This Privacy Policy describes how www.auroxhealth.com (the “Site” or “we”) collects, uses, and discloses your Personal Information when you visit or make a purchase from the Site.

Your privacy is important to us. It is Aurox Health's policy to respect your privacy and comply with any applicable law and regulation regarding any personal information we may collect about you, including across our website, www.auroxhealth.com, and other sites we own and operate.
 
Personal information is any information about you that can be used to identify you. This includes information about you as a person (such as name, address, and date of birth), your devices, payment details, and even information about how you use a website or online service.
 
In the event our site contains links to third-party sites and services, please be aware that those sites and services have their own privacy policies. After following a link to any third-party content, you should read their posted privacy policy information about how they collect and use personal information. This Privacy Policy does not apply to any of your activities after you leave our site.
 
This policy is effective as of 12 August 2021.
Last updated: 13 February 2023

Collecting Personal Information

When you visit the Site, we collect certain information about your device, your interaction with the Site, and information necessary to process your purchases. We may also collect additional information if you contact us for customer support. In this Privacy Policy, we refer to any information that can uniquely identify an individual (including the information below) as “Personal Information”. See the list below for more information about what Personal Information we collect and why.
 
Information we collect falls into one of two categories: 'voluntarily provided' information and 'automatically collected' information.
 
'Voluntarily provided' information refers to any information you knowingly and actively provide us when using or participating in any of our services and promotions.
 
'Automatically collected' information refers to any information automatically sent by your devices in the course of accessing our products and services.

Log Data

When you visit our website, our servers may automatically log the standard data provided by your web browser. It may include your device’s Internet Protocol (IP) address, your browser type and version, the pages you visit, the time and date of your visit, the time spent on each page, and other details about your visit.
 
Additionally, if you encounter certain errors while using the site, we may automatically collect data about the error and the circumstances surrounding its occurrence. This data may include technical details about your device, what you were trying to do when the error happened, and other technical information relating to the problem. You may or may not receive notice of such errors, even at the moment they occur, that they have occurred, or what the nature of the error is.
 
Please be aware that while this information may not be personally identifying by itself, it may be possible to combine it with other data to personally identify individual persons.
 
Data we collect can depend on the individual settings of your device and software. We recommend checking the policies of your device manufacturer or software provider to learn what information they make available to us.
 
Device information
  • Examples of Personal Information collected: version of web browser, IP address, time zone, cookie information, what sites or products you view, search terms, and how you interact with the Site, Device Type, Operating System, Unique device identifiers, Device settings, Geo-location data.
  • Purpose of collection: to load the Site accurately for you, and to perform analytics on Site usage to optimize our Site.
  • Source of collection: Collected automatically when you access our Site using cookies, log files, web beacons, tags, or pixels
  • Disclosure for a business purpose: shared with our processor Shopify
Order information
  • Examples of Personal Information collected: name, billing address, shipping address, payment information (including credit card numbers, email address, and phone number.
  • Purpose of collection: to provide products or services to you to fulfil our contract, to process your payment information, arrange for shipping, and provide you with invoices and/or order confirmations, communicate with you, screen our orders for potential risk or fraud, and when in line with the preferences you have shared with us, provide you with information or advertising relating to our products or services.
  • Source of collection: collected from you.
  • Disclosure for a business purpose: shared with our processor Shopify, Paypal, BaseLinker
Customer support information
  • Examples of Personal Information collected: Name and email address, telephone number
  • Purpose of collection: to provide customer support.
  • Source of collection: collected from you.

Minors

The Site is not intended for individuals under the age of 18. We do not intentionally collect Personal Information from children. If you are the parent or guardian and believe your child has provided us with Personal Information, please contact us at the address below to request deletion.
 
We do not aim any of our products or services directly at children under the age of 13 and we do not knowingly collect personal information about children under 13.

Sharing Personal Information with Third Parties

We share your Personal Information with service providers to help us provide our services and fulfil our contracts with you, as described below. For example:
  • We use Shopify to power our online store. You can read more about how Shopify uses your Personal Information here: https://www.shopify.com/legal/privacy
  • We may share your Personal Information to comply with applicable laws and regulations, to respond to a subpoena, search warrant or other lawful requests for information we receive, or to otherwise protect our rights
  • We may disclose personal information to a parent, subsidiary or affiliate of our company third-party service providers for the purpose of enabling them to provide their services including (without limitation) IT service providers, data storage, hosting and server providers, analytics, error loggers, debt collectors, maintenance or problem-solving providers, marketing providers, professional advisors, and payment systems operators
  • Our employees, contractors, and/or related entities
  • Our existing or potential agents or business partners
  • Sponsors or promoters of any competition, sweepstakes, or promotion we run
  • Credit reporting agencies, courts, tribunals, and regulatory authorities, in the event you fail to pay for goods or services we have provided to you
  • Courts, tribunals, regulatory authorities, and law enforcement officers, as required by law, in connection with any actual or prospective legal proceedings, or in order to establish, exercise, or defend our legal rights
  • Third parties, including agents or sub-contractors who assist us in providing information, products, services, or direct marketing to you
  • Third parties to collect and process data
  • An entity that buys, or to which we transfer all or substantially all of our assets and business
  • 7Pixel Srl, in the person of its legal representative, is appointed as the person responsible for the processing of the User's data (email address) for the management of requests for comments in the context of the Trusted Program of the website www.trovaprezzo.it

Third parties we currently use include, but are not limited to:

  • Google Analytics
  • TruConversion
  • HockeyStack
  • MailChimp
  • Sendy
  • Klaviyo
  • Paypal
  • Stripe
  • Shopify payments
  • Trovaprezzi.it
  • Acumbamail

Behavioural Advertising

As described above, we use your Personal Information to provide you with targeted advertisements or marketing communications we believe may be of interest to you. For example:
  • We use Google Analytics to help us understand how our customers use the Site. You can read more about how Google uses your Personal Information here: https://policies.google.com/privacy?hl=en. You can also opt-out of Google Analytics here: https://tools.google.com/dlpage/gaoptout
  • We share information about your use of the Site, your purchases, and your interaction with our ads on other websites with our advertising partners. We collect and share some of this information directly with our advertising partners, and in some cases through the use of cookies or other similar technologies (which you may consent to, depending on your location).
For more information about how targeted advertising works, you can visit the Network Advertising Initiative’s (“NAI”) educational page at http://www.networkadvertising.org/understanding-online-advertising/how-does-it-work.
 
You can opt-out of targeted advertising by:
Additionally, you can opt-out of some of these services by visiting the Digital Advertising Alliance’s opt-out portal at: http://optout.aboutads.info/.

Using Personal Information

We use your Personal Information to provide our services to you, which includes: offering products for sale, processing payments, shipping and fulfilment of your order, and keeping you up to date on new products, services, and offers.

Lawful basis

Pursuant to the General Data Protection Regulation (“GDPR”), if you are a resident of the European Economic Area (“EEA”), we process your personal information under the following lawful bases:
  • Your consent
  • The performance of the contract between you and the Site
  • Compliance with our legal obligations
  • To protect your vital interests
  • To perform a task carried out in the public interest
  • For our legitimate interests, which do not override your fundamental rights and freedoms

Retention of your personal information

When you place an order through the Site, we will retain your Personal Information for our records unless and until you ask us to erase this information. For more information on your right of erasure, please see the ‘Your rights’ section below.
 
This time period may depend on what we are using your information for, in accordance with this privacy policy. For example, if you have provided us with personal information as part of creating an account with us, we may retain this information for the duration your account exists on our system. If your personal information is no longer required for this purpose, we will delete it or make it anonymous by removing all details that identify you.
 
However, if necessary, we may retain your personal information for our compliance with a legal, accounting, or reporting obligation or for archiving purposes in the public interest, scientific, or historical research purposes or statistical purposes.

Security of your personal information

When we collect and process personal information, and while we retain this information, we will protect it within commercially acceptable means to prevent loss and theft, as well as unauthorised access, disclosure, copying, use or modification.
 
Although we will do our best to protect the personal information you provide to us, we advise that no method of electronic transmission or storage is 100% secure and no one can guarantee absolute data security.
 
You are responsible for selecting any password and its overall security strength, ensuring the security of your own information within the bounds of our services.
 
For example, ensuring any passwords associated with accessing your personal information and accounts are secure and confidential.

Automatic decision-making

If you are a resident of the EEA, you have the right to object to processing based solely on automated decision-making (which includes profiling), when that decision-making has a legal effect on you or otherwise significantly affects you.
  
Our processor Shopify uses limited automated decision-making to prevent fraud that does not have a legal or otherwise significant effect on you.
 
Services that include elements of automated decision-making include:
  • Temporary denylist of IP addresses associated with repeated failed transactions. This denylist persists for a small number of hours
  • Temporary denylist of credit cards associated with denylisted IP addresses. This denylist persists for a small number of days

Your rights

GENERAL DATA PROTECTION REGULATION (GDPR)

If you are a resident of the EEA, you have the right to access the Personal Information we hold about you, to port it to a new service, and to ask that your Personal Information be corrected, updated, or erased. If you would like to exercise these rights, please contact us through the contact information below.
 
Your Personal Information will be initially processed in Ireland and then will be transferred outside of Europe for storage and further processing, including to Canada and the United States. For more information on how data transfers comply with the GDPR, see Shopify’s GDPR Whitepaper: https://help.shopify.com/en/manual/your-account/privacy/GDPR.

Additional Disclosures for General Data Protection Regulation (GDPR) Compliance (EU)

Data Controller / Data Processor

The GDPR distinguishes between organisations that process personal information for their own purposes (known as “data controllers”) and organizations that process personal information on behalf of other organizations (known as “data processors”). We, Aurox Health, located at the address provided in our Contact Us section, are a Data Controller and/or Processor with respect to the personal information you provide to us.

 

Legal Bases for Processing Your Personal Information

We will only collect and use your personal information when we have a legal right to do so. In which case, we will collect and use your personal information lawfully, fairly and in a transparent manner. If we seek your consent to process your personal information, and you are under 16 years of age, we will seek your parent or legal guardian’s consent to process your personal information for that specific purpose.
 
Our lawful bases depend on the services you use and how you use them. This means we only collect and use your information on the following grounds:

 

Consent From You

Where you give us consent to collect and use your personal information for a specific purpose. You may withdraw your consent at any time using the facilities we provide; however, this will not affect any use of your information that has already taken place. You may provide a physical address for the purpose of receiving orders. While you may change or delete this address at any time, this will not affect orders that have already been sent. If you have any further enquiries about how to withdraw your consent, please feel free to enquire using the details provided in the Contact Us section of this privacy policy.

 

Performance of a Contract or Transaction

Where you have entered into a contract or transaction with us, or in order to take preparatory steps prior to our entering into a contract or transaction with you. For example, if you purchase a product, service, or subscription from us, we may need to use your personal and payment information in order to process and deliver your order.

 

Our Legitimate Interests

Where we assess it is necessary for our legitimate interests, such as for us to provide, operate, improve and communicate our services. We consider our legitimate interests to include research and development, understanding our audience, marketing and promoting our services, measures taken to operate our services efficiently, marketing analysis, and measures taken to protect our legal rights and interests.

 

Compliance with Law

In some cases, we may have a legal obligation to use or keep your personal information. Such cases may include (but are not limited to) court orders, criminal investigations, government requests, and regulatory obligations. If you have any further enquiries about how we retain personal information in order to comply with the law, please feel free to enquire using the details provided in the Contact Us section of this privacy policy.

 

International Transfers Outside of the European Economic Area (EEA)

We will ensure that any transfer of personal information from countries in the European Economic Area (EEA) to countries outside the EEA will be protected by appropriate safeguards, for example by using standard data protection clauses approved by the European Commission, or the use of binding corporate rules or other legally accepted means.

 

Your Rights and Controlling Your Personal Information

Restrict:

You have the right to request that we restrict the processing of your personal information if:

  • You are concerned about the accuracy of your personal information
  • You believe your personal information has been unlawfully processed
  • You need us to maintain the personal information solely for the purpose of a legal claim
  • We are in the process of considering your objection in relation to processing on the basis of legitimate interests

Objecting to processing:

You have the right to object to the processing of your personal information that is based on our legitimate interests or public interest. If this is done, we must provide compelling legitimate grounds for the processing which overrides your interests, rights, and freedoms, in order to proceed with the processing of your personal information.

 

Data portability:

You may have the right to request a copy of the personal information we hold about you. Where possible, we will provide this information in CSV format or other easily readable machine formats. You may also have the right to request that we transfer this personal information to a third party.

 

Deletion:

You may have a right to request that we delete the personal information we hold about you at any time, and we will take reasonable steps to delete your personal information from our current records. If you ask us to delete your personal information, we will let you know how the deletion affects your use of our website or products and services. There may be exceptions to this right for specific legal reasons which, if applicable, we will set out for you in response to your request.
 
If you terminate or delete your account, we will delete your personal information within 7 days of the deletion of your account. Please be aware that search engines and similar third parties may still retain copies of your personal information that has been made public at least once, like certain profile information and public comments, even after you have deleted the information from our services or deactivated your account.

CALIFORNIA CONSUMER PRIVACY ACT (CCPA)

If you are a resident of California, you have the right to access the Personal Information we hold about you (also known as the ‘Right to Know’), to port it to a new service, and to ask that your Personal Information be corrected, updated, or erased. If you would like to exercise these rights, please contact us through the contact information below.
 
If you would like to designate an authorized agent to submit these requests on your behalf, please contact us at the address below.

 

Additional Disclosures for California Compliance (US)

Under California Civil Code Section 1798.83, if you live in California and your business relationship with us is mainly for personal, family, or household purposes, you may ask us about the information we release to other organizations for their marketing purposes.
 
To make such a request, please contact us using the details provided in this privacy policy with “Request for California privacy information” in the subject line. You may make this type of request once every calendar year. We will email you a list of categories of personal information we revealed to other organisations for their marketing purposes in the last calendar year along with their names and addresses. Not all personal information shared in this way is covered by Section 1798.83 of the California Civil Code.

 

Do Not Track

Some browsers have a “Do Not Track” feature that lets you tell websites that you do not want to have your online activities tracked. At this time we do not respond to browser “Do Not Track” signals.
 
We adhere to the standards outlined in this privacy policy ensuring we collect and process personal information lawfully, fairly, transparently and with legitimate, legal reasons for doing so.

 

Cookies and Pixels

At all times you may decline cookies from our site if your browser permits. Most browsers allow you to activate settings on your browser to refuse the setting of all or some cookies. Accordingly, your ability to limit cookies is based only on your browser’s capabilities. Please refer to the Cookies section of this privacy policy for more information.

 

CCPA-permitted financial incentives

In accordance with your right to non-discrimination, we may offer you certain financial incentives permitted by the CCPA that can result in different prices, rates, or quality levels for the goods or services we provide.
 
Any CCPA-permitted financial incentive we offer will reasonably relate to the value of your personal information and we will provide written terms that describe clearly the nature of such an offer. Participation in a financial incentive program requires your prior opt-in consent, which you may revoke at any time.

 

California Notice of Collection

For more information on the information we collect, including the sources we receive information from, review the “Information We Collect” section. We collect and use these categories of personal information for the business purposes described in the “Collection and Use of Information” section, including to provide and manage our Service.

 

Right to Know and Delete

If you are a California resident, you have the rights to delete your personal information we collected and know certain information about our data practices in the preceding 12 months. In particular, you have the right to request the following from us:
  • The categories of personal information we have collected about you
  • The categories of sources from which the personal information was collected
  • The categories of personal information about you we disclosed for a business purpose or sold
  • The categories of third parties to whom the personal information was disclosed for a business purpose or sold
  • The business or commercial purpose for collecting or selling the personal information
  • The specific pieces of personal information we have collected about you
To exercise any of these rights, please contact us using the details provided in this privacy policy.

 

Shine the Light

If you are a California resident, in addition to the rights discussed above, you have the right to request information from us regarding the manner in which we share certain personal information as defined by California’s “Shine the Light” with third parties and affiliates for their own direct marketing purposes.
 
To receive this information, send us a request using the contact details provided in this privacy policy. Requests must include “California Privacy Rights Request” in the first line of the description and include your name, street address, city, state, and ZIP code.

AUSTRALIAN PRIVACY ACT COMPLIANCE (APAC)

Additional Disclosures for Australian Privacy Act Compliance (AU) International Transfers of Personal Information

Where the disclosure of your personal information is solely subject to Australian privacy laws, you acknowledge that some third parties may not be regulated by the Privacy Act and the Australian Privacy Principles in the Privacy Act. You acknowledge that if any such third party engages in any act or practice that contravenes the Australian Privacy Principles, it would not be accountable under the Privacy Act, and you will not be able to seek redress under the Privacy Act.

Cookies

We use cookies to help improve your experience of our website at https://www.auroxhealth.com. This cookie policy is part of Aurox Health's privacy policy. It covers the use of cookies between your device and our site.
 
We also provide basic information on third-party services we may use, who may also use cookies as part of their service. This policy does not cover their cookies.
 
If you don’t wish to accept cookies from us, you should instruct your browser to refuse cookies from https://www.auroxhealth.com. In such a case, we may be unable to provide you with some of your desired content and services.

 

What is a cookie?

A cookie is a small amount of information that’s downloaded to your computer or device when you visit our Site. We use a number of different cookies, including functional, performance, advertising, and social media or content cookies. Cookies make your browsing experience better by allowing the website to remember your actions and preferences (such as login and region selection). This means you don’t have to re-enter this information each time you return to the site or browse from one page to another. Cookies also provide information on how people use the website, for instance, whether it’s their first time visiting or if they are a frequent visitor.
 
Cookies are used to enable certain features (eg logging in), track site usage (eg analytics), store your user settings (eg time zone, notification preferences), and personalise your content (eg advertising, language).
 
Cookies set by the website you are visiting are usually referred to as first-party cookies. They typically only track your activity on that particular site.
 
Cookies set by other sites and companies (i.e. third parties) are called third-party cookies They can be used to track you on other websites that use the same third-party service.

 

We use the following cookies to optimize your experience on our Site and to provide our services

Essential cookies:

Essential cookies are crucial to your experience of a website, enabling core features like user logins, account management, shopping carts, and payment processing.
 
We use essential cookies to enable certain functions on our website.

 

Performance cookies:

Performance cookies track how you use a website during your visit. Typically, this information is anonymous and aggregated, with information tracked across all site users. They help companies understand visitor usage patterns, identify and diagnose problems or errors their users may encounter, and make better strategic decisions in improving their audience’s overall website experience. These cookies may be set by the website you’re visiting (first-party) or by third-party services. They do not collect personal information about you.
 
We use performance cookies on our site.

 

Functionality cookies:

Functionality cookies are used to collect information about your device and any settings you may configure on the website you’re visiting (like language and time zone settings). With this information, websites can provide you with customised, enhanced, or optimised content and services. These cookies may be set by the website you’re visiting (first-party) or by third-party services.
 
We use functionality cookies for selected features on our site.

 

Targeting/advertising cookies:

Targeting/advertising cookies help determine what promotional content is most relevant and appropriate to you and your interests. Websites may use them to deliver targeted advertising or limit the number of times you see an advertisement. This helps companies improve the effectiveness of their campaigns and the quality of content presented to you. These cookies may be set by the website you’re visiting (first-party) or by third-party services. Targeting/advertising cookies set by third parties may be used to track you on other websites that use the same third-party service.
 
We use targeting/advertising cookies on our site.

Cookies Necessary for the Functioning of the Store

Name
Function
_ab
Used in connection with access to admin.
_secure_session_id
Used in connection with navigation through a storefront.
cart
Used in connection with shopping cart.
cart_sig
Used in connection with checkout.
cart_ts
Used in connection with checkout.
checkout_token
Used in connection with checkout.
secret
Used in connection with checkout.
secure_customer_sig
Used in connection with customer login.
storefront_digest
Used in connection with customer login.
_shopify_u
Used to facilitate updating customer account information.

Reporting and Analytics

Name
Function
_tracking_consent
Tracking preferences.
_landing_page
Track landing pages
_orig_referrer
Track landing pages
_s
Shopify analytics.
_shopify_fs
Shopify analytics.
_shopify_s
Shopify analytics.
_shopify_sa_p
Shopify analytics relating to marketing & referrals.
_shopify_sa_t
Shopify analytics relating to marketing & referrals.
_shopify_y
Shopify analytics.
_y
Shopify analytics.
 
The length of time that a cookie remains on your computer or mobile device depends on whether it is a “persistent” or “session” cookie. Session cookies last until you stop browsing and persistent cookies last until they expire or are deleted. Most of the cookies we use are persistent and will expire between 30 minutes and two years from the date they are downloaded to your device.
 
You can control and manage cookies in various ways. Please keep in mind that removing or blocking cookies can negatively impact your user experience and parts of our website may no longer be fully accessible.
 
Most browsers automatically accept cookies, but you can choose whether or not to accept cookies through your browser controls, often found in your browser’s “Tools” or “Preferences” menu. For more information on how to modify your browser settings or how to block, manage or filter cookies can be found in your browser’s help file or through such sites as www.allaboutcookies.org.
 
Additionally, please note that blocking cookies may not completely prevent how we share information with third parties such as our advertising partners. To exercise your rights or opt-out of certain uses of your information by these parties, please follow the instructions in the “Behavioural Advertising” section above.

Do Not Track

Please note that because there is no consistent industry understanding of how to respond to "Do Not Track" signals, we do not alter our data collection and usage practices when we detect such a signal from your browser.

Business transfers

If we or our assets are acquired, or in the unlikely event that we go out of business or enter bankruptcy, we would include data, including your personal information, among the assets transferred to any parties who acquire us. You acknowledge that such transfers may occur and that any parties who acquire us may, to the extent permitted by applicable law, continue to use your personal information according to this policy, which they will be required to assume as it is the basis for any ownership or use rights we have over such information.
 

Limits of Our Policy

Our website may link to external sites that are not operated by us. Please be aware that we have no control over the content and policies of those sites, and cannot accept responsibility or liability for their respective privacy practices.

Changes

We may update this Privacy Policy from time to time in order to reflect, for example, changes to our practices or for other operational, legal, or regulatory reasons.
 
At our discretion, we may change our privacy policy to reflect updates to our business processes, current acceptable practices, or legislative or regulatory changes. If we decide to change this privacy policy, we will post the changes here at the same link by which you are accessing this privacy policy.
 
If the changes are significant, or if required by applicable law, we will contact you (based on your selected preferences for communications from us) and all our registered users with the new details and links to the updated or changed policy.
 
If required by law, we will get your permission or give you the opportunity to opt in to or opt-out of, as applicable, any new uses of your personal information.

Contact

For more information about our privacy practices, if you have questions, or if you would like to make a complaint, please contact us by e-mail at support@auroxhealth.com  or by mail using the details provided below:
 
Aurox Health BV, Kingsfordweg 151, 1043GR Amsterdam, The Netherlands
Last updated: 12 August 2021
 
If you are not satisfied with our response to your complaint, you have the right to lodge your complaint with the relevant data protection authority. You can contact your local data protection authority, or our supervisory authority here: