1. Introduction

ArtVista Market ("we," "us," "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and share your information when you use our website and services, in accordance with the General Data Protection Regulation (GDPR), the Payment Services Directive 2 (PSD2), and Strong Customer Authentication (SCA) requirements.

2. Data Controller

For the purpose of the GDPR, the data controller is:

ArtVista Market Email: [email protected] Website: https://artvistamarket.com/

3. Personal Data We Collect

We may collect and process the following categories of personal data:

Account Information:

  • Full name, email address, password, phone number
  • Billing and shipping addresses

Payment Information:

  • Card details (processed by secure third-party providers)
  • Transaction history

Usage Data:

  • IP address, browser type, device type
  • Pages visited, time spent on site, referring URLs

Communications:

  • Messages sent through the platform
  • Customer service interactions

For Sellers:

  • Business name, tax identification number, and payout information

4. Legal Basis for Processing

We process your personal data on the following legal grounds:

  • Contractual necessity – to fulfill our obligations when you create an account or make a purchase.
  • Legal obligation – to comply with tax, fraud prevention, and financial regulations (including PSD2).
  • Legitimate interests – to improve the user experience and operate our platform effectively.
  • Consent – for marketing and optional data collection, where required.


5. How We Use Your Data

We use personal data for the following purposes:

  • To register and manage your account
  • To process and fulfill orders
  • To verify identity and authenticate transactions (in compliance with SCA under PSD2)
  • To facilitate payments securely via third-party providers
  • To provide customer support and dispute resolution
  • To send service-related notifications and marketing emails (with consent)
  • To prevent fraud and ensure platform security
  • To comply with legal and regulatory obligations


6. Strong Customer Authentication (SCA)

As required under PSD2, we implement Strong Customer Authentication (SCA) for online payments to enhance security. This may involve:

  • Two-factor authentication (e.g., password + OTP)
  • Biometric verification (if applicable via your device/payment provider)
  • Transaction risk analysis in accordance with PSD2 standards

We rely on third-party payment processors that are fully PSD2- and SCA-compliant.

7. Sharing of Personal Data

We do not sell or rent your data. We may share data with:

  • Payment processors (e.g., Stripe, PayPal) for secure payment execution under PSD2
  • Shipping and logistics providers to fulfill orders
  • IT service providers for hosting, analytics, or customer support
  • Legal authorities or regulators when required by law

All third-party providers are under strict confidentiality and data protection obligations.

8. Data Retention

We retain your personal data only as long as necessary to:

  • Fulfill the purposes for which it was collected
  • Comply with legal and accounting obligations (e.g., tax laws)
  • Resolve disputes and enforce our policies

Inactive accounts and associated data are routinely reviewed and may be deleted after a set period (typically 3–5 years).

9. International Data Transfers

If we transfer your data outside the EU/EEA, we ensure appropriate safeguards such as:

  • Adequacy decisions by the European Commission
  • Standard contractual clauses (SCCs)
  • Binding corporate rules (BCRs)


10. Your Rights Under GDPR

You have the following rights regarding your personal data:

  • Access – Request a copy of your personal data
  • Rectification – Correct inaccurate or incomplete data
  • Erasure – Request deletion of your data ("right to be forgotten")
  • Restriction – Limit the processing of your data
  • Portability – Receive your data in a structured, machine-readable format
  • Objection – Object to data processing based on legitimate interests
  • Withdraw consent – At any time, for data processed based on your consent
  • Lodge a complaint – With your local data protection authority

To exercise your rights, email us at [email protected].

11. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Operate and improve the Website
  • Analyze traffic and usage
  • Personalize content and ads

You can manage your cookie preferences via your browser settings or through our cookie banner.

12. Security

We implement appropriate technical and organizational measures to protect your data, including:

  • SSL encryption
  • Access controls
  • Secure data storage and transmission
  • Regular security assessments


13. Children’s Privacy

This Website is not intended for use by individuals under the age of 18. We do not knowingly collect personal data from children.

14. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of material changes by email or a notice on the Website. The effective date will always be listed at the top of the page.

15. Contact Us

For questions or requests related to this Privacy Policy, please contact:

ArtVista Market Email: [email protected] Website: https://artvistamarket.com/

We value your privacy

We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.