Privacy Policy, Cookies and GDPR
Transparency and Commitment
⚠️ Contraste Vaping® is fully committed to complying with the General Data Protection Regulation (GDPR – EU 2016/679) and applicable data protection laws.
We recognize the importance of privacy and data security and implement appropriate technical and organizational measures to protect personal information.
1. Minimum age and legal framework
⚠️ Legal notice: Contraste Vaping® products are intended exclusively for individuals aged 18 and over.
Electronic cigarettes may be harmful to health and are not recommended for non-smokers, pregnant women, or individuals with medical conditions.
By using this website, you confirm that you are at least 18 years old.
2. Purpose of data processing
Personal data is collected for:
- Order and customer management
- Customer support
- Order-related communications
- Improving user experience
- Marketing emails and newsletters (only with consent)
- Legal and tax compliance
3. Legal basis
Data processing is based on:
- Contract performance
- Legal obligations
- Legitimate interest (service improvement and security)
- Explicit consent (marketing)
4. Data collected
- Website registration
- Contact forms
- Purchase process
- Customer support interactions
- Optional user preferences
⚠️ We do not store payment data. Payments are processed by secure third-party providers.
5. Data retention
- Customers: up to 5 years after last transaction
- Support data: up to 2 years after last contact
- Marketing data: until consent is withdrawn
After these periods, data is deleted or anonymized unless legally required otherwise.
6. Data sharing
Data:
- Is never sold to third parties
- May be shared with service providers essential to operations (hosting, logistics, email services, etc.)
- May be shared within the Contraste Vaping® group
All partners are contractually GDPR-compliant.
7. User rights
Users have the right to:
- Access their data
- Rectify data
- Delete data
- Restrict or object to processing
- Request data portability
- Withdraw consent at any time
To ensure transparency, we provide the RGPD form online in your customer account, allowing you to exercise your rights in accordance with the General Data Protection Regulation (GDPR). All requests will be answered within a maximum of 30 days, as required by law.
If you prefer, you can also contact our customer service.
8. Cookies
We use cookies to improve user experience.
Essential cookies
Required for site functionality (cart, session, security).
Example: PHPSESSID / OCSESSID
Preference cookies
Store language, currency, and user settings.
Analytics cookies
Google Analytics (_ga, etc.), only activated with consent.
Third-party cookies
Used by external services such as Google or security tools.
Social media cookies
Activated only when users interact with social buttons.
Users can manage cookies through their browser at any time.
9. Security
We apply security measures such as:
- HTTPS encryption
- Regular backups
- Restricted access control
- Security monitoring
In case of a breach, users and authorities will be notified within 72 hours.
10. External links
We are not responsible for external websites or their privacy policies.
11. Changes to this policy
We may update this policy at any time.
- Significant changes will be communicated
- The latest version will always be available
History
Version 1 – 2026
