Xlexironshuz

1. Introduction

Xlexironshuz ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website xlexironshuz.world and use our services.

This policy complies with the General Data Protection Regulation (GDPR) (EU) 2016/679, the Dutch Implementation Act for the GDPR (Uitvoeringswet Algemene verordening gegevensbescherming, UAVG), and other applicable data protection laws in the Netherlands and the European Economic Area.

2. Data Controller Information

The data controller responsible for your personal data is:

  • Company Name: Xlexironshuz
  • Address: Brink 10, 1251 KV Laren, Netherlands
  • Email: message@xlexironshuz.world
  • Country: Netherlands

3. Information We Collect

3.1 Information You Provide

We collect information that you voluntarily provide when you:

  • Place an order through our website
  • Contact us with inquiries or feedback
  • Subscribe to our communications

This information may include:

  • Full name
  • Email address
  • Phone number (if provided)
  • Messages or communications you send to us

3.2 Automatically Collected Information

When you visit our website, we may automatically collect:

  • IP address
  • Browser type and version
  • Device information
  • Pages visited and time spent
  • Referring website
  • Cookie data (see our Cookie Policy)

4. Legal Basis for Processing

Under GDPR, we process your personal data based on the following legal grounds:

Purpose Legal Basis
Processing orders Contract performance (Art. 6(1)(b) GDPR)
Responding to inquiries Legitimate interest (Art. 6(1)(f) GDPR)
Marketing communications Consent (Art. 6(1)(a) GDPR)
Legal compliance Legal obligation (Art. 6(1)(c) GDPR)
Website analytics Legitimate interest/Consent (Art. 6(1)(a)(f) GDPR)

5. How We Use Your Information

We use the collected information for the following purposes:

  • Processing and fulfilling your orders
  • Communicating with you about your orders or inquiries
  • Sending marketing communications (with your consent)
  • Improving our website and services
  • Analyzing website usage and trends
  • Complying with legal obligations
  • Preventing fraud and ensuring security

6. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy:

  • Order information: 7 years (for tax and accounting purposes)
  • Customer inquiries: 2 years after resolution
  • Marketing data: Until consent is withdrawn
  • Website analytics: 26 months

7. Data Sharing and Transfers

We may share your personal data with:

  • Service providers: Third parties that help us operate our business (payment processors, shipping companies, email services)
  • Legal authorities: When required by law or to protect our rights

If we transfer data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission.

8. Your Rights Under GDPR and UAVG

As a data subject in the Netherlands and the EEA, you have the following rights under the GDPR and the Dutch UAVG:

  • Right of Access (Art. 15): Request a copy of your personal data
  • Right to Rectification (Art. 16): Request correction of inaccurate data
  • Right to Erasure (Art. 17): Request deletion of your data ("right to be forgotten")
  • Right to Restriction (Art. 18): Request limitation of processing
  • Right to Portability (Art. 20): Receive your data in a portable format
  • Right to Object (Art. 21): Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent at any time

To exercise these rights, contact us using the contact details below. We will respond without undue delay and in any event within one month (30 days) of receipt of your request, as required by GDPR Article 12(3) and Dutch practice. If your request is complex or we receive many requests, we may extend this period by a further two months and will inform you of the extension.

9. Data Security

We implement appropriate technical and organizational measures to protect your personal data, including:

  • SSL/TLS encryption for data transmission
  • Secure servers and access controls
  • Regular security assessments
  • Staff training on data protection

10. Children's Privacy

Our website and services are not intended for individuals under 18 years of age. We do not knowingly collect personal data from children.

11. Changes to This Policy

We may update this Privacy Policy periodically. Changes will be posted on this page with an updated revision date. We encourage you to review this policy regularly.

12. Complaints

If you believe your data protection rights have been violated, you have the right to lodge a complaint with a supervisory authority. In the Netherlands, the competent authority is:

  • Autoriteit Persoonsgegevens (Dutch Data Protection Authority)
    Postbus 93374, 2509 AJ Den Haag, Netherlands
    Website: autoriteitpersoonsgegevens.nl

You may also lodge a complaint in the EU member state of your residence, place of work, or place of the alleged infringement.

13. Contact Us

For questions about this Privacy Policy or our data practices, please contact us:

  • Email: message@xlexironshuz.world
  • Address: Brink 10, 1251 KV Laren, Netherlands