This policy aims to provide you with clear and comprehensive information on how we handle and protect your personal data in the context of our activities and in accordance with the applicable data protection regulation.
Quality-assured product assortment with high stock availability
Secure and flexible deliveries to meet your needs
Services and solutions that support your growth
Processing of personal data
This is KP Energy Sweden’s personal data policy and in this document you can read about what applies to the processing of personal data by KP Energy Sverige AB, organization number 599191-0004.
We care about your privacy and it is important that you read the information about how we process your personal data. The following companies are covered by the policy:
KP Energy Sverige AB, 599191-0004
KP Energy OY, 3156790-7
This document and the different sections below provide you with information on why we process your personal data, how we use your personal data, how it affects your privacy and how you can exercise your rights.
1. Personal data that we collect
We collect data to enable our Services to work effectively and provide you with the best possible experience. This is done, for example, when you create an account with one of our companies, administer your user account for a Service, purchase a product through our sellers or website, review a product, sign up for a newsletter, or contact us for support. We obtain some of the information by recording how you interact with our Services and products, for example through the use of technologies such as cookies on our sites and the receipt of usage data from software running on your device.
The data we collect depends on the context, your choices, including your privacy settings, and the products and features you use. Below we have summarized the main types of personal data we process. Name and contact details. We collect your first and last name, email address, postal address, telephone number, delivery details and other similar contact details.
Data linked to the user account. If you register an account with us, we collect passwords and other similar security information used for authentication and account access. Age, gender and statistics (demographic data). If you are our customer, we may collect information about your age, gender, country and language preference. Purchase history. We collect data on your purchases, the amount, time of purchase and the offers you take advantage of.
Device and usage data. We collect data about your device, such as information about whether you are browsing on a mobile or desktop and which browser you are using. We also collect data about how you use our digital services, such as information about the features you use, the web pages you visit and the software configurations you use. This may include information on IP address and settings such as language preferences.
Interests and favorites. We collect data about your interests and favorites, such as favorite products that you add to a shopping cart. In addition to those you explicitly provide, your interests and preferences may also be inferred or linked from other data we collect.
Other. We collect information that you share with us such as the content of messages you send us, feedback and reviews you write, or questions and information you provide to Customer Service. When you contact us, e.g. via Customer Service by phone, calls can be monitored and recorded. We may also use your personal data for camera surveillance in our warehouse for security reasons.
2. How we collect personal data
2.1. Information that you provide. Some data is collected directly from you, for example when you create and use a user account on our websites, register for a newsletter, buy a product in an online shop or contact us for support.
2.2. Use of service, etc. We obtain some of the information by recording how you interact with our services and products, for example through the use of technologies such as cookies on our websites and through information we access via the device (such as mobile, computer or tablet) you use when accessing our services, such as IP address and language settings. In some cases, we may link the data we collect about you through the various devices you use when visiting our services to achieve relevance in personalized content and advertisements on our websites.
2.3. Data collected from external sources. We can also obtain data from external sources. Such sources may vary over time but have previously included:
- Social networks, when you give KP Energy Sweden product access to your data in one or more networks.
- Partners, with whom we work to provide services or engage in joint or own marketing activities. We may also collect contact details through partners.
- Publicly available sources, such as open government databases or other publicly available data.
If you choose not to provide information necessary to access a product or service, there is a risk that you will not be able to use that specific product or service.
3. How we use personal data
In this section, we have summarized the purposes for which we process personal data and the legal basis for our processing. In particular, we rely on two different grounds, either that our processing is necessary for the performance of the contract with you (“Performance of Contract”), or that our processing is necessary for the purpose of our or a third party’s legitimate interest (“Legitimate Interest”). In some cases, the processing is based on your consent (“Consent”) or the processing is necessary for compliance with a legal obligation (“Legal obligation”).
We have made our “Legitimate Interest” assessment on the basis that our processing for such purposes is necessary to meet user and customer requests, to evaluate, develop and improve the content and design of the services and to achieve relevance in offers and advertising. Finally, we have a legitimate interest in protecting our business.
Provide and improve our products and services. We use data to carry out your purchases with us, provide and improve the products we offer and carry out necessary business operations. This includes managing the products, maintaining and improving product performance, developing new features and providing customer service. Legal basis: Performance of contract or Legitimate interest. The processing is necessary for us to be able to fulfill the contract with you when e.g. the collection and storage of your address is necessary for us to send the product you have ordered. If you are a contact person for a company that has purchased a product from us, we may process data about you and the company you represent on the basis of Legitimate Interest in order to e.g. be able to deliver products to your workplace. We also process your personal data to meet your need and interest in receiving customer service.
3.1. Site improvement. We use data to improve the site experience, among other things. For example, we use user behavior, search queries and clicks on our web pages to improve the relevance of search results. We also use data to determine which new features to prioritize and how to present the content on our sites; Legal basis: Legitimate interest.
3.2. Security and compliance. We use data, for example, to protect our customers’ security, to prevent and investigate misuse of our online services, loss and fraud, and to follow up on incidents. We also use data to detect and prevent fraud and theft and to resolve disputes and enforce our contracts. We use data to comply with applicable legislation such as the Accounting Act; Legal basis: Legal obligation or Legitimate interest.
3.3. Business Operations/Business Intelligence. KP Energy uses data to support our analytics function to develop aggregated analytics and business intelligence that enables us to operate and protect our business and make informed decisions; Legal basis: Legitimate interest.
3.4. Personalized services. Some of our services allow you to access a more personalized experience which may be based on your activities on our websites, interests and favorites, your location, customer profile and/or choices you have made; Legal basis: Performance of contract (if personalized content is part of the service) or Legitimate interest.
3.5. Communication. We use data to communicate with you. For example, we may contact you by email, phone, or other means to, for example, remind you of items remaining in your shopping cart, update you on a support issue, or tell you about an offer that may be of interest to you; Legal basis: Performance of contract (if the processing is necessary for the performance of our contractual obligations to you) or Legitimate interest.
3.6. User account: When you create a user account to register or make a purchase with us, we ask for certain personal data. We will also assign you a unique customer ID number to identify your account and associated data. When you log in to your user account, we create a record of the login, including date and time, IP address and any error messages. Your personal data linked to your account may be used for targeted advertising on different advertising networks (see further description under the heading “Customized advertising and matching” below); Legal basis: Performance of contract or Legitimate interest.
3.7. Marketing and communication. We use different channels for marketing and communication, such as email, SMS or via our websites. Our marketing and communications that you see on our websites may be based on data that you provided to us when registering a user account or data we collect when you make purchases or use our Services.
We may also share anonymous behavioral data about our users with our advertisers and partners, including companies that sponsor content labeled “Sponsored by”, “Paid content/Paid for by” or “Content from advertisers/From our advertisers”. This means that when you visit other websites, our advertising, which is based on your behavior on our and other websites, may be targeted to you. Anonymous behavioral data is information that cannot be linked to an individual where we have removed all references and links to our users.
Behavioral retargeting is another form of interest-based communication that allows us to display communications to you based on your click patterns on our website; Legal basis: Legitimate interest.
Personalized advertising and matching. If you have created an account with KP Energy, you may receive customized advertising in different advertising networks (see list of advertising networks below). You can receive targeted and personalized advertising in different external channels as we match your email address with different advertising networks (see list of advertising networks below). The matching is done by matching the email addresses of KP Energy and the customers/members of the advertising network. The email addresses are matched by a hashing procedure of the addresses held by KP Energy and those in the advertising network. The hashing means that it is not possible to read the email address that KP Energy shares with the different advertising networks. When the email address is exist in both KP Energy’s and the advertising network, it is possible to target and customize marketing based on e.g. the email address. your interests from previous purchases and page visits, or to monitor the impact of marketing in the different advertising networks
Email addresses are collected according to “How we collect your personal data” (see above).
Marketing is done via the following advertising networks:
- Google Ads (Advertisements on e.g. Google, Youtube, Gmail – read more. Legal basis: legitimate interest
- Meta Ads (Ads on Facebook and Instagram as well as Audience Network. Legal basis: legitimate interest
You always have the right to object to our direct marketing activities, i.e. marketing from us by post, email and SMS, read more in the section“YOUR INDIVIDUAL RIGHTS” and “HOW TO ACCESS AND CONTROL YOUR PERSONAL DATA“.
Barring lists. If you request that we do not contact you by email, telephone or post, we will keep a copy of the relevant contact details on our marketing block list to ensure that you do not receive unsolicited offers in the future; Legal basis: Compliance with a legal obligation.
4. Cookies and local storage of data
4.1. Login and settings. Some cookies are used to remember your settings when you return to our website. Local data storage is used, among other things, to avoid you having to log in every time you visit one of our sites, and to save any settings you have made (e.g. text size).
Adaptation and marketing. We use local data storage to personalize the experience of our sites. e.g. based on what you have searched or viewed previously on our sites. This allows us to present content and ads that we think are relevant to you. We may also use this data to personalize our offers to you.
Analysis, statistics and development. Various measurement tools allow us to collect statistics on how our sites are used. This helps us to develop and improve the experience for you as a user. Different tools are used for different purposes. For example, we use Google Analytics for web analytics (including demographic data). We also use local storage of data to conduct so-called A/B testing, for example, when we test new features on a small group of users before releasing them to all users.
5. Reasons why we share your personal data
It may sometimes be necessary for us to share your personal data with other companies within KP Energy or with companies performing services on our behalf so that we can deliver the services and products to you that you have ordered.
5.1. Suppliers who are processors of personal data
We use various suppliers to perform services on our behalf, such as customer service support, marketing and traffic measurement, and protection and support for our systems and services. These providers may need to process or access personal data in order to perform their services. Our suppliers are bound by data processing agreements and are not allowed to use personal data for their own purposes.
5.2. Shipping companies
We share your personal data with the shipping company that will deliver what you have ordered. Each shipping company is the data controller for its own processing of your personal data.
We may need to disclose or store your data when we consider it necessary to:
- Complying with the law or in the context of legal proceedings.
- Protect our customers, for example to prevent spam or fraud.
- Managing and maintaining the security of our products, including preventing or stopping an attack on our systems or networks.
- Protect the rights or property of KP Energy, including enforcing the terms and conditions governing your use of the services, but if we receive information that someone is using our services to trade in stolen intellectual or physical property belonging to KP Energy, we will not investigate a customer’s private content ourselves and may refer the matter to a law enforcement agency.
- Incidents and fraud may be shared with insurance companies, judicial authorities or local or global law enforcement agencies to conduct investigations. Please note that these recipients have an independent right or obligation to process your personal data.
Please note that some of our sites may contain links to third party products whose privacy policies differ from those of KP Energy. If you enter personal data in any of these products, your data will be processed according to their respective privacy policies. Please read it before providing any information to the external company. We are not responsible for the use of your personal data by these external companies.
6. How to access and control your personal data
How you access or control your personal data depends on the services you use. Through settings in your browser or push settings on your phone, you can check things like cookie history and location information.
6.1. Customer service: You are always welcome to contact us via customer service with questions regarding the processing of your personal data. For more information on your rights and how to contact us, see“YOUR INDIVIDUAL RIGHTS” and“CONTACT US“.
6.2. Account: If you log in to your account, you can change your password and email address.
6.3. Your communication settings: You can choose which communication you want to receive from us through your communication settings. If you would like to change your communication settings with KP Energy, you can either go to your latest mailing where you will find a link “Manage my communication settings”. This will take you directly to the page where you make your changes.
It is also possible to change your communication settings by clicking on this link. You will then need to fill in the email address you use with us. We need your email address to identify you. Once this is done, you will receive an email to the email address provided containing a link that will take you to your communication settings page. Follow the instructions to make the desired changes.
Settings that cannot be turned off. If the information is used for other necessary purposes (including providing our products, analytics and fraud detection), the collection of such data will not stop if you unsubscribe from communications.
6.4. Customize cookies: On KP Energy websites, you can customize your cookies through the “Customize Cookies” link in the footer. Customize cookies
6.5. Targeted ads from external advertisers: If you want to limit the possibility for advertisers to target ads to you based on your interests, you can use the Your online choices service, among other things. You can find more information about cookies, what cookies are stored on your device and how you can manage them on the About Cookies and All about cookies pages. These links are to third-party websites over which we have no control – we cannot be held responsible for any inaccuracies in them.
6.7. Tracking protection via the browser. Some browsers have a feature that blocks third-party content, including cookies, from any website you add to the Do Not Track list. By limiting calls to these sites, the browser limits the information that these third-party sites can collect about you.
7. Your individual rights
Information on how to exercise your rights can be found under“CONTACT US“. You have the following rights:
7.1. Consent. If the processing of personal data is based on your consent, you have the right to withdraw your consent at any time for future processing of personal data.
7.2. Register extraction, rectification and erasure. You have the right to request, free of charge, an extract from the register (as defined in the legislation) and access to a copy of your personal data, request rectification and, in certain circumstances, erasure of your personal data.
7.3. Restrictions. You have the right to object to the processing of your personal data.
7.4. Data portability. In some cases, you have a right to data portability, i.e. to receive personal data provided by you in a structured, commonly used and machine-readable format and to transmit it to another controller. This applies only in cases where our right to process your personal data is based either on your consent or the performance of a contract with you.
7.5. Opposition to direct marketing, i.e. marketing by post, email or SMS. You have the right to object to our direct marketing (including profiling for these purposes) at any time and we shall cease our processing of your data for these purposes.
7.6. Objection. You have the right to object to other processing of your personal data in certain cases. We must then cease processing unless we can demonstrate legitimate grounds which override your interest in not having your personal data processed.
7.7. The Data Protection Authority. You have the right to complain to the Swedish Authority for Privacy Protection, Integritetsskyddsmyndigheten (IMY), which is the authority in Sweden that oversees our compliance with the law as a company.
The exercise of your rights is free of charge. As a rule, we will respond to your request for an extract from the register and the deletion of your personal data within 30 days. The measures you requested are carried out within a reasonable time, which can be up to 3 months depending on the circumstances. We reserve the right to charge a reasonable fee for any unreasonable or manifestly unfounded objection or request.
8. Security of your personal data
We use a range of security technologies and methods to protect your personal data from unwanted access, use and disclosure. For example, the personal data you provide is stored in systems that have limited access and are located in secure premises. When transferring highly sensitive data (such as credit card numbers and passwords) over the Internet, we protect this data with encryption. We impose requirements on our suppliers to ensure that processing is carried out in accordance with this policy and our security procedures. Furthermore, we store data we collect when a user is not logged in (authenticated) separately from customer-specific account information that directly identifies you, such as your name, email address or phone number. We mainly use anonymous data or pseudonymous data for customer insight analysis, product development, personalization, trends, statistics and similar purposes. Pseudonymized data is data that cannot be attributed to a specific person without using additional information.
9. Where we store and process personal data
10. Our retention of personal data
We retain personal data for as long as necessary for the purposes described in this policy, such as providing a product or service, sending necessary communications and marketing communications, and fulfilling our legal obligations. As these needs may vary for different types of data and for different types of products, services and contexts, actual retention periods may vary.
Criteria that determine the length of time we store data include, for example:
10.1. The reason why we use the data, i.e. if we use the data to comply with legal requirements, it is stored for a longer period than, for example, contact information for direct marketing.
10.2. The type of data involved, i.e. sensitive data is stored for a shorter time than, for example, contact information.
10.3. How the data is stored, i.e. data that are not pseudonymized are often kept for a shorter time than if they are pseudonymized.
10.4. The relationship we have with you, i.e. if you are an existing, former or potential customer or if you visit us without being logged in.
10.5. Contact details for direct marketing. We use your contact details for direct marketing purposes for the duration of our customer relationship and for a certain period of time after the end of our customer relationship, as long as you do not object to it (read more under“YOUR INDIVIDUAL RIGHTS“). We keep your data for up to 36 months after your last purchase.
10.6. Data linked to the user account. If you have registered a user account, we use your data such as interests and favorites and purchase history until you close your account and up to 36 months thereafter unless you request us to delete certain data. We save data to handle complaints and to analyze user and customer behavior in order to improve our services and for interest-based marketing.
10.7. Other. Your personal data is deleted or anonymized when it is no longer relevant for the purposes for which it was collected. When analyzing customer insights, trends, etc. we use as much as possible anonymous data that cannot be linked to an individual.
Your personal data may be retained for a longer period than stated above in cases where we are obliged to do so by law (e.g. the Accounting Act), regulation or official decision or to retain data that must be retained for the purpose of resolving a dispute or if you have consented to it.
11. Contact us
Below you will find our contact details if you wish to obtain a register extract, request deletion, request that we stop direct marketing, a complaint, a question about our data protection or if you wish to exercise any of your other rights (read more under“YOUR INDIVIDUAL RIGHTS“).
KP Energy Sverige AB, 599191-0004
Phone: 010 – 161 84 00
Postal address: KP Energy Sverige AB, Controller, Långängsvägen 5, 721 32 Västerås, SWEDEN
E-mail address: email@example.com
KP Energy OY, 3156790-7
Phone: +35 89 31 587 560
Postal address: KP Energy OY, Data Controller, Kirjokansi 1 A 33, 02100 Espoo, SUOMI
E-mail address: firstname.lastname@example.org
12. Changes to this personal data policy