
This policy on the security and protection of personal data was developed in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC. It sets out how the personal data you provide when using the websites https://shineandglow.store and when purchasing goods and services from us, via the website or other means of contact (e.g., chat, email, etc.), is used and protected. This means, in particular, that Beata Bencsik's processing of personal data complies with the principles of lawfulness, fairness, transparency, purpose limitation, storage limitation, data minimization, integrity, and confidentiality.
The owner of the personal data is Beata Bencsik, located at Eichbergstrasse 10/2/15, 2371 Hinterbrühl, Austria, registered in the Bezirkshauptmannschaft Mödling, under the number (GISA - Zahl): 38614934 (hereinafter "Shineandglow"), declares that all personal data (hereinafter "Data") will be treated with strict confidentiality and processed in accordance with applicable data protection legislation.
The controller for data processing in connection with online sales, product delivery and fraud prevention is the sole proprietorship Beata Bencsik .
Beata Bencsik is responsible for data processing related to online sales, product delivery, and fraud prevention.
Beata Bencsik may entrust the processing of personal data to a data processor. For further information about the processing of personal data, including a list of Beata Bencsik data processors, please contact: info@shineandglow.store.
Protecting your privacy is very important to us. In this Privacy and Security Policy (hereinafter "Policy"), we provide you with detailed information about how we handle your data.
1. Personal data and its processing
1.1 Categories of personal data
We collect different data depending on which of our services are used.
When making a purchase, we aggregate:
- Name and contact information. First and last name, email address, postal address, telephone number.
- Demographic data. Gender, date of birth, country, and preferred language.
- Data is created depending on the contract term – products purchased, customer segment, services provided.
- When registering. We do not have access to a valid password.
When sending marketing messages and news, we collect:
- Name and contact information - Email address, name, and phone number.
- Demographic data - Country, gender.
The following personal data is also processed:
- Communication data between Shine and Glow and the customer
- Website behavior
1.2. General purposes of processing
Provision and improvement of services.
We process your personal data to improve the services we offer.
This includes, in particular:
- Processing an order placed through our website. This is necessary to fulfill the purchase contract and comply with legal obligations (e.g., accounting records).
- Notification of product availability. If you make a request regarding product availability, we process your personal data with your consent.
- Customer support.
To provide customer service and resolve any problems with the execution of the purchase contract and to process your personal data.
- Communication.
We use the collected data to contact you. For example, we may contact you by email or other means to remind you that there are items in your online shopping cart, to help you complete your order, to update you on the status of your inquiry, order, or complaint, to obtain further information from you, or to advise you that you need to take necessary steps to keep your account active. If you shop with us as an unauthorized user, we process this data in the interest of Shine and Glow, as described above.
- Improvement of services.
We use data to continuously improve our services and systems, including adding new features, and to use comprehensive statistics and business analytics to make informed decisions that improve our services and enable us to compete successfully. To adequately protect your rights and interests, we use anonymous personal data wherever possible for the purpose of improvement.
- Protection, security, and conflict resolution.
We process data in the legitimate interest of protecting and securing our systems and our customers, preventing fraud, resolving disputes, and enforcing our agreements.
-Marketing Offers
1) We will send you notifications about product recommendations based on your previously purchased items.
2) You can unsubscribe from these marketing notifications at any time using the unsubscribe link included in the email.
3) If you unsubscribe from marketing notifications, we will no longer use your email contacts for this purpose. Reuse will only be possible if you re-register or explicitly request it.
4) Marketing offers may be selected based on additional information we have collected about you over time, as well as contact information, demographic data, favorites, and data about the use of our products and website (cookies, IP address, click data provided by your browser, marketing offers displayed, and information about products visited). We do not conduct fully automated processing that has any legal consequences.
5) We only process your data with your consent if you are not our customer.
6) You have the right to cancel this process at any time and free of charge.
- Processing through cookies
If your web browser uses cookies, we process behavioral data from cookies placed on the website to ensure a better website experience and improve Shine and Glow's online advertising. Further information can be found below in a separate section.
1.3. Disclosure of personal data to third parties
Your personal data may only be disclosed to third parties if this is necessary for the performance of the purchase contract, if there is a legitimate interest, or if you have given your prior consent:
a) to subsidiaries for the performance of the purchase contract and for the implementation of internal processes and procedures
b) to financial institutions, payment service providers for payment processing, and banks for the performance of the purchase contract
c) to logistics companies for the delivery of the goods you have ordered and for the handling of complaints, including termination of the contract
d) to our partners to administer a loyalty program in which you participate
e) to other partners who provide additional data processing services
f) to third parties, such as B. a legal or financial representative
g) Public authorities (e.g., police)
h) To third parties who conduct customer surveys
i) To contractual partners who provide services on our behalf, assist us in maintaining and/or improving our websites, administering our loyalty program, and distributing, improving, and/or marketing the products and services we offer to you, including organizations that fulfill orders and provide web hosting, security in our stores, information storage, email service providers, marketing services, including direct marketing, as well as research and analytics services, tag and cookie management such as Google Analytics. As part of this processing based on Google Analytics, we have implemented appropriate security measures, including the use of a so-called "proxy server." You can view the Google documentation on Google Analytics and its opt-out at the following links: Google Analytics Opt-out Browser Add-on - Google Analytics Help.
1.4. Data transfer outside the EU
When transferring your personal data to our processors, we may, in some cases, also transfer your personal data to third countries that are not members of the European Union and do not guarantee an adequate level of protection for personal data. However, such transfer will only occur if our processor undertakes to comply with the standard contractual clauses issued by the European Commission.
2. Customer Account and Purchase Without Registration
a) When you set up a personal account, we will open a password-protected customer account for you. In your customer account, you have direct access to your data, can edit it, and view your data for completed and pending orders. You can also manage your personal data and receive newsletters through your customer account.
b) If you do not wish to open a customer account for the purchase, you can also complete the order without registering.
c) You have the right to terminate the contract in accordance with the relevant provisions.
2.1. Registration and Login with Existing Online Profiles
If you already have a Facebook or Google profile, you can use this profile to create a Shine and glow customer account and then log in to your Shine and glow account. The respective providers, Facebook or Google, are hereinafter referred to collectively as "Profile Providers."
During and after your registration, the profile provider transmits certain data from your profile to us. When you create a Shine and glow customer account, the profile provider will inform you which data they transmit to us. This includes, in particular, your name and email address. We process the transmitted data exclusively in accordance with this privacy policy.
If you register or log in to Shine and glow through a profile provider, your browser will check with the respective profile provider whether you have authorized this registration or login. This informs the profile provider that you are registering or logging into your account. The further processing of this information by the profile provider is described in the respective terms of use and privacy policy of the profile provider.
3. Duration of Storage of Personal Data
3.1. Security of Personal Data
a) Your personal data is transmitted to us in encrypted form. We use the HTTPS (HyperText Transfer Protocol Secure) encryption system. We protect our websites and other systems through technical and organizational measures against the loss or destruction of your data, as well as against unauthorized access to your data, modification, or distribution.
b) We require our processes to be GDPR-compliant.
c) Access to your account is only possible after entering your personal password.
In this context, we would like to point out that it is very important that you do not share your login information with third parties and always close the web browser window, especially if you share your computer with other users.
Shine and Glow is not responsible for the unsustainable use of passwords.
3.2. Processing Period
We process and store personal data:
- for the period necessary to ensure all rights and obligations arising from the purchase contract
- for 1 year after the expiration of the warranty period in connection with the complaint
- for the period during which Shine and Glow is obliged to remain the administrator according to generally binding legal regulations. Accounting documents such as invoices issued by Shine and Glow are archived for a period of 10 years from the date of issue in accordance with legal requirements.
- consent to receive availability notifications (for no longer than 1 year or until revoked)
- consent to receive marketing offers (for 4 years or until revoked)
In other cases, your personal data will be stored after the purpose for which the data was collected has ceased, only for as long as required by legal (in particular tax) regulations.
4. Rights of Data Subjects
1. The right to information pursuant to Art. 15 and 19 GDPR.
If we process your personal data, you can request information free of charge at any time about the processing of your personal data, the purposes of the processing, the categories of personal data, the categories of recipients to whom your data has been or will be disclosed, and the planned storage period.
2. The right to rectification pursuant to Art. 16 GDPR
If you believe that we are processing personal data in violation of data protection laws and the legal requirements for the protection of your personal data, you can request an explanation or request that the violation be rectified. In particular, you have the right to request the rectification, addition, or deletion of personal data, or the restriction of its processing.
3. The right to lodge a complaint pursuant to Article 77 GDPR.
To exercise your rights, please contact the Data Protection Officer at info@shineandglow.store.
You can also contact the Austrian Data Protection Authority – https://www.dsb.gv.at.
4. The right to withdraw consent pursuant to Art. 7 GDPR.
You can withdraw your consent to the processing of personal data at any time. If you withdraw your consent, your personal data will be deleted. However, this does not apply to personal data that Shine and Glow requires to fulfill legal obligations (e.g., to process an order already placed) or to protect the company's legitimate interests. Personal data will also be deleted if it is no longer required for its intended purpose or if its storage is inadmissible for other legally stipulated reasons.
5. The right to erasure pursuant to Art. 17 GDPR
You have the right to request the erasure of your personal data that we process about you. We will delete or anonymize your personal data immediately. However, this does not apply to personal data that we need to fulfill our legal obligations and that must be retained according to legal regulations (e.g., to process an order that has already been placed) or to protect our legitimate interests. Personal data will also be deleted if it is no longer required for the stated purpose or if its storage is not permitted for other legally specified reasons. You can submit a request to delete your personal data to the Data Protection Officer at info@shineandglow.store.
6. The right to restriction of processing pursuant to Art. 18 GDPR
You can restrict the processing of your personal data by sending us a request to the Data Protection Officer's email address: info@shineandglow.store.
7. The right to data portability pursuant to Art. 20 GDPR.
You have the right to receive all personal data that you have provided to us and that we process based on your consent. We will provide you with the personal data in a structured and machine-readable format. We would be happy to create the data in this format for you; simply send a request to the data protection officer's email address: info@shineandglow.store.
8. The right to object pursuant to Art. 21 GDPR.
You have the right to object to the processing of your personal data if this arises from your particular situation. The above-mentioned general right of objection applies to all processing purposes, and we are obligated to comply with this objection in accordance with the GDPR, provided you provide us with essential reasons for doing so (e.g., potential threats to life or health). You can address your objection to the data protection officer at info@shineandglow.store.
Our services are not intended for minors. We do not knowingly collect or process personal data from minors.
5. Website
5.1. Cookies
To make visiting our website more attractive and enable the use of certain functions, we use technologies on various pages, including so-called cookies. Cookies are small text files that are automatically stored on your device. We use cookies, for example, for:
- the correct functionality of the shopping cart so you can easily place your order
- so you don't have to re-enter your input data
- better tailoring our website to your needs by tracking data traffic, website traffic, and the functions you use
- information about advertisements so we don't show you advertisements for products you aren't interested in
5.2. Use of Cookies
The cookies used on our website can be divided into two categories: short-term, so-called "session cookies," which are deleted as soon as you finish visiting our website. Long-term, so-called "persistent cookies," which remain on your device for a longer period of time or until you manually delete them (how long a cookie remains on your device depends on the settings for the cookie itself and your browser settings).
Cookies can also be categorized according to their functionality:
- Analytics, which helps us improve the usability of our website by understanding how users use it.
- Conversions, which allows us to analyze the effectiveness of different sales channels.
- Tracking, which, in combination with conversions, helps analyze the effectiveness of different sales channels.
- Remarketing, to personalize advertising content and optimize targeting.
- Basic, which is important for the basic functionality of a website.
5.3. Refusing Cookies
The setting for the use of cookies is part of your internet browser. Most browsers accept cookies automatically and by default. Cookies can be rejected or restricted by your web browser.
Information about browsers and how to set cookies can be found on the following websites or in other internet browser documentation.
Chrome
Firefox
Internet Explorer
Android
5.4. Other Websites
Our website contains links to other websites that are useful and contain information. Please note that these websites are owned and operated by other companies and organizations and have different security and privacy policies.
Our company has no control over and assumes no responsibility for any information, materials, products, or services contained on or available through these websites.
6. Contact Options
If you have any questions about the processing, use, or disclosure of your personal data, please contact us directly: The controller responsible for data processing, online sales, product delivery, or fraud: info@shineandglow.store.
Contact Person: Bencsik Beata
Registration number (GISA - Zahl): 38614934,
Headquarters: Eichbergstraße 10/2/15, 2371 Hinterbrühl, Austria.
The controller responsible for data processing, online sales, product delivery, or fraud: info@shineandglow.store.
This policy is effective from 1 September, 2025.
.png)

