Privacy Policy

Last Updated:

1. Introduction

Welcome to Klixarunzon. We are committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, store, and protect your personal information in accordance with the General Data Protection Regulation (GDPR) (EU) 2016/679, the German Federal Data Protection Act (Bundesdatenschutzgesetz - BDSG), and other applicable data protection laws.

By using our website and services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, please do not use our services.

2. Data Controller Information

The data controller responsible for your personal data is:

Klixarunzon
Maximilianstraße 35
80539 München
Germany

Email: support-center@klixarunzon.world

For any questions regarding this Privacy Policy or our data processing practices, please contact us using the information above.

3. Personal Data We Collect

We collect and process the following categories of personal data:

3.1 Information You Provide Directly

  • Contact Information: Name, email address, phone number (optional), and postal address
  • Order Information: Details related to your purchases, including billing and shipping information
  • Communication Data: Messages, inquiries, and correspondence you send to us
  • Account Information: If you create an account, we collect login credentials and preferences

3.2 Information Collected Automatically

  • Device Information: IP address, browser type, operating system, and device identifiers
  • Usage Data: Pages visited, time spent on pages, click patterns, and navigation paths
  • Location Data: General geographic location based on IP address
  • Cookies and Similar Technologies: Information collected through cookies, web beacons, and similar technologies (see our Cookie Policy)

4. Legal Basis for Processing

We process your personal data based on the following legal grounds as defined by Article 6 of the GDPR:

  • Contractual Necessity (Art. 6(1)(b)): Processing necessary for the performance of a contract with you, such as processing your orders and providing our products
  • Consent (Art. 6(1)(a)): Where you have given explicit consent for specific processing activities, such as subscribing to newsletters or accepting non-essential cookies
  • Legal Obligation (Art. 6(1)(c)): Processing necessary to comply with legal requirements, such as tax regulations and consumer protection laws
  • Legitimate Interests (Art. 6(1)(f)): Processing necessary for our legitimate interests, such as fraud prevention, security, and improving our services, provided these interests do not override your fundamental rights

5. Purposes of Data Processing

We use your personal data for the following purposes:

  • Processing and fulfilling your orders
  • Communicating with you about your orders, inquiries, and our services
  • Providing customer support and responding to your requests
  • Sending transactional emails (order confirmations, shipping notifications)
  • Sending marketing communications (only with your explicit consent)
  • Improving our website, products, and services
  • Analyzing website usage and user behavior
  • Preventing fraud and ensuring security
  • Complying with legal obligations

6. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, or as required by law. Our retention periods are as follows:

Data Category Retention Period
Order and transaction data 10 years (German commercial and tax law requirements)
Customer account data Duration of the business relationship plus 3 years
Marketing consent records Until consent is withdrawn plus 3 years
Communication records 3 years after the last interaction
Website usage data 26 months

After the retention period expires, we securely delete or anonymize your data unless continued retention is required by law.

7. Data Sharing and Recipients

We may share your personal data with the following categories of recipients:

7.1 Service Providers

  • Payment Processors: To process your payments securely
  • Shipping Companies: To deliver your orders
  • IT Service Providers: For hosting, maintenance, and technical support
  • Email Service Providers: To send transactional and marketing communications

7.2 Legal and Regulatory Authorities

We may disclose your data to law enforcement agencies, courts, or regulatory authorities when required by law or to protect our legal rights.

7.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your data may be transferred to the acquiring entity.

All third-party service providers are contractually bound to protect your data and process it only according to our instructions. We do not sell your personal data to third parties.

8. International Data Transfers

Your personal data may be transferred to and processed in countries outside the European Economic Area (EEA). When such transfers occur, we ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Adequacy decisions by the European Commission
  • Binding Corporate Rules for transfers within corporate groups

You may request a copy of the safeguards we use for international transfers by contacting us.

9. Your Rights Under GDPR

As a data subject, you have the following rights under the GDPR:

  • Right of Access (Art. 15): Request a copy of your personal data and information about how it is processed
  • Right to Rectification (Art. 16): Request correction of inaccurate or incomplete data
  • Right to Erasure (Art. 17): Request deletion of your data ("right to be forgotten") under certain circumstances
  • Right to Restriction (Art. 18): Request limitation of processing under certain circumstances
  • Right to Data Portability (Art. 20): Receive your data in a structured, commonly used format and transfer it to another controller
  • Right to Object (Art. 21): Object to processing based on legitimate interests or for direct marketing purposes
  • Right to Withdraw Consent (Art. 7): Withdraw your consent at any time without affecting the lawfulness of processing before withdrawal
  • Right to Lodge a Complaint: File a complaint with a supervisory authority (see Section 14)

To exercise any of these rights, please contact us using the information in Section 2. We will respond to your request within 30 days.

10. Data Security

We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • SSL/TLS encryption for all data transmissions
  • Secure storage with access controls and authentication
  • Regular security assessments and updates
  • Employee training on data protection
  • Incident response procedures for data breaches
  • Regular backups and disaster recovery planning

While we strive to protect your data, no method of transmission over the internet is 100% secure. We encourage you to use strong passwords and protect your account credentials.

11. Automated Decision-Making

We do not use automated decision-making or profiling that produces legal effects or significantly affects you. If this changes, we will update this policy and, where required, obtain your explicit consent.

12. Children's Privacy

Our website and services are not intended for individuals under the age of 18. We do not knowingly collect personal data from children. If you believe we have collected data from a minor, please contact us immediately so we can delete it.

13. Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of significant changes by posting the updated policy on our website and updating the "Last Updated" date. We encourage you to review this policy regularly.

14. Supervisory Authority

If you believe that our processing of your personal data violates data protection laws, you have the right to lodge a complaint with a supervisory authority. The relevant authority for Bavaria, Germany is:

Bayerisches Landesamt für Datenschutzaufsicht (BayLDA)
Promenade 18
91522 Ansbach
Germany
Website: www.lda.bayern.de

15. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data processing practices, please contact us:

Klixarunzon
Maximilianstraße 35
80539 München
Germany

Email: support-center@klixarunzon.world