Version dated 06/09/2023
MESSIKA GROUP, a French simplified joint stock company, having its registered office at 64 Rue La Fayette, 75009 Paris – France, registered in the Paris Trade and Companies Register under number 301 293 999 ("MESSIKA")
MESSIKA protects the privacy of its internet users by complying with applicable regulations in force. As a data controller, MESSIKA has therefore informed the French Data Protection Authority (Commission Nationale de l’Informatique et des Libertés or CNIL) of the collection and processing of your personal data (the "Personal Data").
2. Data collected
The main Personal Data that we are likely to collect and process include:
- data relating to your identity, such as your full name, your contact details, your email address;
- data relating to payment methods, such as your credit card number and its expiry date;
- data relating to the monitoring of our commercial relationship, such as your order number, your previous purchases and your MESSIKA customer service requests;
- your preferences and interests;
- electronic identification data, including your IP address or browser data relating to your terminal.
3. Purpose of collecting your Data
Furthermore, MESSIKA may also collect personal data from you when you communicate with MESSIKA, when you supply your contact details when you visit a MESSIKA store or when you consult a MESSIKA advisor by phone.
If you choose to interact with MESSIKA via social media or another third-party service, we will collect information that you provide to us via said platform.
Your Personal Data is collected either with your explicit consent, is necessary for the execution of your orders (performance of a contract), or because they meet a legitimate interest of MESSIKA (e.g. fraud processing), or when MESSIKA is obliged to collect this data by virtue of the applicable law.
Your Personal Data is therefore collected in order to:
- process your questions and requests for information;
- enable you to set up a personal "My account" space, and to purchase our products online;
- manage your orders and deliveries online, as well as any applicable warranties;
- ensure the security of online transactions, prevent fraud and payment incidents;
- carry out credit checks;
- manage and optimise customer relations;
- subject to your consent: send you information on our offers, news and events (newsletters, invitations and other publications);
- improve the functioning of the Website;
- offer personalised services;
- detect any potential fraud
- analyse the number of Website visitors.
- conduct market research;
- manage and respond to requests for repairs, and to provide after-sales services;
Information that is crucial to MESSIKA in order to fulfil the purposes described above are indicated with an asterisk on the Website's various pages. Should you fail to complete these mandatory fields, MESSIKA will not be able to respond to your requests and/or provide you with the products and services requested. Providing the other information is optional, however this enables us to get to know you better and improve our communication and services.
4. Recipients of your Personal Data
Your Personal Data is processed by MESSIKA.
It will not be sold or made accessible to any third party whatsoever, except for (i) MESSIKA's potential subcontractors, for technical and logistic purposes only (carriers, Website hosting and maintenance service providers, payment and fraud management service providers, etc.) and (ii) any restructuring at MESSIKA, including a total or partial disposal of assets, merger, absorption acquisition, demerger and, more generally, any reorganisation.
(iii) certain commercial partners, subject to your agreement: for example, we will share your data with third parties who are organising an event jointly with MESSIKA; and (iv) any restructuring of MESSIKA, including the total or partial sale of assets and/or activities, mergers, acquisitions, demergers and more generally any reorganisation operation.
Lastly, MESSIKA may be required to disclose your Personal Data to third parties when required by law, regulatory provisions or a court judgement, or if necessary in order to guarantee the protection and defence of its rights and/or to comply with a legal or regulatory obligation.
5. Sharing on social networks
6. Retention period
MESSIKA hereby agrees to only use the Personal Data for the period required by the purposes set out above.
Your Personal Data, collected and processed under the "Contact" section, shall only be retained for the time required to process your request. They will then be destroyed.
In principle, data relating to your orders shall be retained by MESSIKA for a period not exceeding applicable statutory limitation periods. Such Data will, however, also be viewable under your customer account, if active. As soon as your customer account is closed, this Data (i) shall be archived for accounting and evidentiary purposes for the aforementioned limitation periods or (ii) will be destroyed if said periods have expired.
Your Bank Data shall be retained in a secure manner for the period required to confirm your order and payment, and shall then be immediately destroyed. In the event of a payment incident, your Data will be retained for the time required to manage the incident, then for a period of three (3) to five (5) years, depending on the severity of the incident.
Your Identification Data used, with your agreement, in order to send newsletters and other MESSIKA publications shall be retained for a period of three years, as of their collection or your last date of contact (for example, a request for documentation or a click on a hyperlink contained in an email; however, opening an email cannot be considered contact on your part).
Your customer account on the Website shall remain active until you decide to close it, and provided that you make purchases on our Website. In the event of extended inactivity for a period of 3 years, this account will be deactivated.
Upon expiry of this three-year period, MESSIKA may contact you in order to identify whether or not you wish to (i) continue to receive our newsletters and other publications and/or (ii) keep your Website customer account open. Furthermore, your Data will be destroyed within a maximum period of (2) business days following your request to unsubscribe.
In any event, you may close your account and/or unsubscribe from newsletters at any time. To do this, please send an email to our customer service department at firstname.lastname@example.org or click on the "unsubscribe" link included in each newsletter. To exercise this right, you can also complete the "Contact" form on our Website by specifying your request and by visiting the relevant section under Frequently Asked Questions.
MESSIKA has implemented appropriate technical and organisational measures in order to ensure the confidentiality and security of your Personal Data.
MESSIKA's IT systems are the subject of state-of-the-art physical and software protections. Procedures for the physical and electronic storage of data collected on the Website have been implemented, pursuant to French legislation in force relating to the protection of personal data and market standards.
MESSIKA employees, who, due to their function, may have access to your Personal Data, are bound by strict non-disclosure obligations.
All of the financial information that you provide on the Website is stored on the secure Website of the financial institution selected by MESSIKA. Transactions performed on the Website are protected by SSL encryption.
Please be aware, however, that no internet data transfer is 100% secure, and that all of the information provided online runs the risk of being intercepted and used by parties other than the intended recipient.
MESSIKA stores your Personal Data on servers located in the European Union. However, MESSIKA may use third-party service providers/subcontractors who may store data in other countries, including the United States. Thus, if MESSIKA were to transfer Personal Data to a country without adequate data protection regulations, it will use corresponding contracts to ensure an appropriate level of protection, as provided for by law, or will rely on legal or statutory stipulations relating to consent, the conclusion or performance of a contract, overriding public policy, the interest, establishment, exercise or enforcement of legal rights, or published (generally accessible) personal data or because it is necessary for the protection of the integrity of the data subjects. Please note that by using the Site, you consent to any such transfer of data outside your country.
10. Users' rights over the collected data
Pursuant to applicable regulations, you are entitled to access, correct and request the deletion of your Personal Data, to object to the processing of such data and to obtain the limitation or portability thereof, to the extent possible.
You may also object to your Personal Data being used in order to prepare your customer profile; in this case, you will no longer be able to take advantage of personalised offers or services.
These rights may be exercised by emailing MESSIKA directly at email@example.com. You may be asked to provide proof of identity.
Furthermore, you may choose to no longer receive communications from us relating to our offers, news and events at any time, by clicking on the hyperlink included for this purpose in every email we send you. You can also contact us by sending an email to the following address: firstname.lastname@example.org.
You must ensure that you provide MESSIKA with any updates or changes to your information, including your postal and/or email address, enabling us to send your orders to the correct address and, if necessary, to contact you in this respect. MESSIKA can also retain, for archiving purposes, copies of communications with Website users and any reply to questions or comments sent to users by our customer service department.
11. Contact us
12. Governing law - Disputes