Last updated September 18th, 2020
1. Our Privacy Commitment
We take your privacy seriously. We strive to adhere to the principles of lawfulness, fairness, and transparency in how we collect and use your personal data as well as how we secure it.
This Privacy Policy is intended to help you understand what personal information we collect from you, how we use your personal information, who we share it with and what rights you have relating to your personal information.
Any reference in this Privacy Policy to “Company”, “We”, “Us” or “Our” refers to the Wallick Family Enterprises, Inc DBA ‘Classy Lady Yarnworks’ and any reference to “You”, “Your”, “Customer” or “User” refers to all Customers who purchase Products from the Website as well as all Users and Website Visitors.
2. When does this Privacy Policy apply?
This Privacy Policy applies when you use/access www.classyladyyarnworks.com (hereinafter referred to as “Website”).
3. Data Controller
Classy Lady Yarnworks is the data controller for your personally identifiable information collected through our Website.
4. General Information and Terminology
Whenever you use our Website and purchase any product from our Website, we process your personal data in compliance the General Data Protection Regulation and local privacy laws. We will not process your personal data unless we have a lawful basis for such processing.
For the purposes of this Privacy Policy, any reference to the following terms shall hold the meaning as defined in Article 4 of the General Data Protection Regulation (“GDPR”):
a. ‘Personal Data’ –
“Any information relating to an identified or identifiable natural person; an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person”.
b. ‘Processing’ –
“Any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction”.
5. Personal data we collect and process
Personal Data you provide to us voluntarily
- Information we collect when you purchase a product from our website
We collect certain personal information from you when you purchase a product from our Website. We currently request you to provide us your full name, your billing address, your shipping address (for physical product purchases) and your email address. We also store your order history on our database.
Purpose of Processing and Legal Bases
We process the above personal information to process your order and to contact you if required. The legal basis of our processing is the performance of our contract with you as set out in Article 6(1)(b) of the GDPR.
Data Retention Duration
We retain your personal information and purchase history for a maximum period of three years from the time of your order. We will purge your personal data from our records after the three year period unless we are required to keep this information on other lawful bases.
- Information we collect from you when you contact us
We enable our Users to contact us via email or by using the contact form available on our Website. We will collect your name, email address and the content of your inquiry when you send us an email or contact us through our contact form.
Purpose of Processing and Legal Bases
We process this information to assist you with your inquiries. The legal basis for our processing of this personal data is your consent in accordance with Article 6(1)(a) of the GDPR.
Data Retention Duration
We retain your personal information associated with your inquiry for a maximum period of six months from the date of last communication. We will remove all your personal data from our records after the lapse of the six month period unless we are required to keep this information on other lawful grounds.
- Collection of payment information by our payment processor
When you order a product through our Website, you will be required to provide your credit card information and authorize the payment. Please note that we do not store or transmit this information through our servers and your credit card information is collected directly by our payment processor.
Purpose of Processing and Legal Bases
This personal information is used for processing your order. The legal basis for processing is the performance of the contract as provided in Article 6(1)(b) of the GDPR.
Data Retention Duration
Our payment processor will securely retain your personal data in accordance with their own privacy policy. Please visit Square and Paypal to learn more about their privacy practices.
- Information we collect when you create an account on our Website
You can easily sign up on our website by simply providing the requested information on the registration screen. We currently only request you to provide us with your email address and select a password.
Purpose of Processing and Legal Bases
We use this information to create an account for you and to enable you to login to your account. The legal basis of our processing is performance of our contract with you as set out in Article 6(1)(b) of the GDPR.
Data Retention Duration
We only retain your personal information on our database for as long as your account is active. We will purge your personal data from our records within thirty days of your request to terminate your account unless we are required to retain this data on other lawful bases.
- Information we collect when you leave a product review
If you leave a product review on our website, we will use your name and the content of your review on our website for the benefit of other users.
Purpose of Processing and Legal Bases
We process this data for marketing our products and for an enhanced user experience on our website. The legal basis of our processing is your express consent which you grant us at the time you accept our terms and conditions and privacy policy. Consent is one of the legal bases as provided in Article 6 (1)(a) of GDPR.
Data Retention Duration
We retain the review data on our records for as long as we are operating unless you request deletion of this data from our records by withdrawing your consent.
Automatically collected information
We and our third-party service providers automatically collect certain information about you when you click on our Ads on third-party platforms or when you visit our Website.
We may collect information about you such as your browser type, your IP address, the device you use to access our website, the pages you visit on our website, time and date of your visit.
6. Cookies
We and third-party service providers that we use make use of cookies and other tracking technologies to identify you when you visit our website or third-party services, to analyze how our advertising campaigns are performing to learn how you use our Website and to serve retargeted ads to you. Cookies are also used to improve your user experience. Cookies are small pieces of data that are placed on your browser when you visit a website provided your browser is set to accept cookies. These cookies remain on your browser until they expire or you take active steps to delete them yourself. You can easily change your browser settings to decline cookies. To learn more, please visit www.allaboutcookies.org.
Which Cookies and Pixels we use on our Website
- Google Analytics
We use Google analytics services to better understand how users interact with our Website. Google Analytics is owned and operated by Google LLC. Google Analytics uses cookies that are stored on your device for the purpose of evaluating your use of our website. We use Google Analytics with IP anonymization enabled. We do not use the analytics tools in a way that will identify you. All information collected from you is stored on Google servers located in the US. You can learn more about how Google processes your personal information at this link.
You can stop these cookies from being stored on your computer by installing the browser plug-in available here.
- Facebook Pixel
We use Facebook Pixel which enables us to track user behaviour when they visit our website after clicking on our Facebook ad and to retarget ads to such users after they leave our website.
We also use Facebook Pixel to analyze how our Facebook ads are performing. All data is anonymous and we do not receive any personally identifiable User data from Facebook Inc. Although Facebook Inc does not disclose your personal data to us, this information is still stored and processed by Facebook Inc and may be used by them, in accordance with their own Privacy Policy.
If you do not wish for Facebook Pixel to use your data for the Facebook ads display, please contact Facebook the link provided here. Facebook is currently taking steps to ensure compliance with GDPR and is also certified under the Privacy Shield Agreement.
Pinterest Tag
We use Pinterest Tag which enables us to track user behaviour when they visit our website after clicking on our Pinterest ad and to retarget ads to such users after they leave our website.
We also use Pinterest Tag to analyze how our Pinterest ads are performing. All data is anonymous and we do not receive any personally identifiable User data from Pinterest, Inc.. Although Pinterest, Inc. does not disclose your personal data to us, this information is still stored and processed by Pinterest, Inc and may be used by them, in accordance with their own Privacy Policy.
If you do not wish for Pinterest, Inc. to use your data for the Pinterest ads display, please contact Pinterest at the link provided here.
- Mailerlite
We use Mailerlite to manage our mailing list and send our Newsletter to all subscribers. We will use Mailerlite to analyze how you interact with links sent in our Newsletter. To learn more please visit https://www.mailerlite.com/legal
You can decline cookies from our website by clicking decline in the cookie banner on our website or by changing your browser settings to decline all third-party cookies.
7. Sharing Your Data
We do not sell or rent your personal information to any third-party.
We may disclose your personal information in the following circumstance:
- If required to do so the performance of our service;
- If we are required to do so by law;
- If such disclosure is made to protect the vital interest of a data subject or another natural person;
- To perform our contract with you;
- Upon reasonable requests from the law enforcement and regulatory authorities.
In addition to Facebook pixel, Pinterest Tag, Google Analytics, and Mailerlite, here are some of the third-party services with whom we will share your personal data. Please note that we may decide to work with other third-party service providers who are not listed below, when we do so, we will try to update this Privacy Policy and include them in the list below:
- Our website is hosted on Dreamhost servers which may be located outside the European Economic Area;
- We may use services provided by Manychat who may come in contact with your information when you contact us using our chatbot;
- Your personal data may also be shared with our developers and other sub-contractors we use to deliver our services to you;
- We may also be required to share certain personal data with any governmental body and regulatory authority where we are required to provide such personal information by law.
8. Processing and Transfer of data to third countries
Our data processors are based in various jurisdictions around the world where the data protection laws may be different from those of your country of current residence. By accessing or in any way interacting with our Website, you give us your consent to transferring and processing your data in and outside the country of your current residence for the purposes outlined in this Privacy Policy or those that are compatible with the specified purposes. Whenever we transfer your personal information to another jurisdiction we take all necessary steps to ensure that your data is adequately protected in such recipient location.
9. Your Rights
The General Data Protection Regulation grants data subjects more control over their personal data and here are some of the rights that you can exercise regarding your data that we collect and process:
- Your right to access your personal information
- Your right to rectify your personal information
- Your right to be forgotten
- Your right to object to the processing of your data
- Your right to withdraw your consent
To exercise any of the rights listed above please contact us at steph@classyladyyarnworks.com with your request.
10. Right to lodge a complaint
You have the right to lodge a complaint with Data Protection Supervisory Authorities if you believe that have infringed any of your privacy rights. If you are living in the EEA, you can find your Data Protection Authority here.
11. Newsletter
When you choose to subscribe to receive a newsletter on our Website, we may send you marketing material via email from time to time. Our legal basis for processing your personal information is your consent which you grant us at the time of your subscription. You have the right to withdraw your consent from receiving direct marketing material from us at any time by simply clicking the unsubscribe link in our email.
12. Security of your personal information
We take all reasonable steps to protect your personal information from being leaked and or accessed by any unauthorized party.
13. Third-party websites
Our Website may contain links to other third-party sites, products, and services that are not controlled by us. We disclaim all responsibility for the privacy practices and content of these third-party websites. We encourage you to review the privacy policy for any site before making use of their services. Any links to the third-party website on our Website does not constitute an endorsement of such third-party services or represent security of your personal information.
14. Minors
Our Website is not targeted at persons under the age of eighteen years (children) and we do not intentionally collect any personal information from children. If you are the parent or legal guardian of a child who has provided us with his/her personal information, please immediately contact us and we will take steps to remove such information from our records immediately.
15. Contact Us
If you have any questions about this Privacy Policy or if you would like to exercise your rights as the Data Subject under the General Data Protection Regulation, please contact us at steph@classyladyyarnworks.com