Privacy policy
Privacy Notice (Privacy Policy)
Last updated: 24 September 2025
This Privacy Notice explains how we process personal data on skinion-x.com (the “Website”/“Shop”) when you visit or use our services or make purchases from us.
1. Controller
H-pro GmbH
Leonardo-da-Vinci-Straße 12, I-39100 Bolzano (BZ), Italy
Register: Commercial Register Bolzano (Registro delle Imprese di Bolzano), No. BZ-249565
VAT ID No.: IT03313080214
Email: info@skinion-x.com
Tel. +39 320 800 3219
Web: www.skinion-x.com
(Note: The terms “we”/“us” refer to H-pro GmbH.)
2. Scope
This notice applies to all processing of personal data on our Website/Shop (including contact forms, checkout, customer account) as well as to our communications (e.g. email support).
3. Categories of personal data
Depending on how you use our services, the following data may be processed, among others:
- Master data & contact details: name, billing/shipping address, email address, telephone number.
- Account/order data: login data (encrypted), shopping carts, wish lists, order/return/transaction history.
- Payment data: payment method, transaction/payment confirmations (card/account details are generally processed only by payment service providers).
- Communication data: content of your enquiries, support tickets.
- Usage & device information: IP address, browser/device, referrer, usage times, interactions, cookies/similar IDs.
4. Purposes and legal bases (Art. 6(1) GDPR)
- Contract & pre-contractual measures (Art. 6(1)(b)): order processing, shipping, returns, customer account, payment processing, customer service.
- Legal obligations (Art. 6(1)(c)): commercial/tax retention obligations, warranty, requests from public authorities.
- Legitimate interests (Art. 6(1)(f)): security/fraud prevention, reach measurement in pseudonymised form, prevention of misuse, internal administration, improvement of our services.
- Consent (Art. 6(1)(a)): newsletter/marketing, cookies/tracking (where not strictly necessary), optional services/features. You may withdraw your consent at any time with effect for the future.
5. Hosting, shop platform & processing on our behalf (Shopify)
Our shop is provided by Shopify. Shopify provides hosting, shop and infrastructure services for us (including checkout, security measures, basic statistical functions) and processes data on our behalf (Art. 28 GDPR).
For certain independent purposes (e.g. fraud prevention, legal obligations, platform-wide functions/statistics or personalised advertising within its ecosystem), Shopify may act as an independent controller. In such cases, Shopify’s own privacy policy applies.
Note: Data may be transferred by Shopify to and processed in countries outside the EEA/UK. Shopify bases such transfers on recognised safeguards (e.g. EU Standard Contractual Clauses) and/or adequacy decisions.
6. Payment service providers
Depending on the payment method you choose (e.g. credit card, PayPal, instant/bank transfer, Apple/Google Pay, Shopify Payments), payment data is transmitted directly to the respective payment service provider. These providers act as independent controllers for payment processing. Please refer to the privacy notices of the provider you select during checkout.
7. Shipping & logistics
For deliveries within the EU, we transmit the necessary data (name, address, and where applicable email/telephone number for delivery information) to our shipping/logistics partners. Legal basis: Art. 6(1)(b) GDPR.
8. Customer account
You can voluntarily create a customer account. We process the data required for this to manage your account, display your order history and facilitate future orders. Legal basis: Art. 6(1)(b) GDPR; for convenience features, where applicable Art. 6(1)(f) or Art. 6(1)(a).
9. Newsletter & direct marketing
With your consent, we send newsletters/offers (Art. 6(1)(a) GDPR; Sec. 7 German UWG). You can unsubscribe at any time via the unsubscribe link or by email. Existing customers may be contacted by email about our own similar products on the basis of Art. 6(1)(f) GDPR in conjunction with Sec. 7(3) UWG; you can object to this at any time.
10. Communication & support
We process enquiries submitted by email/form in order to handle your request (Art. 6(1)(b) or (f) GDPR). Depending on the subject matter, data may be processed in our ticket/CRM system.
11. Cookies, tracking & consent banner
We use technically necessary cookies to provide the shop and checkout (Art. 6(1)(f) or (b) GDPR).
For optional cookies/trackers (e.g. marketing/analytics, retargeting, A/B testing), we obtain your consent via a consent banner (Art. 6(1)(a) GDPR; where applicable Sec. 25(1) TTDSG). You can change your settings at any time in the banner.
Technically necessary cookies may be set without consent (Sec. 25(2) TTDSG).
12. Social media, embedded content & external links
Where we use social plugins, embedded content or links to third-party sites, the privacy and terms of use of the respective providers apply. We have no influence over the processing activities carried out there.
13. Minors
Our services are not directed at persons below the legal age of majority. We do not knowingly process data of children. Parents/guardians may contact us to request deletion of data unlawfully submitted by minors.
14. Recipients & categories of recipients
- Shop/hosting platform: Shopify (see above).
- Payment service providers: according to your selection at checkout.
- Shipping & logistics: parcel service providers/delivery companies.
- IT/service providers: e.g. email/ticket/CRM/cloud/security service providers.
- Advisors/authorities: tax advisors, legal advisors, supervisory, law enforcement or customs authorities where legally required.
15. Transfers to third countries
Where service providers process data outside the EEA/UK, we ensure appropriate safeguards (Art. 44 et seq. GDPR), such as EU Standard Contractual Clauses, adequacy decisions or additional protective measures (encryption/pseudonymisation). On request, we will provide you with an overview of the relevant safeguards.
16. Storage period
We store personal data only for as long as necessary for the respective purposes:
- Contract/order data: until the end of statutory retention periods (typically 6–10 years).
- Customer account: until the account is deleted (unless longer obligations prevent this).
- Marketing/newsletter: until you withdraw your consent or object.
- Support communication: in line with necessity and evidentiary/retention obligations.
17. Security
We implement appropriate technical and organisational measures (e.g. access restrictions, encryption, system hardening). Please note: no internet transmission is completely secure.
18. No automated individual decision-making
We do not make decisions based solely on automated processing that produce legal effects concerning you (Art. 22 GDPR).
19. Your rights (Art. 15–21 GDPR)
Subject to the statutory requirements, you have the right to:
- Access to data concerning you (Art. 15),
- Rectification of inaccurate data (Art. 16),
- Erasure (“right to be forgotten”, Art. 17),
- Restriction of processing (Art. 18),
- Data portability (Art. 20),
- Objection to processing based on legitimate interests or for direct marketing (Art. 21),
- Withdrawal of consent given (Art. 7(3)) with effect for the future.
To exercise your rights, please contact: mail@heppnerapparel.com
We may need to appropriately verify your identity.
20. Right to lodge a complaint with supervisory authorities
You have the right to lodge a complaint with a data protection supervisory authority. The authority responsible for the controller’s registered office is the Garante per la protezione dei dati personali (Italy). You may also contact the supervisory authority in your EU Member State.
21. Changes to this notice
We will update this Privacy Notice if the legal situation, our services or processing activities change. The current version is available here; you can see the date at the top.
22. Contact
Questions about data protection or exercising your rights?
H-pro GmbH – Data Protection
Leonardo-da-Vinci-Straße 12, I-39100 Bolzano (BZ), Italy
Email: info@skinion-x.com
Tel. +39 320 800 3219
Web: www.skinion-x.com
