Privacy Policy for Femlycare

Introduction

Welcome to Femlycare. Your privacy is critically important to us. This Privacy Policy explains how Nord Health OÜ (doing business as "Femlycare," "we," "us," or "our") collects, uses, and shares your personal data when you visit our website, purchase our products, or otherwise interact with us.

We are committed to protecting your data in compliance with the General Data Protection Regulation (GDPR).

Last Updated: 16.01.2025

1. Who We Are (The Data Controller)

The company responsible for your personal data (the "data controller") is:

Nord Health OÜ
Registry Code: 17137855
Address: Harju maakond, Tallinn, Kesklinna linnaosa, J. Vilmsi tn 47-12, 10115, Estonia

If you have any questions about this policy or your data protection rights, please contact us at hello@femlycare.com.

2. What Personal Data We Collect and Why

We collect your personal data in a few different ways, depending on how you interact with us. Below, we explain what we collect and our legal basis for doing so under GDPR.

A. When You Place an Order:

To process and deliver your order, we need to perform our contract with you. For this, we collect:

  • Your Name, Shipping Address, and Email Address: To process your order, send confirmations, and arrange delivery.
  • Your Phone Number: To allow our shipping partner (FedEx) to contact you regarding your delivery.
  • Payment Information: Your payment details are collected and processed securely by our payment processor. We do not see or store your full credit card number.

Lawful Basis: Performance of a contract.

B. When You Browse Our Website (with your consent):

With your consent provided through our cookie banner, we collect data to improve our website and marketing:

  • Analytics Data: Information about how you use our site, such as your IP address, device type, browser, and which pages you visit. We use this to understand our customers and improve our service.
  • Marketing Data: Information used by advertising platforms (like Meta and Google) to show you relevant ads and measure the effectiveness of our campaigns.

Lawful Basis: Consent.

C. When You Subscribe to Our Newsletter (with your consent):

If you choose to sign up for our newsletter, we collect:

  • Your Email Address: To send you updates, special offers, and other marketing communications.

Lawful Basis: Consent. You can withdraw your consent at any time by clicking the "unsubscribe" link in any marketing email.

3. Who We Share Your Data With (Our Processors)

We do not sell your personal data. However, we share it with trusted third-party companies who provide essential services for us. These "data processors" are contractually bound to protect your data. They include:

  • Shopify: Our e-commerce platform provider. They host our store and help us process your orders.
  • Appstle: Our subscription management app. They process your order information to manage recurring deliveries if you choose a subscription.
  • FedEx: Our shipping partner. We provide them with your name, address, and phone number so they can deliver your products.
  • Payment Processors (e.g., Shopify Payments, Stripe): These companies securely handle your payment information to process transactions.
  • Analytics and Advertising Partners (Google, Meta): If you give consent, these partners process data to provide analytics and advertising services.

4. Cookies, Analytics, and Marketing Technologies

We use cookies and similar tracking technologies to run our website and, with your consent, to understand our customers and market our products.

  • What are Cookies? Cookies are small text files stored on your device when you visit a website.
  • Essential Cookies: These are necessary for the website to function (e.g., to keep items in your shopping cart). They do not require consent.
  • Analytics & Marketing Cookies: These are used for analytics (like Google Analytics) and advertising (like the Meta Pixel and Google Ads Tag). We will only use these trackers if you give us your explicit consent through the cookie consent banner that appears when you first visit our site. You can change your preferences at any time through the banner settings.

5. How Long We Keep Your Data

We only keep your personal data for as long as it is necessary.

  • Order Information: We retain data related to your orders for 7 years to comply with our legal and accounting obligations in Estonia.
  • Marketing Information: If you subscribe to our newsletter, we keep your email address until you withdraw your consent (unsubscribe).
  • Analytics Data: Data collected for analytics is typically anonymized or aggregated and retained for a limited period.

6. International Data Transfers

Some of our key service providers (like Shopify, Google, and Meta) are based in the United States. This means that when you use our services, your data may be transferred outside of the European Economic Area (EEA).

We ensure these transfers are legal and secure by relying on established legal mechanisms, such as Standard Contractual Clauses (SCCs), which are approved by the European Commission and contractually oblige these companies to protect your data to a standard equivalent to that of the GDPR.

7. Your Data Protection Rights under GDPR

You have several rights regarding your personal data. These include:

  • The right to access: You can ask for a copy of the data we hold about you.
  • The right to rectification: You can ask us to correct any inaccurate data.
  • The right to erasure ("right to be forgotten"): You can ask us to delete your data, provided we don't have a legal reason to keep it.
  • The right to restrict processing: You can ask us to temporarily stop processing your data.
  • The right to data portability: You can ask for a copy of your data in a machine-readable format.
  • The right to object: You can object to us processing your data (e.g., for direct marketing).
  • Rights related to automated decision-making: We do not engage in automated decision-making or profiling.

To exercise any of these rights, please contact us at hello@femlycare.com. You also have the right to lodge a complaint with your local data protection authority.

8. Data Security

We take the security of your data seriously. We use technical and organizational measures, such as encryption and access controls, to protect your personal data against accidental or unlawful destruction, loss, alteration, or unauthorized access.

9. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will post the updated policy on this page and update the "Last Updated" date.