NexCommerce VCC, operating the online store Neximerce at https://neximerce.com, respects your privacy and is committed to protecting your personal data.
This Privacy Policy explains how we collect, use, store and disclose personal data when you visit our website, create an account, place an order, contact us, subscribe to communications, or otherwise interact with Neximerce.
Neximerce is an independent online store offering keyboards, keyboard sets, compatible replacement parts and related products. We are a retailer and are not the original manufacturer of products unless expressly stated otherwise on the relevant product page.
We process personal data in accordance with the Regulation (EU) 2016/679 ("GDPR"), applicable Bulgarian data-protection legislation, the applicable EU and national rules concerning electronic communications and cookies, and other applicable laws in the countries in which we offer our services.
1. Data Controller
The data controller responsible for the processing of your personal data is:
NexCommerce VCC
Unified Identification Code (UIC): 208551491
VAT Identification Number: BG208551491
Managing Director / Legal Representative: Ventsislav Veselinov Valchev
Registered Office:
Republic of Bulgaria
4000 Plovdiv, Plovdiv Region
Municipality of Plovdiv, Tsentralen District
59 Iztochen
E-mail: service@neximerce.com | Phone: +359 889 863 565
Website: https://neximerce.com
For privacy-related questions or requests concerning your personal data, please contact us using the E-mail address above.
2. Scope of This Privacy Policy
This Privacy Policy applies to personal data collected through:
-
the Neximerce website;
-
product and collection pages;
-
customer accounts;
-
shopping-cart and checkout functions;
-
order and payment processes;
-
customer-service communications;
-
contact forms;
-
E-mail communications;
-
marketing communications, where applicable;
-
cookies and similar technologies;
-
other interactions with Neximerce.
This Privacy Policy does not apply to websites, applications or services operated by third parties. Where you access a third-party service through a link or payment option, that third party's own privacy policy may also apply.
3. Personal Data We May Collect
Depending on how you interact with Neximerce, we may collect the following categories of personal data.
Identification and contact information
This may include:
-
first and last name;
-
billing address;
-
delivery address;
-
E-mail address;
-
telephone number.
Order and transaction information
This may include:
-
products purchased;
-
order number;
-
order date;
-
order value;
-
delivery information;
-
billing information;
-
refund and return information;
-
customer-service communications relating to an order.
Payment information
When you make a payment, payment-related information is processed through the relevant payment service provider.
Depending on the payment method used, this may include transaction identifiers, payment status, billing details and other information required to authorize or verify the transaction.
Neximerce does not intentionally store complete payment-card numbers or card security codes such as CVV/CVC on its own website.
Payment-card information may be processed directly by the relevant payment provider in accordance with that provider's privacy and security practices.
Technical and usage information
When you visit our website, certain technical information may be collected automatically, including:
-
IP address;
-
browser type and version;
-
operating system;
-
device type;
-
language settings;
-
referring website;
-
pages visited;
-
date and time of access;
-
approximate geographic information derived from technical data;
-
information concerning interactions with the website.
Communications
If you contact us, we may retain the information contained in your message, including your E-mail address, telephone number and any information you voluntarily provide.
4. How We Use Personal Data
We process personal data only for legitimate and defined purposes.
Depending on the circumstances, we may use personal data to:
Process and fulfill orders
We use your information to:
-
receive and process orders;
-
confirm purchases;
-
arrange payment;
-
prepare and ship products;
-
provide delivery updates;
-
handle returns, refunds and exchanges;
-
provide customer support.
The legal basis is Article 6(1)(b) GDPR, processing necessary for the performance of a contract or for taking steps at your request before entering into a contract.
Meet legal and accounting obligations
We may process personal data to:
-
issue and maintain invoices;
-
maintain accounting records;
-
comply with tax requirements;
-
respond to lawful requests from authorities;
-
comply with consumer-protection and other legal obligations.
The legal basis is Article 6(1)(c) GDPR, compliance with a legal obligation.
Provide customer service
We use information provided through E-mail, contact forms or other communication channels to respond to questions, complaints, order-related requests and other customer-service matters.
Depending on the circumstances, the legal basis may be Article 6(1)(b) GDPR or Article 6(1)(f) GDPR, our legitimate interest in providing effective customer support and managing our customer relationships.
Maintain website security
We may process technical information to:
-
protect the website against fraud and abuse;
-
detect suspicious activity;
-
prevent unauthorized access;
-
maintain website security;
-
investigate technical incidents;
-
protect our legal rights and the rights of our customers.
The legal basis is generally Article 6(1)(f) GDPR, our legitimate interest in maintaining a secure and reliable online store.
Improve our website and services
Where permitted by law, we may use aggregated or appropriately protected information to understand website performance, improve navigation, improve product presentation and enhance the customer experience.
Where non-essential analytics or tracking technologies require consent, we will rely on your consent.
Marketing communications
Where permitted by applicable law, we may send promotional E-mails or other marketing communications where we have an appropriate legal basis, including your consent where required.
You may unsubscribe from marketing communications at any time by using the unsubscribe link included in the relevant communication or by contacting us.
5. Legal Bases for Processing
Depending on the purpose, Neximerce relies on one or more of the following legal bases under Article 6 GDPR:
-
Performance of a contract – Article 6(1)(b): for processing and fulfilling orders and providing services requested by you.
-
Legal obligation – Article 6(1)(c): for accounting, taxation, consumer protection and other legal requirements.
-
Legitimate interests – Article 6(1)(f): for website security, fraud prevention, customer support, business administration and protecting our legal rights, provided that these interests do not override your fundamental rights and freedoms.
-
Consent – Article 6(1)(a): where consent is required, including certain non-essential cookies, analytics or marketing activities.
Where processing is based on consent, you may withdraw your consent at any time. Withdrawal does not affect the lawfulness of processing carried out before withdrawal.
6. Information You Are Required to Provide
Certain personal data are necessary to complete an order.
For example, we may require your name, delivery address, E-mail address and other information necessary to process and deliver your purchase.
If you do not provide information that is necessary for the performance of a contract or compliance with a legal obligation, we may be unable to accept or fulfill your order.
Providing information for optional marketing communications is voluntary.
7. Payment Information
Neximerce supports payment methods that may include:
-
Visa;
-
Mastercard;
-
American Express;
-
Maestro;
-
UnionPay;
-
Apple Pay;
-
Google Pay.
The availability of particular payment methods may depend on the customer's country, device, browser, payment provider and other eligibility requirements.
Payment transactions may be processed by third-party payment providers. These providers may independently process certain personal data in order to authorize, secure and complete a transaction.
We recommend reviewing the applicable privacy information provided by the relevant payment provider when using its services.
Neximerce does not request customers to send complete payment-card details, PINs or card security codes by E-mail.
8. Shipping and Delivery
To fulfill an order, relevant customer information may be shared with logistics, courier and delivery providers.
Depending on the destination and delivery service selected, this may include:
-
recipient name;
-
delivery address;
-
telephone number;
-
E-mail address;
-
order or shipment reference;
-
information required for delivery notifications.
The information is shared only to the extent reasonably necessary to fulfill and track the delivery.
Neximerce currently offers delivery to selected European markets, including:
-
Bulgaria;
-
Croatia;
-
Slovakia;
-
Germany;
-
Poland;
-
Austria;
-
Hungary.
Delivery times and shipping conditions are described in our Shipping Policy.
9. Service Providers and Other Recipients
We may disclose personal data to trusted third parties where necessary to operate the online store and fulfill the purposes described in this Privacy Policy.
These may include:
-
Shopify and related technology providers;
-
payment service providers;
-
fraud-prevention and security providers;
-
courier and logistics providers;
-
hosting and IT service providers;
-
analytics and website-performance providers;
-
customer-support service providers;
-
accounting and professional advisers;
-
legal advisers;
-
government authorities, courts or law-enforcement bodies where disclosure is required or permitted by law.
These providers may process personal data on our behalf and, where applicable, under contractual data-protection obligations.
We do not sell or rent customers' personal data to third parties.
10. Shopify
Neximerce uses Shopify to provide and operate its online-store infrastructure.
Shopify may process personal data in connection with providing its services to us, including website hosting, checkout, customer privacy functions, fraud prevention, analytics and other commerce-related services.
Shopify's privacy information is available at:
https://www.shopify.com/legal/privacy
Shopify also provides information concerning GDPR compliance and merchant responsibilities at:
https://help.shopify.com/en/manual/privacy-and-security/privacy/gdpr/comply-with-gdpr
11. Cookies and Similar Technologies
Neximerce uses cookies and similar technologies.
Some cookies are necessary for the operation of the website, including functions such as:
-
shopping cart functionality;
-
checkout;
-
security;
-
session management;
-
basic website functionality.
Other cookies may be used for analytics, personalization or advertising purposes.
Where applicable law requires consent, non-essential cookies will only be activated after you have provided the required consent through the cookie-consent mechanism.
You may manage your cookie preferences through the available cookie settings or through your browser.
For more information, please see our Cookie Policy.
12. Analytics and Advertising
Where applicable, Neximerce may use analytics or advertising technologies to understand website performance, measure advertising campaigns or provide relevant advertising.
Such technologies may process information such as:
-
IP address;
-
device information;
-
browser information;
-
pages viewed;
-
interaction data;
-
advertising identifiers;
-
approximate location;
-
information about interactions with advertisements.
Where required by law, these technologies will operate only after the appropriate consent has been obtained.
We do not use personal data for advertising purposes in a manner that overrides your rights or applicable data-protection requirements.
13. International Data Transfers
Some service providers used by Neximerce may process personal data outside the European Economic Area (EEA).
Where personal data are transferred outside the EEA, we take appropriate steps to ensure that the transfer is carried out in accordance with Chapter V GDPR.
Depending on the circumstances, an international transfer may be based on:
-
an adequacy decision adopted by the European Commission;
-
Standard Contractual Clauses approved by the European Commission;
-
another lawful transfer mechanism permitted under applicable data-protection law.
Where appropriate, additional safeguards may be implemented.
14. Data Retention
We retain personal data only for as long as necessary for the purposes described in this Privacy Policy, unless a longer period is required or permitted by law.
Different categories of information may therefore be retained for different periods.
Customer and order information
Order-related information is retained for as long as necessary to fulfill the order, manage returns, warranties, complaints and disputes, and meet applicable legal and accounting obligations.
Accounting and tax information
Certain accounting and financial records may need to be retained for statutory periods.
Under Bulgarian accounting legislation, accounting registers and financial statements, including documents relating to tax control, audits and subsequent financial inspections, are generally subject to a statutory retention period of 10 years, while other categories of accounting information may be subject to different statutory periods.
Customer communications
Customer-service communications may be retained for as long as reasonably necessary to resolve the relevant matter, document the business relationship or protect our legal rights.
Marketing information
Where processing is based on consent, marketing data will be retained until you withdraw your consent or until the information is no longer required for the relevant purpose, subject to applicable legal requirements.
Technical information
Technical logs and security information may be retained for periods appropriate to security, troubleshooting, fraud prevention and legal requirements.
When personal data are no longer required, they will be deleted, anonymized or otherwise securely disposed of, subject to applicable legal retention requirements.
15. Your GDPR Rights
If the GDPR applies to you, you have the following rights, subject to the conditions and limitations provided by law:
Right of access
You may request confirmation as to whether we process your personal data and request a copy of the personal data we hold about you.
Right to rectification
You may request correction of inaccurate or incomplete personal data.
Right to erasure
You may request deletion of your personal data where the legal requirements for erasure are satisfied.
The right to erasure is not absolute and does not apply where continued processing is required by law or for certain legitimate purposes.
Right to restriction of processing
You may request restriction of processing in circumstances provided by Article 18 GDPR.
Right to data portability
Where applicable, you may request your personal data in a structured, commonly used and machine-readable format and request transmission to another controller.
Right to object
You may object to processing based on our legitimate interests.
You may also object to direct marketing at any time.
Right to withdraw consent
Where processing is based on consent, you may withdraw your consent at any time.
Rights relating to automated decision-making
Where applicable, you have rights concerning decisions based solely on automated processing, including profiling, that produce legal effects or similarly significantly affect you.
Neximerce does not intend to make decisions based solely on automated processing that produce legal or similarly significant effects on customers unless this is specifically disclosed and permitted under applicable law.
16. How to Exercise Your Rights
To exercise your privacy rights, please contact us:
E-mail: service@neximerce.com | Phone: +359 889 863 565
Please provide enough information for us to identify your request and verify your identity where reasonably necessary.
We may request additional information where necessary to prevent unauthorized disclosure of personal data.
We will respond to valid requests within the time period required by applicable law.
Under the GDPR, requests concerning data-subject rights are generally handled within one month, subject to the applicable rules regarding extensions for complex or multiple requests.
17. Right to Lodge a Complaint
You have the right to lodge a complaint with a competent data-protection supervisory authority if you believe that your personal data have been processed unlawfully.
As NexCommerce VCC is established in Bulgaria, the Bulgarian supervisory authority is:
Commission for Personal Data Protection (CPDP)
2 Prof. Tsvetan Lazarov Blvd.
1592 Sofia
Bulgaria
E-mail: kzld@cpdp.bg
Website: https://cpdp.bg/
The CPDP is the Bulgarian supervisory authority responsible for monitoring compliance with applicable personal-data protection legislation.
You may also have the right to contact the supervisory authority in the EU Member State where you normally reside, work, or where you believe an infringement occurred, subject to the rules applicable to your situation.
18. Data Security
We implement reasonable technical and organizational measures designed to protect personal data against:
-
accidental loss;
-
unauthorized access;
-
unauthorized disclosure;
-
alteration;
-
destruction;
-
unlawful processing.
Security measures may include access controls, encryption or secure transmission technologies, authentication mechanisms, monitoring, backups and other appropriate safeguards.
However, no Internet transmission or electronic storage system can be guaranteed to be completely secure.
19. Data Breaches
If a personal-data breach occurs that is likely to result in a risk to the rights and freedoms of individuals, Neximerce will take the measures required by applicable law, including notification to the competent supervisory authority where required.
Where legally required, affected individuals will also be informed without undue delay.
20. Children's Privacy
Neximerce is a general consumer online store and is not specifically directed at children.
We do not knowingly collect personal data from children for purposes that are prohibited by applicable law.
If you believe that a child has provided personal data to us without appropriate authorization, please contact us so that we can review the situation and take appropriate action.
21. Product and Manufacturer Information
Neximerce is an independent retail store and is not affiliated with, sponsored by, or endorsed by the original equipment manufacturers (OEMs) unless expressly stated otherwise.
Certain products offered through Neximerce may be compatible replacement parts, accessories or products designed for use with equipment manufactured by third parties.
Product pages may identify relevant manufacturers and provide compatibility information where applicable.
The following disclaimer applies:
Disclaimer: These products are compatible replacement parts and are not manufactured, sponsored, or endorsed by the original equipment manufacturers (OEM).
This disclaimer concerns the commercial and product relationship between Neximerce and third-party manufacturers and does not change the way personal data are processed under this Privacy Policy.
22. Third-Party Websites and Services
Our website may contain links to third-party websites or services.
Neximerce is not responsible for the privacy practices, security or content of third-party websites.
Before providing personal information to a third party, we recommend reviewing that third party's privacy policy and terms.
23. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect:
-
changes to our business;
-
changes to our website or services;
-
changes to payment or delivery providers;
-
changes to applicable laws;
-
changes to data-processing practices;
-
changes to privacy or security requirements.
The latest version will always be published on the Neximerce website.
Where required by law, we will provide additional notice or obtain consent before implementing material changes that require such action.
24. Contact Us
If you have questions about this Privacy Policy, the processing of your personal data, or wish to exercise your GDPR rights, please contact us:
NexCommerce VCC
Unified Identification Code (UIC): 208551491
VAT Identification Number: BG208551491
Registered Office: Republic of Bulgaria, 4000 Plovdiv, Plovdiv Region, Municipality of Plovdiv, Tsentralen District, 59 Iztochen
Managing Director / Legal Representative: Ventsislav Veselinov Valchev
E-mail: service@neximerce.com | Phone: +359 889 863 565
Website: https://neximerce.com
Last updated: November 17, 2025