Personal information protection policy

1. ACCEPTANCE OF THE POLICY

Thank you for visiting the Site Pygmaliart inc. We respect the privacy of each person who visits the Website and are sensitive to issues related to the protection of personal information on the Internet. We believe it is important that you know how we treat information received about you.

This Privacy Policy, the Policy describes how we collect, use, disclose and protect the personal information of our customers as well as that of visitors to the Website, together with you, our Customers , describes the types of information we may collect from you or that you may provide to us, as well as our practices for collecting, using, retaining, protecting and disclosing that information. We do not knowingly collect personal information directly from persons under the age of 16; the Website is intended for a general audience and is not specifically directed at or intended for use by children.

We will only use your personal information in accordance with this Policy, unless otherwise required by applicable laws. We take steps to ensure that the personal information we collect about you is adequate, relevant, not excessive and used for limited purposes. Privacy laws in Canada generally define Personal Information as any information about an identifiable individual, which includes any information that can be used alone or with other information to identify, contact or locate an individual. .

If you do not agree with our policies and practices regarding the protection of Personal Information, we ask that you do not use the Website or make purchases on it. By actively transmitting your Personal Information to us through direct interactions on the Website or by making purchases on it, you indicate to us that you understand, accept and consent to the practices described in this Policy. Please note that when we collect Personal Information in a way that you may not notice, for example through the use of cookies or other tracking technologies, we will obtain your prior express or implied consent. , as required under Personal Information protection laws. This Policy applies to data that may be collected through the use of the Website or through our services provided to you as Customers or Visitors, as applicable. This Policy is incorporated into and considered part of the terms of use of the Website, located at www.pygmaliart.com.

In certain circumstances, certain provisions of this Policy exceed the requirements of the laws on the protection of Personal Information, in such situations we have full discretion to apply them.

2. CONTROLLER, HEAD OF PERSONAL INFORMATION PROTECTION AND SUPERVISORY AUTHORITIES

2.1 Liability

Pygmaliart is responsible for the processing of the Personal Information it processes. She has appointed a head of personal information protection (the “ CPRP ”) who must ensure that Pygmaliart inc. complies with laws on the protection of Personal Information.

2.2 CPRP contact details:

Jean-Marc Pigeon
Head of Personal Information Protection

Canada
Tel: 514-713-4534 Toll free: —
Fax: —
email: jeanmarc.pigeon@pygmaliart.com

2.3 Supervisory authority

If you believe that our processing of your Personal Information does not comply with the requirements of applicable laws regarding the protection of Personal Information, you have the right at any time to lodge a complaint with a supervisory authority:

  • If you submit your Personal Information when you are located in the Province of Quebec, to the Commission d'access à l'information ( cai.gouv.qc.ca );
  • If you submit your Personal Information when outside the Province of Quebec, to the Office of the Privacy Commissioner of Canada ( priv.gc.ca/fr/ ).

However, we would appreciate the opportunity to answer your questions or discuss your issue before you contact such a supervisory authority. So, we would appreciate it if you would contact us first.

3. INFORMATION WE COLLECT

3.1 Types of information collected

Our Website is hosted by Shopify Inc. Shopify provides us with the e-commerce platform that allows us to sell our products and services to you. Your information is stored through Shopify's data storage, databases and the general Shopify application. They store your data on a secure server, located behind a firewall.

The information about you that we collect and use on or through our Website may include the following information:

  • Personal information that we can reasonably use to directly or indirectly identify you, such as your name, postal address, email address, telephone number, Internet Protocol (IP) address used to connect your computer or portable device to the Internet, user name or any other similar identifiers, billing and account information, and any other identifiers that we may use to contact you online or offline.
  • Order Information that includes your name, billing address, shipping address, email address and telephone number, when you make or attempt to make a purchase on the Website, we collect certain information from you .
  • Non-personal information is information that does not directly or indirectly reveal your identity or directly relate to an identified individual, such as demographic information or statistical or aggregate information. Statistical or aggregated data does not directly identify a specific individual, but we may derive non-personal statistical or aggregated data from Personal Information. For example, we may aggregate Personal Information to calculate the percentage of users accessing a specific feature of the Website.
  • Usage Data , including your login data, Internet Protocol (IP) address, browser type and version, time zone setting, browser plug-in types and versions, operating system and platform, or data on your Internet connection, the equipment you use to access the Website and usage details.
  • Non-personal details about interactions with the Website, including full URL addresses, clickstream to, through and from our Website (including date and time), products you viewed or searched for, page response times, download errors, length of visits to certain pages, page interaction information (such as scrolling, clicks and hovers), methods used to browse away from the page or any telephone number used to call our customer service number.

4. HOW WE COLLECT INFORMATION

4.1 Information you provide to us

The information we collect directly from you may include information you provide:

  • On our Website : if you fill out a form on our Website we may ask you to provide your first and last name, postal address, email address, and telephone number.
  • For marketing communications : If you would like to receive marketing communications from us, you can do so by registering on the Website. We will ask you to provide your email address or telephone number so that we can send you marketing materials.
  • When you communicate with us : When you contact us about a customer service issue or other request, we collect the content of those communications, as well as any additional information about the mode of communication such as by phone, text, email, chat . For example, if you send us an email, we will collect your email address, if you send us a text message, we will collect your phone number, etc.
  • When you carry out transactions : details of the transactions you carry out on our Website and the processing of your orders. You may be asked to provide Payment Information before placing an order on our Website; as mentioned below, we do not at any time receive or store all of your credit card or other payment information.
  • When you post or display information on our Website: you may also provide information that will be published or displayed in public areas of the Website or transmitted to Visitors or Customers of the Website or to third parties (collectively, “ Suggestions ” ). Your Suggestions are published and transmitted to others at your own risk. Please be aware that no security measure is perfect. Additionally, we cannot control the actions of any Website Visitors or Customers with whom you choose to share your Suggestions. Therefore, we suggest that you do not include Personal Information in the Suggestions you send to us.

4.2 Payment information

When you make a purchase, any payment method information you provide as part of your payments is collected and processed directly by our payment processor Shopify through its Shopify Pay service or by PayPal Canada Co. through its PayPal Payments service (“ Payment Information ”). We do not receive or store all of your credit card or other payment information at any time. Shopify is committed to compliance with the Payment Card Industry Data Security Standard (PCI-DSS) and industry standards for security. Shopify Pay may use your Payment Information in accordance with its own privacy policy here: https://fr.shopify.ca/legal/confidentiality . Paypal's privacy policy is available here: https://www.paypal.com/ca/webapps/mpp/ua/privacy-full?locale.x=fr_CA

4.3 Information we collect when you interact with us using cookies and other automatic data collection technologies

When you browse and interact with the Website, we may use cookies or other automatic data collection technologies to collect certain information about your equipment, browsing actions and habits, including: details of your visits to the Website, including traffic data, location data, logs and other communications data and the resources you access and use on the Website as well as information about your computer and Internet connection, including your address IP, operating system and browser type you are using.

The information we collect automatically is statistical data and does not include Personal Information. However, we may retain it or associate it with Personal Information that we collect by other means, that you provide to us or that we receive from third parties. This helps us to improve the Website and provide a better and more personalized service, including by allowing us to estimate our audience size and usage patterns, store information about your preferences, which allows us to allows you to personalize the Website according to your personal interests, to speed up your searches and to recognize you when you return to the site.

The technologies we use for this automatic data collection may include:

  • Cookies (or browser cookies). A cookie is a small file placed on the storage space of your device. You can refuse to accept browser cookies by activating the appropriate setting on your browser. However, if you select this setting, you may not be able to access certain parts of the Website. Unless you have adjusted your browser settings to refuse cookies, our system will issue cookies when your browser connects to the Website.
  • Web beacons . Website pages and our emails may contain small electronic files called web beacons (also known as clear GIFs, pixel tags, and single-pixel GIFs) that allow us, for example, to count users who have visited those pages or opened email and other related website statistics (for example, recording the popularity of certain website content and verifying system and server integrity).
  • Widgets, buttons and tools. Website pages may include widgets, which are interactive mini-programs that run on our Website to provide specific services of another company (for example, links to bookmarked sites), as well as buttons or other tools that link to the services of other companies (for example, a “Like” button or a third-party card). The widget, button or tool may automatically collect and send Personal Information such as your email address, or other information (such as your browser information or IP address), to a third party. Cookies may also be set or used by widgets, buttons or tools to enable them to function properly or for other purposes, which may include advertising. The information collected or used by a widget, button or tool, including settings and cookie preferences, is governed by the privacy policy of the company that created it.

4.4 Information we collect about you from third parties

We may receive Personal Information about you from various third parties and public sources, such as credit card issuers (VISA, Mastercard), financial partners (Shopify, PayPal), and data analytics companies. We may collect Personal Information about you in connection with investigations of fraudulent or criminal activity on the Website and at our facilities. We may also collect Personal Information from other sources, including for example, joint marketing partners, data analytics companies, public databases, publicly accessible social media pages and others. third parties with whom we work.

Finally, we may also share your Personal Information to comply with applicable laws and regulations, to respond to court orders, search warrants or other lawful requests for information that we receive, or to protect our rights from any other manner.

5. PURPOSES FOR WHICH WE USE YOUR INFORMATION

We use your information, including your Personal Information, to manage our business and to maintain and develop business relationships with you. We will only collect, use and disclose this information to the extent necessary for those purposes.

We use information that we collect about you or that you provide to us, including any Personal Information:

  • To introduce you to the Website and its content.
  • To provide you with information, products or services that you request from us.
  • To fulfill the purposes for which you provided the information or which were described when it was collected, or any other purpose for which you provided it.
  • To carry out our obligations and enforce our rights arising from any contract with you or to comply with legal requirements.
  • To notify you about changes to the Website or any products or services we offer or provide through it.
  • To improve the Website, products or services, marketing or our Customer relationships and experiences.
  • To enable you to participate in interactive, social media or similar features on the Website.
  • To measure or understand the effectiveness of our advertising to you and others, and to deliver relevant advertising to you.
  • In any other way that we may describe when you provide the information.
  • For any other purpose with your consent.

We use Order Information to process any orders placed through the Website (including processing your Payment Information, arranging delivery arrangements and sending invoices and/or order confirmations). Additionally, we use Order Information to:

  • communicate with you.
  • verify that our orders do not present any potential risks or fraud.
  • where consistent with the preferences you have communicated to us, provide you with information or advertisements relating to our products or services.

6. HOW WE SHARE YOUR INFORMATION

We will not rent or sell your Personal Information to third parties without your consent. We only share your data as specifically provided for in this Policy.

6.1 Sharing with our partners

We may provide your data, including your Personal Information, to third parties who provide services to you or us as necessary to carry out our business or to comply with a legal obligation.

6.2 Other disclosures

In addition to any disclosure you may have consented to or authorized under the terms of this Policy, we may transfer your data, including your Personal Information to third parties in the following limited circumstances: 1) Personal Information you expressly consent to share; 2) when it concerns anonymous information (individuals cannot be identified); 3) when you decide to make Personal Information indexable by search engines, share it or distribute it to individuals or otherwise make it publicly available; 4) to satisfy any applicable law, regulation, legal process or enforceable governmental request inside or outside your country of residence when we believe in good faith that the law requires it; 5) to enforce this Policy, the terms or a contract, including investigation of potential violations thereof; 6) to detect, prevent or address fraud, security or technical issues, to protect our operations or to protect you; 7) to protect our rights, property or safety, yours, the public or others; 8) in connection with an acquisition, merger, change of control, debt financing, reorganization, sale of assets, bankruptcy or any other change in the structure or status of our company; or 9) if necessary in connection with the performance of the requested services or solutions, or as appropriate in connection with a legitimate need.

7. HOW WE STORE AND SECURE YOUR INFORMATION

7.1 Information security

We are committed to ensuring the confidentiality, integrity and availability of your Personal Information. We have implemented appropriate physical and technological security measures and procedures designed to prevent your Personal Information from being lost, used, modified or accessed in an unauthorized manner or illegitimately disclosed. Examples of such measures include the use of passwords and internal policies and practices. The Shopify e-commerce platform we use is certified as PCI DSS Level 1 compliant, meeting all six PCI categories. All payment transactions are encrypted using Secure Socket Layer (SSL) technology, which means that Personal Information you submit through the Website is encrypted by your computer and decrypted again by your chosen payment processor .

In addition, we limit access to your Personal Information to our employees, agents, contractors and other third parties who have a need to have access to provide our products and services. All are required to process your Personal Information only in accordance with our instructions and are subject to an obligation of confidentiality. Our service providers are required to maintain adequate security protections designed to help protect your Personal Information and are not authorized to use it for any purpose other than in providing their services.

Unfortunately, no data transmission or storage system can be guaranteed to be 100% secure. Any transmission of Personal Information that you make is at your own risk. Once we receive your Personal Information, we will apply our security practices to try to prevent unauthorized access, use and/or disclosure. If you have reason to believe that your interaction with us is no longer secure (for example, if you believe that the security of any account you may have with us has been compromised), please notify us immediately of the problem by contacting us in accordance with the “How to Contact Us” section below.

7.2 Retention of Personal Information

We will retain your Personal Information for as long as necessary to: 1) provide the products and services you have requested; 2) communicate with you about a purchase or request you made to us; 3) manage your choices and the rights you have exercised in accordance with this Policy; 4) allow you to maintain an account with us; 5) comply with our legal and regulatory obligations and to demonstrate our compliance with these obligations, 6) resolve disputes and enforce our rights and contracts.

We may retain non-personal information that has been sufficiently aggregated or anonymized for a longer period of time.

7.3 Where we store your Personal Information

We use facilities managed by Shopify. By providing Personal Information to us, you understand that your Personal Information may be transferred, processed or stored outside of Canada, in a country that may have a different data protection regime from Canada. Under certain circumstances, courts, law enforcement agencies, regulatory agencies or security authorities in these other countries may be permitted to access your Personal Information. Our service providers may, from time to time, also retain your Personal Information for the purposes included in this Policy.

8. PROMOTIONAL EMAILS

When you sign up for our promotional emails on our Website or opt-in to receive news, offers, updates from us by entering your name and email address and checking a box indicating that you would like to receive your promotional email, we collect your email address, information about your browser, information about the page to which you registered, and any other additional information you may provide to us.

You may unsubscribe from email communications from us by clicking on the “unsubscribe link” provided in such communications or by sending an email to info@pygmaliart.com . As noted above, you may not opt ​​out of Service-related communications (e.g., account verification, purchase and billing confirmations and reminders, technical and security notices).

9. OTHER WEBSITES AND SERVICES

This Website may contain links to other sites. They are provided for reference purposes only and may have privacy practices and policies that differ from ours. We are not responsible for and this policy does not address the privacy practices of these other third parties, such as Facebook, Instagram, Mailchimp, Apple, Google, Microsoft or any other application developers or social media platforms. If you wish to use one of these services, your Personal Information will be collected by that third party and will be subject to the third party's privacy policy. Please check the privacy policies posted on third party sites that you may access through the Website before submitting Personal Information to them. We have no control over, and are not responsible for, the collection, use and disclosure of your Personal Information by these third parties.

10. YOUR RIGHTS AND THE EXERCISE OF THEM

10.1 Your rights

You have various rights regarding our use of your Personal Information:

  • Access : You have the right to request a copy of or access your Personal Information that we maintain. However, we may not disclose Personal Information about you where disclosure would reveal Personal Information about another person or would violate applicable laws.
  • Accuracy : We seek to ensure that your Personal Information is accurate, up-to-date and complete. We invite you to contact the CPRP using the contact details provided in subparagraph 2 to notify us if any of your Personal Information is not accurate or if changes have been made so that we can ensure that your Personal Information is kept up to date. .
  • Refusal : In certain circumstances, you also have the right to object to the processing of your Personal Information and to ask us to block, erase and limit access to your Personal Information.
  • Right to Restriction : You have the right to ask us to limit the use of your Personal Information in certain circumstances.
  • Portability: You have the right to request that certain of your Personal Information be provided to you in a structured, commonly used and machine-readable format.
  • Erasure : You have the right to demand the erasure of your Personal Information when it is no longer required for the purposes for which it was collected or when, in particular, your Personal Information has been used illegally.
  • Complaints : If you believe that your rights to the protection of Personal Information may have been violated, you have the right to file a complaint with the applicable supervisory authority or have recourse to the courts.

10.2 Exercising your rights

You may, at any time, exercise any of the above rights by contacting the CPRP using the contact details provided in subparagraph 2.2

10.3 Access to information

You can inquire about your Personal Information that we process by contacting the CPRP using the contact details provided in subparagraph 2.3.

We generally respond to all access requests within 7 days of receiving all requested information. When we are unable to grant access, or if additional time is required to fulfill a request, we will notify you.

We may not provide you with certain types of information due to exceptions set out in applicable laws (for example, when our records contain information about other individuals, the information was produced as part of a process of dispute resolution, that the information was collected to investigate a breach of an agreement or a violation of applicable laws or that the information is subject to legal privilege). Where possible, we will remove information that is not disclosed and provide you with access to other information. If we are unable to grant access to or disclose Personal Information about you, we will provide you with an explanation, subject to restrictions.

Access to your Personal Information is free. In certain circumstances, particularly if the request is excessive or unfounded, we may charge you an administration fee for the purposes of transcribing, reproducing or transmitting your Personal Information; we may also charge for additional copies. Before acting on a request, we will inform you if you will be charged a fee.

10.4 Right to withdraw consent

If you have given your consent to the collection, processing or transfer of your Personal Information, you have the right to withdraw this consent in whole or in part. To withdraw your consent, please click on the unsubscribe links in any marketing emails sent to you or contact CPRP.

Once we have received your notice that you have withdrawn your consent, we will no longer use the information for the purposes for which you gave your consent, unless there is another legal basis for the processing. Withdrawing consent to receive marketing emails will not impact the processing of Personal Information in the provision of our services.

11. APPLICABLE LAW

The Website is operated from Quebec, province of Quebec, Canada, by Pygmaliart inc. Any dispute between you and us is therefore subject to the laws applicable in the province of Quebec and the applicable laws of Canada (excluding principles of conflicts of law). Furthermore, you hereby agree to submit to the exclusive jurisdiction of the courts of the province of Quebec with respect to any action or proceeding arising out of or related to the Website.

12. RESOLUTION OF CONCERNS

12.1 Confidentiality

To the extent possible, we will treat reports, fears or concerns, complaints or incidents of conduct that violates the Policy as confidential. However, disclosure may be required for the purposes of the investigation, to adequately address the issues raised and implement solutions, if applicable.

12.2 Reporting an incident

We take all cases of privacy violations seriously, whether potential or actual.

You may raise concerns regarding the collection, use, disclosure, retention or destruction of your Personal Information directly to our CPRP using the contact details provided in subparagraph 2.2.

The CPRP will appeal to the appropriate higher authorities to help resolve the problem.

12.3 Other measures

Although we are committed to resolving all privacy matters internally, nothing in this Policy prevents you from communicating with the appropriate supervisory authority as provided in paragraph 2.3.

13. HOW TO CONTACT US

If you have any questions about this Policy, you can contact us by email at info@pygmaliart.com .