Privacy Policy – Sensitiva AB

This privacy policy explains how Sensitiva AB collects, stores, and processes your personal data. We comply with GDPR (General Data Protection Regulation) and other applicable laws to protect your privacy. By using our website and purchasing from us, you agree to our processing of your data in accordance with this policy.

1. What Data We Collect

We collect the following types of personal data when you visit our website or make a purchase:

  • Name and contact details (address, email, phone number)
  • Payment information (excluding card details – these are handled by third-party payment providers)
  • Order history and purchase behavior
  • IP address, device information, and web history when visiting our website (via cookies)

2. Why We Collect Your Data

We process your personal data to:

  • Complete purchases and deliver products
  • Handle customer service inquiries and complaints
  • Fulfill legal obligations (e.g., accounting laws)
  • Send marketing and offers (only if you have consented)
  • Improve our website and user experience

3. Sharing of Personal Data

We only share your personal data with third parties when necessary, such as:

  • Payment providers (to process payments)
  • Logistics partners (for product delivery)
  • Authorities if required by law (e.g., in cases of suspected fraud)

We never sell or share your personal data with third parties for marketing purposes without your consent.

4. Your Rights Under GDPR

4.1 Right to Request a Data Extract

You have the right to request a data extract of the personal data we store about you. To ensure that the information is provided to the correct person, we require identification, such as a copy of your ID. Requests are processed within 30 days. In case of repeated requests, we reserve the right to charge an administrative fee.

4.2 Right to Request Data Deletion

You can request that we delete your personal data if it is no longer necessary for the purpose for which it was collected. Please note that some data cannot be deleted if we are legally required to retain it (e.g., accounting records for 7 years).

4.3 Right to Rectification and Restriction of Processing

If your data is incorrect, you can request that we correct it. You may also request that we restrict the processing of your data in certain cases.

4.4 Right to Data Portability

You have the right to receive your data in a structured, machine-readable format and transfer it to another entity.

4.5 Right to Object to Direct Marketing

If you do not wish to receive marketing from us, you can unsubscribe at any time via a link in our email communications or by contacting customer service.

5. Cookies and Tracking

We use cookies to improve your experience on our website. By using our website, you consent to our use of cookies. You can block cookies in your browser settings.

6. How We Protect Your Data

We implement technical and organizational measures to protect your data from unauthorized access, manipulation, and loss. All data transmission is secured through encrypted connections (SSL/HTTPS).

7. Contact and Complaints

If you have any questions regarding our handling of personal data or wish to exercise your rights under GDPR, contact us at:

**Email:** support@sensitiva.se
Address:

This policy is effective from 2025-03-04 and may be updated as necessary.

We collect information about you during the checkout process on our store.

What we collect and store

While you visit our site, we’ll track:

  • Products you’ve viewed: we’ll use this to, for example, show you products you’ve recently viewed
  • Location, IP address and browser type: we’ll use this for purposes like estimating taxes and shipping
  • Shipping address: we’ll ask you to enter this so we can, for instance, estimate shipping before you place an order, and send you the order!

We’ll also use cookies to keep track of basket contents while you’re browsing our site.

When you purchase from us, we’ll ask you to provide information including your name, billing address, shipping address, email address, phone number, credit card/payment details and optional account information like username and password. We’ll use this information for purposes, such as, to:

  • Send you information about your account and order
  • Respond to your requests, including refunds and complaints
  • Process payments and prevent fraud
  • Set up your account for our store
  • Comply with any legal obligations we have, such as calculating taxes
  • Improve our store offerings
  • Send you marketing messages, if you choose to receive them

If you create an account, we will store your name, address, email and phone number, which will be used to populate the checkout for future orders.

We generally store information about you for as long as we need the information for the purposes for which we collect and use it, and we are not legally required to continue to keep it. For example, we will store order information for XXX years for tax and accounting purposes. This includes your name, email address and billing and shipping addresses.

We will also store comments or reviews, if you choose to leave them.

Who on our team has access

Members of our team have access to the information you provide us. For example, both Administrators and Shop Managers can access:

  • Order information like what was purchased, when it was purchased and where it should be sent, and
  • Customer information like your name, email address, and billing and shipping information.

Our team members have access to this information to help fulfill orders, process refunds and support you.

What we share with others

We share information with third parties who help us provide our orders and store services to you; for example —

Payments

When you place an order in the webstore with Klarna Payments as the choosen payment method, information about the products in the order (namne, price, quantity, SKU) is sent to Klarna together with your billing and shipping address. Klarna then responds with a unique transaction ID.This ID is stored in the order in WooCommerce for future reference.

What personal data we collect and why we collect it

Cookies

A cookie named “itsec_interstitial_browser” is created to track a user’s login process to implement enhanced security features.

Security Logs

The IP address of visitors, user ID of logged in users, and username of login attempts are conditionally logged to check for malicious activity and to protect the site from specific kinds of attacks. Examples of conditions when logging occurs include login attempts, log out requests, requests for suspicious URLs, changes to site content, and password updates. This information is retained for 60 days.

Who we share your data with

A QR code image is generated for users that set up two-factor authentication for this site. This image is generated using a SolidWP-hosted API. In the process of generating this image, your username is sent to the API. This data is not logged. For privacy policy details, please see the SolidWP Privacy Policy.

This site is scanned for potential malware and vulnerabilities by the SolidWP Site Scanner. We do not send personal information to the scanner; however, the scanner could find personal information posted publicly (such as in comments) during the scan.

How long we retain your data

Security logs are retained for 60 days.

Where we send your data

This site is part of a network of sites that protect against distributed brute force attacks. To enable this protection, the IP address of visitors attempting to log into the site is shared with a service provided by solidwp.com. For privacy policy details, please see the SolidWP Privacy Policy.

This site utilises caching in order to facilitate a faster response time and better user experience. Caching potentially stores a duplicate copy of every web page that is on display on this site. All cache files are temporary, and are never accessed by any third party, except as necessary to obtain technical support from the cache plugin vendor. Cache files expire on a schedule set by the site administrator, but may easily be purged by the admin before their natural expiration, if necessary. We may use QUIC.cloud services to process & cache your data temporarily.Please see https://quic.cloud/privacy-policy/ for more details.

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.