Privacy

Privacy policy

1) Information on the collection of personal data and contact details of the controller

1.1 We appreciate your interest in our website. The following information outlines how we handle your personal data when you use our website. Personal data refers to any information that can be used to personally identify you.
1.2 The data controller responsible for processing personal data on this website, in accordance with the General Data Protection Regulation (GDPR), is Studio Sydney. The controller is the individual or legal entity that determines the purposes and means of processing personal data, either alone or jointly with others.
1.3 For security reasons and to protect the transmission of personal and confidential data (e.g., orders or inquiries), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the 'https://' prefix and the lock symbol in your browser's address bar.

2) Data collection when visiting our website

When you visit our website purely for informational purposes, without registering or transmitting other information, we only collect data your browser sends to our server (so-called 'server log files'). This includes:
- The page visited
- Date and time of access
- Data volume transferred
- Referrer URL
- Browser used
- Operating system used
- IP address (possibly anonymized)
Processing is done according to Art. 6(1)(f) GDPR based on our legitimate interest in improving stability and functionality. This data will not be shared or used otherwise unless illegal usage is suspected.

3) Cookies
We use cookies to enhance your browsing experience and enable certain functions. Cookies are small text files saved on your device.
Some cookies (session cookies) are deleted after your browser session ends. Others remain (persistent cookies), allowing us or partners to recognize your browser later.
Persistent cookies collect information like browser type, location data, or IP address. They are deleted after a defined period.
Cookies may simplify processes like remembering cart contents. If personal data is processed, it is under Art. 6(1)(b) GDPR (contractual obligation) or Art. 6(1)(f) GDPR (legitimate interest).
Third-party cookies may be used for marketing and analytics. You will be informed when such cookies are in use.
Browser settings can be adjusted to accept or reject cookies. Please refer to your browser's help section for more info.

4) Contacting us
When contacting us (e.g., via contact form or email), we collect personal data. The specific data collected via a contact form is visible in the form itself.
This data is used exclusively for answering your inquiry and for technical administration. Legal basis: Art. 6(1)(f) GDPR (legitimate interest).
If your contact aims at concluding a contract, the legal basis is also Art. 6(1)(b) GDPR. Your data will be deleted once your inquiry is resolved unless legal obligations require storage.

5) Data processing for customer account and contract execution
According to Art. 6(1)(b) GDPR, we collect and process personal data when you open a customer account or provide data to execute a contract.
The required data is evident from the input forms. You can delete your customer account at any time by contacting the controller.
We store and use this data to process contracts. Upon contract completion or account deletion, data is blocked or deleted as per tax and commercial law, unless otherwise consented.

6) Use of data for direct advertising
6.1 Subscription to Our Email Newsletter
By subscribing to our newsletter, you agree to receive regular updates on our offers. Only your email address is mandatory; other details are optional.
We use a double opt-in method to confirm your subscription. By clicking the confirmation link, you consent to data use under Art. 6(1)(a) GDPR.
You can unsubscribe at any time via the link in the newsletter or by contacting us. Your data will be deleted unless further use is legally permissible.
6.2 Newsletter for Existing Customers
We may send promotional emails for similar goods/services you previously purchased. Legal basis: Art. 6(1)(f) GDPR (legitimate interest in advertising).
You can object to such emails at any time with future effect by contacting us. No other costs than basic communication rates apply.

7) Data processing for order handling
We share your data with the shipping company responsible for delivery and, if necessary, with the payment service provider. Legal basis: Art. 6(1)(b) GDPR.
7.2 Payment providers:
- PayPal: Data is transferred to PayPal for payment processing. PayPal may perform a credit check (Art. 6(1)(f) GDPR).
- SOFORT (Klarna): Data is passed to SOFORT GmbH for payment processing. More information: https://www.klarna.com/sofort/datenschutz

8) Review reminders
We may use your email to remind you to leave a review for your purchase if you have given consent (Art. 6(1)(a) GDPR).
You can revoke consent at any time by contacting us.

9) Use of social media: Plugins
9.1 Facebook Plugins (Shariff Solution)
We use social plugins from Facebook (Facebook Inc., USA). To protect your data, we use a Shariff solution—buttons are embedded as HTML links.
Clicking the button opens a new window connecting you to Facebook, where you can interact with their plugins. Facebook is certified under the EU-US Privacy Shield.
More info: https://www.facebook.com/policy.php
9.2 Google+ Plugins (Shariff Solution)
Same method as with Facebook. Operated by Google LLC, USA. Certified under the EU-US Privacy Shield.
More info: https://www.google.com/intl/de/policies/privacy/
9.3 Instagram Plugins (Shariff Solution)
Operated by Instagram LLC, USA. Embedded via HTML to protect user data. Certified under the EU-US Privacy Shield.
More info: https://help.instagram.com/155833707900388/

10) Online marketing
10.1 DoubleClick by Google
Used for targeted advertising. Uses cookies to avoid repeated ads and track conversions. Legal basis: Art. 6(1)(f) GDPR (legitimate interest).
Google may collect and store user data. You can disable cookies at: https://www.google.de/settings/ads or opt out via www.aboutads.info
More info: https://www.google.de/policies/privacy/
10.2 Google AdWords Conversion Tracking
Used to track ad performance. A cookie is placed when you click a Google ad. If you visit our site afterward, the visit is tracked as a conversion.
Each advertiser gets a unique cookie. No personal identification. You can disable cookies in your browser settings or via: https://www.google.com/settings/ads/plugin?hl=de

11) Web analytics
We use Google (Universal) Analytics from Google LLC. Uses cookies to analyze website usage. Data is typically transferred to and stored on Google servers in the USA.
We use IP anonymization (_anonymizeIp()). Processing is based on Art. 6(1)(f) GDPR (legitimate interest in site optimization).
You can opt out by using the plugin: https://tools.google.com/dlpage/gaoptout?hl=de or by setting a browser cookie.
We also use Universal Analytics with a User-ID for cross-device analysis. No personal data is stored or transmitted.

12) Retargeting / remarketing / referral advertising/ Facebook pixel
Used for conversion tracking and optimizing Facebook ads. Facebook processes the data and may associate it with your user profile.
Legal basis: Art. 6(1)(a) GDPR (consent). Only users aged 13+ may provide consent. You can opt out at: https://www.aboutads.info/choices/
Google AdWords Remarketing
Used for interest-based ads in Google search and on third-party sites. A cookie is set to track interests based on pages visited.
You can manage your settings at: https://www.google.com/settings/ads/onweb/ or opt out at www.aboutads.info

13) Your rights
You have the following rights under GDPR:
- Right to access (Art. 15)
- Right to rectification (Art. 16)
- Right to erasure (Art. 17)
- Right to restriction of processing (Art. 18)
- Right to notification (Art. 19)
- Right to data portability (Art. 20)
- Right to withdraw consent (Art. 7(3))
- Right to lodge a complaint (Art. 77)

13.2) Right to object
If we process your data based on legitimate interests, you have the right to object at any time (Art. 21 GDPR).
In case of direct advertising, you may object to your data being used at any time. We will cease processing it for those purposes.

14) Data retention
We retain personal data only as long as necessary to fulfill contractual obligations or legal retention periods (e.g., tax or commercial law).
Afterward, data is routinely deleted unless continued storage is required for other legal reasons.