Privacy Policy of the GemaVita online shop
At the GemaVita online shop, operated by MeisterWerk d.o.o., we value your privacy and are committed to protecting your personal data in accordance with Regulation (EU) 2016/679 (GDPR), the Personal Data Protection Act (ZVOP-2) and other applicable legislation. This policy explains what data we collect, how we process it, for what purposes we use it and what your rights are in relation to it.
Applicability: These Regulations shall apply from 12 August 2025.
1. Personal data controller
The controller of your personal data is:
Nad gramoznico 14,
2204 Miklavž na Dravskem polju, Slovenia
Registration number: 1277243000
Tax number: 38345749
E-mail: info@gemavita.com
Telephone: +386 30 665 911
For questions regarding the protection of your personal data, please contact us at the above email address or by phone.
2. What personal data we collect
We collect the following categories of personal data (depending on the type of your interaction – e.g. one-off purchase, resale programme, subscription,…):
- Basic information: name, surname, email address, phone number, delivery address.
- Payment data: payment card or bank transfer data (processed by our trusted payment service providers, e.g. Stripe, TRR).
- Information about the use of the website: IP address, device and browser data, cookies, time of visit, pages visited.
- Marketing data: the data you provide when you sign up for the newsletter via the MailChimp platform.
- Reviews and comments: content you post on our website or social media (e.g. product reviews).
- Information on resellers: if you participate in a reseller programme.
We collect data directly from you (e.g. when you register, purchase, fill in forms) or indirectly through cookies and analytics tools.
3. Purpose and legal basis for the processing of the data
We process your personal data for the following purposes and on the following legal bases:
| Purpose of processing | Legal basis |
|---|---|
| Order processing and product delivery | Performance of the contract (Article 6(1)(b) GDPR) |
| To withdraw from the contract using the withdrawal form | Contract performance and legal obligation (Article 6(1)(b) and 6(1)(c) GDPR) |
| Sending newsletters and marketing messages via MailChimp | Consent (Article 6(1)(a) GDPR) |
| Managing your subscription | Performance of the contract (Article 6(1)(b) GDPR) |
| Sending a free sample on request | Performance of the contract (Article 6(1)(b) GDPR) |
| Resale programme (contracting, commission calculation) | Performance of the contract (Article 6(1)(b) GDPR) |
| Complaints handling | Legal obligation (Article 6(1)(c) GDPR) |
| Website usage analysis (e.g. Google Analytics) | Consent or legitimate interest (Article 6(1)(a) or 6(1)(f) GDPR) |
| Preventing abuse and ensuring safety | Legitimate interest (Article 6(1)(f) GDPR) |
You can withdraw your consent for marketing purposes at any time via the link in the emails or by requesting it at info@gemavita.si.
4. Transmission of personal data
We do not share your personal data with unauthorised third parties. We only share information when it is necessary to do so:
- with delivery services to deliver orders or a free sample,
- with payment providers (Stripe, TRR) to process payments,
- accounting services to meet legal obligations,
- with MailChimp (Intuit Inc., USA) to send newsletters,
- with analytics providers,
- with contract resellers under the resale scheme.
All contract processors are committed to protecting your data and process it only in accordance with our instructions.
5. Retention of personal data
We only keep personal data for as long as is necessary to fulfil the purpose for which it was collected or until you withdraw your consent:
- Purchase and subscription data: 10 years (legal obligation).
- Marketing data: until your consent is withdrawn.
- Information from the free sample registration form: 5 years (or longer if necessary for legal claims).
- Website usage data (cookies): in accordance with the cookie settings or until consent is withdrawn.
- Information on resellers: according to the contract.
After the time limit has expired, we will anonymise or delete the data, unless otherwise provided by law.
6. Your rights
Under the GDPR, you have the following rights:
- access to data,
- correction of inaccurate or incomplete data,
- erasure of data (‘right to be forgotten’),
- restrictions on processing in certain cases,
- data portability in a structured format,
- to object to processing on the basis of legitimate interest (e.g. marketing),
- lodging a complaint with the supervisory authority.
To exercise your rights, please contact us at info@gemavita.com, send a written request to MeisterWerk d.o.o., Nad gramoznico 14, 2204 Miklavž na Dravskem polju, Slovenia. We will reply within 30 days, but we may extend the deadline in case of complexity.
7. Cookies
Our website uses cookies to improve user experience, analyse traffic and for marketing purposes. (Except for essential cookies, we only use them with your consent, obtained via a pop-up window when you visit the website.)
You can find out more about cookies on our Cookie Policy page.
8. Data protection
We use technical and organisational measures to protect your personal data, such as:
- encryption of data (SSL/TLS) when transmitted via the website,
- access to data is restricted to authorised staff,
- Regular updating and upgrading of security systems.
However, the complete security of data transmission over the internet is not guaranteed, so you are responsible for your own security (e.g. strong passwords).
9. Amendments to the Regulations
This policy may be updated from time to time for regulatory or business reasons. We recommend that you check it regularly. Your continued use of our website constitutes your acceptance of the new terms.
10. Contact
For further questions or help in exercising your rights, please contact us:
E-mail: info@gemavita.com
Telephone: +386 30 665 911
Address: Nad gramoznica 14, 2204 Miklavž na Dravskem polju, Slovenia