Privacy Policy
(Switzerland + EU)
1. Data Controller
The data controller is:
Cécile Rocher Boisseau
38 Route de France, 1264 St Cergue
2. Data Collected
We collect the following data:
- First and last name
- Shipping and billing address
- Email address
- Phone number (if provided)
- Payment information (processed through a secure payment provider)
- Browsing data (cookies, IP address)
3. Purposes of the processing
The data is used for:
- Order Processing and Shipping
- Payment Management
- Customer Service
- Accounting requirements
- Sending newsletters (if consent is given)
- Site improvements and statistics
4. Legal Basis (GDPR)
For EU customers:
- Contract Performance (Order)
- Legal requirement (accounting)
- Consent (newsletter, marketing cookies)
- Legitimate interest (site security)
5. Data Retention
- Order details: 10 years (Swiss government bonds)
- Newsletter: until consent is withdrawn
- Marketing data: up to 24 months
- Cookies: based on their specific duration
6. Recipients of the data
The data may be shared with:
- Web hosting provider
- Payment provider (e.g., Stripe, PayPal…)
- Delivery service
- Email marketing tool
These service providers may be located in Switzerland, the EU, or in countries that offer an adequate level of protection.
7. International transfer
If data is transferred outside Switzerland or the EU, appropriate safeguards are put in place in accordance with the FADP and the GDPR.
8. Rights of Data Subjects
In accordance with the LPD and the GDPR, you have the following rights:
- Right of access
- Right to rectification
- Right to erasure
- Right to restriction
- Right to object
- Right to data portability (EU)
To exercise your rights: contact@cecileauzen.ch
EU residents may also file a complaint with their data protection authority.
9. Cookies
This site uses cookies:
- Techniques (how the basket works)
- Statistics
- Marketing (if applicable)
Users in the EU can accept or decline non-essential cookies via the consent banner.
10. Safety
Appropriate technical and organizational measures are in place to protect personal data against unauthorized access, loss, or disclosure.