This privacy policy informs visitors and customers of the website istanbulcocaineonline.com (hereinafter referred to as “the site,” “we,” or “our”) about the nature, scope, and purpose of the collection, processing, and use of personal data. We take the protection of your personal data very seriously and handle it confidentially in accordance with applicable data protection laws (in particular the GDPR).
Data Controller
The data controller for this website is:
[Name / Company]
[Address]
[Email]
(Optional phone number)
Note: Please insert your complete contact details here.
1. Data We Collect
We collect personal data that you provide voluntarily, as well as data generated automatically when you visit the site.
1.1. Data Provided by You:
- Order information (name, shipping address, billing address)
- Contact details (email address, phone number)
- Payment information (transaction-related data – see section Payments)
- Data submitted through contact forms or support requests
- Customer account data if you create an account (username, password – encrypted)
1.2. Data Collected Automatically:
- IP address (anonymized/shortened where possible)
- Date and time of request
- Browser type and version, operating system
- Referrer (previously visited page)
- Pages visited on our site (server log files)
- Cookies and similar technologies (see section Cookies)
2. Purposes and Legal Basis of Processing
We process your data only when a legal basis exists, and for the following purposes:
- Contract execution (Art. 6, Para. 1, lit. b GDPR): processing orders, shipping, invoicing, managing customer accounts.
- Consent (Art. 6, Para. 1, lit. a GDPR): use of your data for specific purposes (e.g., marketing newsletters) only with your consent.
- Legal obligations (Art. 6, Para. 1, lit. c GDPR): data retention required by tax and commercial laws.
- Legitimate interests (Art. 6, Para. 1, lit. f GDPR): improving services, fraud prevention, IT security, statistical analysis of user behavior.
3. Cookies and Tracking Technologies
We use cookies and similar technologies to facilitate and analyze the use of the site.
Cookies are small text files stored on your device.
- Necessary cookies: for basic functions (session management, cart).
- Functional cookies: store preferences (language, forms).
- Statistical/analytical cookies: anonymized evaluation of site usage.
You can block or delete cookies via your browser, but certain functions of the site may be limited.
4. Use of External Service Providers
To provide our services and optimize the site, we use external service providers (hosting, payments, shipping, analytics tools). These providers receive only the necessary data and act as processors (Art. 28 GDPR).
Examples (to be customized):
- Hosting provider: stores website and order data.
- Payment providers: process payments (credit card, cryptocurrencies). Sensitive data (e.g., card numbers) are handled directly by the provider.
- Carriers: receive name and address for delivery purposes.
5. Newsletter and Direct Marketing
If you have consented to receive our newsletter, we will use your email address to send information about our products and offers.
You may withdraw your consent at any time (e.g., via the unsubscribe link in the newsletter or by emailing [email address]).
6. Data Disclosure
Your data will not be sold to third parties. It will only be shared:
- with service providers necessary for order execution (payment, shipping),
- with authorities if required by law,
- when necessary to enforce our rights or prevent abuse.
In the event of data transfers outside the EU/EEA, we ensure adequate protection (standard contractual clauses, adequacy decisions).
7. Security
We use technical and organizational measures (e.g., TLS/SSL encryption, access controls) to protect your data.
However, data transmission over the internet always carries risks, and absolute security cannot be guaranteed.
8. Data Retention
Your personal data is stored only for as long as necessary for the intended purposes or as legally required (e.g., tax obligations up to 10 years).
Afterward, it will be deleted or anonymized.
9. Your Rights (GDPR)
Under the GDPR, you have the following rights:
- Right of access (Art. 15 GDPR)
- Right to rectification (Art. 16 GDPR)
- Right to erasure (“right to be forgotten,” Art. 17 GDPR)
- Right to restriction of processing (Art. 18 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to object (Art. 21 GDPR)
- Withdrawal of consent at any time (Art. 7, Para. 3 GDPR)
- Right to lodge a complaint with a supervisory authority
To exercise your rights, please contact us at: [email address].
We will process your request as quickly as possible.
10. Minors
Our services are not directed at minors. Individuals under 18 should not provide personal data without parental consent.
11. Changes to This Privacy Policy
We reserve the right to amend this privacy policy at any time.
The current version can always be viewed on the site. In the event of significant changes, we will inform users appropriately.