In Hen Hero (Todora Rogelja, raziskovalna in izobraževalna dejavnost s.p.), Lipa 22, 5296 Kostanjevica na Krasu, Slovenia (hereinafter:Todora Rogelja s.p.), we take the protection of your personal data seriously and handle it responsibly. We collect, process, and use personal data strictly in line with applicable protection standards.

Personal data

The responsible for the protection of your personal data and it’s controller is Todora Rogelja, raziskovalna in izobraževalna dejavnost s.p. for Hen Hero brand. Our contact details are as follows: Postal address: Hen Hero, Todora Rogelja, raziskovalna in izobraževalna dejavnost s.p., Lipa 22, 5296 Kostanjevica na Krasu, Slovenia E-mail: info@henhero.com. If our website includes links to other providers’ websites, this privacy policy does not apply to the collection and processing of personal data on those websites. Todora Rogelja s.p.is not the operator of external websites and have no ability to influence their content or design

Contents of this website

The content on this website is provided for general information and use only and may change without notice. Neither we nor any third parties offer any warranty or guarantee regarding the accuracy, timeliness, performance, completeness, or suitability of the information and materials found or offered here for any specific purpose. You acknowledge that such information and materials may contain inaccuracies or errors, and we expressly disclaim liability for any such inaccuracies or errors to the fullest extent permitted by law. Your use of any information or materials on this website is entirely at your own risk, and we shall not be liable for it. It is your responsibility to ensure that any products, services, or information available through this website meet your specific needs. Occasionally, this website may include links to other websites. These links are provided for your convenience to offer further information and do not imply our endorsement of the linked website(s). We are not responsible for the content of any linked website(s). Your use of this website, and any disputes arising from such use, are subject to the laws of the E.U.

Processing of personal data

Use of the website

When you visit the Hen Hero website, certain information is temporarily processed, including your IP address, last visited URL, time and date of access, pages viewed on our site, data downloaded, status of the request, browser type, and user device type. This information is processed solely to the extent necessary to ensure the website’s operation. The legal basis for this is our legitimate interest in ensuring accessibility and displaying the website for presentation and advertising purposes, as per Article 6(1)(f) of the General Data Protection Regulation (E.U. 2016/679, “the GDPR”). We store this connection information in server files hosted by a third party (Oblak Solutions d.o.o.), in line with our legitimate interest in maintaining secure server operations. With your consent, we may process this data in a pseudonymous form.

Data collection and use for contract processing/establishing contact

We collect personal data when you provide it to us during your order or when contacting us (e.g., via contact form or email). Mandatory fields are marked because we need this data to process your order or respond to your inquiry. Without providing this information, you cannot complete the order or send the contact form. The respective input forms indicate which data is collected. We use the data you provide according to Art. 6(1)(b) GDPR for processing contracts and inquiries. Once the contract is fully processed, your data will be restricted from further use and deleted after the expiration of any tax and commercial retention periods, unless you have expressly consented to further use, or we have legal grounds for continued use, which we will inform you about in this declaration. In general, using our websites is possible without providing additional information except what is mentioned in the previous paragraph.

Access data and hosting

You can visit our website without providing any personal information. Each time you access the website, the web server automatically saves a server log file. This file includes the name of the requested file, your IP address, the date and time of the request, the amount of data transferred, and the requesting provider (access data). This access data is analyzed solely to ensure the site’s smooth operation and to improve our services. This is done in accordance with Art. 6(1)(f) GDPR to protect our legitimate interest in correctly presenting our offerings. All access data is deleted no later than seven days after your visit ends.

Data transfer

To fulfill the contract under Art. 6(1)(b) GDPR, we share your data with the shipping company responsible for delivering your order, as necessary for the delivery of the goods. Depending on the payment service provider you choose during the ordering process, we will transfer the payment data collected for this purpose to the financial institution handling the payment, and if applicable, to the payment service provider we have engaged, or to the selected payment service. In some cases, the chosen payment service provider may also collect this data directly if you have an account with them. In such cases, you will need to log in to the payment service provider with your access data during the ordering process. The data protection policy of the respective payment service provider will apply in this context.

Analysis for marketing and website optimization (WordPress)

On the Hen Hero website, we use WordPress technology to process information about your website usage for optimization and marketing purposes, provided you consent when you first visit our site. A pseudonymous usage profile is created, which includes the information you provided and details about your activities on our site (such as the subpages, buttons, or elements you accessed and when). This usage profile does not contain personally identifiable information (such as your name) and cannot be linked to such information. The legal basis for this analysis is your consent, in accordance with Art. 6(1)(a) GDPR. The processing is conducted on behalf of Hen Hero on the servers of oblakhost.com. To analyze website usage, cookies may be used to identify your web browser. When you first visit our site, we will ask for your consent to use cookies for these purposes. If you wish to withdraw your consent, please follow the provided instructions. If available, you can opt out of the analysis of your usage data. You can either activate the “do not track” option in your web browser (refer to your browser’s help section for instructions) or click the appropriate checkbox to set a cookie that saves your choice to disable tracking. Your consent is then given for the latter option. To revoke consent, click the selection again.

Cookies​

When you visit our website, you will receive a notification that we use cookies to enhance functionality and, with your consent, to analyze usage for website optimization and marketing. Cookies are small text files sent from a web server to your browser and stored on your computer, phone, or tablet. They help identify return visits to our website from your device and improve website performance. We also use functional cookies (essential cookies) necessary for an optimal user experience. You can disable these cookies by adjusting your browser settings or deleting them from your device. However, if you disable cookies, we cannot guarantee the smooth operation of our website. For example, you may be asked for consent to use cookies each time you visit the site, as your decision can only be saved with the help of cookies. If you have given your consent, we may use cookies for site analysis. You can revoke this consent at any time. For instructions on withdrawing your consent, please refer to the withdrawal section. You can also deactivate tracking cookies (if used with your consent) or delete cookies from your device’s hard drive through your browser settings. Since each browser is different, consult the “Help” menu of your browser or your mobile device’s manual for instructions on changing cookie preferences. For more information on cookies and how to disable them, visit www.allaboutcookies.org. Additionally, you can install browser plug-ins to protect your privacy and disable tracking cookies.

Third party hosting services

A third-party provider hosts and presents our website on our behalf. All data collected through the use of this website or the online shop forms is processed on their servers. Processing on other servers only occurs as described here. This service provider is located in a country without an adequacy decision by the E.U., so our cooperation is based on the standard data protection clauses of the European Commission. A list of cookies is set when you visit our website. Cookies not marked as necessary are only set with your consent.

Collected information

When you place an order with us, we need to collect personal information such as your name, email address, phone numbers, home address, and billing address for shipping and credit or debit card purposes. This information is required to process and fulfill your order and to provide a personalized shopping experience. Card details are never shared with third parties and may only be disclosed to a credit reference or fraud prevention agency, which may retain a record of this information. Card and payment details are used solely to process your order through our secure payment gateway. Additionally, we may request further information for identity verification to prevent fraud if necessary. We will also ask for your phone number to provide to our courier for delivery services, allowing us to process your order and update you on its status.

Contact form or other communication channels

If you contact us via email info@henhero.com, we will process the content of your message, along with your name, email address, country, and—if provided—your phone number, address, and company. This information is used to respond to your inquiry. Your personal data will only be shared with third parties if necessary to provide appropriate feedback. The legal basis for processing personal data is Article 6(1)(b) GDPR if your request relates to a contractual relationship or is necessary for fulfilling contractual obligations or negotiating a future contract. In other cases, the legal basis is our legitimate interest in enabling contact through the contact form and addressing general questions (Article 6(1)(f) GDPR). This applies also when you contact us via email or other communication channels.

Use of Google (Universal) Analytics for web analysis.

If you have consented in accordance with Art. 6(1)(a) GDPR, this website uses Google (Universal) Analytics for website analysis. This service is provided by Google Ireland Limited, headquartered at Gordon House, Barrow Street, Dublin 4, Ireland (www.google.de). Google (Universal) Analytics uses cookies and other methods to analyze your use of the website. The information collected is generally transferred to and stored on a Google server in the U.S.A. IP addresses are anonymized before transmission within the E.U. or other European Economic Area (EEA) countries. In exceptional cases, the full IP address may be transmitted to a Google server in the U.S.A. and shortened there. The anonymized IP address is not usually merged with other Google data.After Google Analytics is no longer used, the collected data will be deleted. Google LLC, the American company storing data in the U.S.A., is certified under the E.U.—U.S.A. Privacy Shield framework, which ensures an adequate level of data protection as determined by the European Commission. You can withdraw your consent at any time by downloading and installing the browser plug-in available at: https://tools.google.com/dlpage/gaoptout?hl=de. This plug-in prevents data collection related to your use of the website (including your IP address) and its processing by Google. Alternatively, you can click this link to prevent future data collection by Google Analytics on this website. An opt-out cookie will be stored on your device, but if you delete your cookies, you will need to provide consent again.

Links to social networks​

Our website does not include social network plug-ins, which would automatically transfer personal data when the site is loaded. Instead, our website contains only hyperlinks to social networks (Facebook, YouTube, Instagram, Pinterest). This means that visiting our website does not result in personal data being transferred to these social networks. However, if you click on a hyperlink to a social network, some information, such as your web browser’s name, may be transferred to the social network provider, as with any hyperlink. If you are logged into your social network account in your browser, the social network provider might associate your visit with your account. To prevent this, log out of your social network account before clicking on any hyperlinks on our website. Todora Rogelja s.p. does not influence the content or privacy policies of these social networks or third-party services. For details on how personal data is collected and used by these social network providers, please refer to their individual privacy policies. You can get this information at the following links: Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbor, Dublin 2, Ireland https://www.facebook.com/about/privacy

Use of social plug-ins from Facebook, Instagram​

Social plug-ins (“plug-ins”) from social networks are integrated into our website. When you visit a page containing such a plug-in, your browser establishes a direct connection to the servers of the respective social network. The content of the plug-in is transmitted directly to your browser by the provider and integrated into our page. As a result, the provider receives information that your browser has accessed the relevant page on our website, even if you are not logged into or do not have a profile with the social network. This information, which may include your IP address, is sent directly to the provider’s server (possibly in the U.S.A.) and stored there. If you are logged into the social network, the provider can directly link your visit to our website with your profile on their network. Interaction with the plug-in, such as pressing the “Like” or “Share” button, also sends information directly to the provider’s server, where it is stored and published on the social network for your contacts to see. This process is intended to support our legitimate interests in effectively marketing our services, as outlined in Article 6(1)(f) GDPR. For details on the purpose and scope of data collection, as well as how the data is processed and used by these providers, including your rights and privacy options, please refer to the privacy policies of the respective social network providers: https://www.facebook.com/policy.php https://help.instagram.com/155833707900388 If you do not wish for the social networks to associate data collected through our website with your profile on their services, please log out of the relevant social network before visiting our website. Additionally, you can completely prevent the loading of social plug-ins by using browser add-ons, such as script blockers like “NoScript.”

Our online presence on Facebook, Instagram, YouTube, Pinterest

Our presence on social networks and platforms allows us to communicate more effectively with our customers and interested parties. We use these platforms to provide information about our products and current promotions. When you visit our social media profiles, your data may be automatically collected and stored for market research and advertising purposes. This data is used to create pseudonymous usage profiles, which help in targeting ads both within and outside the platforms based on your presumed interests. Cookies are typically used on your device to store visitor behavior and user interests. This processing is based on Art. 6(1)(f) GDPR, which supports our legitimate interests in optimizing our offers and effectively communicating with customers and interested parties. If you are asked for consent to data processing by the social media platform (e.g., via a checkbox), the legal basis for this processing is Art. 6(1)(a) GDPR. For platforms based in the U.S.A., the European Commission has issued an adequacy decision under the E.U.–U.S.A. Privacy Shield framework.For detailed information on data processing and use by these providers, as well as options for managing your privacy and opting out, please refer to their data protection information. If you need further assistance, you can contact us on info@henhero.com The data processing takes place on the basis of an agreement between jointly responsible persons according to Art. 26 GDPR. Facebook: https://www.facebook.com/about/privacy/ Instagram: https://help.instagram.com/519522125107875 Opposition option (opt-out): Facebook: https://www.facebook.com/settings?tab=ads Instagram: https://help.instagram.com/519522125107875

​Contact options and your rights

As a data subject, you have the following rights:

  • Right to Information (Art. 15 GDPR): You can request information about the personal data we process about you, as specified in the regulation.
  • Right to Rectification (Art. 16 GDPR): You have the right to request the immediate correction of any inaccurate or incomplete personal data we hold about you.
  • Right to Erasure (Art. 17 GDPR): You can request the deletion of your personal data unless further processing is necessary for exercising the right to freedom of expression and information, fulfilling a legal obligation, reasons of public interest, or the establishment, exercise, or defense of legal claims.
  • Right to Restriction of Processing (Art. 18 GDPR): You can request that we restrict the processing of your personal data if you dispute the accuracy of the data, the processing is unlawful and you oppose deletion, we no longer need the data but you require it to assert, exercise, or defend legal claims, or you have objected to the processing under Art. 21 GDPR.
  • Right to Data Portability (Art. 20 GDPR): You have the right to receive your personal data that you provided to us in a structured, commonly used, and machine-readable format, or to request its transfer to another controller.
  • Right to Lodge a Complaint (Art. 77 GDPR): You have the right to lodge a complaint with a supervisory authority, typically the one in your usual place of residence, workplace, or our company headquarters.
  • ​​Right to Withdraw Consent (Article 7(3) GDPR): You have the right to withdraw your consent to the processing of your personal data at any time. The withdrawal of consent does not affect the lawfulness of processing that was based on your consent before its withdrawal. Consumers have a fourteen-day withdrawal period.

For any questions regarding the collection, processing, or use of your personal data, or to request information, correction, restriction, or deletion of data, or to revoke consent or object to specific uses of data, please contact us on info@henhero.com

Recipients and transfer to third countries.

Our website is hosted on the Xyz.com server, which is obligated to process personal data in accordance with the data processing agreement. This includes complying with legal requirements or court orders if they are required to disclose data. As a rule, we do not transfer your data to recipients in third countries (i.e., countries outside the European Economic Area or the U.S.A. Economic Area) or international organizations. If such a transfer becomes necessary in exceptional cases—particularly if your inquiry needs to be forwarded to one of our group companies located in a third country—we will ensure compliance with Chapter V of the GDPR. This means the recipient will provide an adequate level of protection for your personal data. Where necessary, we will use standard E.U. contractual clauses for the transfer of personal data to third countries.

The grounds on which we process your personal information.

We process your personal information only if we have a legal basis for doing so. The legal bases include:

  • Your consent to specific processing activities.
  • Compliance with legal or regulatory obligations that apply to us.
  • Implementation of public policies established in laws, regulations, or based on contracts, agreements, or similar legal instruments.
  • Research conducted by entities, preferably using anonymous personal data.
  • Execution of a contract or pre-contractual measures where you are a party to the contract.
  • Exercising our rights in judicial, administrative, or arbitration proceedings.
  • Protection of your physical safety or that of a third party.
  • Protection of health, in procedures conducted by healthcare entities or professionals.
  • Our legitimate interests, provided these do not override your fundamental rights and freedoms.
  • Credit protection.

For more information about the legal bases, you can contact us using the details provided in this document.

Shelf life

Data stored in the log files is kept in a personally identifiable form for up to seven days. After this period, the data in the log files is anonymized. In other instances, your personal data is deleted once it is no longer required for processing purposes, unless longer retention is mandated by applicable law. For example, the general limitation period under the Code of Obligations is five years, as is the limitation period under the Tax Procedure Act. The Criminal Code may prescribe longer retention periods depending on the type and severity of the offense.

Data protection

Hen Hero has implemented all necessary technical and organizational measures to protect your data from loss, damage, alteration, or unauthorized access. Our employees and anyone involved in data processing are required to adhere to personal data protection laws and handle your data with care. To ensure the privacy of our users’ data, we utilize “Secure Socket Layer” (SSL) technology for secure data transmission. You can identify SSL-protected activity by the “s” in the browser’s address bar (i.e., https://) and typically by a locked padlock symbol or a green lock. Clicking on the symbol provides details about the SSL certificate in use. The appearance of the SSL symbol may vary depending on your web browser. SSL encryption ensures that your data is transmitted securely and in its entirety.

Right of withdrawal

You have the right to cancel this contract within 14 days without providing any reason. The cancellation period is 14 days from the day you, or a third party designated by you (other than the carrier), take possession of the goods. To exercise your right of withdrawal, you must inform us (Todora Rogelja s.p, Lipa 22, 5296 Kostanjevica na Krasu, Slovenia) with a clear declaration of your decision to withdraw from the contract. This can be done via a letter sent by post or an email to info@henhero.com. To meet the cancellation deadline, it is sufficient to send your notification before the 14-day period expires.

Right to contract

If our processing of your personal data is based on our legitimate interests (under point f) of the first paragraph of Article 6 of the GDPR), you have the right to object to this processing as per the first paragraph of Article 21 of the GDPR. Your objection must be based on reasons related to your specific situation. Upon receiving your objection, we will cease processing your data unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights, and freedoms, or if the processing is necessary for the establishment, exercise, or defense of legal claims. Furthermore, according to the second paragraph of Article 21 of the GDPR, you may object at any time to the processing of your personal data for direct marketing purposes. If you do so, we will immediately stop processing your personal data for such purposes.

Right to object

If we process your personal data to safeguard our legitimate interests, which are assessed by balancing our interests against your rights and freedoms, you have the right to object to this processing with future effect. For processing carried out for direct marketing purposes, you can exercise this right at any time, as previously described.For processing carried out for other purposes, you only have the right to object if your objection is based on reasons arising from your specific situation. Once you exercise your right to object, we will cease processing your personal data for those purposes unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights, and freedoms, or if the processing is necessary for the establishment, exercise, or defense of legal claims.However, if the processing is for direct marketing purposes, we will immediately stop processing your personal data for such purposes upon your objection.

Right to lodge a complaint with the supervisory authority

You have the right to lodge a complaint with the supervisory authority if you believe that the processing of your personal data violates GDPR regulations. However, if you have any questions, complaints, or comments regarding data protection on the Hen Hero website, we recommend that you first reach out to our designated data protection officer. Please note that you are not legally or contractually obligated to provide your personal data when visiting our website. However, in certain situations—such as when using the contact form or participating in prize competitions—providing your personal data may be necessary to receive feedback on your inquiry or to facilitate the competition.

No automated decision making

Todora Rogelja s.p. does not use your data to automatically make individual decisions.

Changes to the Privacy Policy

Regulatory changes, business decisions, or technological developments may require updates to this Privacy Policy. We will make any necessary adjustments accordingly. The most current version of the Privacy Policy is always available on our website.

Contact us

​If you have any questions about this Privacy policy, you can contact us by email at info@henhero.com.