Privacy Policy
1. Introduction and Data Controller
The protection of your personal data is of particular importance to us. We process your data exclusively on the basis of legal provisions (GDPR, TKG 2003).
Data Controller:
Fahrnberger Eva Katharina
F. Lisztgasse 8
2525 Günselsdorf
Austria
UID: ATU80878169
Email: info@nxtlevel-nails.at
2. Collection and Processing of Personal Data
We process personal data exclusively in accordance with the General Data Protection Regulation (GDPR) and the Austrian Data Protection Act (DSG).
3. Access Data (Server Log Files)
When you visit our website, the following data is automatically collected:
- IP address
- Date and time
- Browser type and version
- Operating system
- Referrer URL
This data serves to ensure smooth operation and is processed on the basis of Art. 6(1)(f) GDPR.
4. Customer Account and Orders (WooCommerce)
When you place an order in our online shop or create a customer account, we process the following data:
- First and last name
- Billing and delivery address
- Email address
- Telephone number (optional)
- Order and payment information
- Saved payment methods (tokenized via payment providers)
Processing is carried out for contract fulfillment in accordance with Art. 6(1)(b) GDPR.
A customer account is optional and serves to simplify future orders.
5. Geolocation
Our website may determine your approximate geographic location based on your IP address (geolocation) in order to:
- Display appropriate shipping options
- Calculate tax rates correctly
This is based on our legitimate interest (Art. 6(1)(f) GDPR).
6. Payment Providers
To process payments, we share necessary data with the following payment service providers:
PayPal
When selecting PayPal, your payment data is transmitted to the payment service provider.
Stripe
When paying by credit card, processing is carried out via Stripe.
Google Pay
When using Google Pay, payment processing is carried out via the respective payment providers and Google.
Data is shared exclusively for the purpose of payment processing in accordance with Art. 6(1)(b) GDPR.
The respective providers are independent data controllers within the meaning of the GDPR.
7. Shipping Service Provider (Sendcloud)
For shipping our goods, we use the service provider Sendcloud.
As part of order processing, the following data is transmitted to Sendcloud:
- Name
- Delivery address
- Email address (for shipping notifications)
- Telephone number, if applicable
Sendcloud uses this data to create shipping labels and to process delivery.
Processing is carried out for contract fulfillment in accordance with Art. 6(1)(b) GDPR.
Sendcloud may forward the data to shipping partners (e.g., postal or parcel services) insofar as this is necessary for delivery.
8. Cookies
Our website uses cookies.
The following types are used:
- Technically necessary cookies (e.g., shopping cart, login)
- Functional cookies
- Analysis and marketing cookies, if applicable (only with consent)
You can manage your cookie settings at any time via the cookie banner.
9. Storage Duration
We store personal data only for as long as necessary for contract fulfillment or as required by legal retention periods (in particular 7 years in accordance with UGB and BAO).
10. Your Rights
You have the right to:
- Access
- Rectification
- Erasure
- Restriction of processing
- Data portability
- Withdrawal of consent given
If you believe that the processing of your data violates data protection law, you may lodge a complaint with the Austrian Data Protection Authority.
11. Data Security
We implement appropriate technical and organizational measures to protect your data from loss, manipulation, or unauthorized access.
12. Changes to This Privacy Policy
We reserve the right to update this privacy policy as necessary.
Last updated: May 3, 2026