Privacy Policy

Last updated: October 2025

1. Introduction

1.1 General information

This Privacy Policy explains how we collect, use, disclose, and protect your personal data when you visit our website and use our services. We are committed to protecting your privacy and handling your personal data in accordance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

By using our website and services, you acknowledge that you have read and understood this Privacy Policy.

1.2 Data controller

The data controller responsible for processing your personal data is:

Plus Mx Tomasz Banaszak
Str. Der Republik 14C
17321 Löcknitz
Germany

Email: info@oc1official.com
VAT ID: DE318393910

If you have any questions about how we process your personal data or wish to exercise your rights, please contact us using the details above.

2. What personal data we collect

2.1 Information you provide to us

We collect personal data that you voluntarily provide when you:

  • Create an account on our website
  • Place an order
  • Subscribe to our newsletter
  • Contact us with inquiries or requests
  • Participate in surveys or promotions
  • Leave reviews or feedback

This information may include:

  • Name and surname
  • Email address
  • Telephone number
  • Billing address
  • Delivery address
  • Payment information
  • Company name and VAT number (for business customers)
  • Order history and preferences
  • Communication preferences
2.2 Information we collect automatically

When you visit our website, we automatically collect certain information about your device and browsing behavior:

  • IP address
  • Browser type and version
  • Operating system
  • Referring website
  • Pages visited and time spent on pages
  • Date and time of visit
  • Cookie identifiers
  • Device information
2.3 Information from third parties

We may receive information about you from third parties, including:

  • Payment service providers (transaction confirmation, fraud prevention)
  • Delivery companies (delivery status updates)
  • Marketing and analytics platforms
  • Social media platforms (if you interact with our social media presence)

3. Legal basis for processing

3.1 Contractual necessity

We process your personal data when it is necessary for the performance of a contract with you or to take steps at your request before entering into a contract. This includes:

  • Processing and fulfilling your orders
  • Creating and managing your customer account
  • Providing customer service
  • Processing payments and refunds
  • Delivering products to you
3.2 Legal obligations

We process your personal data to comply with legal obligations, including:

  • Tax and accounting requirements
  • Consumer protection laws
  • Product safety regulations
  • Anti-money laundering requirements
3.3 Legitimate interests

We process your personal data based on our legitimate interests, including:

  • Fraud prevention and security
  • Improving our products and services
  • Marketing and business development
  • Website analytics and optimization
  • Managing customer relationships

You have the right to object to processing based on legitimate interests.

3.4 Consent

In some cases, we process your personal data based on your consent, including:

  • Marketing communications (newsletters, promotional emails)
  • Non-essential cookies and tracking technologies
  • Optional data collection for service improvement

You can withdraw your consent at any time.

4. How we use your personal data

4.1 Order processing and fulfillment

We use your personal data to:

  • Process and confirm your orders
  • Arrange delivery of products
  • Issue invoices and receipts
  • Handle returns, exchanges, and refunds
  • Communicate about your order status
4.2 Customer service

We use your personal data to:

  • Respond to your inquiries and requests
  • Provide technical support
  • Handle complaints and warranty claims
  • Maintain communication history for quality assurance
4.3 Marketing and communications

With your consent or where we have a legitimate interest, we use your personal data to:

  • Send you newsletters and promotional offers
  • Inform you about new products and services
  • Conduct market research and surveys
  • Personalize your shopping experience
  • Show you relevant advertisements

You can opt out of marketing communications at any time.

4.4 Website improvement and analytics

We use your personal data to:

  • Analyze website usage and performance
  • Identify and fix technical issues
  • Improve user experience and navigation
  • Develop new features and services
  • Conduct A/B testing and optimization
4.5 Security and fraud prevention

We use your personal data to:

  • Verify your identity
  • Detect and prevent fraud
  • Protect against security threats
  • Enforce our terms and conditions
  • Comply with legal requirements

5. Who we share your data with

5.1 Service providers

We share your personal data with trusted third-party service providers who help us operate our business:

  • Payment processors: To process transactions securely
  • Shipping and logistics companies: To deliver your orders
  • IT service providers: To maintain our website and systems
  • Email service providers: To send transactional and marketing emails
  • Analytics providers: To analyze website performance
  • Cloud storage providers: To store data securely

These service providers are contractually obligated to protect your data and use it only for the purposes we specify.

5.2 Business partners

We may share your data with:

  • Marketing partners: For joint promotions or advertising campaigns
  • Product manufacturers: For warranty claims or product recalls
  • Professional advisors: Including lawyers, accountants, and consultants
5.3 Legal authorities

We may disclose your personal data to law enforcement, regulatory authorities, or other third parties when:

  • Required by law or legal process
  • Necessary to protect our rights or property
  • Necessary to protect the safety of our customers or the public
  • Necessary to prevent or investigate fraud or security issues
5.4 Business transfers

In the event of a merger, acquisition, or sale of all or part of our business, your personal data may be transferred to the acquiring entity.

6. International data transfers

6.1 Transfers outside the EEA

Some of our service providers may be located outside the European Economic Area (EEA). When we transfer your personal data outside the EEA, we ensure appropriate safeguards are in place:

  • Standard Contractual Clauses approved by the European Commission
  • Adequacy decisions by the European Commission
  • Other legally recognized transfer mechanisms
6.2 Your rights regarding transfers

You have the right to obtain information about the safeguards we use for international data transfers and to obtain a copy of such safeguards where applicable.

7. How long we keep your data

7.1 Retention periods

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:

  • Account data: Until you request account deletion or after 3 years of inactivity
  • Order data: For 10 years to comply with tax and accounting obligations
  • Marketing data: Until you withdraw consent or object to processing
  • Website analytics: Typically 26 months
  • Customer service records: For 3 years after the last interaction
7.2 Legal requirements

Some data must be retained for longer periods to comply with legal obligations, such as tax records, accounting documents, and warranty information.

7.3 Deletion

After the retention period expires, we securely delete or anonymize your personal data. Anonymized data may be retained indefinitely for statistical purposes.

8. Your rights under GDPR

8.1 Right of access

You have the right to request a copy of the personal data we hold about you. We will provide this information free of charge unless your request is manifestly unfounded or excessive.

8.2 Right to rectification

You have the right to request correction of inaccurate or incomplete personal data. You can update some information directly in your customer account.

8.3 Right to erasure

You have the right to request deletion of your personal data in certain circumstances:

  • The data is no longer necessary for the purposes it was collected
  • You withdraw consent (where processing is based on consent)
  • You object to processing based on legitimate interests
  • The data has been unlawfully processed
  • Deletion is required to comply with a legal obligation

We may refuse deletion if we have a legal obligation to retain the data.

8.4 Right to restriction

You have the right to request restriction of processing in certain circumstances:

  • You contest the accuracy of the data
  • The processing is unlawful but you do not want the data deleted
  • We no longer need the data but you need it for legal claims
  • You have objected to processing pending verification
8.5 Right to data portability

You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit it to another controller where:

  • Processing is based on consent or contract
  • Processing is carried out by automated means
8.6 Right to object

You have the right to object to processing of your personal data based on legitimate interests or for direct marketing purposes.

If you object to direct marketing, we will stop processing your data for that purpose immediately.

8.7 Right to withdraw consent

Where processing is based on consent, you have the right to withdraw consent at any time. Withdrawal does not affect the lawfulness of processing based on consent before withdrawal.

8.8 Right to lodge a complaint

You have the right to lodge a complaint with a supervisory authority if you believe we have violated your data protection rights.

The competent supervisory authority in Germany is:

Der Bundesbeauftragte für den Datenschutz und die Informationsfreiheit (BfDI)
Graurheindorfer Str. 153
53117 Bonn
Germany
Website: www.bfdi.bund.de

8.9 How to exercise your rights

To exercise any of these rights, please contact us at:
Email: [email address]
Phone: [phone number]

We will respond to your request within one month. In complex cases, we may extend this period by two months and will inform you of the delay.

9. Cookies and tracking technologies

9.1 What are cookies

Cookies are small text files stored on your device when you visit our website. They help us provide you with a better experience and allow certain features to function properly.

9.2 Types of cookies we use
  • Essential cookies: Necessary for the website to function properly (shopping cart, security, session management)
  • Performance cookies: Help us understand how visitors use our website (analytics, page load times)
  • Functionality cookies: Remember your preferences and settings
  • Marketing cookies: Track your activity to show relevant advertisements
9.3 Cookie duration
  • Session cookies: Deleted when you close your browser
  • Persistent cookies: Remain on your device for a set period or until manually deleted
9.4 Third-party cookies

Some cookies are placed by third-party services that appear on our pages:

  • Google Analytics: Website analytics
  • Facebook Pixel: Advertising and remarketing
  • Payment providers: Secure payment processing
9.5 Managing cookies

You can control and delete cookies through your browser settings. Please note that disabling essential cookies may affect website functionality.

Most browsers allow you to:

  • View and delete cookies
  • Block third-party cookies
  • Block cookies from specific websites
  • Block all cookies
  • Delete all cookies when you close the browser
9.6 Cookie consent

When you first visit our website, we ask for your consent to use non-essential cookies. You can change your cookie preferences at any time through our cookie settings.

10. Data security

10.1 Security measures

We implement appropriate technical and organizational measures to protect your personal data:

  • Encryption: Data in transit is protected using SSL/TLS encryption
  • Access controls: Only authorized personnel can access personal data
  • Regular security audits: We regularly review and update our security measures
  • Secure storage: Data is stored on secure servers with restricted access
  • Employee training: Staff are trained on data protection and security
  • Incident response: We have procedures to detect and respond to security breaches
10.2 Your responsibility

Please keep your account password secure and do not share it with others. Notify us immediately if you suspect unauthorized access to your account.

10.3 Data breach notification

In the event of a data breach that is likely to result in a high risk to your rights and freedoms, we will notify you without undue delay in accordance with GDPR requirements.

11. Children's privacy

Our website and services are not intended for children under the age of 16. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child without parental consent, we will delete it promptly.

If you believe we have collected data from a child, please contact us immediately.

12. Links to third-party websites

Our website may contain links to third-party websites. We are not responsible for the privacy practices of these websites. We encourage you to read the privacy policies of any third-party sites you visit.

13. Marketing communications

13.1 Newsletter subscription

If you subscribe to our newsletter, we will use your email address to send you information about:

  • New products and special offers
  • Company news and updates
  • Tips and advice related to our products
  • Exclusive promotions for subscribers
13.2 Unsubscribing

You can unsubscribe from marketing emails at any time by:

  • Clicking the unsubscribe link in any marketing email
  • Logging into your account and updating your communication preferences
  • Contacting us directly

We will process your unsubscribe request within 48 hours.

13.3 Transactional emails

Even if you unsubscribe from marketing emails, we will still send you essential transactional emails related to your orders, account, and customer service.

14. Automated decision-making and profiling

14.1 Automated decisions

We do not make decisions based solely on automated processing that would significantly affect you.

14.2 Profiling

We may use profiling techniques to:

  • Personalize your shopping experience
  • Show relevant product recommendations
  • Tailor marketing communications to your interests

You have the right to object to profiling at any time.

15. Changes to this privacy policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of significant changes by:

  • Posting the updated policy on our website with a new "last updated" date
  • Sending you an email notification (if you have an account)
  • Displaying a prominent notice on our website

Your continued use of our website after changes become effective constitutes acceptance of the updated Privacy Policy.

16. Contact us

If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal data, please contact us:

Plus Mx Tomasz Banaszak
Str. Der Republik 14C
17321 Löcknitz
Germany

Email: info@oc1official.com
VAT ID: DE318393910

We will respond to your inquiry as soon as possible, typically within 24-48 hours during business days.

To Top