Privacy Policy for hillarypen.com

1. Introduction

At hillarypen.com, we are firmly committed to protecting and respecting your privacy. The privacy and security of your personal information are of utmost importance to us. This Privacy Policy outlines how we collect, use, process, and retain data when you engage with our website, products, and services. We adhere strictly to the requirements of the General Data Protection Regulation (“GDPR”), the California Consumer Privacy Act (“CCPA”), and other applicable data protection laws. We ensure that your personal data is treated lawfully, fairly, and transparently.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all personal data processed through hillarypen.com, including services, transactional activities, and communications conducted via the website. For the purposes of the GDPR, hillarypen.com is the data controller in relation to all personal data collected.

If you have any questions regarding this policy or how we handle your data, you may contact us at:

Email: [email protected]

3. Categories of Personal Data We Process

We collect and process various categories of personal data depending on your interactions with our services:

a) Usage Data
Includes information such as your browser type, IP address, pages viewed, time and date of visit, device identifiers, session duration, and clickstream data collected via analytics tools.

b) Account Data
Includes information provided when creating an account, such as your full name, mailing address, email address, and phone number.

c) Profile Data
Encompasses your preferences, purchase history, behavioral trends, wishlist items, submitted reviews, and settings configured within your account.

d) Communication Data
Includes correspondences between you and our team, such as email inquiries, customer support requests, feedback submissions, and communication history.

e) Technical Data
Covers your device type, operating system details, browser configurations, network provider, timezone settings, and other system-level information used to optimize website performance.

f) Transaction Data
Includes details of purchases made on hillarypen.com, including billing and shipping addresses, purchase items, payment method (partial card details or masked tokens), and delivery tracking data.

g) Preference Data
Refers to your choices regarding marketing communications, subscription options, and declared interests in specific product categories.

4. Legal Bases for Processing Personal Data

We process your data on the following legal bases:

– Performance of a Contract: For order fulfilment, payment processing, and delivery.
– Consent: For sending marketing communications, placing cookies (non-essential), and collecting optional user preferences, where legally required.
– Legitimate Interests: For website functionality, personalization, fraud prevention, and business analytics, provided your rights and freedoms are not infringed.
– Legal Obligations: Where compliance with applicable laws, such as tax or financial regulations, necessitates data retention or reporting.

5. Your Rights Under GDPR and CCPA

Subject to applicable laws, you have the following rights:

– Right of Access – Obtain confirmation whether we process your data and access to such data.
– Right to Rectification – Request corrections of inaccurate or incomplete personal data.
– Right to Erasure – Request deletion of your data, subject to regulatory or legal retention obligations.
– Right to Restrict Processing – Temporarily restrict use of your data in certain circumstances.
– Right to Data Portability – Receive your data in a structured, commonly used format and transmit it to another data controller.
– Right to Object – Object to processing based on legitimate interests or direct marketing.
– Right Not to Be Subject to Automated Decision-Making – Where applicable, opt-out of profiling or automated decisions.
– Right to Opt-Out (under CCPA) – California residents may opt out of the sale or sharing of their personal information.
– Non-Discrimination – Users exercising their CCPA privacy rights will not be discriminated against.

Requests to exercise your rights can be made via email to [email protected]. We may require identity verification before fulfilling certain requests.

6. Security Measures

We implement a robust array of technical and organizational safeguards to protect your information:

– Data encryption during transmission and storage using industry-standard protocols (e.g., TLS/SSL).
– Role-based access controls to restrict internal access to your data.
– Secure authentication mechanisms and account protections.
– Regular data backups stored in secure, access-controlled environments.
– Staff training on data protection best practices and confidentiality mandates.

7. International Transfers

Personal data collected may be transferred to, and stored at, destinations outside your country of residence, including jurisdictions without equivalent data protection laws. In such cases:

– We rely on Standard Contractual Clauses approved by the European Commission or other lawful transfer mechanisms.
– Appropriate contractual, technical, and organizational measures are in place to ensure a level of protection equivalent to GDPR standards.
– Our third-party service providers agree to process personal data in line with our data protection obligations.

8. Data Retention

We retain personal data only as long as necessary for the purposes for which it was collected, including legal, accounting, or reporting requirements:

– Usage and Technical Data: Up to 26 months for analytical benchmarking.
– Account and Profile Data: Retained for the duration of your active account; deletions occur after 12 months of inactivity unless legally required to retain.
– Transaction Data: Retained for a minimum of 7 years in compliance with financial and tax obligations.
– Communication Data: Maintained for 24 months for internal audit and quality assurance purposes.
– Marketing Preference Data: Stored until you withdraw consent or opt-out of communications.

9. Cookie Policy

hillarypen.com uses cookies and similar technologies for various purposes:

– Essential Cookies – Required for website functionality, including login sessions and shopping cart capabilities.
– Functional Cookies – To remember user preferences and language settings.
– Analytics Cookies – To understand how users interact with our site (e.g., Google Analytics).
– Performance Cookies – To monitor uptime, performance, and user experience metrics.

10. Cookie Management & Compliance with GDPR and CCPA

Upon your first visit to the website, a cookie banner will prompt you to accept, reject, or manage cookie settings. You may change your preferences at any time via our cookie management interface or by adjusting your browser settings.

California residents may also submit opt-out signals via supported browsers or authorized agents in compliance with the CCPA.

Your consent will be respected in line with applicable laws, and we honor Global Privacy Control (GPC) signals where supported.

11. Children’s Privacy

Our services are not directed to individuals under the age of 13. We do not knowingly collect personal data from children under 13 without parental consent. If we become aware of such data being collected without appropriate permissions, it will be securely deleted.

If you believe we have collected data from a minor, please notify us at [email protected].

12. Updates to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in law, operational practices, or technological enhancements. Where revisions materially alter your rights or how data is handled, we will provide prominent notice on hillarypen.com and, where feasible, notify you directly via registered contact details.

13. Contact Us

For any questions, concerns, or to exercise your data protection rights, please contact:

Email: [email protected]

We are committed to ensuring your personal data is handled in accordance with this Privacy Policy and applicable privacy regulations. If you believe your privacy rights have been violated, you have the right to lodge a complaint with a supervisory authority, or you may first contact us via the above address for resolution.

Thank you for placing your trust in hillarypen.com.