Last updated: APRIL 2021

The Future Rocks Company Limited (“The Future Rocks”, “we”, “us” or “our”) is the data controller (data user) (i.e., the entity that determines the means and purposes of processing personal data) for the purposes of applicable data protection laws.

This privacy policy (this “Policy”) describes our policies and procedures on the collection, use and disclosure of your information when you access this website (https://www.thefuturerocks.com) operated by us (this “Website”) and use the services we provide.   This Policy explains the types of personal data we collect; how we use that data; who we disclose it to; how we protect that data; and your legal rights.  "Personal data" means information that (either on its own or in combination with other information held by us) enables you to be identified as an individual or recognized directly or indirectly.

We use your personal data to provide and improve this Website and to provide and improve the services we provide via this Website.

The provision of your personal data is voluntary. By accessing this Website, you acknowledge that we will collect and use your personal data in accordance with this Policy.

Our representative in the European Union for the purpose of European Union data protection laws is First European Data Rep BV, a company registered in the Netherlands, with the registered address at Schiphol Boulevard 195, 1118 BG Schiphol and can be contacted at contact@thefuturerocks.com. Our data protection officer can be contacted at contact@thefuturerocks.com.

If you are a resident of California, please also see our Supplemental California Privacy Policy.

Collecting and Using Your Personal Data

1.1.  Types of Data Collected

1.1 (a)          Personal Data

You may give us personal data when you sign up for an account on our Website, place an order for products, complete any online forms (such as registration forms, competitions, and surveys), opt in to receive our newsletters and special offers, enter a competition or promotion, participate in social media functions via our Website, or correspond with us (by email, telephone, instant chat, social media or otherwise).

Depending on the service being provided or the particular function of the Website, this information can include your name, address or location, phone number and email address, date of birth, gender, purchase information, shopping preferences, images and financial information (including your credit or debit card details, although we do not hold them, our payment processors do).

If you register an account on this Website, then you may choose to give us your photograph and nickname. From your account, you can also invite your friends to shop at our Website (including by email, Facebook, or Twitter).

1.1 (b)         Usage Data

Usage data is data collected automatically, either generally by accessing this Website or from the Website infrastructure itself (for example, the duration of a page visit).

Usage data includes information such as your device's internet protocol address (IP address), browser type, browser version, the pages of this Website that you visit, the time and date of your visit, the time spent on those pages, unique device identifiers and other diagnostic data.

When you access this Website by or through a mobile device, we may collect certain information automatically, including, but not limited to, the type of mobile device you use, your mobile device unique ID, the IP address of your mobile device, your mobile operating system, the type of mobile internet browser you use, unique device identifiers and other diagnostic data.

We may also collect information that your browser sends whenever you visit this Website or when you access this Website by or through a mobile device.

1.1 (c)          Tracking Technologies and Cookies

We use cookies and similar tracking technologies ("Cookies") to track your activity on our Service and third party services and to store certain information. Tracking technologies used include beacons, tags, and scripts to collect and track information and to improve and analyze our Service.

You can instruct your browser to refuse all Cookies or to indicate when a Cookie is being sent. However, if you do not accept Cookies, you may not be able to use some parts of our Service.

For more information about the Cookies we use and your choices regarding Cookies, please visit our Cookies Policy.

1.2.  How We Use Your Personal Data

We may use your personal data we collect from and about you for a variety of purposes and (where required by applicable law) based on one or more legal justifications, as set out below:

Purpose

Information

Justification

We will retain and evaluate information on your recent visits to our Website and how you move around different sections of our Website for analytics purposes to understand how people use our Website so that we can maintain it and make it more intuitive. In order to do so, we may also set performance cookies in accordance with our Cookies Policy.

IP address

Browser type and version

Device / browser identifier, cookie ID, location

Operating system and platform, page response times, and download errors

Length of visits to certain pages, page interaction information (such as average session duration, scrolling, clicks, and mouseovers) and methods used to browse away from the page

In relation to cookies, your consent. You can withdraw your consent at any time, see Your Privacy Rights below.

In relation to improving our Website, legitimate interests in improving the Website and Services.

 

To manage your account as a user of the Website. The personal data you provide can give you access to functionalities of this Website that are available to registered users.

Name, age, email address, phone number.

Performance of a contract with you for the provision of the Website or Services.

To contact you by email, telephone call, SMS, or other equivalent forms of electronic communication, such as a mobile application's push notifications regarding updates or informative communications related to the functionalities, products or Services that we provide to you, including security updates, when necessary or reasonable for their implementation.

Name, age, email address, phone number, social media account profile names.

Performance of a contract with you for the provision of the Website or Services.

To provide you with news, special offers and general information about other goods, services and events which we offer that are similar to those that you have already purchased or enquired about and only in relation to the Classes of Marketing Subjects (as defined below) unless you have opted not to receive such information.

Name, age, email address, date of birth, gender, social media account profile, name and pictures,.

Your consent. You can withdraw your consent at any time, see Your Privacy Rights below. Please also see the Direct Marketing section below.

 

To provide you with the Services we offer, including processing of payments, shipping of products, attending to returns and refunds and (in relation to date of birth) additional features of the Website such as the astrology function.

Name, date of birth, email address, phone number, the content of your communications with us.

Performance of a contract with you.

To provide customer support and attend and manage your requests to and communications with us, whether via the Website, social media, email or phone.

Name, age, email address, phone number, the content of your communications with us.

Performance of a contract with you.

To provide you with advertising on the Website that we believe would be of interest to you based on your browsing behaviour and preferences.

Cookie ID, social media account profile, name and pictures, age range.

Your consent. You can withdraw your consent at any time, see Your Privacy Rights below.

 

1.3.  Direct Marketing

We intend to use your personal data (name, email address, social media account profile, name and pictures, age range) to send you marketing information in relation to goods and services that may be of interest to you, namely jewelry, clothing, apparel, footwear, fashion, events, artisanal products ("Classes of Marketing Subjects").

We require your consent to use your data for these purposes. You may withdraw your consent to direct marketing at any time by clicking on the "unsubscribe" link in any electronic message or by contacting us at contact@thefuturerocks.com.

We do not transfer your personal data to others for gain.

1.4.  How We Disclose Your Personal Data

We may disclose your personal data in the following situations:

  • to service providers: to function properly, we rely on a number of carefully selected third parties to provide us with services and products. We permit these companies to use/process your personal data only to the extent necessary to provide us with their services and products. Below you can find the types of third parties we use:

    • Brands that advertise and sell their products on our Website.

    • Courier companies, that we use in order to deliver the products to you and, as such, they need to have access to your order information, including your name and address. These providers have a global outreach, with many local companies that can be engaged depending on your shipping address.

    • Payment providers that we use to process your payment information (including your credit/debit card details) so that we can collect payment from you. These are based in the European Union and United States and are engaged depending on your location.

    • Anti-fraud and credit check providers to keep us and you secure. They have access to and process your information and associated orders in order to check for any fraudulent behavior. Our current providers are based in the United States, Europe and Israel.

    • Customer service management providers, which allow us to provide you our customer service and improve and manage your customer experience.

    • Analytics and search engine providers, like Google, that we use to assist us in the improvement and optimization of the website. These providers are based in the United States and in Europe.

    • Marketing tools providers that help us to enable our marketing. These providers are based in the United States.

    • Performance marketing providers that help us deliver advertising of The Future Rocks tailored to your interests and needs. These providers are based in Europe and in the United States.

    • Research companies that we can engage to help us carry out surveys regarding your use of our Website and Services. These providers are mostly based in Europe or in the United States.

    • IT/technology providers that we use to support, maintain and provide our technology and IT infrastructure that supports our Website and the storage of your information. This includes Amazon Web Services, which we use to host your information and that it is based in the United States.

  • Business transfers: we may disclose or transfer your personal data in connection with, or during negotiations of, any merger, sale of Company assets, financing, or acquisition of all or a portion of our business to another company.

  • Affiliates: we may disclose your information to our affiliates, in which case we will require those affiliates to honor this Policy. Affiliates include our parent company and any other subsidiaries, joint venture partners or other companies that we control or that are under common control with us.

  • Business partners, including Brands: we may disclose your information to our business partners to offer you certain products, services or promotions.

  • Other users: when you disclose personal data to or otherwise interact in the public areas with other users, such information may be viewed by all users and may be publicly distributed outside. If you interact with other users or register through a third-party social media service, your contacts on the third-party social media service may see your name, profile, pictures and description of your activity. Similarly, other users will be able to view descriptions of your activity, communicate with you and view your profile.

1.5.  Retention of Your Personal Data

We will retain your personal data only for as long as is necessary for the purposes set out in this Policy. We will retain and use your personal data to the extent necessary to comply with our legal obligations (for example, if we are required to retain your data to comply with applicable laws), resolve disputes, and enforce our legal agreements and policies.

We will also retain usage data for internal analysis purposes. Usage data is generally retained for a shorter period of time, except when this data is used to strengthen the security or to improve the functionality of our Website, or we are legally obligated to retain this data for longer time periods.

1.6.  Transfer of Your Personal Data Overseas

Your information, including personal data, is processed at our operating offices and in any other places where the parties involved in the processing are located. It means that this information may be transferred to — and maintained on — computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from your jurisdiction.

We will take all steps reasonably necessary to ensure that your personal data is treated securely and in accordance with this Policy and no transfer of your personal data will take place to an organization or a country unless there are adequate controls in place including the security of your data and other personal data.

1.7.  Disclosure of Your Personal Data

1.7 (a)          Business transactions

If we are involved in a merger, acquisition or asset sale, your personal data may be transferred to the successor in title to the business.

1.7 (b)          Law enforcement

Under certain circumstances, we may be required to disclose your personal data if required to do so by law or in response to valid requests by public authorities (e.g. a court or a government agency).

1.7 (c)          Other legal requirements

We may disclose your personal data in the good faith belief that such action is necessary tocomply with a legal obligation.

1.8.  Security of Your Personal Data

We strive to ensure that your personal data will be protected against unauthorized access.  Although we will do our best to protect and secure your personal data, we cannot guarantee the security of your personal data transmitted over the internet or any telecommunications networks.

2.   Your Privacy Rights

Depending on the territory in which you reside, you have various rights in connection with our processing of your personal data, each of which is explained below. If you are resident in the European Union or the United Kingdom, all of the below rights apply. However, if you do not reside there, you may have some, but not all, of these rights. For example, if you are in Hong Kong, you have the right to access to information that we hold about you, and to have it rectified if it is inaccurate. You also have the right to withdraw your consent to direct marketing, if you have previously given your consent. If you are resident in Japan, you have all of the rights listed below other than those listed under "Portability" and "Objection".

If you wish to exercise one or more of the above rights, or you have any queries about our data collection and processing practices, please contact our Data Protection Officer with your request at contact@thefuturerocks.com, and include your name, email and postal address, as well as your specific request and any other information we may need in order to provide or otherwise process your request.

Access. You have the right to request a copy of the personal data we are processing about you, which we will provide back to you in electronic form. For your own privacy and security, we may require you to prove your identity before providing the requested information.

Rectification. You have the right to have incomplete or inaccurate personal data that we process about you rectified.

Deletion. In certain circumstances, you have the right to request that we delete personal data that we process about you, except we are not obligated to do so if we need to retain such data in order to comply with a legal obligation or to establish, exercise or defend legal claims.

Restriction. You have the right to restrict our processing of your personal data where you believe such data to be inaccurate, our processing is unlawful or that we no longer need to process such data for a particular purpose, but where we are not able to delete the data due to a legal or other obligation or because you do not wish for us to delete it. In such case, we would mark stored personal data with the aim of limiting particular processing for particular purposes in accordance with your request, or otherwise restrict its processing.

Portability. You have the right to obtain certain personal data we hold about you, in a structured, electronic format, and to transmit such data to another data controller, where this is (a) personal data which you have provided to us, and (b) if we are processing that data on the basis of your consent (such as for direct marketing communications) or to perform a contract with you (such as to manage your online account).

Objection. Where the legal justification for our processing of your personal data is our legitimate interest, you have the right to object to such processing on grounds relating to your particular situation. We will abide by your request unless we have compelling legitimate grounds for the processing which override your interests and rights, or if we need to continue to process the data for the establishment, exercise or defence of a legal claim.

Objection to direct marketing. You have the right to object to your personal data being used for direct marketing purposes at any time, free of charge. If you would like to object to your personal data being used for direct marketing purposes, please contact us at contact@thefuturerocks.com.

Withdrawing consent. If you have consented to our processing of your personal data, you have the right to withdraw your consent at any time, free of charge. If you would like to withdraw consent, including if you would like to opt out of receiving marketing correspondence from us, please contact us at contact@thefuturerocks.com or for marketing follow the unsubscribe instructions located in the email (as relevant). Please understand that if you opt out of receiving promotional correspondence from us, we may still contact you in connection with your online account, relationship, activities, transactions and communications with us. Additionally, if you do request that we stop sharing your personal data with third parties for their direct marketing purposes, it is also prudent you opt out from or contact that third party directly.

Make a Complaint. You have the right to lodge a complaint with the local data protection authority if you believe that we have not complied with applicable data protection laws.

3.   Links to Other Websites

Our Website may contain links to other websites that are not operated by us. If you click on a third party link, you will be directed to that third party's site. We strongly advise you to review the privacy policy of every site you visit.

We have no control over and assume no responsibility for the content, privacy policies or practices of any third party sites or services.

4.   Changes to this Policy

We may update this Policy from time to time. We will notify you of any changes by posting the new privacy policy on this page.

We will let you know via email and/or a prominent notice on this Website, prior to the change becoming effective and update the "Last updated" date at the top of this Policy.

You are advised to review this Policy periodically for any changes. Changes to this Policy are effective when they are posted on this page.

5.   Contact Us

If you have any questions about this Policy, you can contact us by email: contact@thefuturerocks.com.

6.   Translation

In the event of any discrepancy or inconsistency between the English and other local language versions of this Policy, the English version will prevail.

 

Country and Territory-Specific Provisions

Supplemental California Privacy Policy

In this Supplemental California Privacy Policy, we disclose information about our data processing practices as required by the California Consumer Privacy Act of 2018 (“CCPA”). We address these disclosures to residents of the State of California only. This Supplemental California Privacy Policy does not reflect our collection, use or disclosure of California residents’ personal data where an exception under the CCPA applies.

  1. Right to Know about Personal Data Collected, Disclosed or Sold

You have the right to request that we disclose what personal data we collect, use, disclose and sell about you specifically (“right to know”). To submit a request to exercise the right to know, please submit an email request to contact@thefuturerocks.com and include “California Request to Know" in the subject line. Please specify in your request the details you would like to know, including any specific pieces of personal data you would like to access.

We will ask that you provide certain information to verify your identity. The information that we ask you to provide to verify your identity will depend on your prior interactions with us and the sensitivity of the personal data at issue. We will respond to your request in accordance with the CCPA. If we deny your request, we will explain why.

  1. Our Personal Data Handling Practices over the Past 12 Months

We have set out below categories of personal data we have collected about California residents in the preceding 12 months. For each category of personal data we have collected, we have included the reference to the enumerated category or categories of personal data in California Civil Code § 1798.140(o)(1) that most closely describe such personal data.

 

  Category of personal information 

Corresponding reference to category of personal information under CCPA definition of personal information (Cal. Civ. Code § 1798.140(o)(1)) 

IP address

(A) Identifiers such as IP address 

Browser type and version

(F) Internet or other electronic network activity information

Device / browser identifier

(A) Identifiers such as unique personal identifiers

Cookie identifier

(A) Identifiers such as unique personal identifiers

Location

(G) Geolocation data

Operating system and platform

(F) Internet or other electronic network activity information

Page response times, download errors, length of visits to certain pages, page interaction information (such as average session duration, scrolling, clicks, and mouseovers) and methods used to browse away from the page

(F) Internet or other electronic network activity information, including, but not limited to, browsing history, search history, and information regarding a consumer’s interaction with an internet website, application, or advertisement 


We collect such information from you or your device. We use your personal data for the purposes set forth in the section of our Privacy Policy entitled “How We Use Your Personal Data.”


In the past 12 months, we disclosed the above categories of personal data to our affiliated and unaffiliated service providers, and potentially other parties (such as in connection with legal compliance purposes or business transfers), as described in the section of our Privacy Policy entitled “Disclosure of Your Personal Data”. If you direct us to disclose your personal data to other specified third parties, we may disclose information about you with these third parties for the purposes described in your directions.


We do not sell, and in the preceding 12 months did not sell, California residents’ personal data. We do not have actual knowledge that we sell the personal data of minors under 16 years of age.

C. Right to Request Deletion of Personal data


You have a right to request the deletion of personal data that we collect or maintain about you. To submit a request to delete personal data, please submit an email request to contact@thefuturerocks.com and include “California Request to Delete” in the subject line. Please specify in your request the personal data about you that you would like to have deleted, which can be all of your personal data as required by the CCPA.


We will ask that you provide certain information to verify your identity. The information that we ask you to provide to verify your identity will depend on your prior interactions with us and the sensitivity of the personal data at issue. Once confirmed, we will respond to your request in accordance with the CCPA. If we deny your request, we will explain why.

  1. Right to Non-Discrimination for the Exercise of CCPA Rights


You may not be discriminated against because you exercise any of your rights under the CCPA in violation of California Civil Code § 1798.125.

  1. Right to Opt-Out of the Sale of Personal Data


You have the right to opt-out of the sale of your personal data by a business. We do not sell your personal data.

  1. Authorized Agent


You can designate an authorized agent to make a request under the CCPA on your behalf if:

  • the authorized agent is a natural person or a business entity registered with the Secretary of State of California; and

  • you sign a written declaration that you authorize the authorized agent to act on your behalf. 

If you use an authorized agent to submit a request to exercise your right to know or your right to request deletion, please have the authorized agent take the following steps in addition to the steps described in subsections A and C above;

  • mail a notarized copy of your written declaration authorizing the authorized agent to act on your behalf to contact@thefuturerocks.com (we will reimburse you for the costs of notarizing the declaration and mailing it to us if you provide a receipt showing the costs paid and they are reasonable); and

  • provide any information we request from you to verify your identity and that you provided the authorized agent permission to submit a request under the CCPA on your behalf. The information that we ask you to provide to verify your identity will depend on your prior interactions with us and the sensitivity of the personal data at issue. 

If you provide an authorized agent with power of attorney pursuant to Probate Code sections 4000 to 4465, it may not be necessary to perform these steps, and we will respond to any request from such authorized agent in accordance with the CCPA.

  1. Do Not Track Signals

California law requires us to let you know how we respond to web browser Do Not Track (DNT) signals. Because there is currently no industry or legal standard for recognizing or honoring DNT signals, we do not respond to them at this time.

 

Supplemental Terms for Customers in Japan

Section 1.7(c) shall be amended to add the following wording at the end of the section:
In scenarios (b) to (e) inclusive, disclosure to third parties will require your consent, except where (in relation to scenarios (b) and (d) only) there is a need to protect a human life, body or property, and when it is difficult to obtain your consent.
Section 6 shall be deleted and replaced with the following: In the event of any discrepancy or inconsistency between the English and the Japanese versions of this Policy, the Japanese version will prevail.