Last updated: January 2024
Hygge Tea House is committed to complying with the General Data Protection Regulation (GDPR) and protecting the rights and freedoms of individuals whose personal data we process. This page outlines our approach to GDPR compliance and your rights under this regulation.
Hygge Tea House acts as the data controller for personal data collected through our website and services. We determine the purposes and means of processing personal data in accordance with GDPR requirements.
Contact details:
Hygge Tea House
Nyhavn 42, 3rd Floor
1051 Copenhagen K, Denmark
Email: [email protected]
We process personal data under the following legal bases:
As a data subject, you have the following rights:
You have the right to obtain confirmation of whether we process your personal data and, if so, to access that data along with information about how it is processed.
You have the right to request correction of inaccurate personal data and to have incomplete data completed.
You have the right to request deletion of your personal data in certain circumstances, such as when the data is no longer necessary for the purposes for which it was collected.
You have the right to request that we limit processing of your personal data in certain situations, such as when you contest the accuracy of the data.
You have the right to receive your personal data in a structured, commonly used format and to transmit that data to another controller.
You have the right to object to processing of your personal data for direct marketing purposes or when processing is based on legitimate interests.
You have the right not to be subject to decisions based solely on automated processing that produce legal or similarly significant effects.
To exercise any of your rights, please contact us using the details provided above. We will respond to your request within one month. If your request is complex or we receive numerous requests, we may extend this period by two additional months, in which case we will inform you.
We may ask you to verify your identity before processing your request to ensure the security of your personal data.
When we transfer personal data outside the European Economic Area, we ensure appropriate safeguards are in place, such as standard contractual clauses approved by the European Commission or transfers to countries with adequate data protection laws.
In the event of a personal data breach that poses a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours and, where required, inform affected individuals without undue delay.
You have the right to lodge a complaint with a supervisory authority if you believe your data protection rights have been violated. In Denmark, the supervisory authority is:
Datatilsynet (Danish Data Protection Agency)
Carl Jacobsens Vej 35
2500 Valby, Denmark
Website: datatilsynet.dk
We may update this GDPR information from time to time to reflect changes in our practices or legal requirements. We encourage you to review this page periodically.