no longer wish for us to contact you, collect your information, or disclose it, you can notify us by contacting us at bonjour@umawell.com or by mail at: Laboratoires üma, 31 Rue de Brest, 69002 Lyon, France

Cookies

When you browse our website or place an order, data may be stored or retrieved from your browser, usually in the form of cookies. A cookie is a small text file that is saved by your computer, tablet, or smartphone's browser and allows the storage of user data to facilitate navigation and enable certain other functionalities. We use first-party cookies, which are deposited by Laboratoires üma for the proper functioning of our website. Most of these cookies cannot be disabled in our systems. They allow us to remember the information you entered in forms on our site, so you don't have to enter them again during your use. They also help manage and secure access to your account or shopping cart.


Here is a non-exhaustive list of cookies related to the functioning of our site:

  • Session cookies: These cookies are essential for the proper functioning of our website. They enable you to navigate the site, use its features, and access secure areas. These cookies do not store any personally identifiable information.
  • Preferences cookies: These cookies allow our website to remember choices you have made, such as language preferences or font size, to provide a more personalized experience.
  • Authentication cookies: These cookies are used to authenticate users and ensure that only authorized individuals have access to certain areas or features of our website.
  • Shopping cart cookies: These cookies keep track of the items you have added to your shopping cart and help facilitate the checkout process.
  • Analytics cookies: These cookies collect information about how visitors use our website, such as which pages are visited most frequently or if any errors occur. This helps us improve the performance and usability of our site.

More information here: https://fr.shopify.com/legal/cookies

We also use third-party cookies (or “third-party cookies”) deposited by our partners. These third-party cookies are directly managed by the companies that issue them and which must also comply with data protection regulations.

  • Audience measurement cookies: to assess site traffic (number of visits, page views, cart abandonment, etc.) and improve our performance.
  • Advertising cookies: to provide you with advertising content related to your interest in the brand, products and news from üma Laboratories.

How to refuse cookies :

You can configure your browser to be notified of the existence of cookies or to block them. However, please note that if you choose to block cookies, certain features of our site may be affected, such as the ability to keep items in your cart. If you wish to delete cookies from your web browser, you can follow the instructions below:

Disclosure

We will disclose your personal information if required by law or if you violate our terms and conditions of sale and use, or to protect our rights, property, or safety, as well as those of third parties. We have taken the necessary precautions to comply with the General Data Protection Regulation (GDPR). Therefore, we will not share your personal information with third parties without your prior consent (except as provided above). As explained earlier, your information may be shared with trusted third parties who assist us in the administration and proper functioning of our site, provided that these partners agree to keep this information confidential. Only non-identifiable data (such as cookies) may be shared with our partners for marketing or advertising purposes. Of course, you can decide to object to this.

Shopify

Our store is hosted on Shopify Inc. They provide us with the online e-commerce platform that allows us to sell our products and services to you. Your data is stored in Shopify's data storage system and databases, and in the general Shopify application. Your data is stored on a secure server protected by a firewall.

Payment

If you choose a direct payment gateway to complete your purchase, then Shopify stores your credit card data. It is encrypted through the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction data is stored only as long as is necessary to complete your purchase transaction. After that is complete, your purchase transaction information is deleted. All direct payment gateways adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, MasterCard, American Express, and Discover. PCI-DSS requirements help ensure the secure handling of credit card information by our store and its service providers. For more insight, you may also want to read Shopify's Terms of Service here or Privacy Statement here.

Third-party services

In general, the third-party providers we use will only collect, use, and disclose your information to the extent necessary to allow them to perform the services they provide to us. However, certain third-party service providers, such as payment gateways and other payment transaction processors, have their own privacy policies regarding the information we are required to provide to them for your purchase-related transactions. For these providers, we recommend that you read their privacy policies so you can understand the manner in which your personal information will be handled by these providers. Remember that certain providers may be located in or have facilities that are located in a different jurisdiction than either you or us. So if you elect to proceed with a transaction that involves the services of a third-party service provider, then your information may become subject to the laws of the jurisdiction(s) in which that service provider or its facilities are located. As an example, if you are located in Canada and your transaction is processed by a payment gateway located in the United States, then your personal information used in completing that transaction may be subject to disclosure under United States legislation, including the Patriot Act. Once you leave our store’s website or are redirected to a third-party website or application, you are no longer governed by this Privacy Policy or our website's Terms of Service.

Links

You may be required to leave our website by clicking on certain links on our site. We assume no responsibility for the privacy practices exercised by these other sites and recommend that you read their privacy policies carefully.

Security

To protect your personal data, we take reasonable precautions and follow industry best practices to ensure that it is not lost, misused, accessed, disclosed, altered or destroyed inappropriately. If you provide us with your credit card information, it will be encrypted using the SSL security protocol and stored with AES-256 type encryption. Although no method of transmission over the Internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement additional generally accepted industry standards. Finally, we recommend that you adopt the following security measures to improve your security on the Internet. When you create an account, use at least 8 characters for your password by mixing letters (uppercase and lowercase) and numbers. Do not use your name, or other easily obtainable personal data. Keep your passwords confidential and avoid using the same password for multiple accounts

Consent age

By using this site, you represent that you are at least the age of majority in your state or province of residence, and that you have given us your consent to allow any minor in your charge to use this website.

Update to this privacy policy

We reserve the right to modify this Privacy Policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon posting to the website. If we make any changes to the content of this policy, we will notify you here that it has been updated, so that you are aware of what information we collect, how we use it, and under what circumstances we disclose it. There is a reason to do so. If our store is acquired by or merged with another company, your information may be transferred to the new owners so that we may continue to sell products to you.

Queries and contact details

According to the General Data Protection Regulation (GDPR), if you would like to access, correct, modify, restrict, contest the accuracy, delete any personal information we have about you, file a complaint, object to processing, unsubscribe from our emails, exercise your right to transparency and portability of personal data concerning you, or if you simply want more information on these subjects, please contact our privacy standards officer at bonjour@umawell.com or by mail at Laboratoires üma. To exercise these rights, you will only need to provide us with your name, address, email, and proof of identity.