Privacy Policy for marnihalasa.com
1. Introduction
At marnihalasa.com, we are committed to safeguarding your privacy and ensuring that your personal data is protected in accordance with applicable privacy regulations, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). This Privacy Policy outlines how we collect, use, disclose, store, and protect your personal information when you interact with our website. Our mission is to handle your data responsibly and transparently, reflecting our commitment to data protection and privacy-first practices.
2. Scope of Policy and Data Controller Role
This Privacy Policy applies to all visitors, users, and others who access marnihalasa.com or otherwise interact with our services. The data controller responsible for your personal data is Marni Halasa, reachable at [email protected]. As the data controller, we determine the purposes and means of the processing of your personal data.
3. Categories of Data Processed
We may collect and process the following categories of personal data:
a. Usage Data
Includes your IP address, browser type, browser version, pages visited, time and date of your visit, time spent on pages, and other diagnostic data collected through analytical tools.
b. Account Data
Includes your full name, postal address, email address, phone number, and other contact details you voluntarily provide during account creation, registration, or order processes.
c. Profile Data
Includes preferences, purchase history, activity logs, and behavioral data related to how you use or interact with features or content on marnihalasa.com.
d. Communication Data
Includes correspondence sent to or from us, including customer support inquiries, chat messages, and other communications with our team.
e. Technical Data
Includes device type, operating system, browser settings, time zone, language preferences, IP address, and related system configurations.
f. Transaction Data
Includes payment details (processed via secure third-party gateways), billing and delivery addresses, transaction timestamps, and order histories.
g. Preference Data
Includes marketing preferences, subscription choices, opt-in or opt-out status for newsletters or promotional communications, and related consent records.
4. Legal Bases for Processing
We process your personal data lawfully under one or more of the following legal bases:
– Consent: When you have given clear consent for us to process your data for a specific purpose (e.g., subscribing to a newsletter).
– Contract: Where processing is necessary to perform a contract with you, such as fulfilling an order.
– Legal Obligation: Where we are required to comply with a legal or regulatory obligation.
– Legitimate Interest: Where processing is necessary for our legitimate interests in operating, improving, and securing marnihalasa.com, provided these interests are not overridden by your rights.
5. Your Rights
Under GDPR and applicable laws, you have the following data protection rights:
– Right of Access: You can request copies of your personal data we hold about you.
– Right to Rectification: You can ask us to correct inaccurate or incomplete data.
– Right to Erasure: You may request deletion of your personal data, where applicable.
– Right to Restrict Processing: You may request us to suspend processing in certain circumstances.
– Right to Data Portability: You may obtain a portable copy of your personal data.
– Right to Object: You may object to processing based on legitimate interest or direct marketing.
– Right to Withdraw Consent: You may withdraw your consent at any time for processing requiring consent.
To exercise your rights, please contact us at [email protected].
6. Security Measures
We apply appropriate technical and organizational measures to protect your personal data, including:
– Data Encryption (in transit and at rest)
– Access Control and Role-Based Permissions
– Regular Data Backups and Secure Storage
– Staff Confidentiality Training and Compliance Programs
– Monitoring for unauthorized access and advanced threat protection
7. International Transfers
Your personal data may be processed in countries outside of your jurisdiction, including the United States, where data protection laws may differ from those in your country. In such cases, we implement safeguards such as Standard Contractual Clauses (SCCs), verifying Privacy Shield participation, or other lawful transfer mechanisms to ensure an adequate level of protection.
8. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, and as outlined below:
– Usage and Technical Data: up to 12 months
– Account, Profile, and Communication Data: for the duration of your relationship with us and up to 6 years thereafter for legal compliance
– Transaction Data: retained for a minimum of 6 years to comply with tax and financial regulations
– Marketing and Preference Data: until consent is withdrawn or data is deemed inactive for more than 24 months
9. Cookie Policy
marnihalasa.com uses cookies and similar tracking technologies to enhance your browsing experience. Cookies are small text files stored on your device. We categorize cookies as follows:
– Essential Cookies: Necessary for website functionality (e.g., page navigation, secure login)
– Functional Cookies: Support enhanced features like remembering preferences
– Performance and Analytics Cookies: Help us understand how the site is used (e.g., Google Analytics)
– Targeting/Advertising Cookies: Track browsing habits and may display relevant advertisements (used only with your consent)
10. Cookie Management and Compliance
Upon your first visit to marnihalasa.com, you will be presented with a cookie consent banner. You may accept or reject non-essential cookies. You may also manage your cookie preferences at any time through your browser settings or our website’s cookie management tools. All practices comply with GDPR and CCPA requirements for notice and consent.
Under CCPA, California residents have the right to:
– Request disclosure of data collected about them
– Request deletion of personal information
– Opt-out of the sale of personal information (Note: marnihalasa.com does not sell your personal data)
– Not be discriminated against for exercising their privacy rights
To make requests under CCPA, please contact [email protected].
11. Children’s Privacy
We do not knowingly collect or solicit personal information from individuals under the age of 13. If we become aware that we have received such data without verifiable parental consent, we will take steps to delete the information promptly. Parents or guardians may contact us at [email protected] to request deletion of any associated data.
12. Policy Updates & User Notifications
We reserve the right to update this Privacy Policy to reflect changes to our practices, technologies, legal obligations, or for other operational reasons. While we do not notify users individually of minor updates, material changes will be communicated through a prominent notice on marnihalasa.com prior to implementation. Your continued use of the site after such updates constitutes your acceptance of the revised policy.
13. Contact Information
For questions, concerns, or requests regarding this Privacy Policy or your personal data rights, please contact:
Email: [email protected]
Website: https://marnihalasa.com
We are dedicated to upholding your rights and maintaining full compliance with all applicable privacy and data protection laws. Please do not hesitate to reach out with any privacy concerns.