GDPR Policy

Welcome to WiseWoven (hereinafter referred to as "we" or "us"). We highly value the security of users' personal data and comply with GDPR regulations. This policy explains how we collect, use, store, and protect personal data, as well as the rights you are entitled to.


1. Scope of Policy

This policy applies to all users visiting and using the WiseWoven website and online store, including actions such as placing orders, registering accounts, and subscribing to newsletters.


2. How We Collect Information

We collect information through the following methods:

  • Cookies and Similar Technologies: For website functionality, performance analysis, and security protection.

  • Account Information: Name, email, contact details, and address provided during registration or order placement.

  • Payment Information: Payment card details are securely processed by payment platforms and are not stored long-term in our systems.

  • Communication Records: Emails and chat messages exchanged with customer support.


3. Use and Sharing of Information

Collected information is used only for the following purposes:

  • Order Processing and Contract Fulfillment: To process orders, arrange delivery, handle returns/exchanges, and issue refunds.

  • Explicit Consent: For newsletter subscriptions and user-authorized activities.

  • Legal Compliance: For tax, accounting, and regulatory obligations.

  • Legitimate Interests: To improve user experience, website functionality, and prevent fraud.

Information Sharing: Information is shared only when necessary with logistics, payment, or regulatory partners to fulfill contracts or legal obligations. Personal data will not be sold or shared with third parties without user consent.


4. Data Storage and User Authorization

  • User information is securely stored on our website servers and partnered platforms.

  • Cookies are used only with user knowledge and consent, and can be managed or withdrawn at any time.

  • Users can delete or restrict cookies through browser settings.


5. User Rights

Under GDPR, users have the following rights:

  • Right of Access: Know what personal data we collect.

  • Right to Rectification: Correct or update inaccurate information.

  • Right to Erasure: Request deletion of account information.

  • Right to Restrict Processing: Limit how personal data is processed.

  • Right to Withdraw Consent: Withdraw previously granted data usage consent at any time.

  • Right to Data Portability: Obtain a copy of your data to transfer to another platform.


6. Legal Basis for Data Processing

We process personal data under the following legal bases according to GDPR:

  • Contractual Necessity: To process orders and provide purchased services.

  • Explicit Consent: For newsletter subscriptions and authorized activities.

  • Legal Obligation: For tax, accounting, and regulatory compliance.

  • Legitimate Interests: To enhance user experience and prevent fraud.


7. Data Security Measures

  • Use of encryption technology (SSL/TLS) to protect data in transit.

  • Restriction of internal access, ensuring only authorized personnel handle data.

  • Regular review and updates of data protection measures.

  • Immediate remedial action upon detecting any anomalies to safeguard user data.


8. Contact Us

If you have any questions regarding GDPR compliance or our privacy practices, please contact us:

Service Hours: Monday to Friday, 9:00 AM – 12:30 PM & 2:00 PM – 6:00 PM (GMT+10 Australia)

Cart

loading