Privacy Policy

She is Sunday cares about protecting the personal data of Customers and visitors to the website (together hereinafter referred to as “Users”). Our priority is to maintain transparency and full compliance with data protection regulations. In this Privacy Policy, we would like to share information with you about the collection, processing, and storage of your personal data by She is Sunday (hereinafter referred to as “SIS” or “we”), and explain how this data is used in the context of using our website, including our online store (hereinafter referred to as the “Store”) and Customer Account (hereinafter referred to as the “Account”). Please read our Privacy Policy to understand how SIS processes your personal data and what rights you have as Customers regarding the processing of personal data.

 

What is personal data? 

Personal data is information that can be used to identify you directly or indirectly. This can include information such as your first and last name, home address, email address, phone number, payment data, and order details. Also, information such as your activity history on the website, IP address, are examples of personal data. Similarly, any other information you provide to us during contact with our customer service department is also considered personal data.

 

Who is responsible for processing your personal data? 

She is Sunday Sp. z o.o conducting business at ul. Dynasy 4, 00-354 Warsaw, NIP 5252805645, registered in the Central Registration and Information on Business (hereinafter referred to as “SIS” or “we”) processes your personal data as the data controller.  

If you have any questions about how SIS processes your personal data, do not hesitate to contact us. Just send a message to our email address: help@sheissunday.com

For what purpose and on what basis do we process your personal data?

SIS will only use the personal data necessary for a specific purpose on a legitimate basis. 

Depending on how you contact SIS or use our services, we will process the following personal data for the purposes listed in the table: 

Purpose

Legal basis

Types of personal data 

Online purchases of SIS products


Execution of the contract concluded with you and fulfillment of all obligationsąand results arising from this agreement, including payment and product shipment

Agreement




  • Contact details: first and last name, email address, phone number, and product delivery address,
  • Transaction data,
  • Payment information.

Creating a Customer Account 

Processing user data is necessary to meet the terms governing the use of the Account

Agreement 

 

  • Contact details: first and last name, email address (mandatory),
  • Date of birth (optional),
  • Data generated by
    User (e.g., purchase history, clicks, and browsing).

Loyalty program 


Execution of the contract concluded with you and fulfillment of all obligationsąand results arising from this agreement, including payment and product shipment

Loyalty Program Agreement




  • Contact details: first and last name, email address,
  • Date of birth (optional),
  • Data generated by
    User (e.g., purchase history, clicks, and browsing).

Customer service


Processing your personal data to respond to your inquiries or provide technical support

Legitimate interest

  • Contact details: first and last name, address, email address, and phone number, 
  • User-generated content, such as emails and chat logs.

Marketing and Newsletter 


Processing your personal data to send you offers, style updates, bonus coupons, birthday offers, information about contests, and special invitations to sales and events by email, as well as analysis of the effectiveness of our website and marketing activities based on user behavior

Consent

  • Contact details: first and last name, email address, phone number
  • Date of birth (optional),
  • IP address,
  • Data generated by (e.g., purchase history, clicks, and browsing).

Customer satisfaction analysis

Legitimate interest

  • Contact details: first and last name, email address,
  • IP address,
  • Data generated by (e.g., purchase history, clicks, and browsing).


For how long will we process your personal data?  

The data retention period depends on the purposes for which the data will be processed. SIS commits to storing and processing your personal data no longer than necessary to fulfill our contractual and consumer obligations.

We will stop processing your data for marketing purposes when you close your customer account or end your membership and/or actively opt out of further marketing communication from us.

Who do we share your personal data with? 

Your personal data is accessible only to authorized persons who use it to achieve the intended processing purposes.

SIS processes your personal data within the European Union or the European Economic Area (EU/EEA). 

However, in order to ensure the highest efficiency of our services, some SIS service providers are based outside the European Economic Area in third countries that have not been approved by the European Commission as safe for data transfer. In such cases, we will apply the standard contractual clauses of the European Commission, which constitute a set of contractual conditions binding both the sender and the recipient of personal data, and which guarantee the protection of the rights and freedoms of individuals. 

What are your rights regarding personal data processed by SIS and how can you exercise them? 

SIS prioritizes protecting the confidentiality of clients' personal data and ensuring the ability to exercise rights related to personal data protection. 

The client may exercise the rights described below regarding their personal data or ask us questions about our privacy policy at any time by contacting us electronically at:

ciao@sheissunday.com

In some cases, for identification, we may ask you to provide a copy of a document confirming your identity.

The client has the right to:

  • Access to your personal data that we store (right of access),  
  • Requests to correct your personal data if they contain errors or are outdated (Right to rectification),
  • Requests to delete your data, provided they are no longer needed for the purposes for which they were collected, or there is no other legal basis for their processing (Right to data deletion),
  • Requests to restrict the processing of your data in certain cases (Right to restriction).

Additionally: 

  • If you have given us consent to process your data for a specific purpose, you have the right to withdraw it at any time (Right to withdraw consent),
  • If the processing of your data is based on our legitimate interest, you have the right to object to this processing (Right to object to processing based on our legitimate interest),
  • If the legal basis for processing your data is the performance of a contract, you also have the right to transfer your personal data (Right to data portability).

We also inform you of your right to file a complaint with the President of the Office for Personal Data Protection (UODO) if you believe that SIS is processing your personal data improperly, as follows: 

  • In written form at: Office for Personal Data Protection - ul. Stawki 2, 00-193 Warsaw, Poland
  • In electronic form at: kancelaria@uodo.gov.pl


Changes to the Privacy Policy 

The Privacy Policy may be adjusted depending on the development of SIS services or changes in legal regulations. The client will always find the most up-to-date version of the Privacy Policy on our website.

Last update: 03/03/2026