1. Who is responsible for your data?

The party responsible for data processing on this website is:

My First Book Europe GmbH

Managing Director: Jona Lim

Simrockstr. 88,

40235 Düsseldorf

Email: jona@myfirstbookmall.com

Phone: +49 (0) 152 23111123

2. What data do we collect and why?

a) When visiting the website (server log files) As soon as you visit our site, your browser automatically transmits data (IP address, date/time, browser type).

  • Purpose: stability and security of the website.

  • Legal basis: legitimate interest (Art. 6 (1) (f) GDPR).

b) When placing an order We collect your name, email, address, phone number and your chosen payment method.

  • Purpose: performance of the contract (shipping your books, payment processing).

  • Legal basis: Art. 6 (1) (b) GDPR.

c) Newsletter & contact If you sign up for our newsletter or write to us, we store your email address.

  • Legal basis: your consent (Art. 6 (1) (a) GDPR). You can withdraw it at any time.

3. Who receives your data? (Disclosure to third parties)

We never sell your data. We only pass it on when it is necessary for your purchase:

  • Shopify: our shop system. Shopify processes data on our behalf (a data processing agreement is in place).

  • Shipping partners: so that DHL, UPS or Hermes know where to deliver your parcel.

  • Payment service providers: your payment data is processed directly by the providers (PayPal, Stripe, Amazon Pay, etc.). We do not have access to your full credit card details.

4. Cookies & analysis tools

We use cookies to make the shop functional (e.g. the shopping cart) and to learn how we can improve.

  • Google Analytics & Facebook Pixel: these tools help us improve our advertising. They are only activated once you have consented in the cookie banner.

  • Objection: you can change your settings at any time via the small icon at the bottom left of the page, or delete cookies in your browser.

5. Data transfer to third countries (e.g. USA)

Through the use of Shopify, Google or Facebook, data may be transferred to countries outside the EU (e.g. the USA). For this, we use the standard contractual clauses of the EU Commission to ensure a high level of protection.

6. How long do we store your data?

We only store your data for as long as is necessary for the purposes:

  • Orders: 10 years (statutory retention period for accounting records).

  • Enquiries: until final clarification.

  • Newsletter: until you unsubscribe.

7. Your rights – you are in control!

You have the right at any time to:

  • Access: what do we know about you?

  • Rectification: correction of incorrect data.

  • Erasure: we remove your data (provided there is no statutory retention obligation).

  • Objection: you can object to the processing.

  • Complaint: you can complain to the competent supervisory authority: State Commissioner for Data Protection and Freedom of Information of North Rhine-Westphalia (LDI NRW).

8. Data security

Your connection to us is secured by SSL encryption. We use state-of-the-art technical measures to protect your data from unauthorised access.