privacy policy

Part One - What do we do with your information?

When you purchase something from our store, we collect the personal information you provide to us as part of the buying and selling process, such as your name, address and email address.

When you browse our store, we also automatically receive your computer's Internet Protocol (IP) address to provide us with information that helps us learn about your browser and operating system.

Email marketing (if applicable): With your permission, we may send you emails about our store, new products and other updates.

Article 2 - Consent

How do you get my consent?

When you provide us with personal information to complete a transaction, verify your credit card, place an order, arrange for a delivery or return a purchase, we imply that you consent to our collecting and using that information only for that specific reason.

If we ask you to provide personal information for a secondary reason (such as marketing), we will ask for your express consent directly or provide you with an opportunity to say no.


How do I withdraw my consent?

If after you opt-in, you change your mind, you may withdraw your consent for us to contact you at any time for the continued collection, use or disclosure of your information by contacting us at support@Candyshop.com.

Article 3 - Disclosure

We may disclose your personal information if required by law or if you violate our Terms of Service.

Section 4-Shopping

Our store is hosted on Shopify Inc. They provide us with the online e-commerce platform that enables us to sell our products and services to you.

Your data is stored through Shopify's data stores, databases, and general Shopify applications. They store your data on secure servers behind firewalls.

Payment:

If you choose a direct payment gateway to complete your purchase, Shopify will store your credit card data. It is encrypted via the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction data is stored only for the time necessary to complete your purchase transaction. Once completed, your purchase transaction information will be deleted.


All direct payment gateways comply with PCI-DSS standards and are governed by the PCI Security Standards Council, a joint effort of brands such as Visa, Mastercard, American Express and Discover.


PCI-DSS requirements help ensure that our store and its service providers handle credit card information securely.

Article 5 - Third Party Services

In general, the third-party providers we use will only collect, use and disclose your information to the extent necessary to allow them to provide services to us.

However, certain third-party service providers, such as payment gateways and other payment transaction processors, have their own privacy policies regarding the transaction information we are required to provide to them in connection with your purchases.

For these providers, we recommend that you read their privacy policies so that you understand how your personal information will be processed by these providers.

In particular, please remember that some providers may be located or have facilities located in a different jurisdiction than either you or us. Therefore, if you elect to proceed with a transaction that involves the services of a third-party service provider, then your information may become subject to the laws of the jurisdictions in which that service provider or its facilities are located.


For example, if you are located in Canada and your transaction is processed by a payment gateway located in the United States, then your personal information used in completing that transaction may be subject to disclosure under United States legislation, including the Patriot Act.

Once you leave our store website or are redirected to a third-party website or application, you are no longer governed by this Privacy Policy or our website’s Terms of Service.

Link

When you click on links from our store, they may direct you away from our site. We are not responsible for the privacy practices of other websites and encourage you to read their privacy statements.

Section 6 - Security

To protect your personal information, we take reasonable precautions and follow industry best practices to ensure that it is not inappropriately lost, misused, accessed, disclosed, altered, or destroyed.

If you provide us with your credit card information, the information is encrypted using Secure Sockets Layer technology (SSL) and stored with AES-256 encryption. While no method of transmission over the Internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement other generally accepted industry standards.

Section 7 - Cookies

Here is a list of cookies we use. We've listed them here so you can choose whether you want to opt out of cookies.