Privacy Policy

Last updated: 26.09.2025

This Privacy Policy describes how BEYA Sakhuja OG (“thebook”, “we”, “us”, or “our”) collects, uses, and protects your personal data when you visit, use, or make a purchase from our website https://www.thebookshaker.com (“Website”). We are committed to protecting your privacy in accordance with the EU General Data Protection Regulation (GDPR), the UK GDPR, and the Swiss Federal Act on Data Protection (nFADP).

1. Data Controller

The controller responsible for your personal data is:

BEYA Sakhuja OG

Karl-Benz-Weg 20

1210 Vienna, Austria

Email: info@thebookshaker.com

2. Personal Data We Collect

We may collect the following categories of personal data:

  • Identification and contact data: name, billing/shipping address, email, phone number.

  • Order and payment data: items purchased, payment method, transaction details (we do not store full credit card numbers).

  • Account data: if you create an account (where available).

  • Technical data: IP address, browser type, operating system, device identifiers, usage data.

  • Marketing data: your marketing preferences and interactions with our marketing campaigns.

3. How We Collect Your Data

  • Directly from you when you place an order, create an account, or contact us.

  • Automatically through cookies and tracking technologies (see Section 8).

  • From third parties such as payment processors or logistics partners.

4. Purposes and Legal Bases of Processing

We process your personal data for the following purposes:

  • To process and fulfill your orders (Art. 6(1)(b) GDPR).

  • To provide customer service and handle returns/refunds (Art. 6(1)(b) GDPR).

  • To comply with accounting, tax, and legal obligations (Art. 6(1)(c) GDPR).

  • To analyse site performance and improve our services (Art. 6(1)(f) GDPR).

  • To conduct marketing activities (e.g., Meta Pixel, email marketing) where you have consented (Art. 6(1)(a) GDPR).

5. Payment Processing

We use secure third-party payment providers including Shopify Payments, Visa, Mastercard, American Express, SEPA, PayPal, Klarna, Apple Pay, and Google Pay. These providers process your payment data directly; we do not store full card numbers.

6. Data Sharing

We may share your data with:

  • Fulfillment and logistics partners (for order delivery).

  • Payment processors (for payment execution).

  • Analytics and marketing providers (Google Analytics, Meta Platforms).

  • IT service providers (Shopify as our ecommerce platform).

We do not sell or rent your personal data to third parties.

7. International Data Transfers

Your personal data may be transferred outside the EEA, the UK, or Switzerland, in particular to Canada and the United States (e.g., by Shopify, Meta, or Google). Where such transfers occur, they are safeguarded by Standard Contractual Clauses (SCCs) or other legally recognized transfer mechanisms.

8. Cookies and Tracking

We use cookies and similar technologies to operate our website and provide a better user experience. These include:

  • Essential cookies (necessary for site operation).

  • Analytics cookies (Google Analytics, used to analyse site usage).

  • Marketing cookies (Meta Pixel, used for targeted advertising).

You can accept or reject cookies via our cookie banner. You can also adjust your browser settings at any time.

9. Data Retention

  • Order and transaction data: retained for at least 7 years to comply with Austrian and EU accounting/tax obligations.

  • Customer communication: retained until your request is resolved or you unsubscribe.

  • Marketing data: retained until you withdraw consent or unsubscribe.

  • Technical/analytics data: retained as per provider policies (e.g., Google, Meta).

10. Your Rights

You have the following rights under GDPR/UK GDPR/Swiss DPA:

  • Right to access your personal data.

  • Right to rectification of inaccurate data.

  • Right to erasure (“right to be forgotten”).

  • Right to restrict processing.

  • Right to object to processing.

  • Right to data portability.

  • Right to withdraw consent at any time.

  • Right to lodge a complaint with your supervisory authority (e.g., Austrian Data Protection Authority, UK ICO, Swiss FDPIC).

To exercise these rights, contact us at info@thebookshaker.com.

11. Data Security

We use SSL encryption, secure hosting via Shopify, and industry-standard technical and organizational measures to protect your data from unauthorized access, loss, misuse, or alteration.

12. Changes to this Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. Updates will be posted on this page with a revised “last updated” date.

13. Contact

For any questions or to exercise your rights, please contact:

BEYA Sakhuja OG

Karl-Benz-Weg 20

1210 Vienna, Austria

Email: info@thebookshaker.com