Privacy policy
Privacy Policy
This Privacy Policy provides information about the processing of personal data in connection with the use of this website and in the context of the services offered through the website, in particular the online store. It contains details regarding the nature, scope, and purpose of data processing, as well as the rights of data subjects under applicable data protection law.
If there is a conflict between our Terms and Conditions and this Privacy Policy, this Privacy Policy shall take precedence with regard to the collection, processing, and disclosure of your personal data.
Please read this Privacy Policy carefully. By using and accessing any of the services, you confirm that you have read this Privacy Policy and agree to the collection, use, and disclosure of your data as described in this Privacy Policy.
Data Controller
The data controller within the meaning of the Swiss Data Protection Act (revDSG) and—where applicable—the EU General Data Protection Regulation (GDPR) is:
SUHNER Schweiz AG
Industriestrasse 10
CH-5242 Lupfig
Phone: +41 (0)56 464 28 28
Email: info.ch@suhner.com
The controller is the natural or legal person who, alone or jointly with others, determines the purposes and means of the processing of personal data (e.g., names, email addresses, etc.).
Data Protection Official pursuant to Chapter 4 of the DSG
We have appointed a Data Protection official. contact information:
SUHNER Switzerland AG
Dominik Frei
Data Protection Advisor
Industriestrasse 10
CH-5242 Lupfig
Email: datenschutzbeauftragter@suhner.com
What personal data do we collect or process?
When we use the term “personal data,” we are referring to information that identifies you or another person or can be directly linked to you. Personal data does not include information that is collected anonymously or has been anonymized in such a way that identification or association with you is not possible. Depending on how you interact with the Services, where you live, and as permitted or required by applicable law, we may collect or process the following categories of personal data, including inferences drawn from such personal data:
- Contact information, including name, mailing address, billing address, shipping address, phone number, and email address.
- Financial information, including credit and debit card numbers, financial account numbers, payment card information, financial account information, transaction details, payment method, payment confirmation, and other payment details.
- Account information, including username, password, security questions, configurations, and settings.
- Transaction information, including items you view, add to your cart, add to your wish list, or purchase, return, exchange, or cancel, as well as your past transactions.
- Communication with us, including the information you provide when communicating with us, such as when you submit a request to customer support.
- Device information, including information about your device, browser, or network connection, IP address, and other unique identifiers.
- Usage information, including information about your interaction with the Services, such as how and when you interact with or browse the Services.
Sources of personal data
We may collect personal data from the following sources:
- Directly from you We collect data, among other things, when you create an account, access or use the Services, communicate with us, or otherwise provide us with your personal data.
- Automatically through the Services We collect data, among other things, from your device or when you use our products or Services or visit our website, as well as through the use of cookies and similar technologies.
- From our service providers We collect data, among other things, when we engage service providers to enable certain technologies and when they collect or process your personal data on our behalf.
- From our partners and other third parties
How do we use your personal data?
Depending on how you interact with us or which of the Services you use, we may use personal data for the following purposes:
- Providing, customizing, and improving the Services. We use your personal data to provide the Services to you. This includes, among other things, fulfilling our contract with you, processing your payments, fulfilling your orders, storing your settings and the items you’re interested in, sending notifications related to your account, creating, maintaining, and otherwise managing your account, arranging shipping, facilitating returns and exchanges, enabling you to leave reviews, and creating a personalized shopping experience for you, for example by recommending products based on your purchases. This may also include using your personal data to better customize and improve the Services.
- Marketing and Advertising. We use your personal data for marketing and advertising purposes, such as sending marketing and promotional communications via email, SMS, or mail, and displaying online advertisements for products or services related to the Services or other websites, including based on items you have previously purchased or added to your shopping cart, as well as other activities related to the Services. For marketing and advertising purposes, we use the following tools, among others: Google Ads (conversion tracking and remarketing). These technologies allow us to measure the success of our advertising campaigns and display interest-based ads to you. Activation occurs only after you have consented to marketing cookies.
- Analytics Tools. We use Shopify’s standard analytics features, specifically Shopify Analytics and Shopify Customer Events. These tools are used for statistical analysis of our store’s usage, such as analyzing visitor numbers, conversion rates, or sales. Processing occurs within the scope of your selected cookie settings.
- Security and Fraud Prevention. We use your personal data to authenticate your account, provide a secure payment and shopping experience, detect, investigate, or take action against potential fraudulent, illegal, unsafe, or malicious activities, protect public safety, and ensure the security of our services. If you decide to use the Services and register an account, you are responsible for protecting your account credentials. We strongly recommend that you do not share your username, password, or other login credentials with anyone else.
- Communication with You. We use your personal data to provide you with customer support and effective services, respond promptly to your inquiries, and maintain our business relationship with you.
- Legal Reasons. We use your personal data to comply with applicable law or respond to lawful legal processes, including requests from law enforcement or regulatory authorities; to investigate or participate in civil investigations, potential or actual litigation, or other adversarial proceedings; and to investigate potential violations of our terms or policies or to enforce such terms and policies.
Legal Basis for Processing
Where the General Data Protection Regulation (GDPR) applies (in particular to data subjects in the European Economic Area), we process your personal data based on the legal basis of :
· Art. 6(1)(a) GDPR (Consent): we process personal data based on your consent, in particular for the use of analytics and marketing cookies, personalized advertising, newsletters, and email marketing, or tracking of email open and click behavior. You may revoke any consent you have given at any time with future effect.
· Art. 6(1)(b) GDPR (Contract Performance and Pre-Contractual Measures): processing takes place to the extent necessary to fulfill a contract with you or to carry out pre-contractual measures, in particular for order processing, payment processing, shipping and returns, as well as customer account management and customer service.
· Art. 6(1)(c) GDPR (legal obligation): we process personal data to the extent necessary to comply with legal obligations, such as commercial and tax retention requirements and statutory obligations to provide evidence and documentation.
· Art. 6(1)(f) GDPR (legitimate interest): we process personal data to safeguard our legitimate interests, unless your interests or fundamental rights and freedoms prevail. This includes, in particular, ensuring IT security and technical operations, fraud prevention, enforcing legal claims, internal analyses to improve our services, and direct marketing to existing customers, to the extent permitted by law.
To the extent that the Swiss Data Protection Act (DSG) applies, we process personal data in accordance with legal requirements, in particular:
· Art. 6 DSG (Principles of Data Processing): personal data is processed lawfully, in good faith, and proportionately. Processing is carried out for a specific purpose that is recognizable to the data subject.
· Art. 31 DSG (Justification Grounds): processing of personal data is permissible if it is necessary for the performance of a contract or for the implementation of pre-contractual measures, if the data subject has given consent, if there are overriding private or public interests, or if there is a legal obligation to process the data. If we obtain your consent for specific processing activities, you may revoke it at any time with future effect.
Email Marketing and CRM
We use the HubSpot CRM system to manage customer contacts as well as for email marketing and automated communication.
The following data may be processed in this context:
- Contact data (e.g., name, email address)
- Interaction data (e.g., open rates, click behavior)
- Order and interest data for personalized content
Processing is based on your consent or within the scope of legally permissible direct marketing. Tracking technologies may be used in our emails to measure opens and clicks. This is done within the legal framework permytted by law.
How do we share personal data?
Under certain circumstances, we may share your personal data with third parties for legitimate purposes in accordance with this Privacy Policy. Such circumstances may include the following:
- For Shopify, these include vendors and other third parties who provide services on our behalf (e.g., IT management, payment processing, data analysis, customer support, cloud storage, fulfillment, and shipping).
- We share personal data with business and marketing partners who provide marketing services to you and display advertisements to you. For example, we use Shopify to support personalized advertising through third-party services based on your online activities across various merchants and websites. Our business and marketing partners use your data in accordance with their own privacy policies. Depending on where you live, you may have the right to instruct us not to share information about you to show you targeted ads and marketing based on your online activities across various merchants and websites.
- When you ask us or otherwise consent to share certain information with third parties, for example to deliver products to you, or when you use social media widgets or login integrations.
- We share personal data with our affiliates or otherwise within our corporate group.
- In connection with a business transaction such as a merger or bankruptcy, to comply with applicable legal obligations (including responding to subpoenas, search warrants, and similar requests), to enforce applicable Terms of Service or policies, and to protect or defend the Services, our rights, and the rights of our users or others.
Cookies, Consent, and Tracking
Our website uses cookies and similar technologies to provide features, enhance the user experience, and enable analytics and marketing activities.
We use Shopify’s native cookie consent mechanism (Customer Privacy API). This allows you to make specific choices regarding the use of cookies and tracking technologies.
The cookie banner or cookie consent tool includes the following categories:
• Technically necessary cookies (always active)
• Analytics cookies
• Marketing cookies
• Personalization cookies
Tracking and marketing technologies are activated exclusively upon your explicit consent, where required by law. The consent status is stored on a per-user basis and can be adjusted or revoked at any time via the cookie settings.
Relationship with Shopify
The Services are hosted by Shopify, and Shopify collects and processes personal data regarding your access to and use of the Services in order to provide and improve the Services for you. Data that you submit to the Services is shared with Shopify and with third parties, who may be located in countries other than your country of residence, in order to provide and improve the Services for you. To protect, expand, and improve our business, we also use certain advanced Shopify features that incorporate data and information from your interactions with our store, with other merchants, and with Shopify. To provide these advanced features, Shopify may use personal data collected through your interactions with our store, other merchants, and Shopify. In these circumstances, Shopify is responsible for the processing of your personal data, including responding to your requests to exercise your rights regarding the use of your personal data for these purposes. For more information on how Shopify uses your personal data and what rights you have, please see the Shopify Consumer Privacy Policy. Depending on where you reside, you may exercise certain rights regarding your personal data listed here Link to the Shopify Privacy Portal.
Third-Party Websites and Links
The Services may provide links to websites or other online platforms operated by third parties. If you follow links to websites that are not affiliate websites or are not controlled by us, you should review their privacy and security policies as well as other terms and conditions. We make no warranties and are not responsible for the privacy or security of such websites, including the accuracy, completeness, or reliability of the information found on those websites. Information you provide in public or semi-public areas, including information you share on third-party social networking platforms, may also be viewed by other users of the Services and/or users of those third-party platforms, without any restrictions on its use by us or by a third party. Our inclusion of such links does not imply that we endorse the content of these platforms or their owners or operators, unless expressly stated in the Services.
Minor’s Data
The Services are not intended for use by children, and we do not knowingly collect personal data from children who are not of legal age in your country. If you are the parent or legal guardian of a child who has provided us with their personal data, you may contact us using the contact information provided below to request the deletion of such data. As of the effective date of this Privacy Policy, we are not aware that we “share” or “sell” personal data from individuals under the age of 16 (as defined by applicable law).
Security and Retention of your Data
Please note that no security measures are perfect or impenetrable, and we therefore cannot guarantee “perfect security.” Additionally, information you send to us may be exposed to risks during transmission. We recommend that you do not use unsecured channels when sending sensitive or confidential information to us.
How long we retain your personal data depends on various factors. These include, for example, whether we need the data to manage your account, provide services to you, comply with legal obligations, resolve disputes, or enforce other applicable agreements and policies.
Your Rights and Options
Depending on where you reside, you may have some or all of the rights listed below regarding your personal data. However, these rights are not absolute, may apply only under certain circumstances, and in certain cases, we may refuse your request to the extent permitted by law.
- Right of Access/Information. You may have the right to request access to the personal data we hold about you.
- Right to Erasure. You may have the right to request that we erase the personal data we hold about you.
- Right to Rectification. You may have the right to request that we correct any inaccurate personal data we have stored about you.
- Right to Data Portability. You may have the right to receive a copy of the personal data we have stored about you and to request that we transfer it to a third party under certain circumstances and subject to certain exceptions.
- Managing Communication Settings. We may send you promotional emails. You can opt out of receiving these emails at any time by using the unsubscribe option included in our emails to you. If you opt out, we may still send you non-promotional emails, such as those regarding your account or orders you have placed.
If you reside in the United Kingdom or the European Economic Area, subject to the exceptions and limitations under local law, you may exercise the following rights in addition to the rights listed above:
- Right to object and right to restrict processing. You may have the right to request that we cease or restrict the processing of personal data for specific purposes.
- Withdrawal of Consent. Where we rely on consent to process your personal data, you have the right to withdraw that consent. If you withdraw your consent, this does not affect the lawfulness of processing based on your consent prior to withdrawal.
You may exercise these rights where indicated within the Services or by contacting us using the contact information provided below. For more information about how Shopify uses your personal data and the rights you have, including rights regarding data processed by Shopify, please visit https://privacy.shopify.com/en.
Exercising these rights will not result in any disadvantage to you. To the extent permitted or required by applicable law, we may need to verify your identity before we can process your requests. In accordance with applicable laws, you may designate an authorized representative to submit requests on your behalf to exercise your rights. Before we accept such a request from a representative, we will require proof that you have authorized them to act on your behalf. This may require you to confirm your identity directly with us. We will respond to your request promptly in accordance with applicable law.
Complaints
If you have any complaints regarding how we process your personal data, please contact us using the contact details provided below. Depending on your country of residence, you have the right to object to our decision by contacting us using the contact details provided below or by submitting your complaint to the competent data protection authority. For the European Economic Area, there is a list of competent data protection supervisory authorities. If you wish to view it, you can do so here.
International Transfers
Please note that we may transfer, store, and process your personal data outside the country where you reside.
When we transfer your personal data outside the European Economic Area or the United Kingdom, we rely on recognized transfer mechanisms such as the European Commission’s Standard Contractual Clauses or equivalent agreements issued by the relevant UK authority, unless the data transfer is to a country that has been demonstrated to provide an adequate level of protection.
Our services are initially aimed at customers in Switzerland and Germany. We plan to expand to other countries within the European Economic Area as well as to international markets. In doing so, we will comply with the applicable data protection regulations.
Changes to this Privacy Policy
We may update this Privacy Policy from time to time, for example to reflect changes in our practices, or for other operational, legal, or regulatory reasons. We will publish the revised Privacy Policy on this website, update the “Last Updated” date accordingly, and provide the notice required by applicable law.
Contact
If you have any questions about our data protection procedures or this Privacy Policy, or if you wish to exercise any of your rights, please contact us by phone at +41 (0)56 464 28 28, by email at datenschutzbeauftragter@suhner.com, or by mail at SUHNER Schweiz AG, Industriestrasse 10, CH-5242 Lupfig. In accordance with applicable data protection laws, we are the data controller for your personal data.
As of: February 2026