PRIVACY POLICY
Last updated: November 2025
Introduction
SIWF by Aqua Architect Advisory Tallinn OÜ ("we", "us", "SIWF") is committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, share, and protect your personal information when you visit our website www.siwf.shop or purchase our products.
This policy complies with:
- The European Union General Data Protection Regulation (GDPR - Regulation 2016/679)
- Estonian Personal Data Protection Act
- Other applicable data protection laws
Data Controller
Company: Aqua Architect Advisory Tallinn OÜ
Registry Code: 17242581
Address: Pärnu mnt 139e/2-8, 11317 Tallinn, Estonia
Email: contact@siwf.eu
Data Protection Officer: contact@siwf.eu
What Personal Data We Collect
We collect and process the following categories of personal data:
Account and Order Information:
- Full name
- Email address
- Billing address
- Shipping address
- Phone number
- Order history and purchase details
- Payment information (processed securely by our payment providers)
Technical and Usage Data:
- IP address
- Browser type and version
- Device information (type, operating system)
- Pages visited and time spent on site
- Referral source
- Location data (country, city)
Communications:
- Customer service inquiries and correspondence
- Newsletter subscription preferences
- Marketing communication preferences
- Product reviews and feedback
Cookies and Tracking Technologies:
- Session cookies (essential for site functionality)
- Analytics cookies (Google Analytics GA4: G-KG71D02C17)
- Marketing cookies (Meta Pixel ID: 2227209534411352)
How We Use Your Personal Data
We process your personal data for the following purposes and legal bases:
Order Processing and Delivery (Legal Basis: Contract Performance)
- Processing and fulfilling your orders
- Managing payments and invoicing
- Arranging shipping and delivery
- Providing customer support
- Managing returns and refunds
Legal Compliance (Legal Basis: Legal Obligation)
- Complying with accounting and tax requirements
- Maintaining records for legal purposes
- Responding to legal requests from authorities
Website Functionality and Security (Legal Basis: Legitimate Interest)
- Ensuring website security and preventing fraud
- Troubleshooting technical issues
- Improving website performance
- Managing user accounts
Marketing Communications (Legal Basis: Consent)
- Sending promotional emails about new products and special offers
- Providing personalized product recommendations
- Conducting customer satisfaction surveys
You can withdraw your consent for marketing communications at any time by clicking the unsubscribe link in our emails or contacting us at contact@siwf.eu.
Analytics and Website Improvement (Legal Basis: Legitimate Interest)
- Analyzing website traffic and user behavior
- Understanding customer preferences
- Improving our products and services
- Optimizing the shopping experience
How We Share Your Personal Data
We do not sell, rent, or trade your personal data to third parties. We only share your data with trusted service providers necessary for our business operations:
Essential Service Providers:
- Payment processors: To process your payments securely
- Shipping companies: To deliver your orders
- Email service providers: To send transactional and marketing emails
- Website hosting: BigCommerce (Australia) - see International Transfers below
- Analytics providers: Google Analytics for website performance analysis
- Advertising platforms: Meta (Facebook/Instagram) for targeted advertising
All service providers are contractually bound to protect your data and use it only for the specific purposes we authorize.
Legal Requirements: We may disclose your personal data if required by law, court order, or governmental authority, or to protect our legal rights.
International Data Transfers
Our website is hosted by BigCommerce Pty. Ltd. in Australia. When you use our website, your data may be transferred outside the European Economic Area (EEA).
We ensure adequate protection through:
- Standard Contractual Clauses approved by the European Commission
- Ensuring service providers comply with GDPR standards
- Implementing appropriate technical and organizational security measures
Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes described in this policy:
Account and Order Data: 7 years (for accounting and tax compliance)
Marketing Consent: Until you withdraw consent or 3 years of inactivity
Technical Logs: 12 months
Customer Service Records: 3 years
Analytics Data: 26 months (Google Analytics default)
After these periods, your data is securely deleted or anonymized.
Cookies Policy
Our website uses cookies to enhance your browsing experience and provide personalized services.
Types of Cookies We Use:
Essential Cookies (Always Active)
- Shopping cart functionality
- User session management
- Security and fraud prevention
- Payment processing
- These cookies are necessary for the website to function and cannot be disabled
Analytics Cookies (Optional)
- Google Analytics (GA4: G-KG71D02C17)
- Page visit tracking
- User behavior analysis
- Website performance monitoring
- Duration: Up to 26 months
Marketing Cookies (Optional)
- Meta Pixel (ID: 2227209534411352)
- Conversion tracking
- Retargeting campaigns
- Personalized advertising
- Duration: Up to 90 days
Managing Cookies: You can manage cookie preferences through:
- Our cookie consent banner (first visit)
- Your browser settings (instructions vary by browser)
- Opt-out tools provided by Google and Meta
Please note: Disabling certain cookies may affect website functionality and your user experience.
Your Rights Under GDPR
You have the following rights regarding your personal data:
Right of Access: Request a copy of the personal data we hold about you
Right to Rectification: Correct inaccurate or incomplete data
Right to Erasure ("Right to be Forgotten"): Request deletion of your personal data in certain circumstances
Right to Restriction: Request that we limit the processing of your data
Right to Data Portability: Receive your data in a structured, commonly used format
Right to Object: Object to processing based on legitimate interests or direct marketing
Right to Withdraw Consent: Withdraw consent for marketing communications at any time
Right to Lodge a Complaint: File a complaint with your national data protection authority
To Exercise Your Rights: Contact us at contact@siwf.eu with your request. We will respond within 30 days.
You may be required to verify your identity before we process your request.
Data Security
We implement appropriate technical and organizational measures to protect your personal data against:
- Unauthorized access
- Accidental loss or destruction
- Malicious attacks
- Unlawful processing
Security measures include:
- SSL/TLS encryption for data transmission
- Secure payment processing (PCI-DSS compliant providers)
- Regular security audits and updates
- Access controls and authentication
- Employee training on data protection
However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
Children's Privacy
Our website and services are not directed to children under 16 years of age. We do not knowingly collect personal data from children. If you believe we have inadvertently collected data from a child, please contact us immediately at contact@siwf.eu, and we will delete it promptly.
Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or business operations.
We will notify you of significant changes by:
- Posting the updated policy on our website with a new "Last Updated" date
- Sending an email notification (if you are a registered customer)
- Displaying a prominent notice on our website
Your continued use of our website after changes become effective constitutes acceptance of the updated policy.
Contact Us and Complaints
For Privacy-Related Questions or Requests:
Email: contact@siwf.eu
Mail: Aqua Architect Advisory Tallinn OÜ, Pärnu mnt 139e/2-8, 11317 Tallinn, Estonia
For Complaints: If you are not satisfied with how we handle your personal data, you have the right to lodge a complaint with:
Estonian Data Protection Inspectorate
Website: www.aki.ee
Email: info@aki.ee
EU Residents: You may also contact your national data protection authority or use the European Commission's Online Dispute Resolution platform: https://ec.europa.eu/consumers/odr