Privacy Policy
COIDO SABADELLE S.L. (hereinafter, Augas de Mar), informs users of the website tienda.augasdemar.com about its policy regarding the processing and protection of personal data of users and customers.
Augas de Mar guarantees at all times full and complete compliance with the obligations set out in data protection and information society services regulations: Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016, on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (GDPR), Organic Law 3/2018 of 5 December on the Protection of Personal Data and guarantee of digital rights (LOPDGDD), and Law 34/2002 of 11 July on Information Society Services and Electronic Commerce (LSSIce).
Data Controller
COIDO SABADELLE S.L. (Augas de Mar)
Registered in the Commercial Registry of A Coruña, Volume 3519, Folio 213, Sheet C-51427, Entry 1st.
Address: C/ Blanco Rajoy 14, 15149 Vimianzo – A Coruña.
Phone: +34 604 093 875 (9:00 – 20:00)
Email: info@aguademarbretema.com
Website: augasdemar.com
Purposes of Data Processing
The data provided by the User is used for the following purposes:
To manage enquiries or any type of request made through the contact channels available on the website.
Legal basis: Legitimate interest of the Company to address information requests through the website. Consent expressly given at the time of data collection through web forms.
To manage customer registration and order processing.
Legal basis: Consent expressly given at the time of data collection through web forms.
Sending newsletters, commercial communications and promotions.
Legal basis: Consent expressly given at the time of data collection through web forms.
To manage incidents and website maintenance.
Legal basis: Legitimate interest of the Company.
Data Retention Period
Management of enquiries and requests: we will process your data for as long as necessary to handle your request.
Customer registration and order processing: we will process your data until you request cancellation or for as long as necessary to comply with the applicable legal limitation periods.
Sending newsletters and commercial communications: we will process your data until you request cancellation.
Incidents and website maintenance: we will process your data for as long as necessary to comply with the applicable legal limitation periods.
Data Recipients
In order to fulfil the purposes set out in this Privacy Policy, it is necessary for us to provide access to your personal data to third parties that support us in the services we offer you (Data Processors).
Data Processors, in order to perform a contract or provide a service to the Data Controller, must follow its instructions and guarantee the same levels of security.
User Rights
The user has the right to:
— Request access to their personal data being processed and receive such information in writing by the requested means.
— Request the rectification of inaccurate personal data or, where applicable, request its erasure when, among other reasons, the data is no longer necessary for the purpose for which it was collected.
— Request the restriction of processing of their data.
— Object to the processing of their personal data where applicable; in such case, processing of their data will cease unless there are legitimate grounds to continue.
— Right to data portability. The data subject has the right to receive personal data in a structured, commonly used and machine-readable format, and to transmit it to another controller, where processing is based on consent or a contract and is carried out by automated means.
— Right to withdraw consent given at any time.
— Right to lodge a complaint with the Spanish Data Protection Agency (www.aepd.es).
The User may exercise the above-mentioned rights by sending an email to info@augasdemar.com or by post to C/ Blanco Rajoy 14, 15149 Vimianzo – A Coruña, providing proof of identity by attaching a scanned copy of their ID or equivalent document, and specifying the right they wish to exercise.
Source of Data
Personal data must be provided voluntarily by the data subject. Failure to provide certain data or not responding to questions raised during registration processes or through electronic forms may result in the inability to access certain services for which such data is essential. In such cases, the Data Controller will inform the data subject of the mandatory nature of providing personal data for the service to function.
The Data Controller ensures the confidentiality of personal data and guarantees its security, adopting the necessary measures to prevent its alteration, loss, processing or unauthorised access.
Information Provided by the Data Subject
Persons under the age of 18 may not provide their personal data without the prior consent of their parent(s) and/or legal guardians.
The data subject, by entering their data in contact or purchase forms, expressly, freely and unequivocally accepts that their data is necessary for the Data Controller to handle their request, with the inclusion of data in the remaining fields being voluntary.
The data subject guarantees that the personal data provided is accurate and undertakes to notify any changes to it.
All data requested through the website is necessary to provide an optimal service. If all data is not provided, it cannot be guaranteed that the information and services provided will be fully tailored to your needs.
Security Measures
In accordance with the provisions of current regulations on the protection of personal data, the Data Controller complies with all provisions of the GDPR and LOPDGDD for the processing of personal data under its responsibility, and manifestly with the principles described in Article 5 of the GDPR and Article 4 of the LOPDGDD, by which data is processed lawfully, fairly and transparently in relation to the data subject, and in an adequate, relevant and limited manner in relation to the purposes for which it is processed.
The Data Controller guarantees that it has implemented appropriate technical and organisational policies to apply the security measures established by the GDPR and LOPDGDD, in order to protect the rights and freedoms of the data subject.
Security Breaches
The Data Controller will inform all persons whose data may have been affected, as well as the competent authorities, of any security breach affecting the database used on this website or any third-party services, within 72 hours of detecting the breach.
Applicable Law and Jurisdiction
The relationship between the User and the Data Controller will be governed by the regulations currently in force and applicable in Spanish territory. Should any dispute arise in relation to the interpretation and/or application of this policy, the parties shall submit their disputes to ordinary jurisdiction, before the judges and courts that correspond in accordance with the law.