WHAT DO WE DO WITH YOUR INFORMATION?
When you purchase something from our store, as part of the buying and selling process, we collect the personal information you give us such as your name, address and email address.
When you browse our store, we also automatically receive your computer’s internet protocol (IP) address in order to provide us with information that helps us learn about your browser and operating system.
Email marketing: With your permission, we may send you emails about our store, new products and other updates.
CONSENT
How do you get my consent? When you provide us with personal information to complete a transaction, verify your credit card, place an order, arrange for a delivery or return a purchase, we imply that you consent to our collecting it and using it for that specific reason only.
If we ask for your personal information for a secondary reason, like marketing, we will either ask you directly for your expressed consent, or provide you with an opportunity to say no.
How do I withdraw my consent? If after you opt-in, you change your mind, you may withdraw your consent for us to contact you, for the continued collection, use or disclosure of your information, at anytime, by contacting us at customerservice@lizzyjames.com or mailing us at:
Lizzy James
Box 974
Rancho Santa Fe California US 92067
DISCLOSURE
We may disclose your personal information if we are required by law to do so or if you violate our Terms of Service.
Payment: If you choose a direct payment gateway to complete your purchase, your credit card data is encrypted through the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction data is stored only as long as is necessary to complete your purchase transaction. After that is complete, your purchase transaction information is deleted.
All direct payment gateways adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, MasterCard, American Express and Discover.
PCI-DSS requirements help ensure the secure handling of credit card information by our store and its service providers.
THIRD-PARTY SERVICES
We do not rent, sell, or share your personal information with other people or nonaffiliated companies except to provide products or services you've requested, when we have your permission. In general, the third-party providers used by us will only collect, use and disclose your information to the extent necessary to allow them to perform the services they provide to us.
However, certain third-party service providers, such as payment gateways and other payment transaction processors, have their own privacy policies in respect to the information we are required to provide to them for your purchase-related transactions.
For these providers, we recommend that you read their privacy policies so you can understand the manner in which your personal information will be handled by these providers.
In particular, remember that certain providers may be located in or have facilities that are located a different jurisdiction than either you or us. So if you elect to proceed with a transaction that involves the services of a third-party service provider, then your information may become subject to the laws of the jurisdiction(s) in which that service provider or its facilities are located. As an example, if you are located in Canada and your transaction is processed by a payment gateway located in the United States, then your personal information used in completing that transaction may be subject to disclosure under United States legislation, including the Patriot Act.
Once you leave our store’s website or are redirected to a third-party website or application, you are no longer governed by this Privacy Policy or our website’s Terms of Service.
Links: When you click on links on our store, they may direct you away from our site. We are not responsible for the privacy practices of other sites and encourage you to read their privacy statements.
Google analytics: Our store uses Google Analytics to help us learn about who visits our site and what pages are being looked at
SECURITY
To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed.
If you provide us with your credit card information, the information is encrypted using secure socket layer technology (SSL) and stored with a AES-256 encryption. Although no method of transmission over the Internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement additional generally accepted industry standards.
COOKIES
Here is a list of cookies that we use. We’ve listed them here so you that you can choose if you want to opt-out of cookies or not.
Our Cookie Policy
This Cookie Policy supplements the information contained in our Privacy Policy by explaining how we and our business partners and services providers use cookies and related technologies in the course of managing and providing our online services and our communications to you. It explains what these technologies are and why we use them, as well as your rights to control our use of them. Cookies are small data files that are stored on your computer that allow us and our third-party partners and providers to collect certain information about your interactions with our email communications, websites and other online services. We and our third-party partners and providers may also use other, related technologies to collect this information, such as web beacons, pixels, embedded scripts, location-identifying technologies and logging technologies (collectively, “cookies”).
What We Collect When Using Cookies
We and our third-party partners and providers may use cookies to automatically collect certain types of usage information about how you access and use the services when you visit or interact with our email communications or websites or otherwise engage with us through a computer or mobile device. For example, we may collect log data about your device and its software, such as your IP address, operating system, browser type, date/time of your visit, and other similar information. We may collect analytics data or use third-party analytics tools such as Google Analytics to help us measure usage and activity trends for our online services and better understand our customer base. We participate in interest-based advertising and use third party advertising companies to serve you targeted advertisements based on your browsing history. We permit third party online advertising networks, social media companies and other third-party services, to collect information about your use of our online services over time so that they may play or display ads on our services, on other websites, or services you may use, and on other devices you may use. Typically, though not always, the information used for interest-based advertising is collected through tracking technologies, such as cookies, web beacons, embedded scripts, location-identifying technologies, and similar technology (collectively, “tracking technologies”), which recognize the device you are using and collect information, including click stream information, browser type, time and date you visited the site, AdID, precise geolocation and other information. We may share a common account identifier (such as a hashed email address or user ID) with our third-party advertising partners to help identify you across devices. We and our third-party partners use this information to make the advertisements you see online more relevant to your interests, as well as to provide advertising-related services such as reporting, attribution, analytics and market research. We may also use services provided by third parties (such as social media platforms) to serve targeted ads to you and others on such platforms. We may do this by providing a hashed version of your email address or other information to the platform provider.
Social Media Widgets and Advertising. Our services may include social media features, such as the Facebook Like button, Pinterest, Instagram, Twitter or other widgets. These social media companies may recognize you and collect information about your visit to our services, and they may set a cookie or employ other tracking technologies. Your interactions with those features are governed by the privacy policies of those companies.
We display targeted advertising to you through social media platforms, such as Facebook, Twitter, Instagram, and other social media forums. These companies have interest-based advertising programs that allow us to direct advertisements to users who have shown interest in our services while those users are on the social media platform, or to groups of other users who share similar traits, such as likely commercial interests and demographics. We may share a unique identifier, such as a user ID or hashed email address, with these platform providers or they may collect information from our website visitors through a first-party pixel, in order to direct targeted advertising to you or to a custom audience on the social media platform. These advertisements are governed by the privacy policies of those social media companies that provide them.
Third Party Partners. The following is a sample of the third-party service partners we work with to provide advertising services. As partners change and new technologies become available, this list is likely to change over time and may not always reflect our current partners.
We may also utilize certain forms of display advertising and other advanced features through Google Analytics, such as Remarketing with Google Analytics, Google Display Network Impression Reporting, the DoubleClick Campaign Manager Integration, and Google Analytics Demographics and Interest Reporting. These features enable us to use first-party cookies (such as the Google Analytics cookie) and third-party cookies (such as the DoubleClick advertising cookie) or other third-party cookies together to inform, optimize, and display ads based on your past visits to the Service. We may use the data collected through cookies to: (a) recognize new or current customers and remember information so that you will not have to re-enter it during your visit or the next time you visit our websites and online services; (b) provide and monitor the effectiveness of our websites and online services; (c) monitor online usage and activities of our websites and online services; (d) diagnose errors and problems with our websites and online services; (e) otherwise plan for and enhance our online services; (f) serve you with interest-based or targeted advertising (see below for more on interest-based advertising); and (g) facilitate the purposes identified in our privacy policy. We and our advertising partners also use the information we collect through cookies to understand your browsing activities, including across unaffiliated third-party sites, so that we can deliver ads and information about products and services that may be of interest to you. If you would prefer not to accept cookies, most browsers will allow you to: (i) change your browser settings to notify you when you receive a cookie, which lets you choose whether or not to accept it; (ii) disable existing cookies; or (iii) set your browser to automatically reject cookies. Please note that doing so may negatively impact your experience using our online services, as some features and services on our online services may not work properly. In addition, if you want to reject cookies across all your browsers and devices, you will need to do so on each browser on each device you actively use. Depending on your device and operating system, you may not be able to delete or block all cookies. You may also set your email options to prevent the automatic downloading of images that may contain technologies that would allow us to know whether you have accessed our email and performed certain functions with it.
You can learn more about Google’s practices with Google Analytics by visiting Google.
Please note that when you opt out of receiving interest-based advertisements, this does not mean you will no longer see advertisements from us or on our online services. We are not responsible for the effectiveness of, or compliance with, any third-parties’ opt-out options or programs or the accuracy of their statements regarding their programs. In addition, third parties may still use cookies to collect information about your use of our online services, including for analytics and fraud prevention.
Updates to This Cookie Policy
We will update this Cookie Policy from time to time. When we make changes to this Cookie Policy. If we make material changes to this Notice, we will notify you by email to your registered email address, by prominent posting on this website or our online services, or through other appropriate communication channels. All changes shall be effective from the date of publication unless otherwise provided in the notification.
CHANGES TO THIS PRIVACY POLICY
We reserve the right to modify this privacy policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on the website. If we make material changes to this policy, we will notify you here that it has been updated, so that you are aware of what information we collect, how we use it, and under what circumstances, if any, we use and/or disclose it.
If our store is acquired or merged with another company, your information may be transferred to the new owners so that we may continue to sell products to you.
CHANGES TO THIS PRIVACY POLICY
We reserve the right to modify this privacy policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on the website. If we make material changes to this policy, we will notify you here that it has been updated, so that you are aware of what information we collect, how we use it, and under what circumstances, if any, we use and/or disclose it.
If our store is acquired or merged with another company, your information may be transferred to the new owners so that we may continue to sell products to you.
QUESTIONS AND CONTACT INFORMATION
If you would like to: access, correct, amend or delete any personal information we have about you, register a complaint, or simply want more information contact our Privacy Compliance Officer at customerservice@lizzyjames.com or by mail at:
Lizzy James
Privacy Compliance Officer
Box 974
Rancho Santa Fe California US 92067
GDPR ADDENDUM:
PLEASE READ THIS EU DATA PROCESSING ADDENDUM (“ADDENDUM”) CAREFULLY BEFORE USING THE WEBSITE, SOFTWARE OR SERVICES OFFERED BY LIZZY JAMES DESIGNS, INC. (“LIZZY JAMES” OR “COMPANY”). THIS ADDENDUM SHALL APPLY TO THE EXTENT LIZZY JAMES IS A PROCESSOR OF PERSONAL DATA (DEFINED BELOW) THAT IS SUBJECT TO CERTAIN DATA PROTECTION LAWS (DEFINED BELOW). YOU OR THE ENTITY YOU REPRESENT AGREE THAT YOU HAVE READ AND ACCEPT THE TERMS IN THIS ADDENDUM, WHICH SUPPLEMENT LIZZY JAMES ’S TERMS OF SERVICE AVAILABLE AT WWW. LIZZY JAMES.COM/PAGES/TERMS-OF-SERVICE (“TERMS OF SERVICE”).
IF YOU OR DO NOT UNCONDITIONALLY AGREE TO ALL THE TERMS AND CONDITIONS OF THIS ADDENDUM, YOU HAVE NO RIGHT TO USE LIZZY JAMES’ SERVICES AND MUST NAVIGATE AWAY FROM THIS PAGE.
This supplements the Terms of Service whenever any user of Lizzy James’ Services provides Lizzy James with personal data that is or will be subject to Data Protection Laws (for the purposes of this Addendum, each user who does so shall be referred to as a “Controller”). Any terms not defined in this Addendum shall have the meaning set forth in the Terms of Service. In the event of a conflict between the terms and conditions of this Addendum and the Terms of Service, the terms and conditions of this Addendum shall supersede and control.
Definitions
1.1 “Data Subject” means any individual about whom Personal Information may be processed under these terms.
1.2 “Data Protection Legislation” means the GDPR (as defined below), together with any national implementing laws in any Member State of the European Union or, to the extent applicable, in any other country, as amended, repealed, consolidated or replaced from time to time.
1.3 “GDPR” means the General Data Protection Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data.
1.4 “Personal Information” means personal data (as defined under the Data Protection Legislation) that are subject to the Data Protection Legislation and that you authorize Lizzy James to collect in connection with Lizzy James’service terms.
1.5 “Process” or “Processing” means any operation or set of operations performed on Personal Information or on sets of Personal Information, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaption or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure, or destruction of Personal Information.
1.6 “Security Incident” means a breach of security of the Service or Lizzy James’ systems used to Process Personal Information leading to accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, Personal Information transmitted, stored or otherwise Processed by Lizzy James in the context of this Addendum.
1.7 “Sensitive Information” means Personal Information revealing a Data Subject’s racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, genetic data, biometric data, health data, sex life or sexual orientation.
ADDITIONAL CALIFORNIA PRIVACY DISCLOSURES
Scope of Disclosures
These Additional California Privacy Disclosures (the “CA Disclosures”) supplement the information contained in our Privacy Policy and apply solely to individual residents of the State of California (“consumers” or “you”).
These CA Disclosures provide additional information about how we collect, use, disclose and otherwise process personal information of individual residents of the State of California, either online or offline, within the scope of the California Consumer Privacy Act of 2018 (“CCPA”).
Unless otherwise expressly stated, all terms in these CA Disclosures have the same meaning as defined in our Privacy Policy or as otherwise defined in the CCPA.
Personal Information Disclosures
When we use the term “personal information” in these CA Disclosures, we mean information that identifies, relates to, describes, is reasonably capable of being associated with, or could reasonably be linked, directly or indirectly, with a particular consumer or household.
For the purposes of these CA Disclosures, personal information does not include:
Collection and Use of Personal Information
We collect various categories of Personal Information in connection with our services.
In the last 12 months, we have collected the following categories of personal information from the following sources of personal information:
Identifiers, such as your name, address, phone number, email address, IP address, account password or other similar identifiers.
California Customer Records (Cal. Civ. Code § 1798.80(e)), such as your birthdate, name, credit card number or other payment account number (including the three (3) or four (4) digit validation code for your credit card).
Commercial Information, such as your shopping history and purchasing and ordering behavior.
Internet/Network Information, such as your browsing history, log and analytics data, search history, and information regarding your interaction with the websites.
Geolocation Data, such as information about your physical location collected from geolocation features on your device, including your IP address and GPS (e.g. latitude and/or longitude).
Other Personal Information, such as information you post on our platform or on social media pages, including pictures or videos of you, or other information you submit to us, including your wedding or anniversary date and personal information of your family/friends.
In addition to the specific categories of sources identified above, the following “Common Sources” apply to all categories of personal information we collect:
— Directly from you
— Indirectly from you
— Our business partners and affiliates
— Third parties you direct to share information with us
Please note: In addition to the categories of sources identified above, we may collect information from publicly available sources and other third-party information providers in order to supplement the information we have otherwise collected.
Purposes for Collecting Personal Information
We collect, use, sell or disclose personal information about you for one or more of the following purposes:
Your California Privacy Rights
As a California resident, you may be able to exercise the following rights in relation to the Personal Information about you that we have collected (subject to certain limitations at law):
The Right to Know |
You have the right to request any or all of the following information relating to the personal information we have collected about you or disclosed in the last 12 months, upon verification of your identity:
|
The Right to Request Deletion |
You have the right to request the deletion of personal information that we have collected from you, subject to certain exceptions. |
The Right to Opt Out |
You have the right to direct us not to sell personal information we have collected about you to third parties now or in the future.
If you are under the age of 16, you have the right to opt in, or to have a parent or guardian opt in on your behalf, to such sales. |
The Right to Non-Discrimination |
You have the right not to receive discriminatory treatment for exercising any of the rights described above.
However, please note that if the exercise of the rights described above limits our ability to process personal information (such as in the case of a deletion request), we may no longer be able to provide you our products or services or engage with you in the same manner. |
“Shine the Light” |
California residents that have an established business relationship with us have rights to know how their information is disclosed to third parties for their direct marketing purposes under California’s “Shine the Light” law (Civ. Code § 1798.83). |
How to Exercise Your California Privacy Rights
To Exercise Your Right to Know or Right to Deletion
To exercise your Right to Know or your Right to Deletion, please submit a request by:
We will need to verify your identity before processing your request, which may require us to request additional personal information from you or require you to log into your account. We will only use personal information provided in connection with a Consumer Rights Request to review and comply with the request.
In certain circumstances, we may decline a request to exercise the right to know and/or right to deletion, particularly where we are unable to verify your identity.
To Exercise Your Right to Opt Out of Personal Information Sales
Unless you have exercised your Right to Opt Out of Personal Information Sales, we may sell personal information to third parties for monetary or other valuable consideration. The third parties to whom we may sell personal information may use such information for their own purposes in accordance with their own privacy statements, which may include reselling this information to additional third parties.
As noted above, we do not sell personal information as most people think of that term. You may, however, exercise your right to opt out of any future potential sales by clicking the link below and following the instructions:
You do not need to create an account with us to exercise your Right to Opt Out of Personal Information Sales. However, we may ask you to provide additional personal information so that we can properly identify you in our dataset and to track compliance with your opt out request. We will only use personal information provided in an opt out request to review and comply with the request. If you chose not to provide this information, we may only be able to process your request to the extent we are able to identify you in our data systems.
Once you make an opt-out request, you may change your mind and opt back in to personal information sales at any time by contacting us at customerservice@lizzyjames.com
Third-Party Tracking and Online Advertising
We utilize third-party partners to engage in online advertising. These ad networks, social media companies and other third-party businesses collect your personal information directly from your browser or device through cookies or similar tracking technology when you visit or interact with our websites, use our apps or otherwise engage with us online. For example, they may collect Internet/Network information, such as a cookie or device ID, browsing history and website usage, Geolocation Data, and Inferences generated from your browsing history and interactions with our service as well as other sites and services. These third-party businesses use your personal information to serve relevant ads on our site, on other websites or mobile apps, or on other devices you may use, or to personalize content and perform other advertising-related services such as reporting, attribution, analytics and market research. These third parties may use such personal information for their own purposes in accordance with their own privacy statements, which may include reselling this information to additional third parties, including other advertising networks.
Please see our cookie policy for more information about how third parties use cookies and related technologies to collect information automatically on our websites and other online services, and the choices you may have in relation to those practices.
Minors Under Age 16.
We do not sell the personal information of consumers we know to be less than 16 years of age, unless we receive affirmative authorization (the “Right to Opt In”) from either the minor who is between 13 and 16 years of age, or the parent or guardian of a minor less than 13 years of age. Please contact us by emailing customerservice@lizzyjames.com
to inform us if you, or your minor child, are under the age of 16.
California’s ”Shine the Light” Law
At the time of this writing, we do not provide your personal information to third parties for their direct marketing purposes, as described in California's "Shine the Light" law (Civil Code Section §1798.83). To opt-out of having your personal information disclosed to third parties for their direct marketing purposes in the future, please email us. Please note that to opt-out of all disclosures to third parties for direct marketing purposes, you must provide your personal information to be added to our suppression list.
Authorized Agent
In certain circumstances, you are permitted to use an authorized agent to submit requests on your behalf where (i) you provide sufficient evidence to show that the requestor is an authorized agent with written permission to act on your behalf and (ii) you successfully verify your own identity with us.