Privacy Policy for Slippers Payment (Wholesale Slipper Supplier)
Effective Date: July 30, 2025
At Slippers Payment, we are committed to protecting the privacy and security of our wholesale clients and website visitors. This Privacy Policy explains how we collect, use, disclose, and protect your personal data when you interact with us, including when you visit our website (https://paymente.de/), place orders, or communicate with us.
As a professional wholesale slipper supplier, we understand the importance of trust and transparency. We process your personal data in accordance with the General Data Protection Regulation (GDPR) (EU) 2016/679 and other applicable data protection laws.
1. Who We Are (Data Controller)
The data controller responsible for the processing of your personal data under this Privacy Policy is:
Payment Email: info@paymente.de
2. What Personal Data We Collect
We may collect and process various types of personal data about you, depending on your interaction with us:
- Contact Information: Name, company name, business address, email address, phone number, VAT ID (if applicable).
- Order Information: Details related to your purchases, including product specifications, quantities, pricing, payment method (but not full payment card details), shipping address, and order history.
- Account Information: If you create an account with us, we collect your username, password (hashed), and any preferences you set.
- Communication Data: Records of your communications with us, including emails, chat messages, and phone call recordings (if applicable and with prior notice).
- Technical Data: IP address, browser type and version, time zone setting, browser plug-in types and versions, operating system and platform, and other technology on the devices you use to access our website.
- Usage Data: Information about how you use our website, products, and services, such as pages viewed, time spent on pages, clickstream data, and website navigation paths.
- Marketing Preferences: Your preferences in receiving marketing communications from us and our third parties.
3. How We Collect Your Personal Data
We collect personal data through various channels:
- Direct Interactions: When you create an account, place an order, contact us via email or phone, subscribe to our newsletter, or participate in surveys.
- Automated Technologies: As you interact with our website, we may automatically collect Technical Data and Usage Data using cookies and similar technologies.
- Third Parties: We may receive personal data about you from third parties such as analytics providers (e.g., Google Analytics), payment service providers (e.g., PayPal, Stripe), and delivery service providers.
4. How We Use Your Personal Data (Purposes and Legal Basis)
We use your personal data for the following purposes, based on the specified legal bases:
- To fulfill contracts:
- Processing and fulfilling your wholesale orders.
- Managing payments, invoices, and refunds.
- Arranging shipping and delivery of your orders.
- Legal Basis: Performance of a contract (Art. 6(1)(b) GDPR).
- To manage our business operations:
- Managing your account.
- Providing customer support and responding to inquiries.
- Improving our products, services, and website.
- Conducting internal business analyses and market research.
- Legal Basis: Legitimate interests (Art. 6(1)(f) GDPR) – e.g., to run our business efficiently, improve our offerings, and provide effective customer service.
- For marketing and communication:
- Sending you marketing communications about our products, promotions, and news, if you have opted in.
- Personalizing your experience on our website.
- Legal Basis: Consent (Art. 6(1)(a) GDPR) for direct marketing where required, or legitimate interests (Art. 6(1)(f) GDPR) for existing customers within established business relationships. You can opt-out at any time.
- For security and fraud prevention:
- Detecting and preventing fraud, security incidents, and other illegal activities.
- Protecting our website, systems, and data.
- Legal Basis: Legitimate interests (Art. 6(1)(f) GDPR) – e.g., to protect our business, assets, and customers from harm.
- To comply with legal obligations:
- Complying with applicable laws, regulations, and legal processes (e.g., tax, accounting, or consumer protection laws).
- Legal Basis: Legal obligation (Art. 6(1)(c) GDPR).
5. How We Share Your Personal Data
We may share your personal data with the following categories of recipients:
- Service Providers: Third-party service providers who perform services on our behalf, such as payment processors, shipping companies, IT and website hosting providers, email service providers, and analytics providers. These providers are obligated to protect your data and only use it for the purposes specified by us.
- Legal and Regulatory Authorities: When required by law or in response to a valid legal request (e.g., court order, subpoena).
- Business Transfers: In connection with a merger, acquisition, sale of assets, or other business transaction, your data may be transferred as part of the assets. We will ensure appropriate safeguards are in place.
We do not sell your personal data to third parties.
6. International Data Transfers
Your personal data may be transferred to, and stored at, a destination outside the European Economic Area (EEA) if our service providers are located outside the EEA. In such cases, we ensure that appropriate safeguards are in place to protect your data, such as:
- Transferring data to countries deemed to provide an adequate level of data protection by the European Commission.
- Using Standard Contractual Clauses (SCCs) approved by the European Commission.
- Relying on your explicit consent.
7. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements.
To determine the appropriate retention period for personal data, we consider the amount, nature, and sensitivity of the personal data, the potential risk of harm from unauthorised use or disclosure of your personal data, the purposes for which we process your personal data and whether we can achieve those purposes through other means, and the applicable legal requirements.
For example, order data is typically retained for a minimum of 10 years due to tax and commercial law regulations in Germany.
8. Your Data Protection Rights
Under the GDPR, you have the following rights regarding your personal data:
- Right to be Informed: To be informed about how your personal data is collected and used. This Privacy Policy serves to fulfill this right.
- Right of Access (Art. 15 GDPR): To request a copy of the personal data we hold about you.
- Right to Rectification (Art. 16 GDPR): To request that any inaccurate or incomplete personal data about you is corrected.
- Right to Erasure (Art. 17 GDPR – “Right to be Forgotten”): To request the deletion of your personal data in certain circumstances (e.g., if the data is no longer necessary for the purposes for which it was collected).
- Right to Restriction of Processing (Art. 18 GDPR): To request that we limit the way we use your personal data in certain situations (e.g., if you dispute the accuracy of the data).
- Right to Data Portability (Art. 20 GDPR): To receive your personal data in a structured, commonly used, and machine-readable format, and to transmit that data to another controller.
- Right to Object (Art. 21 GDPR): To object to the processing of your personal data, particularly where we process it based on our legitimate interests or for direct marketing purposes.
- Right to Withdraw Consent (Art. 7(3) GDPR): Where we rely on your consent to process your personal data, you have the right to withdraw that consent at any time. This will not affect the lawfulness of any processing carried out before you withdraw your consent.
- Right to Lodge a Complaint: To lodge a complaint with a supervisory authority, particularly in the Member State of your habitual residence, place of work, or place of the alleged infringement if you believe your data protection rights have been violated. In Germany, you can contact the relevant state data protection authority.
To exercise any of these rights, please contact us using the contact details provided in Section 1. We will respond to your request in accordance with applicable data protection laws.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data from accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access. These measures include:
- Encryption (e.g., SSL/TLS) for data in transit.
- Access controls and authentication procedures.
- Regular security assessments and updates.
- Data backup and recovery plans.
While we strive to protect your personal data, no method of transmission over the internet or method of electronic storage is 100% secure. Therefore, we cannot guarantee its absolute security.
10. Cookies and Similar Technologies
Our website uses cookies and similar technologies to enhance your Browse experience, analyze website traffic, and for marketing purposes. You can manage your cookie preferences through your browser settings or via our cookie consent banner.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any significant changes by posting the updated policy on our website with a new “Effective Date.” We encourage you to review this Privacy Policy periodically.
12. Contact Us
If you have any questions about this Privacy Policy or our data processing practices, please contact us at:
Payment Email: info@paymente.de
