PRIVACY NOTICE

 

Privacy and Data Protection is of high importance for us, and we want to be open and transparent about how we process your personal data. In this privacy notice you can check out how your personal data will be processed and protected.

Who Is The Controller Of Your Personal Data?

The company Hero AG is the controller for your personal data. Here you can find further details:

Name: Hero AG
Address: Karl Roth Strasse 8, 5600 Lenzburg, Switzerland
Company registration number: CHE - 106.043.830

Where Do We Keep Your Personal Data?

Your personal data is stored and processed within the EEA and Switzerland, the latter being a country offering an adequate level of data protection according to the European Commission adequacy decision.

Your personal data may also be transferred to territories outside the EEA or Switzerland. For those countries without an adequacy decision from the European Commission, we ensure that any transfer of your personal data complies with applicable data protection laws and that appropriate safeguards to protect your rights are in place, for more information about data transfers do not hesitate to contact us at data@hero.ch.

Who Has Access To Your Personal Data?

Hero AG is the Swiss parent company of a multinational group pf companies called “Hero Group”. Your personal data may be shared with other companies within the Hero Group (as described in the sections below).

We may also forward some of your personal data to:

  • Service providers who provide IT and system administration services;
  • Third parties who provide services such as payment processing, shipping, and order fulfillment;
  • Professional advisers including lawyers, bankers, auditors, and insurers;
  • Government bodies that require us to report processing activities, or
  • Third parties to whom we may sell, transfer, or merge parts of our business or our assets.

When your data is forwarded to third parties, they act as personal data processor and process the personal data on behalf of Hero AG. By way of clarification, we never forward your personal data to third parties with the intention of selling or swapping your data, but with the solely goal of providing you with our products and services as described in this privacy notice.

Why Do We Need To Process Your Personal Data?

 
DIRECT MARKETING

We will use your personal data (only when you explicitly consent) to send you information about our products, promotions or personalized offers through e-mails.

What type of personal data we process?

We will process contact information such as full name, address, phone number and email address.

What is the legal ground for processing your personal data?

For direct marketing purposes, the processing of your personal data is based on your consent when you agree to direct marketing.

You have the right to withdraw your consent for the processing of your personal data at any time. You can do this by following the instructions provided in each marketing email (“unsubscribe” option).

When you withdraw your consent, we will not be able to send you direct marketing communications or any other information based on such consent.

How long do we keep your personal data?

We will keep your personal data until you withdraw your consent to direct marketing by clicking “unsubscribe” in our emails or by contacting us directly at data@hero.ch with your request.

Once you opt out, we will no longer send you direct marketing communications, but we may still send you administrative and service-related messages that are necessary for the management of the provision of our services.

 
PROMOTIONS

We may collect and use your personal data for promotional activities, like contests, sweepstakes, surveys, and special offers. We will use your personal data to administer the promotional activities, including processing entries and selecting winners; to contact you regarding your entry or to notify you if you win; to award prizes and fulfill other promotional commitments; to announce winners (where applicable) on our website, social media, or other platforms, and to use entry content in accordance with the promotion’s rules (e.g., publishing winning photos or essays).

What type of personal data we process?

Contact information like name, email address, phone number, mailing address, etc. as well as any content or information you submit as part of your entry, such as photos, videos, etc.

What is the legal ground for processing your personal data?

Participation in these promotional activities is entirely voluntary, and by entering, you consent to the processing of your personal data.

You have the right to withdraw your consent at any time. However, please note that withdrawing your consent may impact your ability to participate in the promotions and receive any prizes. To withdraw your consent, please contact us at data@hero.ch.

How long do we keep your personal data?

We will retain your personal data only for as long as necessary to administer the promotion, fulfill prizes, and comply with legal obligations. Once the contest and related activities are completed, your data will be securely deleted unless you have opted in to receive future communications from us.

 
CUSTOMER SERVICE

We will process your personal data to manage your queries, handle complaints about our products and provide you with samples of our products.

What type of personal data we process?

We will process your contact information such as full name, address, phone number and email address as well as any correspondence in the matter.

What is the legal ground for processing your personal data?

The processing of your personal data is based on Hero AG’s legitimate interest.

You have the right to object to the processing of your personal data based on our legitimate interest. We will no longer to process your personal data unless we can demonstrate a legitimate ground to process your data that overrides your interest and rights.

How long do we keep your personal data?

We do not keep your data longer than necessary. Depending on the nature of your request, and specially in relation to legal claims, we can hold your personal data for a maximum of 4 years for case management purposes.

What type of personal data we process?

When you place an order, we need to process contact details such as name, email address, phone number, shipping address, billing address but also data related to payment information like credit/debit card details, PayPal information, or other payment method details. Order Details like information about the products you purchase or the order number are processed as well. We also collect and process technical data like IP address, browser type, version, time zone setting, browser plug-in types, operating system, and platform.

What is the legal ground for processing your personal data?

The legal bases for processing your personal data in connection with online purchases include:

  • Performance of a Contract: processing your personal data is necessary to fulfill the contract of sale between you and us.
  • Legal Obligations: complying with our legal obligations, such as tax reporting and financial regulations.
  • Legitimate Interests: for our legitimate interests in preventing fraud, improving our services. You have the right to object to the processing of your personal data based on our legitimate interest. We will no longer to process your personal data unless we can demonstrate a legitimate ground to process your data that overrides your interest and rights. You can exercise your right to object by contacting us at data@hero.ch.
How long do we keep your personal data?

We will retain your personal data only for as long as necessary to fulfill the purposes we collected it for, including the purposes of satisfying any legal, accounting, or reporting requirements. Typically, we retain order information for four years to comply with tax and accounting regulations.

 

WHICH ARE YOUR RIGHTS?

 
Right to access:

At any time, you can request us to provide you with information about your personal data. You can reach us through data@hero.ch, we will provide you with a copy of your personal data via e-mail.

Right to rectification:

If you believe the personal data we hold about you is incorrect, incomplete or inaccurate, you can request us to correct or complete this information.

Right to portability:

When we process your data based on your consent or a contract, you can request us to transfer your personal data to you.

You can also request us to directly transfer your personal data to another company whose services you would like to use. We would only be able to do this when it is technically feasible.

Right to erasure:

You can require us to delete your personal data under the following circumstances:

  • Your data is no longer needed.
  • You decide to withdraw your consent to process your personal data.
  • You exercise your right to object (see below) and there is no overriding legitimate interest.
  • The deletion of your personal data is required to comply with the applicable law.
  • Your personal data have been unlawfully processed.
Right to object:

You are entitled to request us to stop processing your personal data in two different situations:

  • Direct marketing: you can opt out from direct marketing communications by following the instructions provided in each marketing email.
  • Legitimate interest: when the processing of your personal data that is based on our legitimate interest, you can request us to longer process your personal data. However, if we demonstrate legitimate grounds for the processing of such data which overrides your interests and rights, we will be allowed to continue processing your personal data.
Right to restriction:

“Restriction” implies that your personal data may, except for storage, only be processed:

  • With your consent for the exercise of legal claims.
  • For the protection of other natural or legal person’s rights.
  • To protect the public interest of an EU Member State.

The right to restriction can be exercised when:

  1. You exercise your right to rectification; you can request us to stop processing your personal data until we verify your request and correct the data.
  2. The processing of the personal data is unlawful, but you do not want your personal data to be deleted.
  3. Your personal data is no longer needed, but you do not want us to delete the information.
  4. You have objected to the processing of personal data based on our legitimate interests, and the decision on such objection is still pending.
How can you exercise your rights?

We have a dedicated team that will support you in relation to the exercise of your rights. You can always reach us at data@hero.ch.

Right to lodge a complaint:

If you consider that we are processing your personal data in an incorrect way, you can always contact our Customer Service. Be aware that you also have the right to raise a complaint to a supervisory authority.

 

Last update: June 2024