PRIVACY POLICY

Last update date: 1 January 2021
Our privacy policy aims to formalise our commitment to the privacy of users of the nutriandco.com website operated by SanalysLab SAS.

What is personal data?

Personal data means any information that directly or indirectly identifies a natural person ("Personal Data").
A person can be identified: directly (e.g. surname, first name) or indirectly (e.g. by an identifier (customer number), a (telephone) number, biometric data, several specific elements of his or her physical, physiological, genetic, psychic, economic, cultural or social identity, but also by voice or image)
We collect and process Personal Data in the context of the marketing of our products exclusively, in strict compliance with the law "informatique et libertés" n° 78-17 of 6 January 1978 as amended, as well as in compliance with the RGPD (European Union regulation nᵒ 2016/679). The data collected is essential for these treatments. You will never be asked to provide so-called "sensitive" Personal Data, such as your racial or ethnic origins, your political, philosophical or religious opinions.
By registering on the Website, you authorise us to process your Personal Data in accordance with the Policy. If you do not agree to the terms of this Policy, please do not use the Website.

How is your personal data collected and processed?

Who is the data controller?

The company responsible for data processing on the www.sanalyslab.com website is SANALYSLAB, a simplified joint stock company with share capital of €5,000, headquartered at 335 rue Ferdinand Perrier, 69800 Saint-Priest, France, registered with the Aix-en-Provence Trade and Companies Registry under no. 884 514 688, and identified with VAT number FR48884514688.

Scope and purpose of processing : Why is my data collected?

The collection of personal data on the www.sanalyslab.com domain is possible within several headings, and more precisely:
- When browsing our site www.sanalyslab.com, we collect connection and browsing data;
- Within the "create an account" section;
- Within the order tunnel, requiring prior account creation;
- When adding products to the shopping cart, through functional cookies;
- When paying for your order through the external service provider Paypal or Stripe or others;
Personal data collected on the www.sanalyslab.com are necessary and obligatory for the following purposes:
- For the management of your newsletter subscription and the sending of related commercial electronic communications (emails and/or SMS);
- For the smooth operation of credit card payment processing services;
- For the management and tracking of your loyalty program membership;
- For the management, tracking and processing of your order on the e-commerce site;
- To manage deliveries;
- To manage after-sales service, to follow up any requests you may make to our Customer Service department and to confirm your personal information;
- To personalize your customer experience on the e-commerce site;
- To set up targeted advertising;
- To allow you to finalize the purchase of products added to your shopping cart at a later date.

Legal basis: What is the legal basis for the processing?

In compliance with Article 6 of the RGPD, the legal basis that authorizes the processing of your personal data is:
- Article 6.1.a of the European regulation on the protection of personal data (consent) for newsletter registration, the sending of commercial electronic communications, the management and monitoring of your membership of the loyalty program;
- Article 6.1.b of the European regulation on the protection of personal data (the performance of a contract, or pre-contractual measures) for the processing of your order.

Who are the recipients of the personal data?

In compliance with Article 13.1e of the RGPD, the recipients of your personal data are:
- The person responsible for processing personal data is SANALYSLAB, a simplified joint stock company with a share capital of €5,000 whose registered office is located at 335 rue Ferdinand Perrier, 69800 Saint-Priest, registered with the Aix-en-Provence Trade and Companies Register under no. 884 514 688, identified with the intracommunity VAT no. : FR48884514688;
- Its service providers and subcontractors, in the context of the following missions: customer service management; processing and delivery of your order on the e-commerce site; routing of SMS and commercial emails;
- Any person legally authorized to access the data (judicial services, where applicable).

How long will the data be kept?

The duration of data processing is limited to the time during which you are registered for our communication services, and, if necessary, to guarantee the supply of products or services, it being understood that you can unsubscribe at any time by clicking on the link provided for this purpose in each e-mail sent by SANALYSLAB.

Requirement to provide personal data :

In compliance with article 13.2.e of the RGPD:
- The provision of your email is necessary to receive the aforementioned communications, and is entirely optional;
- The provision of your surname, first name, email, and date of birth is necessary for the creation of your customer account. Failure to provide this information will result in the impossibility of creating a customer account;
- The provision of your surname, first name, e-mail, address and credit card details is necessary to complete your order. Failure to provide this information will make it impossible to finalize your customer order.

Where is my data transferred to?

Data may be transferred outside the European Union. Certain subcontractors, in particular in the context of the exploitation of data towards social networks, may possibly transfer your data outside the European Union, always within the framework of article 46.2.d of the RGPD. All SANALYSLAB's subcontractors have provided adequate protection clauses on the model established and approved by the European Commission.
SANALYSLAB, as the company responsible for processing your personal data, undertakes to take all necessary measures to ensure the security and confidentiality of the personal data transmitted, in compliance with the legal provisions in force.

How is your personal data collected and processed?

DEFINITIONS, CHARACTERISTICS AND APPLICATION OF THE RULES

Cookies are small text files that the visited sites send to you and store on your computer or mobile device, and which will be sent back to the same sites on each new visit. With these cookies, the site remembers Your actions and preferences (e.g. login details, preferred language, font size, other display settings, etc.) so that You do not need to specify them again when You return to the site or view another page on the same site.
Cookies are used for electronic authentication, session tracking and storing information about the activities of users visiting the Site. They may also contain a unique identifier that allows a system to track your browsing activities on the Site for statistical or advertising purposes. When you visit a site, you may also receive cookies on Your computer or mobile device from other sites or servers (third-party cookies). Some operations may be impossible to perform without the use of cookies, which are sometimes technically necessary for the proper functioning of the Site.
There are different types of cookies depending on their characteristics and functions, and the length of time they are stored on your computer or mobile device varies. Session cookies are automatically deleted when you close the browser, while persistent cookies remain on your device until a pre-programmed expiry date.
The Personal Data Regulation does not always require Your consent for the use of cookies. For example, such consent is not required for "technical cookies". These cookies are used exclusively to transmit messages over an electronic communications network, or to provide a service specifically requested by the user. In other words, these cookies are essential for the operation of the Site or for the performance of the activities that You request.
Technical cookies that do not require your express consent also include, for the French Data Protection Authority (see the Recommendation entitled "Cookies: how can I make my website compliant?"):
- "analytical cookies" used directly by the site manager to collect information, in aggregate form, on the number of users and the way they visit the site;
- navigation or session cookies (for logging in);
- functional cookies, which enable you to visit a site according to a set of selected criteria (such as language, products selected for purchase) and which are intended to improve the service provided.
On the contrary, "profiling cookies", which are used to create user profiles as well as to send advertising messages corresponding to the preferences You have indicated while browsing the network, require Your specific consent.

TYPES OF COOKIES USED BY THE SITE AND THE OPTION TO DISABLE THEM

The Site uses the following cookies, which may be deactivated with the exception of third-party cookies, for which You should refer directly to the cookie activation and deactivation methods indicated via the links:
- navigation or technical session cookies strictly necessary for the operation of the Site or to enable You to use the content and services You have requested,
- analytical cookies enabling the system to track user traffic on the Site. These cookies do not collect any information about the user's identity or any personal data. These Personal Data are processed in an aggregated and anonymous manner,
- functional cookies used to activate particular Site functions and a set of selected criteria (such as language, products selected for purchase), with the aim of improving the service,
- profiling cookies used to send advertising messages corresponding to Your preferences recorded during browsing,
During browsing, Internet users have the right to choose which cookies they wish to authorize. WARNING: the deletion of technical and/or functional cookies from the Site may prevent navigation, make certain services or functions of the Site unavailable or lead to malfunctions, in which case you will be obliged to modify or enter certain information or preferences manually each time you revisit the Site.

What are my rights?

You have the right to ask the Data Controller for access to your personal data, to rectify or delete it, to limit the processing of your data, to object to the processing of your data and, finally, to the portability of your data. You can modify all your personal information in the "My account" area. For any other request concerning the rectification or deletion of personal data, please contact us.
Finally, you can object to direct marketing at any time. To make it easier for you to exercise your rights, each newsletter sent by SANALYSLAB provides an unsubscribe link, enabling you to easily unsubscribe from newsletters and updates with a single click. You can also manage your commercial prospecting preferences directly from your web account or by writing to us at the address below.

If you wish to exercise these rights, please contact us:
- in writing at the following address: 335 rue Ferdinand Perrier, 69800 Saint-Priest;
- or contact our Partners at the following email address: [email protected]
To facilitate the processing of your request, we recommend that you provide us with your first and last name, as well as your email address. In addition, SANALYSLAB may, if it considers it necessary, verify the identity of the customer by means of any valid identity document.
SANALYSLAB undertakes to send you a reply within a maximum of one month from the date you exercise your right. If necessary, this period may be extended by two months, depending on the complexity and number of requests.
If you feel that SANALYSLAB is using your personal data inappropriately, you can contact us.

Contact us

If you have any questions about this privacy policy, please contact us.