Skip to content
Black Friday Sale ends tomorrow!
Last chance to get your favs on discount 👀

Search

Cart

Your cart is empty

Privacy Policy

HILLS WEAR Privacy Policy

Last updated: 2025

§ 1

General Information

This Privacy Policy explains how personal data is collected, processed, and protected by the online store HILLS WEAR, available at https://hillswear.com/ (hereinafter: "Store"), operated by HILLS WEAR FILIP GIZA, ul. Szamarzewskiego 21/2, 60-514 Poznań, NIP 9241911699 (hereinafter: "Administrator").

This Policy complies with:

  • the EU General Data Protection Regulation (GDPR),

  • the Polish Data Protection Act,

  • the Act on Providing Services by Electronic Means.

By using the Store, the Customer accepts the terms of this Policy.

§ 2

Data Administrator

The Administrator of personal data is: HILLS WEAR FILIP GIZA
ul. Szamarzewskiego 21/2, 60-514 Poznań, Poland
E-mail: store@hillswear.com

The Administrator ensures that data is processed in accordance with applicable laws and with appropriate safeguards.

§ 3

Scope of Processed Data

The Administrator may process the following Customer data:

  1. Data provided when placing an order:

    • first and last name,

    • delivery address,

    • e-mail address,

    • phone number,

    • invoicing details.

  2. Data provided when creating an Account:

    • first and last name,

    • e-mail address,

    • password (encrypted).

  3. Payment-related data:

    • transferred by payment operators (Shopify Payments, Przelewy24, PayPal) – the Store does not have access to full card details.

  4. International shipping information:

    • data required for customs processing (as required by the destination country).

  5. Data submitted in a complaint:

    • description of the defect,

    • photos documenting the defect,

    • order number,

    • e-mail correspondence.

  6. Data submitted in the return form:

    • order information,

    • reason for return (optional).

  7. Technical and analytical data:

    • IP address,

    • device information,

    • cookies data,

    • browsing and activity data.

§ 4

Purposes and Legal Basis for Processing

Data is processed for the following purposes:

  1. Order processing (GDPR art. 6(1)(b)) – order confirmation, delivery, payments, customer service.

  2. Processing returns and complaints (GDPR art. 6(1)(c)) – legal obligations under consumer protection laws.

  3. Account creation and management (GDPR art. 6(1)(b)).

  4. Customer inquiries and communication (GDPR art. 6(1)(f) – legitimate interest).

  5. Direct marketing:

    • based on consent (GDPR art. 6(1)(a)), or

    • legitimate interest (GDPR art. 6(1)(f)).

  6. Analytics and website performance – Google Analytics, Meta Pixel, TikTok Pixel (GDPR art. 6(1)(f)).

  7. Tax and accounting obligations (GDPR art. 6(1)(c)).

§ 5

Sharing Personal Data

Data may be shared only with trusted partners when necessary to provide services:

  1. Payment operators:

    • Shopify Payments,

    • Przelewy24,

    • PayPal.

  2. Delivery and logistics providers:

    • InPost,

    • international delivery partners.

  3. Accounting and legal service providers.

  4. Analytics and marketing platforms:

    • Google,

    • Meta (Facebook/Instagram),

    • TikTok.

  5. Government authorities, if required by law (e.g., customs offices, tax authorities).

The Administrator never sells personal data to third parties.

§ 6

Transfer of Data Outside the European Economic Area (EEA)

Data may be transferred outside the EEA only when:

  • the provider ensures adequate protection (e.g., Standard Contractual Clauses),

  • the level of protection meets GDPR requirements.

This may apply to services such as Shopify, Google, Meta, TikTok.

§ 7

Data Retention Periods

Data is stored for the following periods:

  1. Order data – 5 years (tax law requirement).

  2. Account data – until the Account is deleted.

  3. Complaint data – 3 years after the complaint process.

  4. E-mail communication – up to 2 years.

  5. Marketing data – until consent is withdrawn.

§ 8

Rights of the Data Subject

The Customer has the right to:

  • access their data,

  • rectify incorrect data,

  • delete data ("right to be forgotten"),

  • restrict processing,

  • transfer data,

  • object to processing,

  • withdraw consent at any time,

  • file a complaint with the relevant Data Protection Authority.

Requests may be submitted to: store@hillswear.com

§ 9

Cookies Policy

The Store uses cookies for the following purposes:

  • proper functioning of the website,

  • remembering user preferences,

  • analytics and statistics,

  • advertising and marketing.

The user may manage cookie settings in their web browser.

§ 10

Data Security

The Administrator uses technical and organizational measures to ensure data protection, including:

  • SSL encryption,

  • encrypted passwords,

  • restricted access to data,

  • continuous monitoring of security systems.

§ 11

Changes to This Privacy Policy

The Administrator reserves the right to update this Policy. The current version is always available on the Store’s website.

If significant changes occur, Customers with an Account will be notified by e-mail.


For questions regarding this Privacy Policy, please contact us at: store@hillswear.com

    Language

    Language

    Country/region

    Country/region