Information we collect
Information you provide to us
We collect the personal information you provide to us when you purchase our products or visit our website. The categories of information we may collect include:
- Personal Identifiers, including name, email address, postal address, and telephone number
- Commercial and Financial Information, including purchases and credit card or debit card number
- Inferences, including inferences created from other personal information collected
To the extent we process deidentified personal information, we will make no attempt to reidentify such data.
Information collected automatically
We automatically collect internet or other electronic information about you when you visit our website, such as IP address, browsing history and interactions with our website. This data may be collected using browser cookies and other tracking technologies.
Browser Cookies.
We use cookies to create a better experience for you on our site. For example, cookies prevent you from having to login repeatedly, and they help us remember items you've added to your cart. We also use third-party cookies, which are cookies placed by third parties for advertising and analytics purposes. You can control these cookies through your browser settings.
Please find the full list of personal data / cookies that may be used for personalization of ads on our IMAGE Skincare website. Google may use personal data when you give consent on our site. Please find the following link to their Google’s Privacy & Terms site.
Opt-Out Preference Signals. Your browser settings may allow you to automatically transmit an opt-out preference signal, such as the Global Privacy Control (GPC) signal, to online services you visit. When we detect such signal, we place a U.S. Privacy String setting in your browser so that any third party who respects that signal will not track your activity on our website. Your request to opt-out of sale/sharing will be linked to your browser identifier only and not linked to any account information because the connection between your browser and the account is not known to us. GPC is supported by certain internet browsers or as a browser extension. Find out how to enable GPC..
Information from other sources
We may collect personal information about you from third-party sources, including Other consumers (e.g., referrals).
Other consumers (e.g., referrals)
- Personal Identifiers, including Name, Email address, and Telephone number
How long we keep your data
We do not retain data for any longer than is necessary for the purposes described in this Policy.
We generally retain data according to the guidelines below.Type of Data | Retention Period |
---|---|
Cookies and online data we collect while you use our website, including Online Identifiers, Internet Activity | We delete or anonymize data concerning your use of our website within 10 years of collecting it. |
Data we collect in order to process and ship orders you place with us, including Name, Email address, Postal address, Telephone number, Purchases, Credit card or debit card number | We keep personal information related to products and services you purchase for as long as the personal data is required for us to fulfill our contract with you, and for 10 years from your last purchase with us. We may keep data beyond this period in anonymized form. |
Data we collect when you contact us for customer support and other inquiries, including Name, Email address, Telephone number | We keep customer feedback and correspondence with our customer service for up to 5 years to help us respond to any questions or complaints. We may keep data beyond this period in anonymized form. |
Data we collect when you sign up for promotional and marketing communications, including Name, Email address, Postal address, Telephone number, Inferences created from other personal information collected | Where you have signed up to receive promotional and marketing communications from us, we will retain any data collected until you opt out or request its deletion. We may keep data beyond this period in anonymized form. We will further retain a record of any opt-outs in order to prevent sending you future communications. |
Data we collect when you review our products, answer surveys, or send feedback, including Name, Email address, Purchases | We retain review, survey, and feedback data for up to 5 years following your last contact with us. We may keep data beyond this period in anonymized form to help improve our products and services. |
Data we collect in connection with privacy requests, including Name, Email address, Postal address, Telephone number | We retain records related to privacy requests for a minimum of 24 months following the completion of the request. |
Data we collect for security purposes, including Name, Email address, Postal address, Telephone number, Credit card or debit card number | Example: We retain security-related data as long as necessary to comply with our legal obligations and to maintain and improve our information security measures. |
Purposes of Processing
We process personal information for the following purposes:
- Analyzing Data
- Delivering Targeted Ads
- Fulfilling Customer Orders
- Meeting Compliance & Legal Requirements
- Processing Payments
- Providing Customer Support
- Sending Promotional Communications
- Storing and Managing Data
- Tracking Purchases & Customer Data
How we disclose information
Information Disclosed for Business or Commercial Purposes in the Last 12 Months, and Categories of Parties Disclosed To
We may disclose the following personal information about you when you purchase our products or visit our website:
Personal Information Category | Categories of Service Providers | Categories of Third Parties |
---|---|---|
Personal Identifiers | Commerce Software Tools, Governance, Risk & Compliance Software, and Sales & Marketing Tools | Data Analytics Providers |
Online Identifiers | Commerce Software Tools, Governance, Risk & Compliance Software, IT Infrastructure Services, and Sales & Marketing Tools | Ad Networks and Data Analytics Providers |
Internet Activity | Commerce Software Tools and Sales & Marketing Tools | Ad Networks and Data Analytics Providers |
Commercial and Financial Information | Commerce Software Tools and Sales & Marketing Tools | Ad Networks and Payment Processors |
EEA/UK Privacy Notice (GDPR)
This section provides additional information for people in the European Economic Area (EEA) or United Kingdom (UK). The terms used in this section have the same meaning as in the General Data Protection Regulation and the UK Data Protection Act (GDPR). The term “personal information” as used in this notice has the same meaning as “personal data” in the GDPR.
Collection and Disclosure of Personal Data
The personal data we collect is described above in Information we collect. The personal data we disclose for business or commercial purposes is described above in How we disclose information. The length of time for which we retain personal data is described above in How long we keep your data. Our purposes for processing data are described above in Purposes of processing.
We may disclose your personal information to the following third party controllers for business purposes: Apple Pay, Instagram Ads, Microsoft Ads, BDO Accountancy and Business Advice, Microsoft Clarity, TWM Solicitors LLP, Google Ads, Facebook Ads, Shop Pay. To understand how these parties handle your data, please refer to their respective privacy policies.
Cookie Notice
We use cookies to improve your experience on our site and to allow us and third parties to personalize the marketing content you see on other websites and social media. Manage your cookie consent here.
Essential Cookies
We use these cookies for things like security, logins, site errors, and processing payments. We can't turn these necessary cookies off, but you can control them in your browser.
Cookie Name | Provider | Duration |
---|---|---|
_cmp_a | Shopify | 1 Day |
_shg_session_id | Shopify | 1 Day |
_shg_user_id | Shopify | 4 Years 29 Days |
_vuid | Listrak | 1 Day |
AWSALBCORS | Listrak | 7 Days |
AWSALBCORS | Listrak | 7 Days |
cart_currency | Shopify | 14 Days |
data-timeout | Shopify | 7 Days |
gsid | Listrak | 10 Years |
keep_alive | Shopify | 1 Day |
localization | Shopify | 1 Year |
ltkpopup-session-depth | First Party | Session |
ltkSubscriber-Footer | First Party | Session |
scasid | Listrak | 1 Year |
secure_customer_sig | Shopify | 1 Year |
shopify_pay_redirect | Shopify | 1 Day |
swym-cu_ct | Shopify | 30 Days |
swym-email | Shopify | 30 Days |
swym-instrumentMap | Shopify | 30 Days |
swym-o_s | Shopify | 1 Day |
swym-pid | Shopify | 30 Days |
swym-session-id | Shopify | 1 Day |
swym-swymRegid | Shopify | 30 Days |
tpc_id | Attentive | 2 Years |
usid | Listrak | 2 Months 29 Days |
Analytics Cookies
These cookies tell us how you use our sites and apps, and provide information to help us improve your experience.
Cookie Name | Provider | Duration |
---|---|---|
__attentive_cco | Attentive | 59 Years 16 Days |
__attentive_dv | Attentive | 1 Day |
__attentive_id | Attentive | 59 Years 16 Days |
__attentive_pv | Attentive | 1 Day |
__attentive_ss_referrer | Attentive | 1 Day |
_attn_ | Attentive | 9 Years 28 Days |
_clck | Microsoft Ads | 30 Days |
_clsk | Microsoft Ads | 1 Day |
_ga | Google Analytics | 1 Year 30 Days |
_ga_84ZSS53F3K | Google Analytics | 1 Year 30 Days |
_ga_CZ38QXKQCL | Google Analytics | 1 Year 30 Days |
_gat | Google Analytics | 2 Mins |
_gid | Google Analytics | 1 Day |
_landing_page | Shopify | 14 Days |
_orig_referrer | Shopify | 14 Days |
_s | Shopify | 1 Day |
_shopify_s | Shopify | 1 Day |
_shopify_sa_p | Shopify | 1 Day |
_shopify_sa_t | Shopify | 1 Day |
_shopify_y | Shopify | 30 Days |
_y | Shopify | 30 Days |
CLID | Microsoft Ads | 30 Days |
GSIDk9pCTckIU6mH | Google Analytics | 10 Years |
Personalization Cookies
We use these cookies to enhance functionality and personalize content for you. For example, they allow us to remember you when you return to our website or app. If you do not allow these cookies then some or all of these services may not function properly.
Cookie Name | Provider | Duration |
---|---|---|
pixel | Yotpo | 30 Days |
Advertising Cookies
These cookies help us decide which products, services and offers may be relevant for you. We use this data to customize the marketing content you see on websites, apps and social media, and to measure your interactions with that content. We might use these cookies to advertise our products to you when you visit other websites.
Cookie Name | Provider | Duration |
---|---|---|
_fbp | Facebook Ads | 2 Months 29 Days |
_uetsid | Microsoft Ads | 1 Day |
_uetvid | Microsoft Ads | 1 Year 24 Days |
ANONCHK | Microsoft Ads | 11 Mins |
MR | Microsoft Ads | 7 Days |
MR | Microsoft Ads | 7 Days |
MR | Microsoft Ads | 7 Days |
MUID | Microsoft Ads | 1 Year 24 Days |
MUID | Microsoft Ads | 1 Year 24 Days |
SM | Microsoft Ads | Session |
SRM_B | Microsoft Ads | 1 Year 24 Days |
Lawful Bases and Legitimate Interests
We process personal data on the following lawful bases:
- Complying with legal obligations
- Fulfilling contracts
- Consent
- Legitimate interests
Where we process personal data on the basis of our legitimate interests, we pursue the following interests: Conducting Surveys, Creating Customer Profiles, Analyzing Data, Delivering Targeted Ads, Fulfilling Customer Orders, Meeting Compliance & Legal Requirements, Processing Payments, Providing Customer Support, Sending Promotional Communications, Storing and Managing Data, and Tracking Purchases & Customer Data.
International Data Transfers
We may send the personal data of individuals in the EEA/UK to third countries, including the United States, where it may be stored or processed, for example on our service providers’ cloud servers. When we transfer personal data, we rely either on Adequacy Decisions as adopted by the European Commission (EC) on the basis of Article 45 of Regulation (EU) 2016/679 (GDPR), Standard Contractual Clauses (SCCs) issued by the EC or International Data Transfer Agreements (IDTAs) approved by the UK Information Commissioner’s Office. Data protection authorities have determined that the SCCs and IDTAs provide sufficient safeguards to protect personal data transferred outside the EEA/UK. You may read more about the SCCs and IDTAs at the following links:
- https://ec.europa.eu/info/law/law-topic/data-protection/international-dimension-data-protection/standard-contractual-clauses-scc_en
- https://ico.org.uk/for-organisations/guide-to-data-protection/guide-to-the-general-data-protection-regulation-gdpr/international-data-transfer-agreement-and-guidance/
Privacy Rights
Individuals in the EEA/UK have the following rights regarding their personal data. Make a Privacy Request by clicking here or the link at the top of this page. Once you submit a request, we will verify your identity and process your request in most cases within 30 days.
Right to access. You have the right to request a copy of the personal data we hold about you.
Right of portability. You have the right to ask us to transfer your data to another party.
Right to rectification. You have the right to request that we rectify any incorrect information we have about you.
Right of erasure. You have the right to request that we erase (delete) any personal information we hold about you.
Right to lodge a complaint with a supervisory authority. You have a right to lodge a complaint with a supervisory authority. For more information, you can visit the Information Commissioner’s Office website at https://ico.org.uk/, or see a list of EU Data Protection Authorities at https://www.gdprregister.eu/gdpr/dpa-gdpr/.
Inquiries
Controller contact information
Image Skincare UK
Data Protection Officer information
GDPR Privacy