Privacy Policy

Use of website nutritionwithyana.com

Nutrition with Yana (“Administrator”, “We”) values the privacy of your data. This privacy and cookies policy (“Policy”) contains information about the purposes and ways of using your personal data in connection with the provision of our services (“Services”). Personal data is any type of information that relates to an identified or identifiable person. More information about us and our Services can be obtained at our website at the address: https://nutritionwithyana.com/ (“Website”, “Site”).
Please read this Policy carefully to understand how we collect, use, protect, and process your personal data in accordance with applicable law, including the General Data Protection Regulation (“GDPR”) and the Personal Data Protection Act (“PDPA”).

1. What information do we collect and for what purposes?

On our Site, we collect the information submitted by you by completing an inquiry and contact form, form(s) on the Site, when placing an order or when you otherwise use the Services on the Website. All data fields are marked as mandatory and must be filled in, and the rest are marked as voluntary and optional.

2. Sensitive data

Certain data that you share with us in connection with the pre-filling of a questionnaire, conducting consultations, and/or our other Services may be considered sensitive data within the meaning of the GDPR and the GDPR. Sensitive data requires special handling. Sensitive data is, for example, data related to your health status and health condition.
We will collect and/or process sensitive data only after obtaining your express consent and according to the purposes indicated in item 2 in the table above and using appropriate technical means to ensure a high degree of data protection such as encryption and others.

3. Do we use cookies?

Our Website uses cookies. Cookies usually do not contain any information that personally identifies a user, but the personal data we store about you may be linked to information stored in and obtained from cookies. Our Website uses the following types of cookies:
“Session cookies” that are deleted when the user closes the browser;
“First-party cookies” that are set by the web server of the visited page and share the same domain;
“Third-party cookies” are stored by a different domain than the domain of the visited page. This can happen when the web page references a file, such as JavaScript, located outside of its domain.
You have the option to change your cookie preferences at any time by changing your browser options. To block cookies in a specific browser, learn more here:

  • Managing cookies in Google Chrome
  • Managing cookies in Firefox
  • Managing cookies in Internet Explorer
  • Managing cookies in Safari
    Refusal of cookies may result in limited functionality or inability to use the Services on our Website.

4. How do we use the information collected?

We may use information from and about users to:
• Processing and fulfillment of your order placed on our Site (we need this information to be able to fulfill our Services);
• Improving your experience with our Site (Your information helps us better meet your individual needs);
• Подобряване на Услугите и на нашия Уебсайт (непрекъснато се стремим да подобряваме предлаганите от нас Услуги и функционалности на Сайта въз основа на информацията и отзивите, които получаваме от Вас);
• Improve customer service (your information helps us respond more effectively to your customer service and support requests);
Marketing purposes (the email address you provide for order processing may be used to send you information and up-to-date news/promotions relating to your order or enquiry, if you have consented to this).

5. Do we disclose your data to third parties?

We do not sell your personal data, we do not exchange it, nor in any other way disclose it to third parties except in the specified cases. Information may be provided to law enforcement authorities if legitimately requested in due course and when this is necessary to comply with the law, the rules of the Site or to protect the rights, property or safety of the Administrator, users and/or third parties . Any information collected that is not personal data or does not contain confidential information may be provided to third parties for marketing, advertising, or other purposes.

6. Hyperlinks to Third Parties

This Policy is applicable and valid for users of the Administrator’s Services available through the Website. This Policy does not apply to social networks, other websites, platforms, or companies that the Administrator does not control, but which provide hyperlinks to or are connected directly or indirectly with the Services provided. You should be informed that such websites, platforms, and companies have their own privacy policies for which we are not responsible. Please read the privacy policies of such websites, platforms, and companies before providing personal data.

7. Compliance with the General Data Protection Regulation (GDPR).

The administrator complies with the requirements of the GDPR and GDPR regarding the collection, use and protection of personal data. The administrator takes all possible technical and organizational measures recognized by applicable data protection law to protect all data it may store and/or process.
Your personal information collected through the use of the Site Services is stored and processed within the EU. We do not store personal data outside the EU and the European Economic Area.
We do not transfer the collected personal information to a country or jurisdiction that does not have the same high requirements for the protection of personal data related to the laws of the Republic of Bulgaria or European legislation.
In case of transfer of personal data outside the borders of the EU, we guarantee a high level of data protection through contractual clauses or other instruments recognized by the applicable law.
We implement appropriate measures to protect your personal data from accidental loss and unauthorized access, use, modification, or disclosure. Procedures are in place designed to protect information from loss, misuse, and improper disclosure. Although we work hard to protect your personal data, we cannot guarantee that our actions will prevent any unauthorized attempt to access, use or disclose personal data. However, if you believe that there is a threat to the security of your personal data, please contact us immediately using the contact details provided in this Policy.
We implement additional information security measures, including access controls, strict physical security, and reliable information collection, storage, and processing practices. The processing of personal data is ensured by modern technical means such as SSL Certificates when ordering.
The administrator uses an external platform to process credit or debit cards for online payments made by you when paying for the Services offered on the Site. These companies collect, store and process personal information necessary for transactions according to purposes expressly stated in their privacy policy.
We use the information you provide (other than customer data) to manage, maintain, improve and provide all the features of the Service that you have requested. If you refuse to provide us with certain personal data, we may be prevented from providing some of the features of the selected Service or the Service in its entirety. We process customer data only in accordance with the instructions provided by the relevant customer or user.
We only store the personal data provided by the user for the duration of the performance of the relevant Service, or otherwise, store it for a limited period of time until we need it to fulfill the purposes for which it was originally collected unless otherwise provided otherwise by law. We will retain and use information as necessary to comply with our legal obligations, resolve disputes and enforce our agreements, some of which are: (a) Payment information is retained for 10 years in accordance with accounting and tax laws; (b) Information about legal transactions is retained for 10 years in accordance with the general statute of limitations set for civil claims.

8. Changes to the Privacy Policy

Changes to the privacy policy are published on the Website with the date of the last update reflected in them, as well as through communication with Users when required by law. If you do not agree with the changes, you should stop using the Site and the Services.

9. Your Rights

Under the applicable legislation, you have the legally recognized right to object at any time to the processing of your personal data by sending an express request through the Website or to the following email address: nutritionwithyana@gmail.com
You have the right to access the personal data we store about you, in a structured, widely used and machine-readable format, by sending an express request or to the following email address: nutritionwithyana@gmail.com
You have the right to request the transfer of your personal data to another administrator by sending an express request or to the following email address: nutritionwithyana@gmail.com
In the event that part of the information we store about you is false or inaccurate, you have the right to correct it by changing the information contained in your profile, by sending an express request or to the following email address:nutritionwithyana@gmail.com
You have the right to request deletion of your personal data by sending an express request to the following email address: nutritionwithyana@gmail.com
This does not apply to the personal data that we are required to keep by law.
You also have the right to request the restriction of the processing of your personal data in relation to individual actions of collecting, processing and sharing them by sending an express request or to the following email address: nutritionwithyana@gmail.com
You have the right to require third parties who have access to your data to be notified of the restrictions, deletion, or prohibition of processing of your data, in order to delete from these third parties all links and copies of your personal data.
We will respond to your request or inform you in writing of the actions taken in relation to the request within two months of receiving the request. The deadline can be extended by another month when it is necessary due to the complexity or number of requests, of which you will be duly notified.

10. Minimum Age

We do not collect and process personal data provided by persons under the age of 18 without the express consent of their parents or guardians. In the absence of such consent, the Administrator will delete all information provided by a minor.

11. Supervisory Authority

The supervisory authority for the protection of personal data in Bulgaria is the Commission for the Protection of Personal Data (PCPD) with the address: Sofia, p.k. 1592, Blvd. “Prof. Tsvetan Lazarov” No. 2, and with a phone number for users: 02/91-53-555. More information on the protection of personal data can be found on the CPLD page – with the web address (URL) www.cpdp.bg

12. Contact Us

If you have any questions about this Privacy and Cookies Policy, you can contact us through the contact form or at the email address: nutritionwithyana@gmail.com