Privacy Policy
Privacy Policy – Triva (www.trivafit.com)
1. Introduction & Scope
This Privacy Policy explains how Triva (“we”, “us”, “our”) collects, uses, and protects your personal data when you use www.trivafit.com and purchase our products.
We comply with the General Data Protection Regulation (GDPR) (EU) 2016/679 and other applicable data protection laws.
Because we serve customers in the European Union, GDPR rules apply even when data is processed or transferred outside the EU, including to the United States.
2. Data Controller
The data controller is Triva, based in the Netherlands.
For any questions about this Privacy Policy or your personal data, you can contact us at:
support@trivafit.com
3. Personal Data We Collect
We collect the following categories of personal data:
- Order and contact details: name, email address, phone number, billing and shipping address.
- Payment details: handled securely by our payment providers (we do not store full card numbers).
- Technical data: IP address, browser type, device information, and browsing behavior on our site.
- Marketing data: newsletter subscriptions and marketing preferences (only with your consent).
4. Purposes and Legal Bases
We process your data only when legally permitted:
- Contractual necessity: to process your orders, accept payment, and deliver your products.
- Consent: for sending newsletters, promotional emails, and for non-essential cookies.
- Legitimate interests: to improve our website, prevent fraud, and personalize the user experience.
- Legal obligations: to comply with tax, accounting, and legal record-keeping requirements.
5. Cookies & Tracking
We use cookies and similar technologies on our website.
- Essential cookies: required for site functionality such as shopping cart and checkout. These do not require consent.
- Analytical cookies: help us understand how visitors use our site, for example through Google Analytics. Used only with your consent.
- Marketing cookies: used for advertising and retargeting, such as Facebook Pixel. Used only with your consent.
When you first visit our site, a cookie banner will ask you to accept or manage your preferences. You can change or withdraw your consent at any time via the cookie settings on our website.
6. International Data Transfers
Some of your data may be transferred outside the European Economic Area (EEA), for example to service providers in the United States.
We ensure appropriate safeguards such as:
- Standard Contractual Clauses (SCCs) approved by the European Commission.
- The EU–US Data Privacy Framework where applicable.
- These measures ensure that your data remains protected according to EU standards.
7. Sharing with Third Parties
We share data only with trusted third parties, and only when necessary:
- Payment providers to process your payments.
- Fulfillment and logistics partners to prepare and ship your orders.
- Postal and courier services for delivery.
- Email service providers to send newsletters if you have subscribed.
- Analytics providers to improve our site (only with consent for cookies).
All third parties are bound by GDPR-compliant agreements and may only process your data under our instructions.
8. Data Retention
We keep your data only as long as necessary:
- Order and billing data: up to 7 years to meet legal obligations.
- Newsletter subscriptions: until you unsubscribe or withdraw consent.
- Analytics data: up to 26 months, unless you withdraw consent earlier.
9. Data Security
We implement appropriate technical and organizational measures to protect your data, including:
- SSL/TLS encryption for all website traffic.
- Restricted access to personal data on a need-to-know basis.
- Regular software updates, firewalls, and monitoring.
10. Your Rights
Under GDPR, you have the following rights:
- Access to your personal data.
- Correction of inaccurate or incomplete data.
- Deletion of your data (“right to be forgotten”).
- Restriction of processing.
- Data portability to receive your data in a structured format.
- Objection to processing based on legitimate interests or marketing.
- Withdrawal of consent at any time where consent was given.
To exercise your rights, contact us at support@trivafit.com.
You also have the right to file a complaint with your local supervisory authority. In the Netherlands, this is the Autoriteit Persoonsgegevens: autoriteitpersoonsgegevens.nl.
11. Children
Our website and products are not directed to children under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact support@trivafit.com so we can delete it.
12. Automated Decision-Making
We do not use decisions based solely on automated processing, including profiling, that produce legal effects or significantly affect you.
13. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The latest version will always be available at www.trivafit.com/privacy-policy
14. Contact
If you have any questions about this Privacy Policy or the way we handle your personal data, contact us at:
support@trivafit.com