DERM AND HERB PRIVATE LIMITED (“DERM & HERB”) has created web site Privacy Policy in order to demonstrate that it is committed to implement measures designed to protect the privacy of those using our services and accessing this website www.dermandherb.com
The domain name www.dermandherb.com (hereinafter referred to as “Website”) is owned by DERM AND HERB PRIVATE LIMITED (DERM & HERB), a company incorporated under the Companies Act, 2013 with its registered office at VILL. LALPUR NAYAK P.O.HARIPUR NAYAK, R.T.O ROAD HALDWANI -263139, NAINITAL, UR, INDIA
It is clarified that “DERM & HERB” shall include its affiliates and associate companies, directors, officers or employees. The following discloses our information gathering, usage and dissemination practices for the Website. By using or accessing the Website you hereby accept and consent to the terms of this Privacy Policy. Please note that our Website may contain links to websites of other organisations and when you access such external links, they may have different privacy policies specific to those websites. We encourage you to read all privacy policies posted on the websites that you visit. If you do not agree with any terms of this Privacy Policy, please do not use this Website or submit any personal information or sensitive personal information to DERM & HERB.
Throughout this document, “we”, “us”, “our”, “ours” refer to DERM & HERB. The terms “client”, “user”, “you”, “your” and “yourself” or similar terminology are all in use in reference to the individual user of this Website.
Please take a moment to familiarise yourself with our privacy practices which are as follows:
Who Is Collecting It?
Any personal data provided to or collected by DERM & HERB is controlled by DERM AND HERB PRIVATE LIMITED, the data controller.
This Privacy Policy applies to personal data collected by DERM & HERB in connection with the services and products we offer. References to “DERM & HERB” means DERM AND HERB PRIVATE LIMITED and any company directly or indirectly owned and/or controlled by DERM AND HERB PRIVATE LIMITED that you are interacting with or have a business relationship with.
What Personal Data Is Being Collected?
Personal data means any information that can be used to identify directly or indirectly a specific individual.
You are not required to provide DERM & HERB the personal data that we request, but if you choose not to do so, we may not be able to provide you with our products or services, or with a high quality of service or respond to any queries you may have.
We may collect personal data from a variety of sources. This includes:
- Personal data you give us directly,
- Personal data we collect automatically, and
- Personal data we collect from other sources.
Personal data means any information that can be used to identify directly or indirectly a specific individual. This definition includes personal data collected offline through our Consumer Engagement Centres, direct marketing campaigns, sweepstakes and competitions and online through our websites, applications and branded pages on third-party platforms and applications accessed or used through third-party platforms.
Ways in which we collect your personal data
We may collect personal data from a variety of sources. This includes:
- Personal data you give us directly. We collect data about how you use our services and products, such as the types of content you view or engage with, or the frequency and duration of your activities. We also collect personal data you provide us when you sign up for a marketing newsletter, complete a survey or register for an account to buy our products. In so doing, we may ask for personal data, such as your name, gender, date of birth, address, email address, telephone number or credit card details.
- Personal data we collect automatically. We also receive and store certain types of personal data whenever you interact with us online. For example, we use cookies and tracking technologies to obtain personal data when your web browser accesses our websites or advertisements and other content served by us. Your personal data is also collected when you search, buy, post, participate in a contest or questionnaire or communicate with our customer service teams. Examples of the types of personal data we collect include; IP address device ID, location data, computer and connection information such as browser type and version, time zone setting, browser plug-in types and versions, operating system, and purchase history – which DERM & HERB sometimes aggregates with similar information from other consumers. During some of your internet browsing on our website we may also use software tools to measure and collect session information, including page response times, download errors, length of visits to certain pages, page interaction information, and methods used to browse away from the page. We may also collect technical information to help us identify your device for fraud prevention and diagnostic purposes.
- Personal data we collect from other sources. We collect personal data from other sources including our trusted partnerships with third-parties and where we operate DERM & HERB accounts on third-party platforms: For example, when you use the “like” functionality on Facebook or the +1 functionality on Google+. Additionally, we receive information about you and other visitors’ interactions with our advertising to measure whether our advertising is relevant and successful.
When and why we collect “special categories of personal data”
Certain categories of personal data, such as health data, financial data, biometrics, race, ethnicity, religion, health, sexuality or biometric data are classified as “special categories of data” or “Sensitive Personal Information”
We limit the circumstances where we collect and process these special categories of data.
DERM & HERB sometimes collects data related to your health such as allergies, pregnancy or skin type to send you tailored ads and relevant promotions. DERM & HERB only collects and uses this personal data where you have provided us with your consent for us to do so. In some instances, you may have requested services or products that do not directly involve the collection of any special categories of data, but may imply or suggest your religion, health or other special categories of data.
What Purpose Do We Use Your Data For?
We collect, process and disclose your personal data only for specific and limited purposes. For example, to process your payments, to assess and handle any complaints, to develop and improve our products, services, communication methods and the functionality of our websites, to provide personalised products, communications and targeted advertising as well as product recommendations to you.
We also create profiles by analysing the information about your online surfing, searching and buying behaviour and your interactions with our brand communications by building segments (creating groups that have certain common characteristics) and by placing your personal data in one or more segments.
Additionally, DERM & HERB processes your personal data also using automated means. An automated decision is a decision which is made solely by automatic means, where no humans are involved in the decision-making process related to your personal data.
We collect, process and disclose your personal data for the following purposes:
- To process your payments, if you purchase our products, to provide you with your order status, deal with your enquiries and requests, and assess and handle any complaints;
- To process and answer your inquiries or to contact you to answer your questions and/or requests;
- To develop and improve our products, services, communication methods and the functionality of our websites;
- For the purposes of competitions or promotions that you have entered;
- To communicate information to you and to manage your registration and/or subscription to our newsletter or other communications;
- To manage our everyday business needs regarding your participation in our contests, sweepstakes or promotional activities or request;
- To authenticate the identity of individuals contacting us by telephone, electronic means or otherwise;
- For internal training and quality assurance purposes;
- To understand and assess the interests, wants, and changing needs of consumers, to improve our website, our current products and services, and/or developing new products and services; and
- To provide personalised products, communications and targeted advertising as well as product recommendations to you.
When we collect and use your personal data for purposes mentioned above or for other purposes, we will inform you before or at the time of collection.
Where appropriate, we will ask for your consent to process the personal data. Where you have given consent for processing activities, you have the right to withdraw your consent at any time.
We process your personal data to perform a contract to which you are or will be a party. For example, we need to process your personal data to deliver a product or a service you bought, to allow you to take part in one of our competitions, or to send you samples that you have requested.
We also process your personal data when we have a legal obligation (e.g., tax or social security obligations) to perform such processing. For example, a court order or a subpoena may require us to process personal data for a particular purpose, or we may be compelled to process personal data to report suspicious transactions under the local anti-money laundering rules.
Profiling
DERM & HERB uses your personal data to build profiles. We create profiles by analysing the information about your online surfing, searching and buying behaviour and your interactions with our brand communications by building segments (creating groups that have certain common characteristics) and by placing your personal data in one or more segments. These segments are used by us to personalise the website and our communications to you (such as showing relevant content to you when you visit our site or in a newsletter to you), and to display relevant offers and advertisements. The segments can also be used for third-party campaigns on our website. DERM & HERB profiles your data where you have provided consent for us to do so; for example, accepting the setting of cookies on your browser online.
By way of example –
- DERM & HERB collects data, with your consent, from:
- Our website about what you view and the way you interact with our content;
- Our digital display advertising that we serve to you on social platforms and other publisher’s websites; and
- Forms you fill in online and send to us about what your interests are.
- We also track the products you buy when you click on one of our display adverts and go on to purchase something from a selection of our retail partners.
- If you have asked to receive emails or SMS communications from us, we track whether you open, read or click on the content to see what you are interested in so that we can give you more content that we think you are more likely to enjoy.
- We use this data to profile your likes and dislikes.
Based on this profile information, we may also give you advertising that we think you will like and want to see as you view content from us or from our network of publishers that we advertise with. Sometimes, with your consent, we may use your current location to serve advertising to you that is to do with promotions or events that are happening nearby that we think you might be interested in.
We may also use information you have provided to selected third-parties and consented to be shared, like your age, gender, life stage, lifestyle and wider interests to identify people who we think will have similar interests to you and who we believe will be interested in similar advertising.
Who Will It Be Shared With?
DERM AND HERB PRIVATE LIMITED shares your personal data with selected third-parties in the following circumstances:
- Third-party service providers. In order to carry out your requests, respond to your inquiries, fulfil your orders, honour coupons, provide you with samples, enable you to participate in sweepstakes or make various other features, services and materials available to you through our websites we share your personal data with third-party service providers that perform functions on our behalf, such as companies that: host or operate Our website, process payments, analyse data, provide customer service, postal or delivery services, and sponsors or other third-parties that participate in or administer our promotions. They have access to personal data needed to perform their functions but may not use it for other purposes. Further, they must process this personal data in accordance with this Privacy Policy and as permitted by applicable data protection laws and regulations.
- Other third-parties. Your personal data will also be used by us or shared with our sponsors, advertisers, advertising networks, advertising servers, social media networks, and analytics companies or other third-parties in connection with marketing, promotional, data enrichment and other offers, as well as product information.
- Business transfers. Your personal data will be used by us primarily for business and operational purposes. If another entity acquires us, our businesses or substantially all or part of our assets, or assets related to our website, your personal data will be disclosed to such entity as part of the due diligence process and will be transferred to such entity as one of the transferred assets. Also, if any bankruptcy or reorganization proceeding is brought by or against us, all such personal data will be considered an asset of ours and as such it is possible they will be sold or transferred to third-parties.
- Legal disclosure. We may transfer and disclose your personal data to third Parties:
- To comply with a legal obligation;
- When we believe in good faith that an applicable law requires it;
- At the request of governmental authorities conducting an investigation;
- To verify or enforce our “Terms of Use” or other applicable policies;
- To detect and protect against fraud, or any technical or security vulnerabilities;
- To respond to an emergency; or otherwise
- To protect the rights, property, safety, or security of third-parties, visitors to our website or the public.
How Do We Protect Your Personal Data?
DERM & HERB takes the security of your personal data very seriously. We take every effort to protect your personal data from misuse, interference, loss, unauthorised access, modification or disclosure.
Our measures include implementing appropriate access controls, investing in the latest Information Security Capabilities to protect the IT environments we leverage, and ensuring we encrypt, pseudonymise and anonymise personal data wherever possible.
Access to your personal data is only permitted among our employees and agents on a need-to-know basis and subject to strict contractual confidentiality obligations when processed by third-parties.
How Long Do We Keep Your Personal Data For?
We will keep your personal data for as long as we need it for the purpose it is being processed for. For example, where you make a purchase online with us we will keep the data related to your purchase, so we can perform the specific contract you have entered and after that, we will keep the personal data for a period which enables us to handle or respond to any complaints, queries or concerns relating to the purchase.
Your data may also be retained so that we can continue to improve your experience with us and to ensure that you receive any loyalty rewards which are due to you.
We retain the identifiable data we collect directly for targeting purposes for as little time as possible, after which we employ measures to permanently delete it.
We will actively review the personal data we hold and delete it securely, or in some cases anonymise it, when there is no longer a legal, business or consumer need for it to be retained.
What Are Your Rights?
Your rights in relation to your personal data how it is processed. You can exercise these rights at any point. We have provided an overview of these rights below together with what this entails for you. You can exercise your rights by sending an email or submitting a request through the “Contact Us” form on our websites.
- The right to be informed. You have the right to be provided with clear, transparent and easily understandable information about how we use your personal data and your rights. Therefore, we’re providing you with the information in this Notice.
- The right to access and rectification. You have the right to access, correct or update your personal data at any time. We understand the importance of this and should you want to exercise your rights, please contact us.
- The right to data portability. The personal data you have provided us with may be portable. This means it can be moved, copied or transmitted electronically under certain circumstances.
- The right to be forgotten. Under certain circumstances, you have right to request that we delete your data. If you wish to delete the personal data we hold about you, please let us know and we will take reasonable steps to respond to your request in accordance with legal requirements. If the personal data we collect is no longer needed for any purposes and we are not required by law to retain it, we will do what we can to delete, destroy or permanently de-identify it.
- The right to restrict processing. Under certain circumstances, you have the right to restrict the processing of your personal data.
- The right to object. Under certain circumstances, you have the right to object to certain types of processing, including processing for direct marketing (i.e., receiving emails from us notifying you or being contacted with varying potential opportunities).
- The right to lodge a complaint with a Supervisory Authority. You have the right to lodge a complaint directly with any local Supervisory Authority about how we process your personal data.
- The right to withdraw consent. If you have given your consent to anything we do with your personal data (i.e., we rely on consent as a legal basis for processing your personal data), you have the right to withdraw your consent at any time (although if you do so, it does not mean that anything we have done with your personal data with your consent up to that point is unlawful). You can withdraw your consent to the processing of your personal data at any time by contacting us with the details provided below.
- Rights related to automated decision-making. You have the right not to be subject to a decision which is based solely on automated processing and which produces legal or other significant effects on you. In particular, you have the right:
- to obtain human intervention;
-
- to express your point of view;
- to obtain an explanation of the decision reached after an assessment; and
-
- to challenge such a decision.
Further information and advice about your rights can be obtained from the data protection Regulator in your Country.
How Do You Contact DERM & HERB?
You can reach us on +918266834255 or contact@dermandherb.com where our Customer Care will be happy to help you.
How Do We Keep This Policy Up To Date?
We will update this Privacy Policy when necessary to reflect customer feedback and changes in our products and services. When we post changes to this statement, we will revise the “last updated” date at the top of this Policy. If the changes are significant, we will provide a more prominent notice (including, for certain services, email notification of Privacy Notice changes). We will also keep prior versions of this Privacy Policy in an archive for your review.
We will not reduce your rights under this Privacy Policy without your consent.
Additional Privacy Terms or Notices
In addition to this Privacy Policy, there may be specific campaigns or promotions which will be governed by additional privacy terms or notices. We encourage you to read these additional terms or notices before participating in any such campaigns or promotions as you will be required to comply with them if you participate. Any additional privacy terms or notices will be made prominently available to you.