Privacy Policy for mariesouthard.com

1. Introduction

At mariesouthard.com, we are firmly committed to safeguarding your personal data and respecting your privacy. With a privacy-first approach, we ensure that personal information is collected, processed, and retained in a lawful, fair, and transparent manner. This Privacy Policy outlines how we handle your data in accordance with applicable privacy regulations, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

2. Scope of this Policy and Data Controller Role

This Privacy Policy applies to the personal data collected through mariesouthard.com and related online services. For all data processing activities described in this Policy, mariesouthard.com operates as the data controller, meaning we determine the purposes and manner in which your personal data is processed. If you reside in the European Economic Area or UK, we comply with GDPR obligations. If you reside in California, we are also committed to meeting the standards of the CCPA.

3. Categories of Data We Process

We may collect and process various categories of personal data depending on your interaction with our website and services. These include:

a) Usage Data
Information about how you interact with mariesouthard.com, including browser type, IP address, access times, referring website URLs, and session data.

b) Account Data
Contact and identification details you provide when creating an account or subscribing to services: full name, billing and shipping address, email address, and telephone number.

c) Profile Data
Details related to your preferences, interests, purchase history, and general behavior on our website.

d) Communication Data
Records of any communication you make with us, including customer support requests, feedback, and other correspondence history.

e) Technical Data
Device identifiers, system configurations, operating system types, browser plugins, and Internet protocol settings.

f) Transaction Data
Information related to payments and deliveries, such as billing details, transaction history, and delivery addresses. Payment card information is securely processed by third-party providers and is not stored on our servers.

g) Preference Data
Marketing consents you grant, responses to promotional offers, and selected areas of product or content interest.

4. Legal Bases for Processing

Our legal bases for processing personal data include:

– Consent: Where you voluntarily provide information and explicitly consent to processing (e.g., sign-up forms, marketing subscriptions);
– Contractual Necessity: Where processing is necessary to fulfill contractual obligations or pre-contractual requests (e.g., order fulfillment);
– Legitimate Interests: Where processing supports our legitimate business interests, provided these interests are not overridden by your privacy rights (e.g., service improvement, fraud prevention);
– Legal Obligation: Where processing is necessary to comply with applicable laws, regulations, or legal proceedings.

5. Your Rights Under GDPR and CCPA

You have the following rights regarding your personal data:

– Right of Access: Obtain confirmation of whether we process your personal data and access a copy of that data;
– Right to Rectification: Request correction of inaccurate or incomplete data;
– Right to Erasure: Request that your personal data be deleted, subject to legal retention requirements;
– Right to Restriction: Request limitations on how we process your data;
– Right to Data Portability: Receive personal data in a structured, commonly used, and machine-readable form for transfer to another organization;
– Right to Object: Object to processing based on legitimate interests or direct marketing;
– Right to Non-Discrimination (CCPA): Exercise your data rights without facing unlawful discriminatory treatment.

To exercise any of these rights, please contact us at [email protected]. We will respond in accordance with applicable legal requirements.

6. Data Security

We implement appropriate technical and organizational measures to ensure the confidentiality, integrity, and availability of your personal data. Security safeguards include, but are not limited to:

– Data encryption in transit and at rest;
– Access control protocols and authentication mechanisms;
– Regular system monitoring and vulnerability assessments;
– Staff privacy awareness and data protection training;
– Backup systems to ensure recoverability of data in case of disruption.

Your data is stored on secure servers protected by industry standard firewalls and access limitations.

7. International Data Transfers

If your personal data is transferred to jurisdictions outside your country of residence, including to countries that may not have equivalent data protection laws, we ensure such transfers are performed in accordance with applicable laws. Where required, we use appropriate safeguards such as:

– Standard Contractual Clauses (SCCs) approved by the European Commission;
– Country-specific adequacy decisions;
– Binding corporate rules or other legal mechanisms.

8. Data Retention

We retain personal data no longer than necessary to fulfill the purposes for which it was collected, including to satisfy legal, regulatory, accounting, or contractual obligations. Data retention periods are as follows:

– Usage and Technical Data: up to 24 months;
– Account, Profile, and Transaction Data: up to 7 years post-service;
– Communication and Preference Data: up to 3 years following last interaction;
– Marketing Consent Records: as long as valid or until withdrawn.

Following expiration of retention periods, data is securely deleted or anonymized.

9. Cookie Policy

Mariesouthard.com uses cookies and similar tracking technologies to enhance user experience, monitor site performance, and deliver personalized content. Cookies used include:

– Essential Cookies: Necessary for basic website functionality;
– Functional Cookies: Remember settings and preferences to improve usability;
– Analytics Cookies: Collect aggregated data on page visits and traffic sources;
– Performance Cookies: Monitor site performance and optimization metrics.

Cookies do not in themselves personally identify you, but may link to other data when combined.

10. Cookie Management & Compliance

Upon visiting our website, you are prompted to accept or manage your cookie preferences in compliance with GDPR and CCPA. You may withdraw consent at any time through our cookie settings or your browser’s privacy settings.

You may also use “Do Not Track” headers or browser-level cookie preferences to control how cookies are set and used. Disabling certain cookies may affect website functionality.

11. Children’s Privacy

Our website and services are not intended for children under the age of 13. We do not knowingly collect or solicit personal information from anyone under 13. If we learn that we have inadvertently collected data from a child without verified parental consent, we will delete such information promptly. If you believe a child under 13 has provided information to mariesouthard.com, please contact us at [email protected].

12. Updates to this Privacy Policy

We reserve the right to modify or update this Privacy Policy as necessary to reflect changes in our practices or legal obligations. Any material updates will be communicated to users through mariesouthard.com or via direct notice where appropriate. Continued use of the website following such changes signifies acceptance of the updated terms.

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or the processing of your personal data, please contact us at:

[email protected]

We are committed to maintaining high standards of privacy compliance and to ensuring that your data is handled with the utmost respect and care.