Note that throughout the document, the use of “Us,” “We,” and “Our” references Express Highs UK. This document outlines how we collect, use, and share your information upon Your use of our Service and Site and the policies and procedures that govern such actions. We recommend reading this document to understand Your privacy rights as you navigate the site and avail of our services and to learn about the provisions of the law that are in place for Your protection.
Express Highs UK uses Your Personal Data when rendering our Service and to improve it. Note that Your continued use of our Service indicates Your agreement with the provisions of our Privacy Policy that enables us to use your data.
Interpretation and Definitions
Interpretation
Throughout this document, various words begin with a capitalized letter. Such words have specific meanings, which are outlined below. Note that whether these words appear in singular or in plural, they hold the same meaning.
Definitions
In this privacy policy, certain words are defined clearly in the following manner:
-
Account: Account refers to a unique account associated with You, which enables You to navigate our site and access our Services.
-
Affiliate: When an entity is controlled, controls, or is under common control with another party, it is referred to as an Affiliate. In this context, control indicates a minimum of 50% share, securities, or equity interest ownership, which empowers them to vote when electing managing authorities such as directors.
-
Company: Express Ecommerce Services, Prins Willem Alexanderlaan 415, Apeldoorn, Netherlands is referred to as Company throughout this document (also denoted by "the Company", "We", "Us" or "Our"). The Company also operates as the Data Controller.
-
Cookies: A website places small files on Your device, which are referred to as Cookies. They are used in multiple ways and store Your browsing patterns on the site.
-
Country: Here, the Netherlands is referred to when the term Country is used.
-
Data Controller: The Company is the Data Controller for all General Data Protection Regulation purposes. In other words, the Company is the legal entity that either independently or collaboratively determines how Personal Data is processed and why.
-
Device: A computer, cellphone, or any other digital device that is used to access the Service is referred to as a Device.
-
GDPR: EU’s General Data Protection Regulation.
-
Personal Data: Any information that concerns an individual—either identifiable or identified—is referred to as Personal Data. In alignment with the EU's GDPR, Personal Data entails information such as name, ID number, data concerning location, various online identifiers, and other factors that pertain to an individual’s identity—mental, social, psychological, genetic, cultural, or economic.
-
Service: The term Service is used to refer to the website.
-
Service Provider: Within the gamut of this document, any person (legal or natural) who undertakes the task of data processing for the Company is referred to as the Service Provider. This may include third-party entities that the Company entrusts with the task of facilitating the Service, providing the Service at the behest of the Company, or rendering services associated with the Service. Such Service Providers may even assess the usage of the Service to help the Company. In line with the GDPR, Service Providers are considered Data Processors.
-
Usage Data: The data generated from the Service use or infrastructure (such as the time spent on the site) is collected automatically and is referred to as Usage Data.
-
Website: Express Highs UK, which can be accessed from the link.
-
You: Any individual who either accesses or utilizes the Service offered, either for their personal benefit or on behalf of a company or a legal entity, is referred to as You. Since you are an individual utilizing the Service offered, You may also be referred to as the User or the Data Subject in line with the GDPR.
Collecting and Using Your Personal Data
Types of Data Collected
Personal Data
Our website may seek certain personally identifiable information from Your end if you opt to use Our Service. This information helps Us identify or contact You. Some of the information that may be sought and collected include:
-
Email address
-
First name and last name
-
Phone number
-
Address, State, Province, ZIP/Postal code, City
-
Usage Data
Usage Data
Each time You use the Service, you acknowledge and agree to the automatic collection of Your data, which is known as Your usage data.
A wide range of information is collected as Usage Data, including the IP address of your device, browser information (type and version), the pages you visit when using our Service when You visited the pages (information like time and date), the amount of time spent browsing such pages, unique device identifiers and other diagnostic data.
If You navigate our website or use the Service through Your mobile device, You understand and accept that certain information may be automatically collected by us. Among other types of information, we also collect the IP address, type, operating system, and unique ID of Your mobile device. Other diagnostic data such as Your mobile Internet browser type and unique device identifiers may also be collected automatically.
When using a mobile device to access or navigate the Service, any information sent by Your browser may be collected by us.
Tracking Technologies and Cookies
Various tracking technologies such as Cookies are used in order to track any activity on our Service. This information may be stored by us in order to assess and enhance how Our Service is presented and utilized. Beacons, scripts, and tags are some of the tracking technologies we use. Here are some of the technologies We may use:
-
Cookies or Browser Cookies. A small file that is placed on your device, a Cookie can be refused by adjusting Your browser settings. You can even adjust your settings to ensure you are notified each time a Cookie is being sent. Please note that the decision to not accept Cookies may impact how you can access and navigate Our Service, with certain aspects becoming inaccessible. Cookies may be used by Our Service if You do not actively refuse them through Your browser.
-
Web Beacons. Web beacons are small electronic files that may be a part of specific aspects of our Service or emails. Commonly, these are known as single-pixel gifs, pixel tags, and clear gifs and help Us track the number of users who visit such pages or open the emails that have been sent. Please note that web beacons may be used to compute other statistics as well, including the traction garnered by specific sections and to assess the integrity of the system and servers.
There are two types of Cookies: “Session” and “Persistent.” As the names imply, Persistent Cookies will remain on Your electronic device even after You log off, while Session Cookies are only active as long as You are still actively accessing Our Service via Your web browser. Session cookies will be deleted as soon as you close your browser. You can browse this article to understand more about Cookies.
On Our site, both Persistent and Session Cookies are used for specific purposes:
-
Necessary / Essential Cookies
-
Type: Session Cookies
-
Administered by: Us
-
Purpose: Session Cookies are necessary to help you access and use the services that are offered via our Website. By authenticating each user, they play a crucial role in the prevention of fraud. Please note that we cannot render Our services if these Cookies are not activated. These Cookies only serve the purpose of rendering our Services.
-
Cookies Policy / Notice Acceptance Cookies
-
Type: Persistent Cookies
-
Administered by: Us
-
Purpose: Whether a user accepted the website Cookies is identified by these Cookies.
-
Functionality Cookies
-
Type: Persistent Cookies
-
Administered by: Us
-
Purpose: Each time you use the Website, Persistent Cookies help us remember Your choices in terms of navigating the Service, including Your language preference and whether you want us to remember your login details. These Cookies are useful in personalising Your experience and ensuring that you need not clarify your preferences during each visit.
-
Tracking and Performance Cookies
-
Type: Persistent Cookies
-
Administered by: Third-Parties
-
Purpose: With the help of these Cookies, we collect information regarding how the Website is used and the traffic and traction gained by it. Please note that these Cookies may gather certain types of information that may identify you as an individual visitor—either directly or indirectly. The information that these Cookies collect is generally related to a pseudonymous identifier which is, in turn, linked to your electronic device that helps access our Service. These Cookies may also be used to understand our users' reactions to any new functionalities or features we may integrate.
-
Please explore our Privacy Policy—specifically the section associated with our Cookies—to learn more about our Cookies.
Use of Your Personal Data
The Company may use Your personal data in the following manner:
-
To render, maintain, and track the usage of Our Services.
-
To manage Your account once you begin using our Service. Based on the data that You provide, You will be able to access various features of the Service that are only available to registered users.
-
To contribute to a contract's performance. In other words, each time You purchase a product, item, or service, or any time there is a need to create a contract between You and the Company, Your personal data can help with the development, compliance and undertaking of the relevant contract.
-
Your personal data may also be used to contact You via various electronic channels such as email, telephonic calls, SMS, or even push notifications via the app. Typically, such communication pertains to updates surrounding products, contracted services, products, security policies, and more in cases where they are considered necessary or reasonable.
-
To ensure that you remain informed about any news, offers, and other general information concerning goods, services and events that resemble those you have purchased or shown interest toward, unless You choose to not receive such information.
-
To manage any requests You may direct toward us.
-
Your information may also be used to assess or conduct business transfers such as mergers, restructuring and reorganizing, divestitures, dissolutions, or sales or transfers of either some or all of our assets, wherein such sales may be a consequence of bankruptcy, liquidation, or similar proceeding or as a going concern. In such transfers, any Personal Data that we own of Our Service Users is among the assets that are forwarded.
-
For other purposes: Finally, Your data may be used for other purposes, including data analytics, tracking usage patterns, assessing how effective our promotional campaigns are, and enhancing Our Service, products, and services to optimize user experience.
We may share Your personal information with the following stakeholders:
-
Service Providers: To process payments, contact You, and monitor and assess our Service usage, Your personal information may be shared with Service Providers.
-
For business transfers: When a portion or all of Our business may be transferred to another company in the form of mergers, financing, acquisition, or the sale of company assets, Your personal information may be transferred to such a Company in connection with such procedures or during negotiations.
-
Affiliates: Your information may also be shared with Our affiliates. In such cases, your data will continue to be governed in line with this Privacy Policy by the affiliates. In this context, affiliates include any subsidiaries, Our parent company, joint venture partners, or any other company that is either governed by us or under common control with Us.
-
Business partners: In order to ensure that You enjoy access to specific products, promotions, or services, we may also share the data that You provide with Our business partners.
-
Other users: Please note that any information or interaction that is shared in public spaces with other users may be distributed publicly and accessed by other users.
-
Please note that upon obtaining your consent, Your personal information may be disclosed for other purposes too.
Personal Data Retention
Your Personal Data will only be retained by Us for a period that is deemed necessary and for the purposes outlined in this document. Your personal information will be used by us to the extent required to adhere to any relevant legal obligations (we may be required by law to retain specific information pertaining to our users), resolve conflicts, and implement our legal agreements and policies.
Internal analysis may also require the retention of Usage Data. Such Usage Data is typically retained only over a short period. However, it may be retained over a longer period if it is necessary to improve Our security measures or Our Services or in case of any associated legal obligations.
Personal Data Transfer
The operating offices of the Company and other spaces that house parties that contribute to data processes may process your information, including Personal Data. Thus, your data may either be maintained on or transferred to systems located in state, province, country, or governmental jurisdiction outside of your location and as such, the data protection laws may vary from Your jurisdiction.
Please note that if you submit any personal information or accept this Privacy Policy, it will be considered as your agreement to such a transfer.
To make sure that Your data is handled in a secure manner and in line with this document, We will take every step that is considered reasonably necessary. Also, note that Your Personal Data will only be transferred to an entity or a country after ascertaining that there are measures in place to ensure that Your data and personal information stay safe.
Deleting Your Personal Data
It is your prerogative to either delete or request us to delete the Personal Data you have shared with us. You may be able to delete certain information about yourself directly from Our Service. Sign in to your account to edit, update, or delete Your information from the account settings section where you can edit your Personal Data.
In order to edit, delete, or access any information you may have provided to us, you may get in touch with Us for assistance. However, in certain circumstances, we may be legally obligated to retain specific information or may have a lawful basis to do so.
Personal Data Disclosure
Business Transactions
When navigating mergers, acquisitions, or asset sales, a transfer of your Personal Data may be required. You will be notified before any such transfer, following which your Personal Data will be governed by a new Privacy Policy.
Law enforcement
In specific scenarios, Your Personal Data may be disclosed by the Company if obligated to do so by law or if requested by public authorities, such as government agencies, due to valid reasons.
Other legal requirements
Your Personal Data may be disclosed by the Company in cases where this step is required to:
-
Adhere to relevant legal obligations
-
Safeguard the Company’s rights or property
-
Avoid potential wrongdoings in association with the service or investigate any such incidents
-
Safeguard the personal safety of the public or the Service Users
-
Safeguard the company against legal liabilities
Personal Data Safety
We value Your Personal Data safety. However, please note that it is impossible to ensure 100% security when transmitting data over the Internet or storing it electronically. Despite our sincere attempts to safeguard your data by implementing commercially acceptable measures, its absolute security cannot be guaranteed.
A Comprehensive Guide to Personal Data Processing
Your Personal Data can be accessed by our Service Providers, who acquire, use, store, process, and share information pertaining to how You use Our Service in line with their Privacy Policies.
Analytics
Our Service usage may be tracked and analyzed by third-party Service providers.
-
Google Analytics
-
Website traffic is tracked and reported by Google Analytics, which is Google's web analytics service. This data helps monitor how Our Service is used, which is also shared with other Google services. The data that is collected helps Google customize the ads created by its own advertising network.
-
Install the Google Analytics opt-out browser add-on if you want to opt out of Google Analytics having access to how You use the Service. When this add-on is installed, Google Analytics JavaScript (ga.js, analytics.js and dc.js) can no longer share any information about user visits and their activity with Google Analytics.
-
Please check out the Privacy & Terms of Google (https://policies.google.com/privacy) to learn about its privacy policies.
-
Email Marketing
Your Personal Data may be used to share various information that may interest You, such as marketing and promotional materials and newsletters. Please click on the unsubscribe link, adhere to the instructions sent via our emails, or e-mail Us to opt out of receiving such emails.
Email Marketing Service Providers may be used by Us to manage our communication with You.
-
Mailchimp
-
The Rocket Science Group LLC.'s email marketing sending service, Mailchimp's Privacy policy can be accessed here: https://mailchimp.com/legal/privacy/
-
Constant Contact
-
Constant Contact, Inc.'s email marketing sending service, Constant Contact's Privacy policy can be accessed here: https://www.constantcontact.com/forward/privacy-center
-
AWeber
-
AWeber Communications's AWeber is an email marketing sending service, whose Privacy policy can be accessed here: https://www.aweber.com/privacy.htm
-
GetResponse
-
The Privacy policy of GetResponse—an email marketing sending service of GetResponse—can be accessed here:
Payments
Within Our Service, paid products or services (or both) may be offered, for which payment may be processed by third-party services.
Your card details will not be collected or stored by Us. Instead, Our third-party payment processors directly receive such information and will use Your Personal Data in line with their Privacy Policy. The standards set by PCI-DSS as managed by the PCI Security Standards Council, govern such payment processors through a collaborative effort of Visa, Mastercard, American Express and Discover. Payment information is therefore securely handled in line with the criteria outlined by PCI-DSS.
-
Stripe
-
Privacy policy: https://stripe.com/us/privacy
-
PayPal
-
Privacy policy: https://www.paypal.com/webapps/mpp/ua/privacy-full
-
Authorize.net
-
Privacy policy: https://www.authorize.net/company/privacy/
GDPR Privacy
GDPR’s Governance of Personal Data Processing
The following criteria are adhered to when processing Personal Data by Our Company:
-
Consent: Users have consented to the processing of Personal Data by Our Company for one or several purposes.
-
Contract Performance: If Your Personal Data is necessary in order to fulfil pre-contractual obligations or for the performance of an agreement.
-
Legal obligations: If Personal Data must be processed to adhere to any legal obligations that must be adhered to by the Company.
-
Vital interests: Personal Data processing is necessary for the protection of either Your or another natural person’s vital interests.
-
Public interests: If Personal Data must be processed to carry out tasks in the public interest or to exercise official authority vested in the Company.
-
Legitimate interests: If Personal Data must be processed for the Company’s perusal of legitimate interests.
Please note that the Company will clearly disclose the legal basis that mandates Data processing and if the provision of Personal Data is a statutory or contractual requirement or a criterion required for the drawing of a contract.
GDPR’s Statutes for Your Safety
Every step necessary will be taken by the Company to safeguard Your Personal Data and to ensure that Your rights can be exercised.
If you reside within the EU, the law and this Privacy Policy ensure the following rights:
-
Personal Data Access. You can access, delete, or update any information We have pertaining to You. You can navigate to Your account settings section to access, update or request deletion of Your Personal Data. In case of any issues going through with these actions, You can seek Our assistance. Through this approach, You can also learn about the exact information We have about You.
-
Seek Rectification of Personal Data. It is your right to correct any incorrect or incomplete information We may have about You.
-
Say No to Personal Data Processing. In contexts where We process data by relying on a legitimate interest as the legal basis, if Your particular situation warrants it, You may object to such processing on this ground. Data processing for marketing purposes can also be objected to.
-
Personal Data Deletion. You can ask Us to remove or delete Your Personal Data if there no longer exists any good reason to continue processing it.
-
Personal Data Transfer. If sought by You or a third party of Your choosing, Your Personal Data will be transferred in an organized, commonly used, machine-readable format, only in terms of the automated information provided by You initially through consent or where the information was used by Us for a contract's performance.
-
Consent Withdrawal. The consent You have provided for Our use of Your Personal Data can be withdrawn. In such a scenario, you may not be able to access certain features of Our Service.
Exercising Your GDPR Data Protection Rights
Please contact us if You wish to exercise Your rights pertaining to access, correction, objection, and cancellation. However, in case of such requests, We may respond only after You verify Your identity. Our team will try its best to respond proactively.
With regard to Our collection and usage of Your Personal Data, You may complain to a Data Protection Authority. Please refer to Your local data protection authority in the European Economic Area (EEA) if you reside there.
Children's Privacy
No individual under the age of 13 is addressed by Our service and We never intentionally collect personally identifiable information of such individuals. Please get in touch with Us if You are a parent or guardian of a child who has disclosed their Personal Data to Us. We actively remove from our servers information obtained from those under the age of 13 who provided their Personal Data without verification of parental consent.
In case We must seek consent as a legal basis for processing Your information and Your country requires consent from a parent, We may require Your parent's consent before We collect and use that information.
Other Website Links
Please note that there may be links to other websites on Our Service even if they are not operated by Us. By clicking on a third-party link, You will navigate to their site. Any such site You may visit will have its own Privacy Policy which must be reviewed.
We take no responsibility for the practices, content, or privacy policies of any third-party sites or services.
Updates to the Privacy Policy
Our Privacy Policy may be updated occasionally and You will be notified of such changes through the publishing of the amended policy on this page.
Before the change becomes effective, we may email you or display a prominent notice on Our Service, along with updating the “Last Updated” date on this page. Please review this page on a periodic basis to remain abreast of any such changes. As soon as any updates are posted on this page, they become effective.
Contact Us
If you have any questions about this Privacy Policy, You can contact us.