Privacy policy
Privacy Policy
Last Updated: July 9, 2025
Chiaro Zurich operates this shop and website, including all associated information, content, features, tools, products, and services, to provide you, the customer, with a personalized shopping experience (the “Services”). Chiaro Zurich is powered by Shopify, which enables us to provide you with the Services. This Privacy Policy describes how we collect, use, or share personal data when you visit or use the website, make a purchase or other transaction using the Services, or otherwise communicate with us. In the event of a conflict between our Terms and Conditions and this Privacy Policy, this Privacy Policy takes precedence with respect to the collection, processing, and sharing of your personal data.
Please read this Privacy Policy carefully. By using or accessing any of the Services, you confirm that you have read this Privacy Policy and agree to the collection, use, and sharing of your data as described herein.
What Personal Data Do We Collect or Process?
When we use the term “personal data,” we refer to information that identifies you or can be directly associated with you. Personal data does not include information that is collected anonymously or anonymized in a way that it cannot be linked to you. Depending on how you interact with the Services, your place of residence, and applicable law, we may collect or process the following categories of personal data, including inferences drawn from such personal data:
- Contact Information: Including name, mailing address, billing address, shipping address, phone number, and email address.
- Financial Information: Including credit, debit card, and financial account numbers, payment card details, financial account information, transaction details, payment method, payment confirmation, and other payment details.
- Account Information: Including username, password, security questions, configurations, and settings.
- Transaction Information: Including items you view, add to your cart, add to your wishlist, purchase, return, exchange, or cancel, as well as your past transactions.
- Communication with Us: Including information you provide when communicating with us, such as when you send a request to customer support.
- Device Information: Including information about your device, browser, or network connection, IP address, and other unique identifiers.
- Usage Information: Including information about your interaction with the Services, including how and when you interact with or browse the Services.
Sources of Personal Data
We may collect personal data from the following sources:
- Directly from You: We collect data, for example, when you create an account, access or use the Services, communicate with us, or otherwise provide us with your personal data.
- Automatically Through the Services: We collect data, for example, from your device or when you use our products or Services, visit our website, or through the use of cookies and similar technologies.
- From Our Service Providers: We collect data, for example, when we engage service providers to enable certain technologies or when they collect or process your personal data on our behalf.
-
From Our Partners and Other Third Parties:
- Google Services: Providers: Google LLC (USA) / Google Ireland Limited (Ireland) for users in the European Economic Area (EEA) and Switzerland; Privacy Information: “Privacy and Security Principles,” Privacy Policy, “Google is committed to complying with applicable data protection laws,” “Guide to Privacy in Google Products,” “How we use data from websites or apps that use our services” (information from Google), “Types of cookies and other technologies used by Google,” “Personalized Advertising” (enable/disable/settings).
- Hostpoint: Hosting; Provider: Hostpoint AG (Switzerland); Privacy Information: Privacy Policy, “Frequently Asked Questions about GDPR.”
- Facebook (Social Plugins): Embedding Facebook features and content, such as “Like” or “Share”; Providers: Meta Platforms Ireland Limited (Ireland) and other Meta companies (including in the USA); Privacy Information: Privacy Policy.
- Instagram Platform: Embedding Instagram content; Providers: Meta Platforms Ireland Limited (Ireland) and other Meta companies (including in the USA); Privacy Information: Privacy Policy (Instagram), Privacy Policy (Facebook).
How Do We Use Your Personal Data?
Depending on how you interact with us or which Services you use, we may use personal data for the following purposes:
- Providing, Customizing, and Improving the Services: We use your personal data to provide you with the Services. This includes, among other things, fulfilling our contract with you, processing your payments, executing your orders, storing your configurations and items of interest, sending account-related notifications, creating, maintaining, and otherwise managing your account, organizing shipping, facilitating returns and exchanges, enabling you to submit reviews, and creating a personalized shopping experience by, for example, recommending products based on your purchases. This may also include using your personal data to better customize and improve the Services.
- Marketing and Advertising: We use your personal data for marketing and advertising purposes, such as sending marketing and advertising communications via email, SMS, or mail and displaying online advertisements for products or services related to the Services or other websites, based on items you have previously purchased, added to your cart, or other activities related to the Services.
- Security and Fraud Prevention: We use your personal data to authenticate your account, provide a secure payment and shopping experience, detect, investigate, or take action against potentially fraudulent, illegal, unsafe, or malicious activities, protect public safety, and ensure the security of our Services. If you choose to use the Services and register an account, you are responsible for protecting your account login credentials. We strongly recommend that you do not share your username, password, or other access credentials with others.
- Communication with You: We use your personal data to provide customer support and effective Services, respond promptly to your inquiries, and maintain our business relationship with you.
- Legal Reasons: We use your personal data to comply with applicable law or respond to lawful processes, including requests from law enforcement or regulatory authorities, to investigate or participate in civil investigations, potential or actual litigation, or other adversarial proceedings, and to investigate potential violations of our Terms or Policies or enforce those Terms and Policies.
How Do We Share Personal Data?
Under certain circumstances, we may share your personal data for legitimate purposes as outlined in this Privacy Policy. Such circumstances may include:
- With Shopify, Vendors, and Other Third Parties: Who provide services on our behalf (e.g., IT management, payment processing, data analytics, customer support, cloud storage, fulfillment, and shipping).
- With Business and Marketing Partners: Who provide marketing services for you and display advertisements. For example, we use Shopify to support personalized advertising with third-party services based on your online activities with various merchants and websites. Our business and marketing partners use your data in accordance with their own privacy policies. Depending on your place of residence, you may have the right to instruct us not to share information about you for targeted advertising and marketing based on your online activities with various merchants and websites.
- When You Request or Otherwise Consent: To sharing certain information with third parties, such as to deliver products to you, or when you use social media widgets or login integrations.
- With Our Affiliates or Within Our Corporate Group.
- In Connection with a Business Transaction: Such as a merger or bankruptcy, to comply with applicable legal obligations (including responding to subpoenas, search warrants, and similar requests), to enforce applicable Terms or Policies, and to protect or defend the Services, our rights, and the rights of our users or others.
Relationship with Shopify
The Services are hosted by Shopify, which collects and processes personal data about your access to and use of the Services to provide and improve them for you. Data you submit to the Services is shared with Shopify and third parties, who may be located in countries other than your country of residence, to provide and improve the Services for you. To protect, expand, and improve our business, we also use certain advanced Shopify features that incorporate data and information from your interactions with our shop, other merchants, and Shopify. To provide these advanced features, Shopify may use personal data collected from your interactions with our shop, other merchants, and Shopify. In these circumstances, Shopify is responsible for processing your personal data, including responding to your requests to exercise your rights regarding the use of your personal data for these purposes. For more information about how Shopify uses your personal data and your rights, see Shopify’s Consumer Privacy Policy. Depending on your place of residence, you may exercise certain rights regarding your personal data listed here via Shopify’s Privacy Portal.
Third-Party Websites and Links
The Services may provide links to websites or other online platforms operated by third parties. If you follow links to websites that are not affiliate websites or controlled by us, you should review their privacy and security policies and other terms and conditions. We do not guarantee and are not responsible for the privacy or security of such websites, including the accuracy, completeness, or reliability of the information found on those websites. Information you provide in public or semi-public venues, including information you share on third-party social networking platforms, may also be viewable by other users of the Services and/or users of those third-party platforms without restriction as to its use by us or by a third party. Our inclusion of such links does not imply endorsement of the content on those platforms or their owners or operators, unless expressly stated in the Services.
Children’s Data
The Services are not intended for use by children, and we do not knowingly collect personal data from children who are not of legal age in their country. If you are a parent or guardian of a child who has provided us with their personal data, you may contact us using the contact information below to request the deletion of that data. As of the effective date of this Privacy Policy, we have no knowledge of “sharing” or “selling” personal data of individuals under 16 years of age (as defined by applicable law).
Security and Retention of Your Data
Please note that no security measures are perfect or impenetrable, and we cannot guarantee “perfect security.” Additionally, information you send to us may be subject to risks during transmission. We recommend that you do not use insecure channels to transmit sensitive or confidential information to us.
How long we retain your personal data depends on various factors, such as whether we need the data to manage your account, provide you with Services, comply with legal obligations, resolve disputes, or enforce other applicable contracts and policies.
Your Rights and Choices
Depending on your place of residence, you may have some or all of the following rights regarding your personal data. These rights are not absolute, may apply only in certain circumstances, and in certain cases, we may deny your request as permitted by law.
- Right to Access/Information: You may have the right to request access to the personal data we hold about you.
- Right to Deletion: You may have the right to request that we delete the personal data we hold about you.
- Right to Correction: You may have the right to request that we correct inaccurate personal data we hold about you.
- Right to Data Portability: You may have the right to receive a copy of the personal data we hold about you and to request that we transfer it to a third party under certain circumstances and with certain exceptions.
- Managing Communication Preferences: We may send you promotional emails. You can opt out of receiving these emails at any time by using the unsubscribe option included in our emails to you. If you opt out, we may still send you non-promotional emails, such as those about your account or orders you have placed.
If you reside in the United Kingdom or the European Economic Area, you may, subject to exceptions and limitations under local law, have the following additional rights:
- Right to Object and Restrict Processing: You may have the right to request that we stop or restrict the processing of personal data for certain purposes.
- Withdrawal of Consent: If we rely on your consent to process your personal data, you have the right to withdraw that consent. Withdrawing your consent does not affect the lawfulness of processing based on your consent before its withdrawal.
You can exercise these rights where indicated in the Services or by contacting us using the contact information below. For more information about how Shopify uses your personal data and your rights, including rights related to data processed by Shopify, see https://privacy.shopify.com/en.
Exercising these rights will not result in any disadvantage to you. Where permitted or required by applicable law, we may need to verify your identity before processing your requests. In accordance with applicable laws, you may designate an authorized agent to make requests on your behalf to exercise your rights. Before accepting such a request from an agent, we will require proof that you have authorized the agent to act on your behalf, which may include verifying your identity directly with us. We will respond to your request promptly within the scope of applicable law.
Complaints
If you have complaints about how we process your personal data, please contact us using the contact information below. Depending on your place of residence, you have the right to object to our decision by contacting us using the contact information below or by lodging a complaint with the relevant data protection authority. For the European Economic Area, a list of competent data protection supervisory authorities is available.
International Transfers
Please note that we may transfer, store, and process your personal data outside the country where you reside.
When we transfer your personal data outside the European Economic Area or the United Kingdom, we rely on recognized transfer mechanisms such as the European Commission’s Standard Contractual Clauses or equivalent contracts issued by the relevant authority in the United Kingdom, unless the data transfer is to a country that has been determined to provide an adequate level of protection.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect, for example, changes to our practices or for other operational, legal, or regulatory reasons. We will post the revised Privacy Policy on this website, update the “Last Updated” date accordingly, and provide notice as required by applicable law.
Contact
If you have questions about our privacy practices or this Privacy Policy, or if you wish to exercise any of the rights available to you, please contact us by email at info@chiaro-zurich.com. For the purposes of applicable data protection laws, we are the data controller for your personal data.