Privacy policy
Reform Group Holding ApS
1. Data controller
When you visit our website or interact with us as described in this privacy policy, Reform Group Holding ApS, Otte Busses Vej 5, 2450 København SV is the data controller and processes your personal data as described in this policy.
2. We process your personal data
2.1 Private customers
When you purchase our products, we process your personal data to provide the best service to you. This includes:
- Name, address, contact information, credit card and billing information, and details about your old and new interior design, as per Article 6(1)(f) of the GDPR.
- Personal data will only be shared when necessary to provide our service (e.g., to suppliers or business partners). We may disclose your personal data to relevant suppliers, business partners, group companies, and data processors.
We retain your personal data for a period of 7 years after your purchase to comply with applicable law and improve our services.
2.2 Users of our website
When you use our website and accept cookies, we process your personal data for various purposes, including marketing, statistics, and development:
- IP address, pages visited, and products viewed or purchased, based on Article 6(1)(a) and (f) of the GDPR.
- If you consent to third-party cookies, we share information with platforms like Meta (Facebook), Pinterest, Twitter, and LinkedIn for marketing purposes and to measure the effectiveness of our campaigns. These third parties act as joint data controllers under Article 26 of the GDPR.
We only share data if necessary for our marketing and analytics purposes. No personal data, including mobile information, will be shared for marketing purposes without your explicit consent.
Retention: We process your data as long as the cookies are active, or until you withdraw consent. For more details on cookies, visit our Cookie Policy.
2.3 Business Contacts (Partners & Service Providers)
We process personal data of business contacts for administrative and business communication purposes. This includes:
Name, job title, business contact information, and CRM-related data as per Article 6(1)(f) of the GDPR.
Your data will be shared only when necessary to deliver our services to your business.
2.4 Direct Marketing
If you subscribe to our newsletter or give consent for marketing purposes, we process the following data:
- Name, contact information, and product preferences, according to Article 6(1)(a) of the GDPR and the Danish Marketing Act.
- We share your data with our data processors for marketing activities only.
You may unsubscribe from our newsletters at any time via the “unsubscribe” option in the newsletter or by contacting us at Unsubscribe Page. We retain your data for 6 months after unsubscribing to document your consent, as required by the law.
2.5 Applicants
When you apply for a job, we process personal data related to your application:
- Name, contact information, job history, education, professional competences, photo, and other relevant information.
- Publicly available data, such as from LinkedIn or Facebook, may also be processed with your consent.
Sensitive Data: If you submit sensitive data (e.g., health information, CPR number), it is processed only with your explicit consent.
We retain application data for 6 months after the recruitment process unless otherwise agreed. If you give consent, we may retain your data for up to 12 months for future job openings.
3. Withdrawing Consent
You can withdraw your consent at any time by contacting us or following the instructions provided on our website, newsletters, or other communications. Withdrawal of consent will not affect the lawfulness of processing that occurred prior to the withdrawal..
In some cases, such as legal obligations, we may continue processing your personal data even after consent is withdrawn.
4. Transfer of Personal Data to Third Countries
We may transfer your personal data to countries outside the EU/EEA if necessary for processing. This will only happen if:
- The European Commission has assessed that the country provides adequate data protection (Article 45 of the GDPR), or
- We implement appropriate safeguards, such as standard contractual clauses (Article 46 of the GDPR).
5. Security Measures
We are committed to protecting your personal data and continuously assess risks related to its processing. Measures include:
- Preventing discrimination, identity theft, financial loss, or breaches of confidentiality.
- If a high-risk data breach occurs, we will notify you promptly.
6. Your Rights
As a data subject, you have the following rights:
- Right of Access: You may request a copy of your personal data.
- Right of Rectification: You may request the correction of inaccurate data.
- Right to Deletion: You may request the deletion of your data in certain circumstances.
- Right to Restriction of Processing: You may request that we limit processing.
- Right to Object: You may object to certain types of processing.
- Right to Data Portability: You may request to receive your personal data in a structured format and transfer it to another data controller.
Learn more about your rights at the Danish Data Protection Agency’s website: www.datatilsynet.dk.
7. Avenues of Complaint
If you believe your rights have been violated, you can file a complaint with the Danish Data Protection Agency. However, we encourage you to contact us first to resolve any issues.
The contact information and complaint procedures can be found at: www.datatilsynet.dk.