General Terms and Conditions
Introduction
Sinergia&Comatex SL, hereinafter referred to as Defora Home, collects, processes and stores personal information through its website https://deforahome.com This information may relate to website users, customers, suppliers, contact persons and other organisations.
In this privacy policy you will find information on how this information will be collected, processed and stored.
Legal controller
Trade name: Defora Home
Legal name: Sinergia&Comatex SL
Tax identification number: B64664774
Registered address: C/ Electricidad 9/ 08755 Castellbisbal
Contact e-mail: hola@deforahome.com
Laws applicable to this website
- GDPR (Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons)
- LOPD (Organic Law 15/1999, of 13 December, on the Protection of Personal Data and Royal Decree 1720/2007, of 21 December, implementing regulations of the LOPD)
- LSSI (Law 34/2002, of 11 July, on Information Society Services and Electronic Commerce)
Data collected
Only data strictly necessary to carry out the normal activity of the service will be collected, in accordance with the principle of data minimisation (Art. 5.b GDPR).
The data collected will in all cases be from persons over 16 years of age (Art. 8.1 GDPR). Defora Home reserves the right to take measures to verify the accuracy of the age provided (Art. 8.2 GDPR).
In all cases, this data will be of a personal, identifying and non-sensitive nature, and may include:
- Email address
- Telephone number
- Full name
- Identity document
- Address
- Bank account number
Collection methods
Personal data will be collected through the Defora Home website, https://www.deforahome.com/, when you enter information in any of the fields designated for this purpose on the website. These fields are duly marked and will not collect any data until you expressly accept the transfer and management in accordance with this privacy policy.
Purpose of data collection and use https://www.deforahome.com/
Data collection and use is carried out solely for the purpose of contacting the customer in the event of problems with an order.
Defora Home undertakes not to use the data obtained for any purpose other than this.
Data recipient
The collected data will be incorporated into a file owned by:
- Defora Home
This file will be managed by:
- Héctor Acero
This file will be stored at:
- Raiola Networks, with registered address at Avenida de Magoi nº66, Semisótano Derecha, 27002 Lugo, Spain
DATA RETENTION PERIOD
Data will be retained until the purpose for which it was collected has been fulfilled (Art. 5.e GDPR) or until the right to deletion or modification is exercised. Provided that this does not conflict with legal or tax obligations to retain the data.
HOW DO WE PROTECT YOUR DATA?
Your data is transferred and stored securely as we have:
- SSL protocol encryption.
- Server-level firewall.
- Security protocols to prevent unauthorised access.
- Access controls.
Defora Home cannot guarantee complete security of communications over the Internet but we guarantee that appropriate measures are taken to protect your data.
Furthermore, Defora Home undertakes to maintain the confidentiality of the data and will not disclose or allow access to unauthorised third parties.
YOUR DATA PROTECTION RIGHTS
The legislation recognises your rights as a user who has provided personal data:
- Access to personal data.
- Rectification or deletion.
- Objection to processing.
- Data portability.
- Restriction of processing.
These rights can only be exercised on your own behalf. Therefore, you can only request them for data of which you are the owner.
If you wish to exercise any of these rights, you may do so online through GGG, by email to hola@deforahome.com or by letter addressed to Defora Home, address C/ Electricidad 9/ 08755 Castellbisbal, stating the rights you wish to exercise and providing proof of identity. We undertake to respond to your request within a maximum of 30 business days.
LEGAL BASIS FOR DATA PROCESSING
The legal basis for the processing of your personal data is the explicit acceptance of their management in accordance with this privacy policy.
CONSEQUENCES OF NOT ACCEPTING THE PRIVACY POLICY
In the event that you do not accept the management of your data in accordance with this privacy policy, your data will not be collected, which may mean that the service provided by Defora Home cannot be carried out.
DATA PROTECTION AUTHORITY IN SPAIN
If you wish to assert your data protection rights and believe that we are not respecting them, you may contact the competent Spanish authority.
- Data protection authority website: https://www.aepd.es/
- Data protection authority email: internacional@agpd.es
- Data protection authority telephone: +34 91399 6200
SECURITY
The website uses industry-standard information security techniques, such as firewalls, access control procedures and cryptographic mechanisms, all aimed at preventing unauthorised access to data and the possible theft thereof. To achieve these purposes, the user/customer agrees that the provider may obtain data for the corresponding authentication of access controls.
We offer 100% secure payment
At deforahome.com we guarantee that every transaction carried out is 100% secure. All purchases made on our website are backed by the secure server of the banking entity Banco Santander / CaixaBank, so that your data is protected and encrypted by the most advanced technology, making it much safer to send your data to the Secure Server of the banks than to pay at a petrol station, restaurant, etc.
What happens when I send my data over the network?
When you make a purchase and choose the payment method, at the moment of clicking the Card Payment button, the website connects to the Secure Server, from that moment on you are browsing in a secure zone and enter your banking details on the bank’s Secure Server, which ensures that the operation meets the required security requirements and carries out the operation, after which the confirmation appears and the buyer returns to
the shop.
Could anyone discover the encryption key?
Each time a user connects to a Secure Server, the server generates a random key for the session it is establishing with the user, while the client’s browser generates another, equally random key, which serves to identify itself to the server.
If at the time a secure connection has been established, other users connect to the server, new keys are generated to identify the participants in the connection. The Secure Server ensures that the generated keys never coincide when multiple simultaneous connections are established.
How do I know that a secure connection has really been established?
You will know that you have connected to a Secure Server if the URL address begins with “https://”. Additionally, the most commonly used browsers indicate this graphically with an icon that shows the user whether or not there is a secure connection (for example, in Internet Explorer a closed yellow padlock appears).
What security protocol is used in transmissions?
Connections to the Secure Server use the latest specifications of the standard network security protocol: SSL.
Which financial institution guarantees the security of my transactions?
When you make a purchase with a debit or credit card on our deforahome.com, a connection is established with the Secure Server of Banco Santander and CaixaBank provides all its experience and technological infrastructure to securely and efficiently support all electronic purchase transactions made on deforahome.com/. When a payment request reaches the Secure Server of Banco Santander or CaixaBank, it manages the authorisation or denial, in real time, of the payment for that purchase after verifying that all data
is correct to process the payment.
Where can I obtain more information?
If you wish to learn more about security topics, you can refer to the information provided by Banco Santander on its website, www.bancosantander.es. And also CaixaBank www.caixabank.es
3D Secure
The Banco Santander and CaixaBank payment gateway is compatible with the new secure payment protocols on the internet introduced by Visa and Mastercard.
3D Secure is the most secure credit card payment system because it is capable of authenticating the cardholder, guaranteeing that the customer using a card number is truly its holder. This is done by means of a secret key that your own bank will provide you and that only you will know; in most cases this key can be requested online. For more information you can visit your bank’s website or contact them.
Very important
Our website only accepts payment with credit cards that are secured (3D Secure), so you will need a special key to purchase online which must be provided by the financial institution that issued the card, mentioning the need to have the 3D Secure virtual key. We recommend using this 3D Secure system; you ensure that you are the only one who can make purchases with the card, making its fraudulent use on the internet impossible and guaranteeing the total security of transactions.
How do we protect your credit card payment?
deforahome.com uses a server based on one of the most reliable secure payment systems on the Internet: the SSL (Secure Socked Layer) security protocol. (If you would like more information, visit www.ssl.com).
All your personal data and the information you transmit to us travels in encrypted form over the network, and is protected and encoded before being sent for processing.
For payment with Visa and Mastercard, only CES (Secure Electronic Commerce) transactions will be accepted. After verifying that the card is registered with the CES system, the system will contact the issuing bank so that the buyer can authorise the purchase. Once the bank confirms authenticity, the charge will be applied to the card. Otherwise, the order will be cancelled.
The payment gateway we use for your credit card payment is from Banco Santander, which encrypts your data using the 256-bit SSL protocol. Our system does not store any banking data from your credit card; instead, it goes directly to the Bank’s TPV Ecommerce (Point of Sale Terminal).
What is SSL?
The latest advances in browser and server technology have made it easier to use web services without concerns related to electronic fraud. An example of this is Secure Sockets Layer (SSL), developed by Netscape, a security protocol submitted to the Internet Engineering Task Force (IETF) as an Internet draft. Essentially, the protocol allows the browser and server of a web session to authenticate each other and protect the information that will subsequently flow between both points. Through the use of cryptographic techniques such as encryption and digital signatures, the protocol:
■ Allows web browsers and servers to authenticate each other.
■ Allows website owners to control access to servers, directories, files or particular services.
■ Allows confidential information (such as credit card numbers) to be shared between the browser and the server, keeping it inaccessible to third parties.
■ Ensures that data exchanged between the browser and the server cannot be corrupted, whether accidentally or deliberately, without being detected.