Last Updated: 01/01/2026
1. INTRODUCTION
At KOMBART EI, we take your privacy seriously. This privacy policy explains how we collect, use, disclose, and safeguard your information when you use our website www.highkeek.com (the "Site").
We comply with the European Union's General Data Protection Regulation (GDPR) and all applicable data protection laws.
Please read this privacy policy carefully. If you do not agree with our practices, please do not use our Site.
2. DATA CONTROLLER
Data Controller:
· Name: KOMBART EI
· Address: 13 cour Fernand Jaenger, 67200 Strasbourg, France
· Email: dpo@highkeek.com
Data Protection Officer (DPO):
· Email: dpo@highkeek.com
For any questions regarding our processing of your personal data, please contact us using the contact details above.
3. PERSONAL DATA COLLECTED
We collect different categories of personal data:
a) Identification and contact information:
· First and last name
· Email address
· Phone number
· Postal address (delivery and billing)
b) Payment information:
· Credit/debit card number (securely processed by our payment providers)
· Billing information
· Transaction history
c) Purchase-related information:
· Products purchased
· Purchase dates
· Prices paid
· Product preferences
d) Communication data:
· Content of our email correspondence
· Records of customer service requests
e) Technical data:
· IP address
· Browser type and operating system
· Pages visited and duration of visits
· Cookie and similar technology information
f) Location data:
· Approximate geolocation information (based on IP address)
4. COLLECTION SOURCES
We collect your personal data in several ways:
· Directly from you when you create an account, place an order, or fill out a form
· Automatically when you browse our Site (via cookies and similar technologies)
· From third-party payment and delivery providers
· When you communicate with our customer service
5. LEGAL BASIS FOR PROCESSING
We process your personal data on the following legal bases in accordance with Article 6 of the GDPR:
a) Consent (Article 6.1.a):
· For sending newsletters and marketing communications
· For the use of non-essential cookies
b) Contract performance (Article 6.1.b):
· Processing necessary to execute your order
· Management of your customer account
· Payment processing
c) Legal obligation (Article 6.1.c):
· Compliance with tax and accounting obligations
· Compliance with data protection legislation
d) Legitimate interests (Article 6.1.f):
· Fraud prevention and Site security
· Improvement of our services and user experience
· Statistical analysis and market research
· Communication regarding service issues
6. PURPOSES OF PROCESSING
We use your personal data for the following purposes:
a) Order management and delivery:
· Process and execute your order
· Confirm your purchase
· Organize delivery
· Process returns and refunds
b) Account management:
· Create and maintain your customer account
· Manage your profile
· Secure your account
c) Communication:
· Send you order confirmations and tracking information
· Respond to your customer service requests
· Contact you regarding issues related to your account or order
d) Marketing and commercial communications:
· Send you newsletters (with your consent)
· Offer you personalized promotions and special offers
· Analyze your purchase preferences to improve recommendations
e) Security and fraud prevention:
· Detect and prevent fraudulent activities
· Protect the rights, property, and security of KOMBART EI, our customers, and the public
· Enforce our terms and conditions and other agreements
f) Analysis and improvement:
· Analyze Site usage to improve our services
· Conduct market research and customer satisfaction studies
· Optimize Site content and functionality
g) Legal compliance:
· Comply with legal and regulatory obligations
· Respond to requests from competent authorities
7. DATA SHARING
We do not sell your personal data. We share your data only with the following categories of recipients:
a) Service providers:
· Payment processors (for processing bank cards)
· Delivery and logistics providers
· Web hosts and IT service providers
· Customer service providers
b) Business partners:
· Web analytics services
· Marketing service providers
c) Public authorities:
· When we are legally required to do so
· Upon request from competent authorities
d) Third parties in case of merger or acquisition:
· In case of sale, merger, or acquisition of KOMBART EI, your data could be transferred to the acquiring third party
All our service providers are bound by data processing agreements that guarantee compliance with GDPR and the confidentiality of your data.
8. DATA TRANSFERS OUTSIDE THE EU
Most of your data is processed within the European Union. If data transfers to countries outside the EU/EEA are necessary, we implement appropriate safeguards in accordance with GDPR:
· European Commission adequacy decisions
· Standard contractual clauses
· Binding corporate rules
For more information about international transfers, contact us at dpo@highkeek.com.
9. DATA RETENTION
We retain your personal data for as long as necessary to achieve the purposes for which it was collected:
Order and payment data:
· Retained for 6 years from the date of the last transaction (accounting and tax obligation)
Customer account:
· Retained as long as you have an active account
· Deleted upon your request
Marketing data:
· Retained until you unsubscribe from the newsletter
Technical data:
· Cookies: in accordance with your browser settings
· Server logs: retained for 12 months
Fraud data:
· Retained for the duration of applicable statute of limitations (3 to 5 years)
Upon expiration of the retention period, your data is permanently deleted or anonymized.
10. YOUR RIGHTS
In accordance with GDPR, you have the following rights:
a) Right of access (Article 15): You have the right to obtain a copy of your personal data.
b) Right to rectification (Article 16): You can correct your personal data if it is inaccurate or incomplete.
c) Right to erasure (Article 17): You can request the deletion of your personal data (right to be forgotten), subject to certain conditions.
d) Right to restrict processing (Article 18): You can request the restriction of processing of your data.
e) Data portability right (Article 20): You have the right to receive your data in a structured, commonly used format and to transfer it to another data controller.
f) Right to object (Article 21): You can object to the processing of your data for direct marketing purposes or legitimate interests.
g) Rights related to automated decision-making (Article 22): You have the right not to be subject to a decision based solely on automated processing.
How to exercise your rights:
To exercise any of these rights, contact us at:
· Email: dpo@highkeek.com
· Postal address: 13 cour Fernand Jaenger, 67200 Strasbourg, France
We will process your request within 30 days. For complex requests, we may extend this period by an additional two months.
11. DATA SECURITY
We implement appropriate security measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction:
· SSL/TLS encryption for secure connections
· Access control and authentication
· Firewalls and intrusion detection systems
· Regular backups
· Personnel training in data protection
· Confidentiality agreements with service providers
However, no security system is perfect. We cannot guarantee absolute security of your data.
12. COOKIES AND SIMILAR TECHNOLOGIES
Our Site uses cookies and similar technologies. Please refer to our Cookies Policy for more information about:
· The types of cookies used
· Their purposes
· How to manage your cookie preferences
Cookie categories:
· Essential: Necessary for Site functionality
· Functional: Enhance your experience
· Analytical: Help us understand how you use the Site
· Marketing: Enable personalized advertising
You consent to non-essential cookies by continuing to use the Site. You can modify your preferences at any time through our consent manager.
13. MARKETING COMMUNICATIONS
We would like to send you information about our products, services, and special offers.
Email marketing:
· We will send you a newsletter only with your explicit consent
· You can unsubscribe at any time by clicking the unsubscribe link
· You can also contact dpo@highkeek.com to unsubscribe
Transactional communications:
· Order confirmations and tracking information do not require your consent as they are essential for executing your contract
Personalized advertising:
· Based on your consent and our legitimate interests
· You can object at any time
14. CHILDREN
Our Site is not intended for children under 16 years of age. We do not knowingly collect personal data from children under 16 years of age. If we discover that we have collected data from a child under 16, we will delete it immediately. If you become aware of such collection, please contact us at dpo@highkeek.com.
15. DATA BREACH NOTIFICATIONS
In the event of a data breach likely to present a risk to your rights and freedoms, we will inform you without undue delay and within 72 hours of discovery of the breach, unless the breach presents no particular risk.
We will also inform the data protection authority (CNIL in France) within the timeframes required by GDPR.
16. EXTERNAL LINKS
Our Site may contain links to third-party websites. This privacy policy applies only to our Site. We are not responsible for the privacy practices of these third-party sites. Please review their privacy policies before sharing your personal information.
17. MODIFICATIONS TO THIS POLICY
We may modify this privacy policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of any significant changes by email or by a notification on our Site.
Your continued use of the Site after publication of modifications means you accept the changes.
18. CONTACT
If you have any questions, concerns, or requests regarding this privacy policy or our personal data practices, please contact us:
KOMBART EI
· Address: 13 cour Fernand Jaenger, 67200 Strasbourg, France
· Email: dpo@highkeek.com
· General email: contact@highkeek.com
Data Protection Officer (DPO):
· Email: dpo@highkeek.com
Data Protection Authority: If you are in France:
· CNIL (National Commission for Data Protection and Freedoms)
· Address: 3 Place de Fontenoy, 75007 Paris, France
· Website: www.cnil.fr
If you are in another EU country, you can contact your country's data protection authority.