Michael Kors Privacy Policy
Last Updated: 30.08.2024
TABLE OF CONTENTS
- PRIVACY NOTICE SCOPE AND CONTROLLER
- HOW WE COLLECT INFORMATION OR OBTAIN INFORMATION
- HOW WE USE PERSONAL DATA
- WITH WHOM DO WE SHARE PERSONAL INFORMATION
- YOUR PRIVACY RIGHTS/WITHDRAWING YOUR CONSENT
- HOW LONG DO WE KEEP YOUR PERSONAL DATA
- TRANSFER AND PROCESSING OF INFORMATION IN THE U.S. AND OTHER COUNTRIES
- SECURITY SAFEGUARDS
- CHANGES TO THIS PRIVACY POLICY
- CONTACT US
1. PRIVACY NOTICE SCOPE AND CONTROLLER
This Privacy Policy applies to information that Michael Kors (UK) Limited, 90 Whitfield Street, London, Greater London, W1T 4EZ, United Kingdom, and their parents, subsidiaries and affiliate entities worldwide (individually and collectively referred to herein as “Michael Kors”, “we,” “us” or “our”) collects, uses, discloses or otherwise processes from and about you in connection with the following (individually, a “Service” and collectively, the “Services”):
- on or in connection with your visit to our retail, outlet or pop-up stores, in-person events or otherwise offline in the UK; through interactions with our customer service representatives over the phone (via call, text or other direct messaging option), in-person, online, or otherwise;
- in connection with your visits to, accounts created or purchases made on michaelkors.co.uk (or any subdomain thereof), or one of our other websites, applications or other services from which you are accessing this Privacy Policy (each referred to herein as a “Site,” and collectively, the “Sites”);
- in connection with our marketing mail or e-mail lists or store communications;
- when submitting information in connection with surveys, sweepstakes, contests, product rating/review submissions, social media promotions from which this version of the Privacy Policy is linked to or referred to.
The “Personal Data” we collect and process under this Privacy Policy means any information from which you are or can be identified and may include your name, postal address, zip or postal code, email address, telephone number, date of birth, payment information, demographic information, transaction details, IP address, and other information we may collect, depending on the circumstances.
Personal Data we collect under this Privacy Policy is controlled by Michael Kors (UK) Limited and may be processed by our processors or service providers that help us operate, administer and provide our various Sites and Services. Where Personal Data is transferred to any of our processors, service providers, parents, subsidiaries and affiliate entities worldwide, it will be done in accordance with Section 7.
A: Out of Scope:
- Information collected through our Careers Page is subject to a separate privacy notice, located where you submit your application;
- The Sites are not directed, targeted to or meant for use by individuals under the age of eighteen (18). Individuals who are below the age of eighteen (18) (or the age of majority in the applicable jurisdiction) should not use the Sites or our Services without authorization from a parent or legal guardian.
- The Sites may contain links (which may take the form of hyperlinks, widgets, clickable logos, plug-ins, images or banners) to or from websites, platforms and services operated by entities other than Michael Kors (“Third Party Websites”). This Privacy Policy does not apply to Third Party Websites, and we recommend that you review their posted privacy policies so that you understand the relevant information collection, use and disclosure practices of such other websites and services.
Additional privacy policies may be provided by us to you in connection with certain activities, programs, offerings, websites, where new purposes for processing your Personal Data arise or to clarify our practices regarding your Personal Data. Where additional privacy notices arise, they are in addition to this Privacy Policy, and should any conflict arise between the terms in those privacy policies and this Privacy Policy, the terms of the applicable privacy notice are given precedence in connection with the activities, programs, offerings, websites, or new purposes of processing Personal Data that gave rise to that privacy policy only.
2. HOW WE COLLECT OR OBTAIN INFORMATION
A. Information Collected or Obtained Directly From You:
We collect or obtain information from you in connection with the Sites and Services as described in Section 1. When you are a creating an account with us for the first time with an email address that you have previously provided to us in another circumstance (e.g., in one of our stores, when signing up for our email communications, or by entering one of our sweepstakes or other promotions), we may recognize that email address and, once you have completed the online account set-up process, you may be able to see some of your other information already included in your new online account for your convenience. You can always change this information by signing into your online account.
In addition to collecting, using, disclosing or otherwise processing information about you as addressed above in Section 1, in some cases, you may provide Personal Data to us about another person, such as when you purchase a gift for someone and request that we ship it to that person, when you share a Michael Kors discount with another person or when you refer or share Michael Kors Site content or Services with another person. In such cases, you confirm that you have the authorization of the other person to provide us with such information.
B. Site Usage Information & Other Information Collected Automatically:
As part of the standard operation of the Site(s), certain information is collected automatically through “Tracking Technologies” (meaning, cookies, local shared objects, web beacons, internet tags, pixels and other similar technologies used in connection with operating and delivering a website) about your visits to the Site(s) and / or the device you are accessing a Site through (such as your IP address, and information about your browsers, your device, your location, and your shopping, browsing and other usage activities) (referred to herein as “Site Usage Information”). Information regarding our practices and your choices related to Tracking Technologies and Site Usage Information can be found in our Cookie Notice. Where we combine Site Usage Information with Personal Data in a manner in which you may be identified or identifiable, the combined information shall be treated as Personal Data and handled in accordance with this Privacy Policy in addition to our Cookie Notice.
C. Third-Party & Publicly Available Sources:
We work closely with third parties (such as business partners, social media platforms, advertising networks, analytics providers, search information providers, address update providers, data append providers, co-promotion partners and credit reference agencies), and may receive demographic and other personal information about you from those third parties (subject to your actions and privacy settings on those Third Party Websites, where applicable), which we may combine with the information you have provided to us. We process all Personal Data we obtain from such other sources in accordance with this Privacy Policy.
Note that we work with social media providers like Meta (Facebook, Instagram, etc.), Pinterest, Snapchat, TikTok and other third-party platforms in connection with marketing or advertising our Sites. Content and information that you submit on or through social media platforms may appear on our Sites through feeds or interfaces that we have with those platforms. We are not responsible for the information, content and/or privacy practices of any such Third Party Websites or content pulled through them and recommend that you not submit or post any information to such forums that would be considered sensitive or would enable others to identify, contact or locate you.
For information about the third parties we work with in addition to those referenced in this Privacy Policy, please submit an Access request as described in Section 5. Your Privacy Rights below.
3. HOW WE USE PERSONAL DATA
We use the Personal Data we collect for a variety of purposes and based on one or more legal basis for us to use it, as set out in the chart below. In particular, we will use Personal Data: (1) where it is necessary for us to perform our contract obligations with you (for example, to fulfil your order) or third parties; (2) to comply with our legal obligations (for example, taxes or to process data rights requests); (3) to pursue our legitimate interests (or those of a third party) in a way which might reasonably be expected as part of running our business and which does not materially impact your interests, rights or freedoms, and as further detailed below; or (4) for the purpose we ask to use your Personal Data for; for example, where you sign-up to maintain an account profile or receive our email newsletters. You can withdraw your consent at any time by following the instructions in Section 5. Your Privacy Rights.
Where the justification includes “our legitimate interest,” that includes one or more of the following categories of legitimate interest processing:
- Fraud detection and prevention;
- Monitoring, detecting, and protecting the security and availability of our information, systems, networks and physical locations;
- General Michael Kors operations and due diligence;
- Product research, development and enhancement; and
- Communications, operational and marketing (via email, phone, sms, or as otherwise noted at point of collection),
- Marketing, advertising (including targeted advertising), modeling and performance measurement.
PURPOSE | WHAT WE USE |
JUSTIFICATION (we rely on one or more legal basis) |
---|---|---|
To improve your experience in our stores and on the Sites including to track your activities on the Sites; to track clicks, purchases and conversion; to recognize your computer or device so that you are able to save your preferences and stay logged in to the Site without having to re-enter your online account credentials; to preserve the contents of your shopping cart and remind you if you have left items in it, or to remind you if you left the Sites without adding items to your cart; and to otherwise enhance, monitor and analyze Site usage. |
Name, email address, postal address (including postcode), telephone number, date of birth, demographic information, order history, IP address, preferences, Site Usage Information |
Our legitimate business interest; consent |
To process and fulfill your requests for products and services, and to keep you informed about your requests |
Name, email address, postal address (including postcode), telephone number, payment information |
Performance of our contract obligations; our legitimate interest |
To better understand you (including through profiling activities), in order to provide relevant, more tailored offers, advertising and messaging on and in connection with our Sites, services and products, and personalize your experience on the Sites as permitted by relevant law |
Name, email address, postal address (including postcode), telephone number, date of birth, order history, IP address, preferences, Site Usage Information |
Our legitimate interest; consent |
To contact you (via postal mail, email, SMS/Text, phone and/or any other method you have elected) with promotional materials about Michael Kors, its services, products, stores, events and select partners from time to time |
Name, email address, postal address (including postcode), telephone number, preferences, Site Usage Information |
Our legitimate interest; consent |
To contact you when necessary or appropriate in connection with your relationship with us (such as, via email, in regards to your rating or review submissions) |
Name, email address, postal address (including postcode), telephone number, preferences, Site Usage Information |
Performance of our contract obligations; our legitimate interest |
For market research, performance measurement of our marketing practices and advertising campaigns, improvement of our advertising efforts, marketing emails, merchandise selections, content, services, customer service, business planning, online and offline operations and overall shopping experience |
Name, email address, postal address (including postcode), telephone number, date of birth, order history, IP address, Site Usage Information |
Performance of our contract obligations; our legitimate interest |
For customized or targeted advertising purposes or profiling activities, we may use information about our customers to generate “target audiences,” "lookalike audience" or similar audiences of prospective customers through Meta (Facebook, Instagram, etc.), Google, Snapchat, Pinterest, TikTok or similar platforms in order to reach customers who appear to have shared interests or similar demographics to our existing customers or to reach existing customers. |
Name, email address, postal address (including postcode), telephone number, Site Usage Information |
Our legitimate interest, consent |
To enforce our terms and conditions, and to protect the security or integrity of the Sites, our customers and our business in general (such as protecting against illegal or fraudulent activity, or misuse including cyber attacks) |
Name, email address, postal address (including postcode), telephone number, date of birth, payment information, order history, IP address, Site Usage Information |
Our legitimate interest |
To set up and manage your online account (including, for example, to send password reminders or notifications to changes to your account details) and to process your communication and privacy preferences |
Name, email address, postal address (including postcode), telephone number, date of birth, payment information, order history, preferences, Site Usage Information |
Performance of our contract obligations; our legitimate interest; consent |
To process product returns, replacements, repairs and alterations; to resolve product issues (e.g., sending replacement products); and other customer service related issues |
Name, email address, postal address (including postcode), telephone number, payment information, order history |
Performance of our contract obligations; our legitimate interest |
To comply with legal requirements to which Michael Kors may be subject (e.g., tax or financial reporting requirements and court orders) |
Name, email address, postal address (including postcode), telephone number, date of birth, payment information |
Legal obligation |
Where permitted by law, to monitor our stores for safety and loss prevention purposes. |
CCTV video and images |
Our legitimate interest(Please ask in-store if you would like more details about how we use CCTV recordings and the stores corresponding CCTV Privacy Notice, where applicable) |
A. Customized / Targeted Advertising or Profiling Activities.
We use various advertising and marketing capabilities to advertise our products and Services. Some methods include creating customer audiences, targeted advertising or profiling activities whereby we may use various factors, including Personal Data, to analyze, predict, or infer characteristics about the personal preferences, interests, shopping behavior, and so forth, of existing or potential customers. Some of these activities include building custom or look-alike audiences, delivering targeted advertising through third party partners (such as social media platforms or ad-based publishing partners) or building customer lists through the use of automated processing or profiling. We ensure that when we carry out these activities, we do so based on our legitimate interest in marketing or advertising or, where required by applicable law(s), via your consent. You may have the right to restrict or withdraw your consent in connection with such activities and may contact us as set forth in Section 5. Your Privacy Rights to make such request.
4. WITH WHOM DO WE SHARE PERSONAL INFORMATION
We may disclose Personal Data we process for the following purposes and in the following ways, to the extent permitted by law and depending on such purpose(s) or way(s):
RECIPIENT OR RECIPIENT CATEGORY/PURPOSE | WHAT WE SHARE |
JUSTIFICATION (we rely on one or more legal basis depending on the purpose as described in the How We Use Information section above) |
---|---|---|
To our parents, subsidiaries and affiliates, including Michael Kors (USA), Inc., and Michael Kors (Switzerland) GmbH, for all the same purposes described in the How We Use Information section above. |
Name, email address, postal address (including postcode), telephone number, date of birth, demographic information, order history, IP address, payment information, preferences, Site Usage Information |
Performance of our contract obligations; our legitimate interest; consent |
To our processors, service providers and suppliers who process such information on our behalf, for all the same purposes described in the How We Use Information section above. |
Name, email address, postal address (including postcode), telephone number, date of birth, demographic information, order history, IP address, payment information, preferences, Site Usage Information |
Performance of our contract obligations; our legitimate interest; consent |
To payment providers or payment platforms* in connection with fulfillment of your payment obligations and tailoring the payment options available to you. |
Name, billing and shipping address, email address, phone number, date of birth, bank account or card details, personal ID number and order details |
Performance of our contract obligations; our legitimate interest; legal obligation. |
To provide information to and as required by local law enforcement agencies, other local government authorities, or otherwise required by law or to protect the rights and safety of our property, company and customers. |
Name, email address, postal address (including postcode), telephone number, date of birth, demographic information, order history, IP address, payment information |
Our legitimate interest; legal obligation |
On a case-by-case basis, in the event that Michael Kors or substantially all of its assets are acquired by one or more third parties as a result of an acquisition, merger, sale, consolidation, bankruptcy, liquidation or other similar corporate reorganization, where your information may be one of the transferred assets. |
Name, email address, postal address (including postcode), telephone number, date of birth, demographic information, order history, IP address, payment information, preferences, Site Usage Information |
Our legitimate interest; legal obligation; performance of our contract obligations |
If you have consented to our sharing of your personal information with third parties to use for their own marketing purposes, as permitted by law. |
Name, email address, postal address (including postcode), telephone number, date of birth, order history |
Consent |
With social media platforms** or other interest or ad-based partners |
Name, email address, postal address (including postcode), telephone number, date of birth, demographic information, order history, IP address, payment information, preferences, Site Usage Information |
Our legitimate interest; consent |
Third-party marketing and web analytics providers** to help us track and analyze the use of our Site and to measure the effectiveness of our advertising, Site content and communications |
Name, email, Site Usage Information |
Our legitimate interest; consent |
*Payment Providers (i.e. Klarna or PayPal). In order to be able to offer you different payment options, we will pass to those payment providers listed on the checkout page the information listed above in order for such payment providers to assess whether you qualify for their payment options and process your payment. You can find general information on Klarna here and on PayPal here regarding how your personal data is handled by these payment providers by.
**Third Party Social Media, Marketing and Web Analytics Providers. We may share Site Usage Information or Personal Data with third party social media, marketing and web analytics providers who help us manage our electronic communications with you, measure the effectiveness of our advertising, as well as show you products that might interest you while you’re browsing the internet. These third parties include, but are not limited to, Google, Adobe, Oracle, Microsoft (e.g. Bing), TikTok, Pinterest, Snapchat, Meta (Facebook, Instagram, etc.), Teads, GumGum, Affiliate Window, Criteo and Lefty. Where we share Personal Data or Site Usage Information with these providers, it is done in accordance with this Privacy Notice and our Cookie Notice, as applicable.
SMS/TEXT MESSAGES. By providing your mobile phone number and signing up to receive text/SMS messages from us (including marketing messages, such as our store associate “clienteling” messages), you consent to receive automated and other marketing and informational SMS/text messages from us (“Text Messages”).
Your consent to receive Text Messages is not a prerequisite to purchasing any goods or services from us. You may not consent to receive Text Messages on behalf of someone else or provide someone else’s mobile phone number.
Message and data rates may apply to such Text Messages. Message frequency varies per month.
Text Messages are distributed via third party mobile network providers and, therefore, we cannot control certain factors relating to message delivery or guarantee availability or performance of this service, including liability for transmission delays or message failures. To receive HELP with Text Messages, contact us Europe.customerservice@michaelkors.com.
To opt out of our Text Messages, reply “STOP” to one of the Text Messages you receive. You may also choose not to receive Text Messages by emailing us at EUprivacy@michaelkors.com and specifying that this is your preference.
We may also obtain the date, time and content of your messages in the course of your use of Text Messages, and we will use such information in accordance with this Privacy Policy.
5. YOUR PRIVACY RIGHTS/WITHDRAWING YOUR CONSENT
A. Rights.
- Access. You have the right to request a copy of the Personal Data we are processing about you, or information about the third parties we share your Personal Data with, which we will provide back to you in electronic form. When making such request, please specify whether the Access request is for a copy of your Personal Data or information about the third parties we share your Personal Data with.
- Rectification. You have the right to have incomplete or inaccurate Personal Data that we process about you rectified. Note that you can always update your email address, billing and/or shipping address and communication preferences directly through your online account.
- Deletion. You have the right to request that we delete Personal Data that we process about you, except where we need to retain such data in order to comply with a legal obligation or to establish, exercise or defend legal claims.
- Restriction. You have the right to restrict our processing of your Personal Data where you believe such data to be inaccurate, our processing is unlawful, we no longer need or have your consent to process such data for a particular purpose, but where we are not able to delete the data due to a legal or other obligation or because you do not wish for us to delete it. In such case, we would mark stored personal information with the aim of limiting particular processing for particular purposes in accordance with your request, or otherwise restrict its processing. When making such request, please provide details regarding what Personal Data you wish to restrict our use of and for what purpose.
- Portability. You have the right to obtain a copy of the Personal Data we hold about you, in a structured, electronic format, and to transmit such data to another data controller, where this is (a) personal information which you have provided to us, and (b) if we are processing that data on the basis of your consent (such as for direct marketing communications) or to perform a contract with you (such as to manage your online account).
- Objection. Where the legal justification for our processing of your Personal Data is our legitimate interest, you have the right to object to such processing on grounds relating to your particular situation. We will abide by your request unless we have compelling legitimate grounds for the processing which override your interests and rights, or if we need to continue to process the data for the establishment, exercise or defense of a legal claim.
B. Updating Consent/Rights Requests.
If you have consented to our processing of your Personal Data, you may submit a rights request or update your consent choice (restrict/object/opt-out of certain processing activities) at any time, free of charge, as follows:
- If you wish to exercise one or more of the data privacy rights noted in Section 5.A, please email us at EUDataSubjectRequests@michaelkors.com, and include your name and email address associated with your activity or account with us, the right you are seeking to exercise, and details regarding your request.
- To opt-out of receiving marketing correspondence from us, follow the unsubscribe instructions located in the email (as relevant) or contact us at europe.customerservice@michaelkors.com and tell us you wish to be removed from receiving marketing correspondence.
- Please understand that if you opt out of receiving promotional correspondence from us, we may still contact you in connection with your online account, relationship, activities, transactions and communications with us.
- To restrict us from using your Personal Data in connection with Targeted Advertising, please contact us at EUDataSubjectRequests@michaelkors.com and indicate you are seeking to Opt-out of Targeted Advertising.
- To restrict consent or opt-out of targeted advertising or interest based ads delivered by our third party advertising partners on their respective platforms, see:
- For Google Interest based Ads, click here
- For Facebook interest-based ads, click here
- For Instagram interest-based ads, click here
- For Pinterest interest-based ads, click here
- For TikTok interest-based ads, click here
- To update your consent choices regarding Cookies on our Site, please see the Cookie Notice.
- To opt out of our Text Messages, reply “STOP” to one of the Text Messages you receive or email us at Europe.customerservice@michaelkors.com and specify your wish to opt-out of Text Messaging.
For your own privacy and security, we may require you to prove your identity before proceeding with the request or providing requested information.
Note that the rights outlined above do not extend to non-Personal Data.
C. Make a Complaint.
You have the right to lodge a complaint with the applicable local data authorities if you believe that we have not complied with applicable data protection laws.
Please click here for a list of National Data Protection Authorities, members of the European Data Protection Board.
6. HOW LONG DO WE KEEP YOUR PERSONAL DATA
Your Personal Data is stored by us and/or our service providers for as long as necessary to fulfill the specific purposes described herein and to the extent permitted by applicable laws. When we no longer have a legitimate business purpose for your personal information, or when you request that we delete your personal information (except where we need to retain it in order to comply with a legal obligation or to establish, exercise or defend legal claims), we will remove such information from our systems and records, which includes taking steps to anonymize it so that you can no longer be identified from it.
7. TRANSFER AND PROCESSING OF INFORMATION IN THE U.S. AND OTHER COUNTRIES
Your Personal Data and other information may be transferred, stored and/or processed in the United States, European Union, Switzerland, United Kingdom and in other countries by our affiliates, processors or service providers, in accordance with the laws of those jurisdictions. We will ensure that such data is processed and transferred in accordance with this Privacy Policy and applicable laws.
Some countries may provide lesser privacy protections than the laws of your country of residence, and your information may be subject to those foreign laws and accessible to those foreign governments, courts, law enforcement and regulatory agencies. We ensure there are appropriate safeguards in place where Personal Data is transferred. For example, when your data is transferred to our affiliates in Switzerland, this is on the basis that Switzerland provides adequate data protection. When transferring your data to countries deemed to not provide adequate data protection, such as the United States, Michael Kors puts additional measures in place to protect information, such as through contracts with importing entities that include standard contractual clauses approved under applicable data protection legislation, as follows:
- For UK citizens: https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/international-transfers/international-data-transfer-agreement-and-guidance/
- For EU citizens: https://commission.europa.eu/publications/standard-contractual-clauses-international-transfers_en
- For Switzerland citizens: https://www.edoeb.admin.ch/edoeb/en/home/datenschutz/arbeit_wirtschaft/datenuebermittlung_ausland.html
8. SECURITY SAFEGUARDS
We have implemented technical and organizational security measures in an effort to safeguard the personal information in our custody and control. Such measures we have implemented include, for example, limiting access to personal information only to employees and authorized service providers who need to know such information for the purposes described in this Privacy Policy, as well as other administrative, technical and physical safeguards. Additionally, our processors and service providers are not authorized to use or disclose your Personal Data for any purpose other than providing the services to us or on our behalf, or as otherwise may be required by applicable law. While we endeavor to always protect our systems, Sites, operations and information against unauthorized access, use, modification and disclosure, due to the inherent nature of the Internet as an open global communications vehicle and other risk factors, we cannot guarantee that any information, during transmission or while stored on our (or our service providers’) systems, will be absolutely safe from intrusion by others, such as hackers.
To provide you with increased security, certain personal information stored in your online account is only accessible via your username and password. You are responsible for maintaining the confidentiality of your online account credentials, and we strongly recommend that you do not disclose your online account username or password to anyone. Michael Kors will never send you an email requesting that you provide your password via an unsolicited communication nor verify any credit card information, financial information or other personal information outside of the check-out process.
Please immediately report any such communication or request to us at europe.customerservice@michaelkors.com of any unauthorized use of your online account credentials or any other suspected breach of security.
9. CHANGES TO THIS PRIVACY POLICY
We may change this Privacy Policy from time to time and the amended notice will be posted to the Sites. Under certain circumstances (for example, in connection with certain material adverse changes to this Privacy Policy), we may also elect to notify you through additional means, such as posting a notice on the home page(s) of the Sites or contacting you via email.
10. CONTACT US
If you have any questions about this Privacy Policy, please contact us at EUprivacy@michaelkors.com, or by mail at: Michael Kors, 90 Whitfield Street, London, W1T 4EZ, Attn: Legal department.