Privacy Policy

Privacy Policy

WHO IS GATHERING AND USING YOUR PERSONAL INFORMATION

We, Assilah, serve as the “data controller” and gather different information on our website or social media sites for various purposes, with the key reason being for delivering and enhancing our service and your user experience. The “why” and “how” your personal information is collected and used are determined by us. We are a Canadian business based in Toronto. To be able to provide you with services, we are all bound by a duty to introduce appropriate security measures to protect personal data, and are bound by a strict confidentiality agreement and specific contractual terms. 

Please be aware that certain approved partners, such as our franchisees and licensees or social media, could also determine “why” and “how” your personal information is used. They have their own privacy and cookies policies, so remember that the personal information you give them will be subject to their rules and not ours.

Your local legislation may not refer to the terms “data controller” or “data processor”, but respectively to terms such as “data user”, “owner”, “business”, “responsible party”, etc., and as “data intermediary”, “operator”, etc. In order to understand our role, please note that we, Assilah, are the entity who decides on the methods and purposes of the processing of your personal information by determining “why” and “how” your personal information is collected and used.

1.2 WHY DO WE COLLECT YOUR PERSONAL INFORMATION?

Assilah will collect, hold, use and disclose your personal information for the purposes described in this section. The processing of your personal information will comply with your privacy legislation and rely on the legal bases set out in this section.

General information regarding purposes and legal bases for the use of your personal information.

1.3 To provide you with the services you have purchased or otherwise requested

We will use your personal information to manage our relationship with you and to perform our obligations under the contract you conclude with us when you purchase or otherwise request services or products from us. This can cover various activities such as internal accounting, or processing your payment.

We will view, compile, store , process, use, report, and transmit your personal information for invoicing, payment processing, and internal accounting to provide you with services you have ordered. 

To provide you with gift cards, customization services by phone, or on our website, some relevant details may be needed. In such instances, we may have access to, collect, store and use your personal information for delivering the service.

1.4 To enable you to receive relevant information and tailored marketing content.

You will receive information and updates about us either at your request (with your prior consent where required by law) or when we are authorized by law to send you such information and updates directly. Such communication can be local, and may include updates about our products, invitations to events, offers, surveys, etc. 

Our communications will be customized and specifically designed to be of interest to you, and will be updated with any new personal information linked to your Assilah profile. We will thus use your personal information to send you tailored communications or other customized advertisements or marketing campaigns. This use of your information includes some profiling activity. 

When you share your contact information with us, we may use this personal information to contact you through related communication channels (such as text message, e-mail, post, internet means, social media or telephone), with your consent where required. You can of course request us not to use a particular channel of communication or opt-out (unsubscribe) from it by applying the opt-out option that will always be shared with you. If you want to stop receiving communication from us via all communication channels, please send an email to [email protected].

As part of the Assilah experience, we will always try to customize and personalize your experience with us. This is why we will use your personal information to send you tailored communications or personalize your journey with us, but only with your prior consent where it is required under applicable privacy legislation. Our communications could include tailored services recommendations we think you might like, personalized marketing content designed to suit your interests, personalized events invitations or, at your request and where available, personalized and customized services. For these purposes, we will use the information you provide to us (for example your date of birth, your country of residence, your preferred means of contact etc.) and/or jointly or independently, certain patterns we may observe when interacting with you (for example where you prefer buying our products, what type of rugs you like, which occasions you are shopping for etc.). With this information, we may create groups of similar customers (called “persona”) to whom we can decide to offer personalized content and experiences both in inbound or outbound interactions. In this context, we may make inferences about you, as derived from your personal information (profiling). For example, if you always purchase one specific service, we may consider this as your preferred one. This will allow us to customize your experience with Assilah based on your interests and shopping habits (i.e. tailored communication). In order to provide you with such customized and personalized experience, in our stores or online, you may be required to log in or identify yourself.

To enrich your personal information, we may use cookies or other online advertising technologies. Via such technologies, we will collect personal information related to your activities on social media and your browsing activity across different websites and devices. (for example: to know if you have visited our website after opening a newsletter you have received). Certain technologies may rely on services provided by other companies acting on their own account (such as social media Facebook, Twitter, Instagram, or other online platforms). These companies have their own privacy and cookies policies and the way they use the personal information you share with them will be subject to their rules and not ours.

To enrich your personal information, we can match it with personal information held by others (for example, by sharing and matching your information with information held by trusted partners). This process will only be conducted by using customers’ unique identifiers and re-identification protocols in order to protect the confidentiality of your personal information.

Personal information linked to your Assilah profile will enable us to create “lookalike campaigns”, allowing us to reach new people who are likely to be interested in our products because they are similar to you. We may conduct such lookalike campaigns through our website, social media or other communication means. When lookalike campaigns are conducted.

Using cookies or other online advertising technologies may also enable us to show you online advertisements that are “contextual” (meaning they are shown according to the webpage you are browsing), or “behavioural” or “interest based” (where advertisements are shown to you based on your interests which we have inferred from your information including demographic, geographic and interest-based data). We may use such advertisements to display products or services that are most relevant to you.

If you no longer want to see customized online advertisements, you may request us to delete your Assilah profile or modify your cookie preferences – see “cookies or other online advertising technologies”. In addition, some third-party sites allow you to stop seeing advertisements from specific advertisers, so you may also set your preferences on those websites.

1.5 To send you non-marketing communications.

Non-marketing communications may be sent upon your request, and/or may be important for your safety and the security of your personal information. 


You may still receive such communications even when you opt-out from certain marketing communications. The information communicated may be necessary for the correct performance of our contract with you or be mandatory to comply with some of our legal obligations.


Non-marketing communications can include, but are not limited to: emailing you to verify your identity when you sign up to our services; emailing you for password and/or username reset; notifying you that a particular service has been or will be suspended for maintenance or terminated; notifying you of an upgrade, a rectification or an incident affecting our services that may involve your personal information; notifying you of an update to our privacy policy or Terms of Use; or informing you about any services you have requested or purchased in this page. 


We will never contact you to ask for your password. Please be aware if you receive any request for this personal information.

1.6 To conduct our business securely and protect our activities.

To deliver our services safely to you, perform our contract properly or comply with some of our legal obligations, we will implement fraud prevention and detection measures. Such measures will allow us to adequately perform our contract with you and/or protect our legitimate interests in defending ourselves against fraud.


We may use administrative and technical measures to protect our website, our systems, our networks, transactions occurring on our website or in our stores, and any other necessary means to protect the personal information we may access or store. For this purpose, we may also be required to verify your identity. Such measures may also be implemented for compliance purposes or to avoid sharing your personal information with any untrusted third parties. 


In addition, we may implement certain measures to protect and defend our rights and property, our employees and our business partners in compliance with applicable laws, regulations and international conventions. 

1.7 To assess and better understand our business.

To deliver our services safely to you, perform our contract properly or comply with some of our legal obligations, we will implement fraud prevention and detection measures. Such measures will allow us to adequately perform our contract with you and/or protect our legitimate interests in defending ourselves against fraud.


We may use administrative and technical measures to protect our website, our systems, our networks, transactions occurring on our website or in our stores, and any other necessary means to protect the personal information we may access or store. For this purpose, we may also be required to verify your identity. Such measures may also be implemented for compliance purposes or to avoid sharing your personal information with any untrusted third parties. 


In addition, we may implement certain measures to protect and defend our rights and property, our employees and our business partners in compliance with applicable laws, regulations and international conventions. 

1.8 To optimize and manage our website and other means of communication.

We may take certain measures involving the use of your personal information to administer, optimize and improve our means of digital or physical communications such as our website or face-to-face interaction in our stores.


The use of your personal information will allow us to perform our contractual obligations or improve our services in accordance with our legitimate interest. Of course, when we use cookies or other online advertising technologies, your prior consent will always be required.


We may use some of your personal information to administer, optimize and improve our websites, our applications, our content and our other digital offerings, including the services or products offered through our websites, applications or any other digital means of communication to ensure the most user-friendly online navigation experience. We may use such personal information to fix operational problems such as pages crashing and software bugs. Please be aware that to do this, we may use cookies or other online advertising technologies.

WHAT PERSONAL INFORMATION DO WE COLLECT?

When you interact with us or our approved partners, you may provide us with the following categories of personal information (that may include sensitive information in accordance with applicable legislation).

A. Identifiers & Assilah profile information

This set of personal information enables us to identify you, provide you with customer service and assistance and, in some cases, to contact you, including by sending you relevant information and tailored marketing content on the ground of the legal bases set out in this privacy policy. 

The list below is provided to give you an overview of the type of information we may collect. However, the collection of this information is not systematic: only the information necessary to fulfill each purpose will be collected and used.

It could include, when your applicable privacy legislation allows us to collect such personal information, your first name, last name, pseudonym, signature, email address, postal address, date of birth, login name, phone number, unique personal identifier, customer number, online identifier, social media accounts (and related information collected through social log-in), gender, country of residence, lifestyle/interests, Internet Protocol (IP) address, account name, nationality, or other similar identifiers, physical characteristics or description (for example characteristics such as house or corporate size where relevant to the services we would offer you). We will take steps to minimize information that is collected to what is necessary in relation to the purposes for which it is processed.

In some countries, some personal information could be considered sensitive, special or protected. We will collect and use such information only where no other option is available, and always comply with the applicable privacy legislation to collect, protect and use safely your personal information (in particular, by seeking your consent where required). 

B. Transaction information & commercial information

This set of personal information enables us to provide you with the services you have requested, manage your Assilah profile, provide you with relevant customer service and assistance, secure our communications and to manage and better understand our business.

The list below is provided to give you an overview of the type of information we may collect. However, the collection of this information is not systematic: only the information necessary to fulfill each purpose will be collected and used.

It could include personal information on the services you purchase, obtain or consider, their price, internal ambient size, when the service was bought, if it was canceled, comments you made on the service we have provided to you, purchasing and consumer histories or trends, etc. This could also include personal financial information relating to how you paid for your products or services or your bank details when you request a refund. We will take steps to minimize information that is collected to what is necessary in relation to the purposes for which it is processed.

Some personal information will be linked to your Assilah profile when you identify yourself in the stores, through customer services or on our website.

C. Personal life information and inferences

This set of personal information enables us to always offer you the optimum service by understanding you better. We use it to manage your Assilah profile, provide you with relevant customer service and assistance and also, in certain circumstances, to contact you for example by sending you relevant information, updates and tailored marketing content. 

The list below is provided to give you an overview of the type of information we may collect. However, the collection of this information is not systematic: only the information necessary to fulfill each purpose will be collected and used.

It could include your preferences regarding events, how you have used preferred certain rugs, personal information regarding your family (if you have obtained their consent to share such information with us, where this is required by applicable law), your life habits, how you use our website or third-party websites such as social media, your answers to our surveys or any other personal information we may collect when it is directly or indirectly linked to you. We may draw inferences from any of the information identified above to create a profile about you, reflecting your preferences, characteristics, trends, predispositions, aptitudes and attitudes.

Under certain applicable privacy legislation, some personal life information is considered sensitive. In this context, we will collect, store and use such personal information only where no other option is available and with the highest level of care in compliance with the applicable privacy legislation (including with your consent where required).

D. User-generated content

This set of personal information enables you to provide us with personal information relating to you or to third parties. In certain circumstances it enables us to contact you.

The list below is provided to give you an overview of the type of information we may collect. However, the collection of this information is not systematic: only the information necessary to fulfill each purpose will be collected and used.

It could include pictures of you or other individuals, or any other type of content such as texts, feedbacks, opinions, personal information regarding other individuals you may provide us with (for example when participating in a contest or sharing personal information with our sales associates or through social media), “tagging” or “liking” our social media page or any content published by us, or any personal information you may provide in the public domain. You may remove such content at any time if you no longer want us to use it.

You shall avoid sharing third-party personal information through such means or you should ensure that they have given prior authorization to such sharing. 

E. Technical, electronic & localisation information

This set of personal information enables better delivery of the service you expect from us.


It could include personal information related to your interactions with us and allows us to manage your Assilah profile, provide relevant customer service and tailored marketing content, establish communications and conduct our business securely, assess and better understand our business, and optimize and manage our website and other means of communication.


The list below is provided to give you an overview of the type of information we may collect. However, the collection of this information is not systematic: only the information necessary to fulfill each purpose will be collected and used.


Some personal information will be shared with us automatically from the device or the service provider you are using (e.g. social media). We can collect personal information shared by your device such as your IP address, device type, unique device identification numbers (device identifier), browser type, time zone settings, broad geographic location (e.g. country or city-level location); online activity (such as your internet and other electronic network activity information, including, but not limited to, browsing history, search history, and information regarding your interaction with websites, applications or advertisements) and other technical personal information or personal information shared by the service provider. Such service providers have their own privacy and cookies policies, so remember that the personal information you give them will be subject to their rules and not ours.


In addition, we may be able to collect personal information on how you have interacted with us, including certain personal navigation information (including the pages accessed and links clicked, bugs and errors, browsing patterns) and your preferences (such as your language preference).


Some of this personal information may be collected using cookies or other online advertising technologies.

WHEN DO WE COLLECT YOUR PERSONAL INFORMATION?

When you interact with us, either online or in person, you may share with us your personal information when:


A. You buy a service or subscribe;


B. You create a Assilah profile, join our loyalty pages, participate in a contest or join a reward program;


C. You subscribe to our newsletter;


D. You interact with us or seek advice and share personal information through our websites, our social media pages, at events or through our customer services;


E. You use your device to browse activity across different websites;


F. A personal shopper, or any other agent acting on your behalf interacts with us in particular to buy a service for you;


G. Your information is shared with us by our approved partners, with your prior consent where required.

HOW DO WE COLLECT YOUR PERSONAL INFORMATION?

We mainly obtain information directly from you and process them by automated means when you interact with us. When you interact with us, we collect your personal information through:


A. Our sales associates (for example by phone or chat) when you share personal information with us;


B. Our websites or our applications, whether you are registered or not, by completing surveys, registration processes or forms. We may also use cookies or other online advertising technologies for this purpose;


C. Any means we make available to you – for example, when you buy a service, we may collect certain personal information relating to your payment such as the purchase price and date and service reference (we do not keep any of your personal banking information for longer than necessary to complete the transaction);


D. From third-party sources such as social media. 


More broadly, we collect your personal information through any means you may use to interact with our phone, email, chat or text message.


In addition, we may obtain personal information from services provided by other companies to update or supplement your personal information, for example when you link your social media profile with your Assilah profile. These companies have their own privacy and cookies policies in place, so remember that the personal information you give them will be subject to their rules and not ours. 

FOR HOW LONG DO WE KEEP YOUR PERSONAL INFORMATION?

Our general approach is to retain your personal information only for as long as it is needed.


A. When you have a Assilah profile, a potential customer profile or subscribe to our newsletters, we generally retain your personal information for 5 years from the last interaction you initiated with us.


B. When we use cookies or other online advertising technologies, your consent shall only be valid for a maximum period of 13 months.


We may retain personal information for a shorter or longer time, for instance, where we are obliged to do so in accordance with relevant legal, tax and accounting requirements.


Last interaction shall be defined as the last contact you initiated which is traceable by our systems or by a sales associate. Last contact could be the last time a call, sales email, or meeting was proposed to you and to which you responded favorably. For instance, clicking on a link included in an email (except for a link to unsubscribe from receiving marketing content), having a chat on our website or attending an appointment in one of our visits are considered a last contact. Conversely, opening an email or visiting our website without logging in would not qualify as last contact. 


Before deleting your personal information from your Assilah or potential customer profile, we will contact you to inform you of such deletion and you may ask us to keep your personal information. By not answering you agree to the deletion of any personal information that we are not legally obliged to keep for longer in accordance with legal, tax and accounting requirements.


We will destroy your personal information without delay once it is no longer necessary (e.g., if the purposes of collection/use of the personal information have been accomplished, if the statutory retention period expires) in a way that prevents such personal information from being restored or recovered. If printed on paper, the personal information will be destroyed by shredding, incinerating, or some other similar method and, if saved in electronic form, the personal information will be destroyed by technical methods which ensure that the personal information cannot be restored or recovered thereafter.


In specific circumstances we may also retain your personal information for longer according to the applicable statute of limitations so that we have an accurate record of your dealings with us in the event of any complaints or challenges.

WHERE DO WE STORE YOUR PERSONAL INFORMATION?

If you are located outside Canada and choose to provide information to us, please note that we transfer the data, including Personal Data, to Canada and process it there.

Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer.

Assilah will take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy and no transfer of your Personal Data will take place to an organization or a country unless there are adequate controls in place including the security of your data and other personal information.

DO WE SELL YOUR PERSONAL INFORMATION?

We do not sell your personal information. 

We may allow selected third parties (such as approved advertising partners like Google Ads) to collect your personal information via automated technologies on our websites, in an effort to provide you with content and advertisements that may be of interest to you and on the legal bases set out in this privacy policy.

HOW DO WE ADDRESS THE PRIVACY OF CHILDREN?

Protecting the safety and privacy of children is very important to us. Our Service does not address anyone under the age of 18 (“Children”).

We do not knowingly collect information from anyone under the age of 18. By creating your Assilah profile, or by registering through any means, or by placing an order, you confirm that you have reached the age of consent in your country of residence (or, if you are under the age of consent, that your parent(s) or legal guardian(s) also agree(s) to such registration or order when they can give you such authorization under the law of your country of residence).

If we become aware (including through a request from your parent(s) or legal guardian(s) that we have inadvertently received personal information in contradiction to the above, we will delete such personal information from our records.

DO WE USE COOKIES OR OTHER ONLINE ADVERTISING TECHNOLOGIES?

We use cookies to personalize content and ads, to provide social media features and to analyze our traffic data. We also share information on your use of our site with our social media, advertising and analytics partners. 

When you visit any website, it may store or retrieve information using your browser, mostly in the form of cookies. This information might be personal information about you, your preferences or your device and is mostly used to make the site work as you expect it to. The information does not usually directly identify you, but it can give you a more personalized web experience. Because we respect your right to privacy, you can choose not to allow some types of cookies.

A. What is a cookie?

A cookie is a small piece of data (text file) that a website – when visited by a user – asks your browser to place on your device in order to remember information about you, such as your language preference or login information. Those cookies are set by us and are called first party cookies. We also use third-party cookies – which are cookies from a domain other than that of the website you are visiting – for our advertising and marketing initiatives.

B. Why do we use cookies?

Cookies are used for various purposes, such as allowing the user to navigate between pages seamlessly, implementing the user’s preferences and improving their overall browsing experience, by customizing the website according to their navigation and user profile as a Assilah customer. They can also help ensure that the adverts seen online by the user are more relevant to them and their interests. 

C. What types of cookies do we use?

Our website uses several types of cookies which have different durations. In particular we use: 

– Session cookies, which only last for the duration of a browsing session and facilitate your experience on our website; and

– Persistent cookies, which last for more than one visit and memorize your preferred settings regarding our website.

These cookies can also be categorized as follows, depending on who sets them on our website:

– First party cookies, which are supplied by the publisher of the website you are visiting, so that it functions properly.

– Third party cookies, which are set on the website by third parties, and are intended to collect data in different ways and for several purposes, for example: collection of analytics data and information on social interactions and behaviours, and also for promotional activities.

D. What categories of cookie are on our website? 

The types of cookie used on our website serve different purposes and can fall into one of the categories below.

Strictly necessary cookies

These cookies are necessary for the website to function and cannot be switched off in our systems. They are usually only set in response to actions made by you that amount to a request for services, such as setting your privacy preferences, logging in or filling in forms. You can set your browser to block or alert you about these cookies, but some parts of the site will then not work. These cookies do not store any personally identifiable information.

Performance & analytics cookies

These cookies allow us to count visits and determine traffic sources, so we can measure and improve the performance of our site. They help us to find out which pages are the most and least popular and see how visitors move around the site. All information that these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies, we will not know when you have visited our site.

Functionality cookies

These cookies enable the personalized of website content by recognizing users and remembering their preferences. They may be set by us or by third-party providers whose services we have added to our pages. If you do not allow these cookies, some or all of these services may not function properly.

Profiling and targeting cookies

These cookies may be set through our site by our advertising partners. They may be used by those companies to build a Assilah profile of your interests and show you relevant advertisements on other sites. They do not directly store personal information but are based on uniquely identifying your browser and internet device. If you do not allow these cookies, you will experience less targeted advertising.

Social cookies

These cookies are set by a range of social media services that we have added to the site and which enable you to share our content with your friends and networks. They can track your browser across other sites and build a profile based on your interests. This may influence the content and messages you see on other websites you visit. If you do not allow these cookies you may not be able to use or see these sharing tools.

E. Do we share data collected through cookies?

We may collect information on our website through cookies and share it with third parties such as social networks or advertising platforms, as well as other companies advertising agencies/providers and IT providers (e.g. hosting providers), with your consent where required.

F. How to customize your cookie settings

Because we respect your right to privacy, you can choose not to allow some cookies. However, blocking some types of cookies may affect your experience of the site and the services we are able to offer.

If you use multiple browsers (e.g. Internet Explorer, Google Chrome, Firefox, etc.), you must repeat this procedure for each one, and if you connect to the web from multiple devices (e.g. from work and at home), then you will need to set your preferences on each browser on each device.

Please note that if you completely disable cookies from the browser, some of our website functionalities might be lost, for example, normal browsing of the site and purchasing activity, while any personalized activity such as the advertising you receive when you visit this website will not be tailored to your interests.

G. How to contact us

If you have any questions regarding our privacy practices or how we handle your data, please contact our privacy team and Data Protection Officer by sending an email to [email protected] (or see How can you contact us?). 

CAN THE PRIVACY POLICY CHANGE?

We may occasionally make changes to this privacy policy, for example to comply with new requirements imposed by applicable laws or technical requirements. We will post the updated privacy policy on our website. We therefore encourage you to review this page every so often.

We may also notify you in case of material changes and, where required by applicable law, we will seek your consent to those changes. 

If we wish to process your personal information for a new purpose not described in this privacy policy, where necessary we will inform you and where required we will seek your consent.

HOW CAN YOU CONTACT US?

If you have any questions about this Privacy & Cookies, please reach us at [email protected]