When you browse or shop on this website, we may collect personal data that can directly or indirectly identify you, including:
This website does not collect sensitive data under Article 9 of the GDPR (racial or ethnic origin, political opinions, religious beliefs, genetic data, biometric data, etc.) unless explicitly consented to and required for specific information in exceptional circumstances.
During the purchase process, data related to the payment instrument used (e.g., credit card number or PayPal account details) is processed through secure payment gateways, limited to information necessary to manage the transaction.
This website does not directly store any sensitive payment data.
The computer systems and software programs used to operate this website acquire some personal data during their normal operation, the transmission of which is inherent in the use of Internet communication protocols.
These data include:
This data is processed in aggregated and anonymous form solely to obtain statistical information on website usage and ensure its proper functioning. However, in the event of computer crimes, this data may be used to determine liability.
If users voluntarily send information via contact forms or make purchases, the website collects the data provided to:
This data is provided entirely autonomously by the user, who assumes responsibility for any third-party data or copyrighted content inserted.
This website uses technical and analytical cookies to improve the navigation experience and collect statistical data. For specific details, please refer to the Cookie Policy on this website, which also explains how to manage or disable cookies through browser settings.
Personal data collected by this website is processed by the Data Controller for the following purposes:
Disclosure of collected data can only occur upon request by judicial authorities, within the limits and in the manner prescribed by law.
The Data Controller processes personal data in accordance with the principles of lawfulness, fairness, transparency, relevance, and necessity as set out in Article 5(1) of the GDPR.
The primary legal basis for processing is the execution of product purchase contracts on the website and related pre-contractual activities. This also includes fulfilling obligations arising from subscription terms and conditions, and pursuing the Data Controller's legitimate interest in ensuring service efficiency.
Certain data processing is based on the user's free, explicit, informed, and unambiguous consent. Examples include:
In these cases, consent can be withdrawn at any time without affecting the lawfulness of processing carried out prior to withdrawal.
Processing may occur without consent when necessary to fulfill legal obligations (e.g., tax or accounting) or respond to judicial authority requests.
Except for:
Providing personal data is optional. However, refusal to provide such data may result in the inability to provide requested services, such as processing orders or responding to requests.
Personal data is processed using IT and telematic tools in full compliance with Regulation (EU) 2016/679 and Decree 196/2003 (as amended by Decree 101/2018). Processing follows principles of lawfulness, fairness, transparency, and minimization, limited to the time necessary to achieve the purposes stated in this policy.
Data will be stored:
The Data Controller adopts appropriate technical and organizational measures to safeguard data against:
Data can only be processed by authorized parties, including:
Data will not be disclosed or transferred to unspecified recipients.
While advanced security measures are in place, no system is immune to cyber attacks. In the event of a data breach, users and competent authorities will be notified in accordance with Articles 33 and 34 of the GDPR.
Processing operations related to services on this website are carried out at the Data Controller's operating offices by formally authorized and trained personnel.
External parties may also be utilized, including collaborators, consultants, technology/logistics providers, and selected business partners. Upon appointment as Data Processors, they operate under GDPR regulatory obligations and security measures.
Data is not disclosed to third parties without explicit consent, unless necessary for legal compliance or essential for protecting rights and website operation.
Personal data is stored on servers managed by qualified providers with high security standards. These servers may be located in third countries outside the EU deemed to have an adequate level of data protection by the European Commission.
Any data transfer outside the EU will comply with personal data protection regulations, ensuring adequate security, confidentiality, and integrity.
Under Regulation (EU) 2016/679, interested parties have the right to exercise the following at any time:
The Data Controller commits to responding within 30 days of receiving a request.
If rights are not adequately protected, complaints can be lodged with the Italian Data Protection Authority (www.garanteprivacy.it) or legal action taken under Art. 77 GDPR.
This policy may change due to regulatory updates or service changes. The latest version is always available at www.auroraveilbags.com. Significant changes will be notified via the website.
Cookies are small text files stored on your device by your browser when you visit a website. They allow the collection of anonymous information for technical, analytical, or marketing purposes.
Cookies are categorized by:
Essential for website operation and navigation. Includes session cookies (deleted on browser close) and persistent cookies (store preferences). Consent is not required, but disabling them may limit functionality.
Used to collect anonymous statistical data. Third-party cookies include Google Analytics, BugSnag, Akamai. Can be disabled via browser settings.
May use social network cookies (Facebook, Instagram, etc.) and third-party profiling cookies (Google Ads, Meta Ads) for personalized advertising.
Privacy Policies of Third Parties:
We use Facebook Pixel for statistical analysis and remarketing without personally identifying users. You can revoke consent for Pixel usage here: Facebook Ads Settings.
To offer Klarna payment methods, we may pass personal data (contact/order details) to Klarna at checkout for eligibility assessment. Processed per Klarna Privacy Policy.
The Aurora Veil mobile message service (the "Service") is operated by Aurora Veil. Your use of the Service constitutes your agreement to these terms and conditions.
By subscribing, you agree to receive recurring automated promotional and personalized marketing text messages (e.g., cart reminders) from Aurora Veil at the cell number used when signing up. Consent is not a condition of any purchase.
Message and data rates may apply. Message frequency varies. Check with your mobile provider for details.
Text the single keyword command STOP to cancel at any time. You'll receive a one-time opt-out confirmation text.
Aurora Veil is committed to protecting your privacy. For full details on how we process your personal data, please refer to our Privacy Policy above.