1 - Introduction
Black Up places great importance on the protection of user’s privacy and its obligations in accordance with the legal provisions in force.
Black Up whose registered office is located 16 Avenue Pierre 1er de Serbie, 75116 Paris, France a data controller for the website www.blackup.co.uk.
2 - When does Black Up collect your information?
We collect personal information from you when:
- you visit our website;
- you create an account on our website;
- you make a purchase or a reservation on our website or in certain approved points of sale of our distribution network ;
- you subscribe to our newsletters;
- you sign up for one of our loyalty program;
- you participate in special operations, in particular games, competitions, product tests, customers surveys or market researches;
- you share content on social networks such as Instagram, Facebook, Pinterest or Twitter using the hashtag #blackup or other hashtags we offer;
- you are visiting one of our Spa or some approved points of sale of our distribution network;
- you contact us, in particular when you call or submit a request or a complaint to our Customer Service teams, when you rate or review our products and/or services or when you chat with other visitors in real time;
- you have a consultation or make a purchase in store at one of our counters, Skin Spa’s or Beauty Bars;
- you have given your consent to third parties to send us personal information about you.
3 - What information do we collect about you?
We consider that all information that could identify you directly or indirectly is "personal information". We may mainly collect the following personal information:
- information about your identity, in particular your gender, last name, first names, address, telephone number, email addresses, date of birth or age;
- information about your payment method, in particular your credit card number and the expiration date;
- information about our commercial transactions, in particular transaction numbers, history of your purchases, your request with our Customer Service teams, your preferences and interests, your activity on the web or information about one of our loyalty programmes;
- content information (photos, videos, reviews, comments, etc.) ;
- information about wellness (beauty concern, skin type, skin sensitivity, contraindications, etc.) subject to your prior and explicit consent, in particular when asking for a beauty prescription Black Up or a treatment Black Up in one of our Spa;
- information about your social media accounts (username, caption information, location, etc.), uploads and posts when you share content or use the hashtag #blackup or other hashtags we offer;
- recordings of telephone conversations to offer the best quality of service, in particular for the purpose of staff training and appraisal;
- technical information, in particular your IP address or information about how your device navigates through our website;
- other information you provide when you contact us or we have received from external providers.
4 - Why is your personal information collected?
Personal information may be collected mainly for the following purposes:
- Website administration and improvement of the quality of service. This processing is necessary for the purposes of the legitimate interest referred to above;
- Processing of your orders (orders, deliveries, invoices, after sales service, etc.). This processing is necessary for the performance of a contract to which you are party;
- Customer Relationship Management (CRM), in particular to help us get to know you better and to provide you with personalized offers about our products and services (in particular by email, by SMS, on social networks or any other medium and by displaying targeted ads on websites and on social networks), to manage your membership to our Loyalty program and to analyse and anticipate market trends in order to best meet your needs. For these purposes, we may perform segmentation operations based on your preferences, interests and purchases behavior, analyse your browsing and requests on our website or perform any other actions to better qualify our database. Creating an account allows us to personalise your customer experience but you can also place an order using the Guest Check Out option. This processing is made with your consent or necessary for the purposes of the legitimate interest referred to above;
- Social interaction. This processing is made with your consent;
- When appropriate, prevention and fraud detection, crime and litigation management. This processing is necessary for the purposes of the legitimate interest referred to above;
- - Managing your request (samples, giving advice, participation in a promotional operation, complaints, right to access, rectify, object and remove, etc.). This processing is necessary to process your request;
- - As otherwise permitted by law and/or if we need to notify to you from time to time.
5 – Do we disclose your personal information?
We never sell nor rent your personal information with other companies for marketing purposes.
It may also be shared with service providers chosen for their expertise and reliability and acting on our behalf and at our direction (order processing and fulfilment, secure payment, customer service management, maintenance and technical development operations, rate and reviews, analytics, management of digital campaigns, etc.). We authorize these service providers to use your personal information only to the extent necessary to perform services on our behalf or to comply with legal requirements and we strive to ensure that your personal information is always protected.
These third parties may be located in or out of the European Economic Area (EEA), including in countries that do not provide the same level of data protection as in your country of residence. In such a case, we will ensure that:
- we obtain your unambiguous consent to share your personal information with these third parties,
- we enter into appropriate data transfer agreements conforming to the Standard Model Clauses established by the European Commission,
- - we comply with Binding Corporate Rules (BCR) approved by competent authorities;
- - we ensure that those third parties comply with the EU-U.S. Privacy Shield Framework and the Privacy Shield Principles regarding the collection, use, and retention of personal information transferred from the European Union to the U.S.
Finally, we may also transmit your personal information to local authorities if required by law or as part of an investigation and in accordance with applicable regulations.
6 - How will we protect the information about you?
Black Up takes appropriate technical and organizational measures, in relation to the nature of data and risks, to preserve the security and confidentiality of your personal information and, in particular, to prevent them from being altered, disclosed or transmitted to any unauthorized parties.
This may include practices such as limited access by members of staff who, by virtue of their duties, are authorized to access data, contractual guarantees in case of third-party provider, privacy impact assessments, internal reviews of our practices and privacy policies and/or implementation of physical and/or systematic security measures (secure access, authentication process, backup, antivirus, firewall, etc.).
7 - What is our policy on minors?
This website www.blackup.co.uk is not aimed at minors.
We do not knowingly collect nor process personal information from minors. Assuming we would have knowledge of the collection of personal information from minors without prior authorization from the holder of the parental responsibility, we will take appropriate measures to contact the person and, if necessary, to delete this personal data from our servers and/or those of our service providers.
8 – What is our cookies policy?
For more information on Black Up’ cookies policy, please see our Cookies policy
9 - How is the contents you share on social networks using our hashtags managed?
As a general rule:
- Customer / prospect data will be kept for three years from the date of collection or after the last contact or the end of the commercial relationship, unless opposed by you. At the end of this three-year period, we may make contact with you again in order to find out whether or not you wish to continue to receive marketing approaches. If no clear positive answer is given by you, your data will be deleted or archived in accordance with the provisions in force.
- Data on credit cards will be deleted after the transaction or archived for evidence purposes in accordance with the provisions in force. Subject to your express consent, banking data may be kept until the expiration date of the credit card. We never store your visual cryptogram.
- Data to prove a right or a contract, or kept under compliance with a legal obligation can be archived in accordance with the provisions in force.
10 - What are your rights regarding your personal data and how to contact us?
If you give us your email address, phone number or mailing address, you may receive emails, calls or periodic messages from us about our products, services or upcoming events. You can unsubscribe at any time from our mailing lists by contacting us at the address below or by following the link "unsubscribe" contained in each of our emails. You can also change your preferences at any time in your account.
In accordance with the provisions in force, you have the right to access, rectify, limit, oppose and delete personal information about you. You can also withdraw your consent at any time. To exercise these rights, you must send us a request:
- By E-mailing a request to firstname.lastname@example.org
- By writing to the following address:
16 Avenue Pierre 1er de Serbie
You will be informed of the actions to be taken as soon as possible and in any case no later than one month after your request. However we reserve the right not to respond to manifestly unfounded or excessive requests.
In accordance with the provisions in force, you can also file a complaint with the competent authority responsible for data protection or lodge an appeal if your data are misused.
Spa & BeautyBAR Online Booking Privacy Statement
Black Up Privacy Statement provides details of the personally identifiable customer data we process, hold and how we may use this. Personally identifiable information is information that concerns you, individually, and that would enable someone to contact you. Such personally identifiable information is governed by our Privacy Statement and your use of this web site constitutes your acceptance of our Privacy Statement and the practices it describes. Personally identifiable data governed by our privacy statement is detailed below:
Personal & Sensitive data collected
- Email adress
- Telephone number
- Postcode (optional)
- Medical checklist answers
This information is collected so that you can make a booking for treatment. A preferred contact method will be established, which we will store on behalf of the customer to allow us to contact you regarding your booking. The medical checklist questions are kept strictly confidential and will not be used in any communications. These questions are asked purely to provide the customer with visibility around any treatments that may not be preferable for the customer.
Disclosure of personal data
Your personally identifiable information is used for our internal business purposes only. Blackup.com does not sell, rent or lease your personal information to independent third parties except as described below. We use personally identifiable information to identify account holders, open and maintain accounts, process, service and enforce transactions, send related communications to customers and to provide customer services and support
Use of personal data
If the customer chooses to opt in to hear from us, they may receive relevant brand marketing. If a customer does not choose to opt in, they will not receive marketing material from Black Up, however may be contacted in relation to their booking.
If you receive information about our products from another company, Blackup.com has no control over the use of their data. You will need to contact the company that delivered the email to opt out of receiving ongoing emails.
Opting out of email communication
At any time, customers may opt out of our email communication through the links in our emails, including any booking confirmation email.
Changes to our Privacy Statement
As we strive to improve our products and services, we may revise our Privacy Statement from time to time. We encourage you to periodically consult this Privacy Statement. If there are updates, they will be posted to this Privacy page on our web site along with the effective date of the revision. In the event of any significant changes to our Privacy Statement, Blackup.com will notify affected customers by E-mail.
If you have any questions or comments relating to our privacy statement, please do not hesitate to contact us at:
Customer Relations Team
16 Avenue Pierre 1er de Serbie
75116 Paris - France
Telephone number: 0149964790