Privacy Policy of the You-Nick.pl Online Store
Effective date: 16 March 2026
§1. Data Controller
- The controller of personal data is You-Nick sp. z o.o. ul. Ślężna 148 53-111 Wrocław, Poland KRS 0000417827 Tax ID (NIP) 8992735469
-
Contact the Controller:
email: contact@you-nick.pl
phone: +48 506 746 648 - Personal data is processed in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR).
§2. Purposes and legal grounds for data processing
Personal data is processed for the following purposes:
1. Order fulfilment
- purpose: accepting and fulfilling orders, delivering products, processing payments and returns
- legal basis: Article 6(1)(b) GDPR
-
scope of data:
- first and last name
- delivery address
- email address
- phone number
- company details (for business customers)
2. Legal obligations
- purpose: maintaining accounting and tax records
- legal basis: Article 6(1)(c) GDPR
3. Complaints and claims
- purpose: handling complaints and establishing, pursuing or defending claims
- legal basis: Article 6(1)(f) GDPR
4. Customer account
- purpose: maintaining the customer account and providing access to order history
- legal basis: Article 6(1)(b) GDPR
5. Newsletter and marketing communications
- purpose: sending commercial and marketing information
- legal basis: Article 6(1)(a) GDPR
6. Direct marketing and analytics
- purpose: analysing user behaviour and personalising marketing content
- legal basis: Article 6(1)(f) GDPR
§3. Recipients of data
Data may be shared with the following categories of recipients:
- the Shopify e-commerce platform
- payment providers (Shopify Payments, Stripe, Klarna)
- courier companies (including InPost and DPD)
- IT and hosting service providers
- marketing technology providers
- accounting service providers
§4. Analytics and marketing tools
The Store uses the following tools:
- Meta Pixel – to analyse the effectiveness of advertising on Facebook and Instagram
- Klaviyo – for newsletter delivery and marketing communications
- Microsoft Clarity – to analyse user behaviour on the website
- Google Analytics – for visitor statistics
- Shopify Analytics – for sales analytics
§5. Virtual try-on (AnyTry)
- The Store provides a virtual try-on feature that can generate a visualisation of how frames may fit based on a photograph of the user.
- To use the feature, the user may take or upload a photograph of their face.
- The photograph is processed solely to generate the try-on visualisation.
- User photographs are not used to train artificial intelligence models or for any other marketing purpose.
- Photographs are not stored for longer than is necessary to generate the visualisation.
- The visualisation is illustrative only and is intended solely to support the purchase decision.
§6. Data retention periods
- order data – up to 5 years
- customer account data – until the account is deleted
- marketing data – until consent is withdrawn
- data relating to claims – until the relevant limitation period expires
§7. User rights
Every data subject has the right to:
- access their data
- rectify their data
- erase their data
- restrict processing
- data portability
- object to processing
- withdraw consent
The user also has the right to lodge a complaint with the President of the Polish Personal Data Protection Office (UODO).
§8. Server logs
When the website is used, connection information may be recorded, including the IP address, date of visit, browser type and the user’s operating system.
This data is used solely for technical purposes and system security.
§9. Cookies
The Store uses cookies to:
- maintain the user session
- enable the shopping cart to function
- analyse website traffic
- personalise marketing content
The Store may use, among others:
- Shopify cookies
- Google Analytics cookies
- Meta Pixel cookies
- Microsoft Clarity cookies
- AnyTry cookies (anytry_session, anytry_consent)
Cookies may be stored for up to 365 days.
§10. Transfers of data outside the EEA
In connection with the use of the Shopify platform and marketing tools, data may be transferred outside the European Economic Area.
Such transfers are based on standard contractual clauses approved by the European Commission.
§11. Data security
The Controller applies appropriate technical and organisational measures to protect personal data, including SSL encryption and restricted access to data.
§12. Final provisions
- The Controller may amend this Privacy Policy.
- The current version of the document is always available on the Store website.