At greenfelicities ApS, we are fully committed to protecting your privacy and processing your personal data in compliance with applicable EU and Danish data protection laws, including the General Data Protection Regulation (GDPR) and the Danish Data Protection Act. This Privacy Policy explains how we collect, use, store, share, and protect your personal data when you use our website and services. The heading used in these terms are for convenience only and do not affect the interpretation of the provisions.
WHO WE ARE
greenfelicities ApS
CVR number: 45493431
Von Hattenstræde 9A 1.
8900 Randers C
Denmark
Phone: +45 55 24 06 65
Mail: contact@greenfelicities.com
We are your data controller and we determine the purpose and means of the processing of your personal data.
TYPES OF DATA WE COLLECT
We collect only the personal data that is necessary for us to operate our webshop, fulfill our obligations, and improve your experience.
When you place an order or contact us, we collect your name, address, email, and phone number. This information is used to process your order, deliver your goods, and provide customer support.
We also collect payment information, such as card or account details, to complete your purchase. This data is processed securely through a third-party payment provider; we do not store your full payment details ourselves.
If you subscribe to our newsletter, we collect your email address to send marketing materials, product updates, and news — but only if you have given your explicit consent. You can unsubscribe at any time.
In addition, we collect technical data, such as your IP address, browser type, device information, and cookies, when you browse our site. This helps us analyze traffic, improve website functionality, and detect potential misuse or fraud.
We also use marketing and tracking cookies through third-party services such as Heyloyalty. These cookies collect information like unique visitor IDs and session data to personalize marketing messages, including newsletter popups and automated email campaigns. The data collected helps us understand your interactions with our marketing content and tailor it to your interests.
LEGAL BASIS FOR PROCESSING
We process your personal data based on one or more of the following legal bases:
- Contractual necessity – e.g., to process your order or respond to your inquiries.
- Consent – e.g., when you subscribe to our newsletter, accept optional cookies, or consent to marketing communications and tracking.
- Legal obligation – e.g., to comply with accounting, tax, and consumer protection laws.
- Legitimate interest – e.g., to prevent fraud, improve our services, and analyze website traffic, provided these interests are not overridden by your rights.
You may withdraw your consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
NEWSLETTER AND MARKETING
If you have explicitly given your consent, we will use your email address to send you newsletters, promotional content, and information about new products or offers.
You can withdraw your consent and unsubscribe at any time by clicking the “unsubscribe” link in any of our emails or by contacting us directly.
We use a trusted third-party provider, heyloyalty, to manage and distribute our email campaigns. This provider acts as a data processor under a GDPR-compliant Data Processing Agreement (DPA). We maintain full control over your data and choose providers who comply with EU standards.
Heyloyalty also supports marketing and tracking cookies that help us personalize marketing messages and measure the effectiveness of campaigns on our website.
DATA RETENTION
We retain your personal data only for as long as it is necessary to fulfill the purposes for which it was collected, or as required by law.
Customer order data is typically retained for up to five years to comply with legal obligations, including accounting and tax regulations. If you have subscribed to our newsletter, your email address will be retained until you choose to unsubscribe or withdraw your consent. Some cookies are stored only temporarily, while others may be retained for an extended period to support features like remembering your preferences or for analytics purposes. You can find more detailed information about this in our Cookie Policy.
Once the relevant retention period ends, your personal data is securely deleted or anonymized so that it can no longer be linked to you.
YOUR RIGHTS UNDER GDPR
As an individual within the EU/EEA, you have the following rights under the GDPR:
- Right of access – You may request a copy of the personal data we hold about you.
- Right to rectification – You may ask us to correct inaccurate or incomplete data.
- Right to erasure – You may request the deletion of your personal data, where applicable.
- Right to restriction of processing – You may request limited use of your data under specific circumstances.
- Right to data portability – You may request that your data be provided to you in a structured, commonly used, and machine-readable format.
- Right to object – You may object to processing based on our legitimate interests, including direct marketing.
To exercise any of these rights, please contact us at: contact@greenfelicities.com
If you believe that your data has not been handled correctly, you have the right to file a complaint with the Danish Data Protection Authority (Datatilsynet) at www.datatilsynet.dk.
DATA SHARING AND SUBPROCESSORS
We do not sell, rent, or trade your personal data to third parties.
We may share your data with carefully selected subprocessors who help us operate our webshop, such as:
- Payment service providers
- Shipping and logistics companies
- Email marketing platforms
- Website hosting and IT support partners
All subprocessors are bound by strict data processing agreements, ensuring your data is treated confidentially, securely, and in compliance with GDPR.
We remain responsible for all processing activities carried out on our behalf.
INTERNATIONAL TRANSFERS
If we transfer your personal data outside of the EU/EEA we ensure that adequate safeguards are in place.
This may include using Standard Contractual Clauses (SCCs) approved by the European Commission or ensuring the recipient is certified under an appropriate data protection framework.
You may request a copy of the applicable safeguards by contacting us.
DATA SECURITY
We take data protection seriously and have implemented appropriate technical and organizational measures to safeguard your personal data against unauthorized access, alteration, disclosure, or destruction.
These measures include SSL encryption, secure data storage, access controls, firewall protection, regular backups, and employee confidentiality agreements.
While no system is completely immune to risk, we take all reasonable steps to protect your data.
CHANGES TO THIS POLICY
We may update this Privacy Policy as needed. Material changes will be communicated on our website. We encourage you to review this page regularly.