Privacy policy for Skråmträsk Kvarn (Skråmheden AB)
As a business, we sometimes need to record personal data in order to provide goods and services to our customers. In this policy, we want to explain how we collect and use your personal data and the personal data of others, so that you feel safe as our customer. We also want to inform you about your rights regarding the processing of personal data under the General Data Protection Regulation (GDPR).
Controller of personal data
The data controller is Skråmheden AB, org.nr 556995-0891.
Address: Skråmträsk 56, 931 96 SKELLEFTEÅ. Website: kvarn.skramtrask.se
Our processing of personal data
The personal data we process depends on the relationship you have with us.
Booking a table, take away or event tickets
If you as a customer want to book a table, tickets or order take away, we need certain personal information to be able to handle your booking/order, i.e. fulfill our agreement with you. Therefore, the following information is saved:
- Name
- Address
- E-mail address
- Telephone number
- Purchase history
- Payment details (Please note that card payments are handled by third parties. We never see your credit card number in our system)
The customer and invoicing data required to comply with the Accounting Act is stored for up to 8 years. Other data is deleted one year after the end of the customer relationship.
Email inquiries
In the case of e-mail enquiries, your e-mail address and the information you choose to provide in your message will be stored. These data are deleted after the conversation has ended. If your request concerns the booking of tickets, the data will be transferred to our regular customer register (see above).
Suppliers and business contacts
Contact details of our contact persons at suppliers are stored in order to maintain our business contacts. The personal data that is processed is:
- Name
- E-mail address
- Telephone number
This data is kept for as long as we have a business relationship with each person.
How we collect personal data
We primarily collect data directly from you. This happens, for example, when you book tickets for one of our events by phone, email or our partner Tickster.
All payment information for card payments is handled by external suppliers who are themselves responsible for the processing of personal data during payment. We therefore do not handle any credit card details or similar.
In addition to the personal data listed above, information about IP addresses is collected when you visit our website. Our website also contains cookies that are used to make the site more user-friendly and to read visitor statistics, etc. Cookies can be blocked through the settings in your browser.
Sharing of personal data
We do not share personal data with others unless it is necessary for the performance of the contract between us and you as a customer. For ticket bookings, we have a data processing agreement with Tickster that ensures that personal data is not disclosed to other parties. We have also signed agreements with our IT service providers and our audit firm regarding the handling of our customers' personal data. These companies must ensure that confidentiality is respected and do not use the personal data for their own purposes.
By law, we are obliged to disclose personal data to government authorities (e.g. the police and the tax authorities) in the event of a suspected crime.
Storage and security
All personal data collected by us is stored in IT systems and servers located within the EU/EEA. We primarily use Swedish servers. Both we and our IT suppliers work continuously to protect our systems from intrusion.
Your rights
As a data subject, you have a number of rights under the GDPR.
- Right to a register extract.
If you want to know what personal data we have stored about you, you can request a register extract from us. - Right of rectification
If you discover that your data is incorrect, you can ask us to correct it. - Right to erasure
You can request that we erase the data we hold about you if it is not necessary for us to comply with a legal obligation (e.g. the Accounting Act). - Right to restriction
If, for example, you dispute the accuracy of your personal data, object to an alleged balancing of interests or believe that our processing is unlawful, you can request a restriction on the use of your data while the investigation is ongoing. - Right to data portability
You can request to receive your personal data from us in a structured format for use elsewhere.
If you wish to exercise any of these rights, you can contact us at gdpr@skramheden.se or send a letter to Skråmheden AB, Skråmträsk 56, 931 96 SKELLEFTEÅ.
The Swedish Data Protection Authority is the supervisory authority responsible for ensuring compliance with the GDPR. If you believe that we or any other company has failed in our handling of personal data, you can report this to the Data Inspectorate.
This privacy policy is effective from 2018-05-25
Cookies (cookies)
A cookie is a small text file that the website you visit requests to be stored on your computer. Cookies are used on many websites to give a visitor access to various features. The information contained in the cookie can be used to track how users browse.
At skramtrask.se we use cookies. This is needed, among other things, to be able to log in and shop in our web shop. Stored cookies also mean that you do not have to enter all the information the next time you come to our site. Cookies are also used to measure traffic to the website and to evaluate the marketing we do via social media and newsletters. If you do not want to accept cookies, some functions on the pages will stop working.
Cookies can be blocked by making certain settings in your browser. The browser can also delete previously stored cookies. See your browser's help pages for more information.

