This Privacy Policy outlines the practices of Etherplaquepost regarding the collection, processing, and storage of personal data. As a commercial enterprise specializing in picture frames, we are fully committed to protecting consumer privacy across the European Economic Area (EEA), the United Kingdom, and the United States in strict compliance with the General Data Protection Regulation (GDPR), the German Federal Data Protection Act (BDSG), and applicable US state and federal consumer privacy laws.
1. Data Controller
The data controller responsible for processing your information on this website and the operating entity is: Conzen Bilderrahmen GmbH.
Company: Conzen Bilderrahmen GmbH
Address: Fichtenstr. 56, 40233, Düsseldorf
Phone: +49211577010
Email: Picture@etherplaquepost.com
2. Categories of Data Collected
We collect only the essential details necessary to process purchase requests, fulfill order shipments, and satisfy statutory record-keeping demands. This includes:
Identity and Contact Data: Full name, delivery address, billing address, telephone number, and email address.
Transaction Data: Details regarding purchased physical items, order histories, and corresponding commercial correspondence.
Technical Markers: IP addresses, regional localized access metrics, and standard website interaction records collected via functional cookies.
3. Legal Basis for Processing
Under European and international consumer protection frameworks, the lawful bases for processing customer data are as follows:
Contractual Necessity: To fulfill and deliver orders placed for our picture frame products.
Legal Compliance: To comply with statutory German tax laws, customs regulations, and mandatory bookkeeping duties.
Legitimate Interests: To maintain reliable operational communication, remedy technical errors, and support basic commercial operations.
4. Third-Party Payment Processing
All financial payment transactions executed on our website are managed directly and securely by our external payment provider, Stripe. When executing a transaction, your payment credential data is directly submitted to and processed by Stripe. Etherplaquepost does not store, retain, or have visibility into raw payment card account metrics or confidential financial credentials on our internal servers. The handling of this information is regulated under Stripe’s independent privacy frameworks.
5. Data Retention Periods
Personal data is preserved only for the duration required to satisfy the operational purposes for which it was originally gathered, or as mandated by prevailing statutory frameworks.
Commercial and Fiscal Records: In strict conformity with Section 147 of the German Fiscal Code (AO) and Section 257 of the German Commercial Code (HGB), core transactional documentation, billing metadata, and commercial contracts are legally retained for a mandatory duration of ten (10) years.
General Inquiry Records: Correspondence relating to standard order assistance or contact queries is held for a duration of up to three (3) years following resolution, matching statutory limitation periods under German civil law.
6. Consumer Rights
Depending on your geographical jurisdiction (including the EEA, UK, and individual US states), you possess specific statutory entitlements regarding your data. These include the right to request access to, rectification of, or erasure of your personal data held within our systems, as well as the right to data portability or restriction of processing. To submit a verifiable request, please contact our administrative desk at picture@etherplaquepost.com.
7. Information Transmission Measures
We implement standard industry-appropriate technical protocols to restrict unauthorized access, alteration, or distribution of processed user data. While we utilize modern commercial transmission standards to protect your interactions, standard transmission frameworks cannot be described as entirely without vulnerability, and users acknowledge that digital communication carries inherent baseline operational factors.