Legal notice & privacy policy

Legal notice

SkinTools AG
Staldenhof 13
6014 Luzern

041 784 17 55
info@skintools.ch
www.skintools.ch

Commercial register: CH-150.3.004.591-2 (excerpt), CHE-466.113.559 VAT

Onlineshop by medani

USE OF PERSONAL DATA

a) What personal data we process

SkinTools AG collects and processes personal data that you provide or that is generated through your use of our online shop or through other contact with us, for example:

Personal data:

  • First and last name

  • Address (shipping and billing address)

  • Phone number(s)

  • Date of birth and age

  • Gender

  • Language preferences

  • Customer account information

Order and payment information:

  • Credit card and bank account details

  • Shopping cart info (including order date/time, type, quantity and value of products, abandoned carts, order history, etc.)

  • Payment details (used payment method, payment provider, invoice date, payment behavior, info on any reminders or collection processes, etc.)

  • Info about newsletters and ads you've subscribed to

  • Customer account info (you’ll find an overview under "My Account" in the online shop)

  • Customer service info (contacts, complaints, returns, etc.)

  • Support info (requests, questions, helpdesk chats/interactions)

Usage-specific information

SkinTools AG also collects and processes the IP address of your device and usage data created during your visit to our online shop. This includes date and time of your visit, search terms, and your preferences.
We also collect other personal data when needed – for example to respond to inquiries or manage the business relationship. These are stored, used, transferred, archived, and deleted in line with legal requirements.

b) Contact – Why we use your personal data

When you contact us via our channels (e.g. email, phone or contact form), we process the personal data you provide – such as your company name, your name, your role, email address, phone number, and your message. We also log the time your request reaches us.

We use this data only to handle your request (e.g. give you product info, help with an order or return, or use your feedback to improve our service).
The legal basis is our legitimate interest (Art. 6(1)(f) GDPR) – or the necessity of pre-contractual or contractual steps (Art. 6(1)(b) GDPR) if your request relates to an agreement.

c) Who we share your personal data with

SkinTools AG relies on the support of other companies to deliver services in the way you expect. To work with these partners, we sometimes need to share your personal data. This happens especially when it’s necessary to fulfill a contract – like sharing your data with shipping providers or manufacturers to process deliveries or warranty claims.
The legal basis for this is the necessity of contract performance under Art. 6(1)(b) GDPR.

We also share data with selected service providers – but only as far as it’s necessary for their specific service. Some third-party providers are mentioned directly in this privacy policy, especially in the marketing sections. Other examples include IT providers (like software vendors), advertising agencies, or consultants.
This is based on our legitimate interest under Art. 6(1)(f) GDPR.

Your data may also be shared with authorities, lawyers, or collection agencies if we are legally required to do so, or if it’s necessary to protect our rights – for example, to enforce claims related to you.
If another company wants to acquire SkinTools AG (or parts of it), your data may also be shared for due diligence or to complete the deal. The legal basis in such cases is our legitimate interest in fulfilling our legal and contractual obligations under Art. 6(1)(f) GDPR.

d) Transfer of personal data abroad

SkinTools AG may transfer your personal data to third parties located abroad if it’s necessary for the data processing activities described in this privacy policy. Of course, we comply with all legal requirements for transferring personal data to third countries.

If the destination country does not offer an adequate level of data protection, SkinTools AG ensures, through contractual safeguards, that your data is properly protected at those companies.

e) Data retention periods

SkinTools AG stores your personal data only as long as needed to carry out the processing described in this policy, based on legitimate interests. Contract-related data is subject to mandatory retention periods under accounting and tax laws. These rules require us to retain business communications, contracts, and financial records for up to ten years.

Once SkinTools AG no longer needs your data for services, it is blocked. That means the data will only be accessed if required for legal compliance or the defense of legal claims. The data will be deleted as soon as there is no further legal obligation or legitimate reason to retain it.

Google Analytics

SkinTools AG and the web domain skintools.ch use the web analytics service Google Analytics by Google Ireland Limited (Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland) or Google LLC (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA) (“Google”). The data described regarding your use of the website may be transferred to Google LLC’s servers in the USA for the processing purposes described (see section 13.1). The IP address is anonymized on this website before being transmitted within the Member States of the European Union or in other contracting states of the European Economic Area Agreement by activating IP anonymization (“anonymizeIP”). Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there.

You can prevent the collection of data generated by the cookie and related to your use of the website (including your IP address) as well as the processing of this data by Google by downloading and installing the browser plugin available at the following link:
http://tools.google.com/dlpage/gaoptout?hl=en

You can find more information about data protection at Google here.

Cookies

Cookies are information files that your web browser stores on the hard drive or in the memory of your computer when you visit skintools.ch. Cookies are assigned identification numbers that allow your browser to be recognized and the information stored in the cookie to be read.

Cookies help make your visit to skintools.ch easier, more pleasant, and more useful. We use cookies for various purposes that are necessary for the use of the website you request – i.e., “technically necessary.” For example, we use cookies to recognize you as a registered user after login so you don’t have to log in again on each subpage. The shopping cart and order functions also rely on cookies. Cookies also perform other technical functions necessary for the website to work – like load balancing, which distributes server load across multiple web servers to ease the load. Cookies are also used for security purposes, for example, to prevent unauthorized posting of content. Finally, we also use cookies for the design and development of our website – e.g., to enable script or code uploads.

The legal basis for this data processing is our legitimate interest under Art. 6 para. 1 lit. f GDPR in providing a user-friendly and modern website.

Most web browsers accept cookies automatically. However, when you access our website, we ask for your consent to use technically non-essential cookies, especially when using third-party cookies for marketing purposes. You can configure your desired settings via the appropriate buttons in the cookie banner. Details about the services and data processing associated with each cookie can be found in the cookie banner and in the following sections of this privacy policy. For retargeting and banner advertising, we use third-party services that place cookies on our site. These include:

Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA
https://www.facebook.com/about/privacy/

You can also configure your browser to prevent cookies from being stored on your computer or to always notify you when a new cookie is placed. You can find instructions for selected browsers here:

Google Chrome
Apple Safari

Disabling cookies may mean that you cannot use all the features of our website.

Social Media

On our website, we have included links to our profiles on the social networks of the following providers:

  • Meta Platforms Inc., 1601 S California Ave, Palo Alto, CA 94304, USA
  • Instagram Inc., 1601 Willow Road, Menlo Park, CA 94025, USA

When you click on the icons of the social networks, you are automatically redirected to the SkinTools profiles on the respective network. A direct connection is established between your browser and the server of the social network. This means the network receives the information that you visited our website with your IP address and clicked the link.

If you click a link to a network while logged into your account on that network, the content of our website may be linked to your profile, allowing the network to associate your visit to our site directly with your account. If you want to avoid this, log out of your social media account before clicking the relevant links. A link between your access to our website and your account is established in any case if you log in after clicking the link. The respective provider is responsible for any data processing that results. Please refer to the data protection information on the network's website.

The legal basis for any data processing that may be attributed to us is our legitimate interest under Art. 6 para. 1 lit. f GDPR in the use and promotion of our social media profiles.

Social Media Plugins

On our website, you can use social plugins from the following providers:

Meta Platforms Inc., 1601 S California Ave, Palo Alto, CA 94304, USA – You can find their privacy information on their website.

The domain skintools.ch uses social plugins to make it easier for you to share content from our website. The social plugins help us increase the visibility of our content on social networks and thus improve our marketing.

The plugins are disabled by default on our website and do not transmit any data to social networks when you simply access a page from the domain skintools.ch. To increase data protection, we have integrated the plugins in a way that no automatic connection with the networks’ servers is established. A connection is only made when you activate the plugin and thereby consent to the transmission and further processing of your data by the social networks. Your browser then establishes a direct connection to the server of the respective network.

The plugin content is transmitted directly by the social network to your browser and integrated by it into the website. This gives the provider the information that your browser has accessed the corresponding page of our site – even if you don't have an account with that network or aren't logged in. This information (including your IP address) is transmitted directly by your browser to the provider's server (usually in the USA) and stored there. We have no influence on the scope of the data collected by the provider via the plugin. From a data protection perspective, we may to some extent be considered jointly responsible with the providers.

If you are logged in to the social network, it can associate your visit to skintools.ch directly with your user account. If you interact with the plugins, the corresponding information is also transmitted directly to the provider’s server and stored there. This information (e.g., that you like a product from SkinTools AG) can also be published on the social network and shown to other users. The network provider can also use this information to serve ads and personalize content. For this, usage, interest and relationship profiles may be created – for example, to analyze your use of our site in relation to advertising shown, to inform others about your activities, or to offer other services related to the network.

For details on the purpose and scope of data collection and further processing and use by the providers, as well as your rights and settings to protect your privacy, please refer directly to the data protection notices of the respective networks.

If you do not want the social network provider to associate the data collected via our website with your user account, you must log out before activating the plugin. The legal basis for this data processing is your consent in accordance with Art. 6 para. 1 lit. a GDPR. You can withdraw your consent at any time by contacting the provider as described in their privacy policy.

Data protection and security

SkinTools AG implements appropriate technical and organizational security measures to protect your personal data stored with us from loss and unlawful processing – especially against unauthorized access by third parties. Our employees and any service providers we use are obliged to maintain confidentiality and comply with data protection regulations. These persons only have access to personal data to the extent required to fulfill their duties.

SkinTools AG’s security measures are continuously updated in line with technological developments. Nevertheless, transmitting information via the internet and other electronic means always carries certain risks – and we cannot guarantee absolute protection of information sent through these channels.

Log file data

When you visit our website, the servers at skintools.ch temporarily store each access in a log file. The following data is collected automatically and stored until it is deleted:

  • the IP address of the requesting computer,

  • the date and time of access,

  • the name and URL of the accessed file,

  • the website from which the access originated, possibly including search keywords,

  • the operating system of your computer and your browser (type, version, language),

  • the device type (if accessed via smartphone),

  • the city or region from which you accessed,

  • the name of your internet access provider.

This data is processed to enable the use of our website (connection setup), to ensure system security and stability, and for error and performance analysis – helping us continuously optimize our website.

In case of an attack on the website’s network infrastructure or suspected unlawful use, the IP address and other data may be analyzed for clarification and defense purposes, and may be used in legal proceedings to identify or take action against users.

These data processing operations are based on our legitimate interest under Art. 6(1)(f) GDPR.

We also use cookies, applications, and tools based on cookies during your visit. In this context, the data described above may also be processed. You can find more details in the next section.

Data collection owner

The data collection is owned by SkinTools AG, Staldenhof 8, 6014 Lucerne.

Data security

a) Security measures

SkinTools AG implements appropriate technical and organizational measures to protect your personal data from unauthorized processing and to ensure the confidentiality, availability, and integrity of your data. These measures particularly protect your personal data on SkinTools AG’s systems against the following risks:

Unauthorized or accidental destruction, accidental loss, technical errors, forgery, theft, unlawful use, and unauthorized alteration, copying, access, or other improper processing. Even when your data is shared with affiliated companies or service providers in Switzerland or abroad, SkinTools AG ensures proper protection and secure processing.

As a specific security measure, SkinTools AG uses SSL encryption (Secure Socket Layer) by default. When you place an order in our online shop, personal data is transmitted to us securely. SSL provides triple protection:

  • Your entries are encrypted during transmission,

  • The form is sent only to the server it was opened from,

  • It is verified that the data arrives completely and unchanged.

You can recognize SSL-protected areas by the padlock symbol in your browser. Secure connections also start with “https://”. Double-clicking the padlock shows you certificate details.

b) General risks

Please note that the internet is generally not considered a secure environment, and data transmitted online may be accessed by unauthorized third parties. This can lead to disclosure, data manipulation, or technical issues. Despite extensive technical and organizational security measures, it’s still possible for data to be lost, intercepted, or altered by unauthorized parties.

It’s your responsibility as a user to stay informed about necessary precautions and take appropriate action. If you send us confidential information, you do so at your own risk. If needed, we recommend contacting us via a secure communication channel instead of the internet.

c) Public posts

Any public posts (e.g., in forums or guestbooks) on our website are visible to everyone. Please check your contributions carefully before publishing to ensure they don’t contain private information. You should assume that such posts can be indexed by search engines and become accessible worldwide – even without direct access to our website. We accept no liability for how third parties may store, use, or distribute such content.

d) Harmful components

SkinTools AG accepts no responsibility and provides no guarantee that its website or components used while accessing the site are free of viruses, worms, trojans, or other harmful elements. SkinTools AG also declines all liability for manipulation of user systems by unauthorized parties. We explicitly point out the risk of targeted hacking attacks.

We recommend using up-to-date browsers and regularly updated antivirus software. Avoid opening emails from unknown senders or unexpected attachments.

Your rights

If the legal requirements are met, you have the following rights as a person affected by data processing:

Right of access:

You have the right to request free access at any time to the personal data we store about you, if we process it. This allows you to check which personal data we process and whether we use it in accordance with data protection laws.

Right to rectification:

You have the right to have inaccurate or incomplete personal data corrected and to be informed of the correction. Where applicable, we also notify recipients of the corrected data, unless this is impossible or would involve disproportionate effort.

Right to erasure:

You have the right to have your personal data deleted in certain cases. If legal retention requirements apply, the right to erasure may be excluded. In such cases – if the conditions are met – data will be blocked instead of deleted.

Right to restrict processing:

You may request that the processing of your personal data be restricted.

Right to data portability:

You have the right to receive the personal data you provided to us in a readable format, free of charge.

Right to object:

You may object to data processing at any time, especially when it involves direct marketing (e.g. promotional emails).

Right to withdraw consent:

You have the right to withdraw any consent you have given at any time. The withdrawal does not affect the lawfulness of processing based on your consent before its withdrawal.

To exercise your rights, please send us an email to: info@skintools.ch

Right to lodge a complaint:

You have the right to file a complaint with a competent supervisory authority if you disagree with how we process your personal data.

External links

Our website may contain external links. SkinTools AG is not responsible for the content or privacy policies of websites you access via these links. Please refer directly to those external sites for information on how they handle your data.

Bonus system
Loyalty pays off!

Skintools bonus account

With our free bonus program, you automatically earn 2% of your order value (excl. shipping) as credit. Redeem it on your next purchase or keep saving it up.

Product added as favorite