https://www.rigards.com/ (the “Website”) ODD SKIN OUT LIMITED (“RIGARDS”, “we” and “us”, as the case may be), its officers, management, and members of staff shall, at all times, respect the confidentiality of and endeavour to keep safe any and all personal data (“Personal Data”, as defined in the Personal Data (Privacy) Ordinance (Cap.486) of China-Hong Kong) (“Ordinance”)) collected from you and/or stored and/or transmitted by you to us. Please read the following to learn more about our Privacy Policy Statement (“Statement”):

Effective: December 13, 2022.

1. Information Collection

A. Information Collected

“Personal Information” means any information relating to an identified or identifiable natural person; an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.

We collect the personal information you provide to us when you make in-store purchases. The categories of information we may collect include:

  • Personal Identifiers, including name, email address, postal address, and telephone number
  • Commercial and Financial Information, including purchases
  • Characteristics of Protected Classifications, including sex or gender and age
  • Medical, including medical information

We collect the personal information you provide to us when you visit our website, sign up for email, purchase our products or get an eye exam. The categories of information we may collect include:

  • Characteristics of Protected Classifications, including sex or gender and age
  • Personal Identifiers, including name, postal address, telephone number, and email address
  • Medical, including medical information
  • Commercial and Financial Information, including purchases and credit card or debit card number

We collect the personal information you provide to us when you use and communicate with us about our services. The categories of information we may collect include:

  • Personal Identifiers, including postal address, email address, telephone number, and name
  • Commercial and Financial Information, including purchases
To the extent we process deidentified personal information, we will make no attempt to reidentify such data.

B. Method of Collection

We may collect your information by the following ways:

  • webpage, written form, fax, telephone calling, e-mail, tools and cookies for collection of created information
  • provided by partner companies

2. Use of Collected Information

We use the information collected by you for the following purposes:

 

 

  • Member management and identification
  • To detect and deter unauthorized or fraudulent use of or abuse of the service
  • Performance of contract, service fee payment and service fee settlement regarding provision of services demanded by the users
  • To provide customer service and other services to you
  • Improvement of existing services and development of new services
  • Making notice of function of Company sites or applications or matters on policy change
  • To help you connect with other users you already know and, with your permission, allow other users to connect with you
  • To make statistics on member’s service usage, to provide services and place advertisements based on statistical characteristics
  • To provide information on promotional events as well as opportunity to participate
  • To comply with applicable laws or legal obligation (including any requests by government)
  • To use of information with prior consent of the users (for example, utilization of marketing advertisement)

We will obtain consent from you if we need to use Personal Information other than those expressly stated in this Policy.

 

 

3. Disclosures of Collected Information

1.Share of Personal Information

Except for the following cases, we will not disclose Personal Information to a third party:
 
  • Disclosure with affiliates, partners and service providers
    • When our affiliates, partners and service providers carry out services such as bill payment, execution of orders, products delivery, communication (live chat, sending messages, etc.), marketing and dispute resolution (including disputes on payment and delivery) for and on behalf of us
  • When you provided consent
    • when you select to be provided by the information of products and services of certain companies by sharing your Personal Information with those companies
    • when you select to allow your Personal Information to be shared with the sites or platform of other companies such as social networking sites
    • other cases where you give prior consent for sharing your Personal Information
  • Required by law
    • if we are required to disclose by laws, regulations, etc.
    • if we are required to disclose by investigative agencies for detecting crimes in accordance with the procedure and method as prescribed in the laws and regulations
  1. Sale of Personal Information
    We do not sell or rent any of your Personal Information.

4. Your Rights

You or your legal representatives, as main agents of the information, may exercise the following rights regarding the collection, use and sharing of Personal Information by us:

  • Right to access to Personal Information
    • You or your legal representatives may access information and check the records of the collection, use and sharing of the information under the applicable law.
  • Right to rectification
    • You or your legal representatives may request to correct inaccurate or incomplete information.
  • Right to erasure
    • Your or your legal representatives may request the deletion of information, except that we may retain information to the extent permitted by applicable law.
    • Right to restriction of processing
      • You or your legal representatives may make temporary suspension of treatment of personal information in case of disputes over the accuracy of information and the legality of information treatment, or if necessary to retain the information.
    • Right to data portability
      • You or your legal representatives may request to provide or transfer the information.
    • Right to object
      • Your or your legal representatives may suspend the treatment of Personal Information if the information is used for the purpose of direct marketing, reasonable interests, the exercise of official duties and authority, and research and statistics.
    • Right to automated individual decision-making, including profiling
      • You or your legal representatives may request to cease the automated treatment of personal information, including profiling, which has critical impact or cause legal effect on them.

    You also have the right to lodge a complaint with the relevant supervisory authority in the country in which you reside.

    5. How to Exercise Your Rights

    In order to exercise the above rights, use the menu of 'amendment of “my account” of Website or send e-mails with a required written form (see the details stated hereunder). We will take measures without delay and give notice about the results of such measures to you. We may reject the request of you only to the extent that there exists either proper cause as prescribed in law or equivalent cause. In order to fulfill your request, we will need to verify your identity or the authority of the person whom is authorized to act on your behalf.

    Please note that we cannot fulfill your request if we cannot verify your identity or the authority of the person authorized to act on your behalf.

    6. Cookies

    Our website uses cookies to distinguish you from other users of our website. This helps us to provide you with a good experience when you 

    browse our website and allows us to improve our site. By continuing to browse the site, you are agreeing to our use of cookies.

    A. What are cookies?

    A cookie is a small file of letters and numbers that we store on your browser or the hard drive of your computer if you agree. Cookies contain information that is transferred to your computer’s hard drive.

    • Strictly necessary cookies. These are cookies that are required for the operation of our website. They include, for example, cookies that enable you to log into secure areas of our website, use a shopping cart or make use of e-billing services.
    • Analytical/performance cookies. They allow us to recognize and count the number of visitors and to see how visitors move around our website when they are using it. This helps us to improve the way our website works, for example, by ensuring that users are finding what they are looking for easily.
    • Functionality cookies. These are used to recognize you when you return to our website. This enables us to personalize our content for you, greet you by name and remember your preferences (for example, your choice of language or region).
    • Targeting cookies. These cookies record your visit to our website, the pages you have visited and the links you have followed. We will use this information to make our website and the advertising displayed on it more relevant to your interests. We may also share this information with third parties for this purpose.
    B. What kind of information do we collect by using cookies?

    When you visit our website, we may automatically collect the following types of information from you: Your automatic login information when you become a member and the cart ID when placing the order as a guest. Please note that third parties (including, for example, advertising networks and providers of external services like web traffic analysis services) may also use cookies, over which we have no control. These cookies are likely to be analytical/performance cookies or targeting cookies.

    C. How do you block cookies?

    You block cookies by activating the setting on your browser that allows you to refuse the setting of all or some cookies. However, if you use your browser settings to block all cookies (including essential cookies) you may not be able to access all or parts of our site.

    7. Security

    We regard the security of Personal Information of uses as very important. We construct the following security measures to protect your Personal Information from any unauthorized access, release, use or modification

  • Encryption of Personal Information
    • Transmit users' Personal Information by using encrypted communication zone
      • Store important information such as passwords after encrypting it
      • Counter measures against hacking
        • Install a system in the zone the external access to which is controlled so as to prevent leakage or damage of users' Personal Information by hacking or computer virus
      • Establish and execute internal management plan
      • Install and operate access control system
      • Take measures to prevent forging or alteration of access record

      8. Procedure and Method of Destroying Personal Information

      In principle, as soon as the purpose for the collection of Personal Information has been achieved, the applicable information shall be destroyed without delay.

      The procedures, deadlines, and methods are specified in detail below.

      • Procedure for disposal
        • Information inputted is transferred to a separate database (separate documents for paper) once the purpose has been achieved. According to the protection of information pursuant to the Company’s internal policies and related laws, it shall be stored for a certain period or disposed without delay.
      • Deadline for disposal
        • Once the retention period of user’s Personal Information has been elapsed or if it is no longer in need due to achievement of goal, revocation of certain service, or business closure, etc. then it shall be disposed within 5 days from the last date of possession.
        • Method of disposal
          • Personal Information in the form of electronic files shall be deleted in a way that it cannot technically be recovered. For those printed on paper shall either be grinded or incinerated.

        9. Protection of Personal Information of Children

        We do not collect any information from children under the age as prescribed in the laws of applicable jurisdiction. The website or application of us has an age limit function so that children cannot use it and we do not intentionally collect any Personal Information from children through that function. If we obtain knowledge that we have collected any Personal Information from children under the age as prescribed in the laws of applicable jurisdiction, we will delete that information from existing files.

        However, if we collect any Personal Information from children under the age as prescribed in the laws of applicable jurisdiction for the services for unavoidable reason, we will go through the additional procedure of the followings for protecting that Personal Information of children:• verify, to the extent that efforts are reasonably made, whether they are children of the age at which consent from their guardian is required and the consenting person is an authorized one.

        • obtain consent from the parents or guardian of children to collect Personal Information of children or directly send the information of products and services of the Company
        • give the parents or guardian of children a notice of Company's policy of privacy protection for children including the items, purpose and sharing of Personal Information collected
        • grant to legal representatives of children a right to access to Personal Information of that children/correction or deletion of personal information/temporary suspension of treatment of Personal Information/ and request for withdrawal of their consent provided before
        • limit the amount of personal information exceeding those necessary for participation in online activities

        10. Modification of Privacy Protection Policy

        We have the right to amend or modify this Policy from time to time and, in such case, we will make a public notice of it through bulletin board of its website (or through individual notice such as written document, fax or e-mail).

        11. Others

        A. Data Transfer to Other Countries

      Our business is engaged globally, thus, we may provide your Personal Information to the companies located in other countries for the purpose as expressly stated in this Policy. For the places where the Personal Information is transmitted, retained, or processed, we take reasonable measures protecting Personal Information.

      B. Third Party's Sites and Services

      The website, product or service of the Company may include links to the ones of a third party and the privacy protection policy of the site of a third party may be different. Thus, it is required for users to check such third party’s policy linked to the site of the Company.