PRIVACY POLICY

1. Controller / Responsible Entity

The responsible entity for data processing on this website is:

kristenb.design
Kerstin Christina Brodegger

Mühlbach 98
9184 St. Jakob im Rosental
Österreich

Email: hello@kristenb.design
Phone: (+43) 676 55 79 286


2. General Information

We are committed to protecting your personal data. All data is processed in compliance with the General Data Protection Regulation (GDPR) and applicable national laws.

Using this website is generally possible without providing personal data. If personal data (e.g., name, address, email) is collected, it is always on a voluntary basis.


3. Hosting (World4You)

This website is hosted by:

World4You Internet Services GmbH
Hafenstraße 35, 4020 Linz, Austria

World4You automatically processes server log files, including:

  • IP address

  • Date and time of access

  • Browser type and version

  • Operating system

  • Referrer URL

  • Accessed pages

Legal basis: Art. 6(1)(f) GDPR (legitimate interest in stable and secure operation).

Data is not shared with third parties.


4. Cookies & Consent Management (Complianz)

We use the Complianz Consent Management Platform to obtain and document user consent for cookies and external services.

Complianz ensures that non-essential cookies are only set after obtaining consent.

Legal basis: Art. 6(1)(c) GDPR (legal obligation to manage consents).


5. Google Fonts

This website currently uses Google Fonts delivered by Google’s servers (USA). When fonts are loaded, your IP address is transmitted to Google.

Legal basis: Art. 6(1)(f) GDPR (legitimate interest in consistent, appealing website presentation).

We plan to switch to local hosting of Google Fonts to avoid external requests.


6. Contact Form (Elementor Forms)

When you contact us through our contact form, we process:

  • Name

  • Email address

  • Message

  • Additional voluntary details

Legal basis:

  • Art. 6(1)(b) GDPR (contract or pre-contractual measures)

  • Art. 6(1)(f) GDPR (legitimate interest in communication)

Your data is not shared with third parties.


7. WooCommerce (Online Shop)

We use WooCommerce to process online purchases. Depending on the interaction, WooCommerce processes:

  • Name

  • Billing & shipping address

  • Email address

  • Phone number

  • Payment details

  • Order history

  • IP address

Legal basis: Art. 6(1)(b) GDPR (fulfilling a contract).

WooCommerce also sets cookies required for:

  • Shopping cart

  • Checkout

  • Session handling

  • Customer login


8. Customer Accounts (Optional / Future Feature)

If a customer account is created, WooCommerce stores:

  • Name

  • Address

  • Email

  • Username

  • Encrypted password

  • Order history

Legal basis: Art. 6(1)(b) GDPR.


9. Payment Service Providers

a) PayPal

PayPal (Europe) S.à.r.l. et Cie, S.C.A.
22–24 Boulevard Royal, L-2449 Luxembourg

When using PayPal, personal data such as:

  • Name

  • Address

  • Email

  • Payment details

  • IP address

may be transmitted.

Legal basis: Art. 6(1)(b) GDPR.


b) Stripe / WooCommerce Payments

Stripe Payments Europe, Ltd.
1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland

Stripe processes:

  • Name

  • Email

  • Payment information (encrypted)

  • Browser information

  • IP address

Stripe may transfer data to the USA under Standard Contractual Clauses (SCCs).

Legal basis: Art. 6(1)(b) GDPR.


10. Shipping Providers

To ship ordered goods, necessary contact and address data is transferred to the shipping provider.

Legal basis: Art. 6(1)(b) GDPR.

[Replace with the shipping provider you use]


11. TLS/SSL Encryption

For security reasons, this website uses TLS/SSL encryption.
Data transmitted via the website cannot be read by third parties.


12. Your Rights Under GDPR

You have the right to:

  • Access your stored data

  • Rectification

  • Erasure

  • Restriction of processing

  • Data portability

  • Withdraw consent

  • Object to data processing

  • File a complaint

Supervisory Authority (Austria):
Austrian Data Protection Authority
www.dsb.gv.at


13. Contact Regarding Data Protection

For any privacy-related inquiries, please contact:

kristenb.design
Kerstin Christina Brodegger
Mühlbach 98
9184 St. Jakob im Rosental
Österreich

Email: hello@kristenb.design