At MAXMAX, we are committed to protecting the privacy of our customers and visitors. This policy explains how we collect, use, protect, and share your personal information, and your rights regarding that data.
1. Data Controller
Owner: MAXMAX
Address: 1324 St Nicholas Ave, New York, NY 10033, EEUU
Email: info@maxmax.es
The data controller is the legal entity in charge of deciding on the processing of your personal data.
2. Personal Data We Collect
We collect the following data:
- Identification Data: First Name, Last Name, Address, Email, Phone Number.
- Payment Data: Credit Cards, Bank Accounts, PayPal, or other means.
- Usage Data: Order History, Product Preferences, Website Interactions.
- Technical data: IP address, browser type, operating system, cookies, and other tracking technologies.
3. Purposes of processing
The data collected is used to:
- Manage and process orders and returns.
- Issue invoices and purchase receipts.
- Send communications related to orders.
- Manage customer service and resolve incidents.
- Improve website performance and personalize the user experience.
- Send newsletters, promotions, and marketing, only if the user has given their explicit consent.
4. Legal basis for processing
We rely on different legal bases depending on the type of processing:
- Performance of contract: to process orders and deliveries.
- Consent of the data subject: for marketing and newsletters.
- Legitimate interest: to improve our services and ensure website security.
- Legal obligation: to comply with tax and accounting regulations.
5. Data Communication and Transfer
We do not sell or rent your data to third parties. Data may be shared with:
- Service providers: transportation, logistics, and payment platforms.
- Relevant authorities: when required by law.
- Consultants and auditors: for legal and accounting compliance.
6. International Data Transfers
If your data is transferred outside the European Economic Area (EEA), we ensure that this is done in compliance with appropriate security measures, through:
- Standard contractual clauses approved by the European Commission.
- Recognized data protection certifications.
7. Data Security
We implement technical and organizational measures to protect your data:
- SSL encryption on the website and during online payments.
- Internal access controls and differentiated roles.
- Periodic backups.
- Security breach detection and mitigation protocols.
8. Data Retention
Your data will be retained:
- As long as a contractual or commercial relationship exists.
- During the legal invoicing and accounting periods.
- As long as you do not withdraw your consent for marketing purposes.
9. User Rights
As a user, you have the following rights:
- Access: to know what personal data we hold.
- Rectification: to correct inaccurate data.
- Deletion: to request the deletion of your data.
- Restriction: to restrict the processing of your data.
- Portability: to receive your data in a structured format and transfer it to another controller.
- Objection: to object to processing based on legitimate interest or direct marketing.
- Withdraw consent: at any time, without affecting the lawfulness of previous processing.
To exercise these rights, please contact: info@maxmax.es
If you are not satisfied with the response, you can file a complaint with the Spanish Data Protection Agency (AEPD): https://www.aepd.es
10. Use of cookies and similar technologies
Our website uses its own and third-party cookies to:
- Improve your browsing experience.
- Analyze traffic and statistics.
- Show personalized advertising (only if consent has been given).
You can manage or disable cookies from your browser. More information in our Cookies Policy.
11. Data of minors
We do not knowingly collect data from minors under 14 years of age. If you are a parent or guardian and believe we have collected information from a minor, please contact us for immediate deletion.
12. Changes to the privacy policy
We reserve the right to modify this policy. Updates will be published with the revision date. We recommend that you periodically review this page.
This version complies with GDPR, LOPDGDD, and ePrivacy, covering:
- International transfers
- Marketing and consent
- Data security
- Retention and portability
- Children’s data
- Cookies