Privacy Policy
HILLS WEAR Privacy Policy
Last updated: 2025
§ 1
General Information
This Privacy Policy explains how personal data is collected, processed, and protected by the online store HILLS WEAR, available at https://hillswear.com/ (hereinafter: "Store"), operated by HILLS WEAR FILIP GIZA, ul. Szamarzewskiego 21/2, 60-514 Poznań, NIP 9241911699 (hereinafter: "Administrator").
This Policy complies with:
-
the EU General Data Protection Regulation (GDPR),
-
the Polish Data Protection Act,
-
the Act on Providing Services by Electronic Means.
By using the Store, the Customer accepts the terms of this Policy.
§ 2
Data Administrator
The Administrator of personal data is: HILLS WEAR FILIP GIZA
ul. Szamarzewskiego 21/2, 60-514 Poznań, Poland
E-mail: store@hillswear.com
The Administrator ensures that data is processed in accordance with applicable laws and with appropriate safeguards.
§ 3
Scope of Processed Data
The Administrator may process the following Customer data:
-
Data provided when placing an order:
-
first and last name,
-
delivery address,
-
e-mail address,
-
phone number,
-
invoicing details.
-
-
Data provided when creating an Account:
-
first and last name,
-
e-mail address,
-
password (encrypted).
-
-
Payment-related data:
-
transferred by payment operators (Shopify Payments, Przelewy24, PayPal) – the Store does not have access to full card details.
-
-
International shipping information:
-
data required for customs processing (as required by the destination country).
-
-
Data submitted in a complaint:
-
description of the defect,
-
photos documenting the defect,
-
order number,
-
e-mail correspondence.
-
-
Data submitted in the return form:
-
order information,
-
reason for return (optional).
-
-
Technical and analytical data:
-
IP address,
-
device information,
-
cookies data,
-
browsing and activity data.
-
§ 4
Purposes and Legal Basis for Processing
Data is processed for the following purposes:
-
Order processing (GDPR art. 6(1)(b)) – order confirmation, delivery, payments, customer service.
-
Processing returns and complaints (GDPR art. 6(1)(c)) – legal obligations under consumer protection laws.
-
Account creation and management (GDPR art. 6(1)(b)).
-
Customer inquiries and communication (GDPR art. 6(1)(f) – legitimate interest).
-
Direct marketing:
-
based on consent (GDPR art. 6(1)(a)), or
-
legitimate interest (GDPR art. 6(1)(f)).
-
-
Analytics and website performance – Google Analytics, Meta Pixel, TikTok Pixel (GDPR art. 6(1)(f)).
-
Tax and accounting obligations (GDPR art. 6(1)(c)).
§ 5
Sharing Personal Data
Data may be shared only with trusted partners when necessary to provide services:
-
Payment operators:
-
Shopify Payments,
-
Przelewy24,
-
PayPal.
-
-
Delivery and logistics providers:
-
InPost,
-
international delivery partners.
-
-
Accounting and legal service providers.
-
Analytics and marketing platforms:
-
Google,
-
Meta (Facebook/Instagram),
-
TikTok.
-
-
Government authorities, if required by law (e.g., customs offices, tax authorities).
The Administrator never sells personal data to third parties.
§ 6
Transfer of Data Outside the European Economic Area (EEA)
Data may be transferred outside the EEA only when:
-
the provider ensures adequate protection (e.g., Standard Contractual Clauses),
-
the level of protection meets GDPR requirements.
This may apply to services such as Shopify, Google, Meta, TikTok.
§ 7
Data Retention Periods
Data is stored for the following periods:
-
Order data – 5 years (tax law requirement).
-
Account data – until the Account is deleted.
-
Complaint data – 3 years after the complaint process.
-
E-mail communication – up to 2 years.
-
Marketing data – until consent is withdrawn.
§ 8
Rights of the Data Subject
The Customer has the right to:
-
access their data,
-
rectify incorrect data,
-
delete data ("right to be forgotten"),
-
restrict processing,
-
transfer data,
-
object to processing,
-
withdraw consent at any time,
-
file a complaint with the relevant Data Protection Authority.
Requests may be submitted to: store@hillswear.com
§ 9
Cookies Policy
The Store uses cookies for the following purposes:
-
proper functioning of the website,
-
remembering user preferences,
-
analytics and statistics,
-
advertising and marketing.
The user may manage cookie settings in their web browser.
§ 10
Data Security
The Administrator uses technical and organizational measures to ensure data protection, including:
-
SSL encryption,
-
encrypted passwords,
-
restricted access to data,
-
continuous monitoring of security systems.
§ 11
Changes to This Privacy Policy
The Administrator reserves the right to update this Policy. The current version is always available on the Store’s website.
If significant changes occur, Customers with an Account will be notified by e-mail.
For questions regarding this Privacy Policy, please contact us at: store@hillswear.com