PRIVACY POLICY

At Riserva, we respect your privacy and are committed to protecting your personal data.
This Privacy Policy explains how we collect, use, store, and protect your information when you visit our website or make a purchase.

This policy is written in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and applicable French and European data protection laws.


1. Data Controller

The data controller responsible for processing your personal data is:

Riserva
(“we”, “us”, “our”)

For any questions regarding this Privacy Policy or your personal data, please refer to the contact details provided on our website.


2. Personal Data We Collect

We only collect personal data that is necessary for the operation of our website and the processing of orders.

a) Information You Provide Directly

When you place an order or interact with our website, we may collect:

  • Name

  • Billing and shipping address

  • Email address

  • Phone number (if provided)

  • Order details and purchase history

b) Payment Information

Payment information is processed securely by Shopify and authorized payment providers.
We do not store or have access to your full payment details (such as card numbers or security codes).

c) Automatically Collected Information

When you browse our website, certain technical information may be collected automatically, such as:

  • IP address

  • Browser type and device information

  • Pages visited and browsing behavior

This data helps us understand how the website is used and improve its performance.


3. Purpose of Data Processing

We process your personal data for the following purposes:

  • To process and deliver your orders

  • To manage payments and invoices

  • To provide customer support related to your order

  • To comply with legal and accounting obligations

  • To improve the functionality and security of our website

We do not use your personal data for purposes incompatible with those listed above.


4. Legal Basis for Processing

Under GDPR, we rely on the following legal bases:

  • Performance of a contract (order processing and delivery)

  • Legal obligations (tax and accounting requirements)

  • Legitimate interests (website security and service improvement)

  • Consent, where required (such as optional communications)


5. Data Sharing and Third Parties

We only share personal data with third parties when necessary to operate our services, including:

  • Shopify, as our e-commerce platform provider

  • Payment service providers authorized by Shopify

  • Shipping and logistics partners for order delivery

These parties process data only to the extent required to perform their services and are subject to appropriate data protection obligations.

We do not sell or rent your personal data to third parties.


6. International Data Transfers

Some of our service providers (including Shopify) may process data outside the European Economic Area (EEA).

When data is transferred outside the EEA, appropriate safeguards are applied, such as:

  • Adequacy decisions by the European Commission

  • Standard Contractual Clauses (SCCs)


7. Data Retention

We retain personal data only for as long as necessary:

  • Order-related data is retained to meet legal and accounting requirements

  • Customer data is kept only as long as needed to fulfill contractual and legal obligations

When data is no longer required, it is securely deleted or anonymized.


8. Your Rights Under GDPR

As a user located in the European Union, you have the following rights:

  • Right of access to your personal data

  • Right to rectification of inaccurate data

  • Right to erasure (“right to be forgotten”), where applicable

  • Right to restriction of processing

  • Right to data portability

  • Right to object to certain processing activities

You may exercise these rights by contacting us using the details provided on the website.

You also have the right to lodge a complaint with your local data protection authority.


9. Cookies and Tracking Technologies

Our website uses cookies and similar technologies to ensure proper functionality and improve user experience.

For detailed information about cookies, please refer to our Cookie Policy (if applicable).

You can manage cookie preferences through your browser settings.


10. Data Security

We implement appropriate technical and organizational measures to protect your personal data.

Our website is hosted on Shopify, which uses secure infrastructure and encrypted connections (SSL/TLS) to help safeguard data during transmission.

While no system can guarantee absolute security, we take reasonable steps to reduce risks and protect your information.


11. Changes to This Privacy Policy

We reserve the right to update this Privacy Policy at any time to reflect legal, technical, or operational changes.

Updates will be posted on this page and will take effect immediately upon publication.


12. Contact

If you have any questions about this Privacy Policy or how your personal data is handled, please refer to the contact details provided on our website.