Privacy Policy
PRIVACY POLICY – MOSS Toronto
1) INFORMATION ABOUT THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER
1.1
We are pleased that you are visiting our website and thank you for your interest. In this Privacy Policy, we inform you about how we handle your personal data when you use our website. Personal data includes all information that can be used to identify you personally.
1.2
The controller responsible for data processing on this website under the General Data Protection Regulation (GDPR) is:
MOSS Toronto
Email: info@mosstoronto.com
The controller is the natural or legal person who determines the purposes and means of the processing of personal data.
1.3
For security reasons and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries), our website uses SSL or TLS encryption. You can recognize an encrypted connection by the “https://” prefix and the lock symbol in your browser bar.
2) DATA COLLECTION WHEN VISITING OUR WEBSITE
When you use our website for informational purposes only (i.e., you do not create an account or provide information to us), we collect only the data that your browser transmits to our server (“server log files”). This includes:
-
The page(s) visited
-
Date and time of access
-
Amount of data sent
-
Source/referral link
-
Browser used
-
Operating system used
-
IP address (in anonymized form, if applicable)
Processing is carried out under Art. 6 (1) lit. f GDPR based on our legitimate interest in ensuring the stability and functionality of our website. We do not share or use this data in any other way. However, we may later review server log files if specific evidence suggests illegal use.
3) COOKIES
We use cookies to enhance your browsing experience and enable certain functions. Cookies are small text files stored on your device.
Types we may use:
-
Session cookies – deleted when you close your browser
-
Persistent cookies – remain on your device to recognize your browser later
Cookies may collect data such as browser information, IP address, and location data.
Cookies that process personal data are used either for contract performance (Art. 6 (1) lit. b GDPR) or based on legitimate interest in optimizing website functionality (Art. 6 (1) lit. f GDPR).
You can adjust your browser settings to control cookie usage. If you refuse cookies, some functions of our website may be limited.
Support for cookie settings:
-
Firefox: https://support.mozilla.org/kb/cookies-erlauben-und-ablehnen
-
Opera: https://help.opera.com/en/latest/web-preferences/#cookies
4) CONTACTING US
When you contact us (e.g., via email or contact form), personal data are collected. The specific data collected depends on what you submit.
Data are used solely to respond to your inquiry and for related technical administration.
Legal bases:
-
Art. 6 (1) lit. f GDPR – our legitimate interest in responding to you
-
Art. 6 (1) lit. b GDPR – if your inquiry relates to a contract
Your data will be deleted once your inquiry is fully resolved, unless legal retention obligations prevent this.
5) DATA PROCESSING FOR CUSTOMER ACCOUNTS AND ORDER FULFILLMENT
If you open a customer account or submit personal data to complete an order, we process your data under Art. 6 (1) lit. b GDPR.
After your contract is fully processed, your data will be stored only as required by tax and commercial law, then deleted unless you consent to further use.
You may request deletion of your customer account at any time by contacting info@mosstoronto.com.
6) USE OF YOUR DATA FOR DIRECT MARKETING
6.1 Email Newsletter
If you subscribe to our newsletter, we will send you regular updates on our products and offers.
We use a double opt-in method to ensure consent. The only mandatory information is your email address.
You may unsubscribe at any time via the link in each newsletter or by contacting us directly.
6.2 Email Marketing to Existing Customers
If you have made a purchase and provided your email address, we may send product recommendations for similar items under our legitimate interest (Art. 6 (1) lit. f GDPR).
You can opt out at any time.
7) DATA PROCESSING FOR ORDER HANDLING
To deliver your order, we share necessary information with:
-
Shipping carriers (only what is required for delivery)
-
Payment service providers (only what is required for payment processing)
Payment Methods:
PayPal
If you choose PayPal, your payment data may be transferred to:
PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg
Depending on the method, PayPal may conduct a credit check. See PayPal's privacy policy:
https://www.paypal.com/webapps/mpp/ua/privacy-full
8) REVIEW REMINDERS
With your explicit consent (Art. 6 (1) lit. a GDPR), we may send a one-time review reminder after your order.
You may withdraw consent at any time.
9) USE OF SOCIAL MEDIA PLUGINS (SHARIFF METHOD)
To protect your data, our social media buttons are implemented as simple HTML links (Shariff method). No data are transmitted until you click the button.
Supported platforms:
-
Facebook
-
Instagram
Facebook policy: https://www.facebook.com/policy.php
Instagram policy: https://help.instagram.com/155833707900388/
10) ONLINE MARKETING
10.1 DoubleClick by Google
We may use DoubleClick (Google LLC) for ad optimization. DoubleClick uses cookies to prevent repeat ads and measure conversions.
Privacy policy:
https://www.google.com/policies/privacy/
10.2 Google Ads Conversion Tracking
If you click a Google ad that directs you to our website, a cookie may track whether you complete an action (e.g., a purchase).
You can block tracking cookies in your browser.
11) WEB ANALYTICS
Google Analytics (with IP anonymization)
Google Analytics helps us understand user behavior. Your IP address is anonymized (shortened). Data may be transferred to the USA.
To opt-out:
https://tools.google.com/dlpage/gaoptout/
12) REMARKETING
Facebook Pixel
With your explicit consent, we may use the Facebook Pixel to measure ad effectiveness and tailor future ads.
Only users over 13 may consent.
Google Ads Remarketing
Google may show targeted ads based on your browsing behavior (via cookies).
Opt-out tool:
https://www.google.com/settings/ads/onweb/
13) RIGHTS OF THE DATA SUBJECT
You have the following rights under GDPR:
-
Right of access
-
Right to rectification
-
Right to erasure
-
Right to restriction of processing
-
Right to data portability
-
Right to withdraw consent
-
Right to lodge a complaint with a supervisory authority
Right to Object
You may object at any time to processing based on legitimate interests, including direct marketing.
To exercise your rights, contact:
info@mosstoronto.com
14) DATA RETENTION
We store personal data only for as long as required by law or necessary for fulfilling or initiating a contract. After legal retention periods expire, data are deleted unless a legitimate interest in further storage exists.