Privacy Policy

We at MyCrayons Design respect your privacy. This Privacy Policy is designed to explain how we collect, use, share, and protect the personal information you provide to us when you access our website, purchase our goods or services, or engage with us on social media, as well as your own rights to the information we collect.

Please read this Privacy Policy carefully. We will alert you to any changes to this Policy by changing the “last updated” date at the top of this Policy. Any changes become effective immediately upon publication on our website, and you waive specific notice of any changes to the Policy by continuing to use and access our site(s). We encourage you to review this Privacy Policy from time to time when using our website. You are deemed to have accepted any changes to any revised Privacy Policy by your continued use of our website after the revised Privacy Policy is posted.



1. INFORMATION THAT WE COLLECT

We may collect a variety of information from you when you visit our website and in order to fulfill our services to you. By accepting this Privacy Policy, you are specifically consenting to our collection of the data described below, to our use of the data, to the processing of this data, and to our sharing of the data with third-party processors as needed for our legitimate business interests. The information we collect may include:

PERSONAL DATA

Personal Data is information that can be used to identify you specifically, including your name, shipping address, email address, and telephone number. This information is only collected with your knowledge and consent when you provide it to us voluntarily on our website or any mobile application. For example, you may provide personal information when you fill out our contact form, make a purchase, or sign up for our newsletter. Your decision to disclose this data is entirely voluntary. You are under no obligation to provide this information, but your refusal may prevent you from accessing certain benefits from our website, making purchases, or using our services. 

DERIVATIVE DATA

Derivative data is information that a server automatically collects about visitors to a website, such as your IP address, browser type, device type, the dates and times that you access our website, and the specific pages you view. Our website uses a privacy-first analytics tool that does not use cookies or other persistent identifiers. All site measurement is carried out anonymously. This is described more fully below in our cookie policy.

FINANCIAL DATA

Financial data is data that is related to your payment method, such as credit card or bank transfer details. We collect financial data in order to allow you to purchase, order, return, or exchange products or services. We store limited financial data. Most financial data is transferred to our payment processor, Stripe or PayPal. You can review these processors’ Privacy Policies to determine how they use, disclose, and protect your financial data.

OTHER DATA

On occasion, you may give us additional data in order to enter into a contest or giveaway or to participate in a survey. You will be prompted for this information and it will be clear that you are offering this kind of information in exchange for an entry into such a contest or giveaway.



2. HOW WE USE YOUR INFORMATION

We rely on a number of legal bases to collect, use, and share your information, including a) as necessary to fulfill our contractual obligations, such as processing your orders, b) circumstances under which you have provided affirmative consent, such as signing up for our newsletter, and c) to comply with a legal obligation or in connection with a legal claim if necessary. Specifically, we may use the information and data described above to:

• Create and administer your account
• Deliver any products or services purchased by you
• Correspond with you and provide customer service
• Process payments or refunds
• Interact with you via social media
• Send you our newsletter or other updates about our company, products or services
• Request feedback from you
• Administer contests or giveaways
• Compile anonymous statistical data about the use of our website
• Assist law enforcement as necessary
• Prevent fraudulent activity on our website
• Analyze trends to improve our website and offerings



3. GROUNDS FOR USING AND PROCESSING YOUR DATA

The information we collect and store is used primarily to allow us to offer goods and services for sale. In addition, MyCrayons Design may collect, use, and process your information based on the following grounds:

Legitimate Business Interests: We may use and process your data for our legitimate business interests, which include, among other things, communicating with you, improving our goods or services, improving our website, and providing you with the information or products that you have requested.

Performance of a Contract: We may use and process your information to enter into a contract with you and to perform our contractual obligations to you.

Consent: We may use your data, or permit selected third parties to use your data, based on your consent to our use and sharing of that data. You may withdraw your consent at any time, but doing so may affect your ability to use our services or other offerings.

As required by law: We may also use or process your data as required for us to comply with legal obligations.



4. WHY WE DISCLOSE YOUR INFORMATION

We may share your information with third parties in certain situations. In particular, we may share your data with third-party processors as needed to serve our legitimate business interests, which include administration of your account, entering into contracts with you, communicating with you, taking orders for goods or services, delivering our goods and services, protecting the security of our company and website, and marketing additional goods and services to you. The legal basis for our disclosure of your data is both your consent to this Privacy Policy and our own right to protect and promote our legitimate business interests. 

The following are specific reasons why we may share your information:

Third Party Processing: We may disclose your information to third parties who assist us with various tasks, including payment processing, hosting services, email delivery, communications, and customer service. We do not authorize them to use or disclose your personal information except in connection with providing our company with their services.

By Law: We may share your data as required by law or to respond to legal process, including a subpoena, or as necessary to protect the rights, property, and safety of others. This includes sharing information with other parties to prevent or address fraud and to avoid credit risks.

To Protect Our Company: We may use your information to protect our company, including to investigate and remedy any violations of our rights or policies. We may also disclose your information as reasonably necessary to acquire and maintain insurance coverage, manage risks, obtain financial or legal advice, or to exercise or defend against legal claims.

Interaction With Others and Posting Online: If you interact with others on our website, such as commenting on a blog post, other users may have access to some of your data, including your name and profile picture. When you post online, your posts may be viewed by others, and we may distribute your comments outside the website.

External Links: Our website may include hyperlinks to other websites not controlled by us. We suggest you exercise caution when clicking on a hyperlink. Although we use reasonable care when including links to other websites on our site, we do not regularly monitor the websites of these third parties and are not responsible for any damage or consequences suffered by using these hyperlinks. We are not bound by the Privacy Policies of any third-party website that you access by a hyperlink, nor are they bound by ours. We encourage you to read the Policies of those third-party websites before interacting with them or making purchases. They may collect different information and by different methods than we do. 



5. THIRD-PARTIES WE WORK WITH

Dubsado is used for our business management and contact form integration. They are based in the United States and are Privacy Shield Certified. You can read more about their privacy policy here: https://www.dubsado.com/legal/privacy-policy

Showit is the platform hosting this website. They are based in the United States and their servers are hosted with Amazon Web Services. You can read about their privacy policy here: https://showit.co/privacy/

G Suite (gmail) is used as our email service provider. The data controller responsible is Google Ireland Limited. You can read more about Google's privacy policy here: https://policies.google.com/privacy

Plausible Analytics is used for our website analytics. They are an open-source tool based in the EU that does not use cookies or other persistent identifiers. You can read more about their policy here: https://plausible.io/data-policy

MailChimp is our email marketing automation platform. They are Privacy Shield certified and based in the United States. You can read more about their privacy policy here: https://mailchimp.com/legal/privacy/

Dropbox is used to store some administrative and accounting information, such as invoices and expenses. They are Privacy Shield certified and you can read more about their policy here: https://www.dropbox.com/privacy

PayPal is one of our available payment processors when you make a purchase. You can review their privacy statement here: https://www.paypal.com/us/webapps/mpp/ua/privacy-full

Stripe Payments Europe, Ltd. is another available payment processor that we use, a company incorporated in Ireland. You can review their privacy policy here: https://stripe.com/en-be/privacy

Other Service Providers: I engage certain trusted third parties to perform functions and provide services to my business, such as delivery and printing companies. Your personal information may be shared with these third parties, but only to the extent necessary to perform the services you request.



6. TRACKING TECHNOLOGIES

COOKIES

Cookies are small text files that a website may store on your device when you visit, typically containing information about the website itself. Cookies may be used to enable certain features, to track site usage, to store your user settings, and to personalise content. If you wish to disable cookies, you may do so through your individual browser options. More detailed information about cookie management with specific web browsers can be found at the browsers’ respective websites.

We do not use cookies on our website. We do use a cookie-free analytics tool called Plausible Analytics which is described more fully below. 

EMAIL CONFIRMATIONS

We may receive email confirmations when you open an email from us. This allows us to determine if users are responding favorably to our email communications and to improve those communications. 




7. WEBSITE ANALYTICS

We use the open source Plausible Analytics to count website visits, downloads, etc. This helps us analyze overall trends in our website traffic and make better strategic decisions without tracking individual visitors or generating any persistent identifiers. All data is aggregated data only, is carried out anonymously, and is isolated to a single day. No cookies are used and no personal data is stored. You can read more about their privacy practices here: https://plausible.io/data-policy



8. INTERNATIONAL DATA

Our website is hosted by the platform Showit. They are based in the US and their servers are hosted with the Amazon Web Services platform located in different regions around the world. Therefore, some of your data may be transferred internationally to and stored on those servers. In addition, we may use third-party processors located in the United States and other jurisdictions, which may have different data protection and government surveillance laws than your jurisdiction. For example, we use Dubsado for our business management and contact form integration, which is based in the United States. We may transfer data that we collect to locations outside of our headquarters for processing or storing. For example, we may engage other third parties to fulfill orders. 

We use all reasonable methods to protect the safety of your data during transfer, including hosting our website on reputable servers and engaging reputable third-party processors. By using this site and providing us with information, you consent to this transfer, processing, and storage of your information in accordance with this policy.

While, we take all reasonable steps to make sure your data is treated securely, the transmission of data via the internet is never completely secure, and we cannot guarantee the security of data that is sent to us electronically. Your transmission of data to us is at your own risk.

Where data that you have transmitted to us is password protected, you are responsible for keeping the password confidential. You are exclusively responsible for any breaches of your data that results from your own disclosure of or failure to protect your password.



9. DATA RETENTION

We retain personal data as long as needed to conduct our legitimate business purposes or to comply with our legal obligations, or until you ask us to delete your data. For example, we will retain certain personal information indefinitely for the purposes of maintaining your account, unless and until you delete your account. Data that we gather for a specific and particular purpose, such as assisting law enforcement or analyzing trends, will be kept for no longer than is necessary for that particular purpose. Data that is no longer needed by us for any of the purposes listed above will be permanently deleted.  

We will honor your request to delete your data, as described more fully below, unless we are required by law to retain access to the data. However, note that we cannot control the retention policies of third parties. If you wish to have any third parties, including those to whom we have transmitted your data, delete that data, you will need to contact those third parties directly. You may request from us a list of all third parties to whom we have transmitted your data.



10. SECURITY OF YOUR INFORMATION

We take all reasonable steps to protect your personal data and keep your information secure. We use recognized online secure payment systems and implement generally accepted standards of security to protect against personal data loss or misuse. However, no security measure is foolproof, and no method of data transmission can be guaranteed against interception or misuse. We cannot guarantee complete security of any information you transmit to us. By consent to this Privacy Policy, you acknowledge that your personal data may be available, via the internet, around the world. We cannot prevent the use or misuse of your data by other parties. We will notify you promptly of any known breach of our security systems or your data which might expose you to serious risk.



11. CHILDREN

This website is not designed for use by children under age 16, and we do not knowingly solicit personal data from anyone under age 16. If you are under age 16, do not access or use our website or related products or services. If you become aware that we have collected data of anyone under the age of 16, please contact us so that we may delete that data.



12. SENSITIVE DATA

We request that you do not submit any sensitive data to us, via public postings, email correspondence with us, or any other method, including social security number, health data, genetic data, or information related to your ethnic origin, religious beliefs, or criminal history. If you do send us this information, then by doing so you are consenting to our use, storage, and processing of this information in accordance with this privacy policy.



13. YOUR RIGHTS

You have certain rights with respect to your personal data, as outlined below. We reserve the right to request that you provide us with evidence of your identity before we take any action with respect to the exercise of your data rights. Further, your rights may be restricted or nullified to the extent they conflict with our compelling business interests, the public interest, or the law.

Update Account Information: You have the right to update or change any information you have provided to us. To update or delete your information, please contact us at carrie@mycrayonsdesign.com.

Confirm Personal Data and Its Use: You have the right to request that we confirm what data we hold about you, and for what purposes. You also have the right to confirmation of whether we process your data or deliver your data to third-party processors, and for what purposes. We will supply you with copies of Your personal data unless doing so would affect the rights and freedoms of others. 

Change Consent: You have the right to change your consent to our use of your information.

Request a Copy of Data: You have the right to request a digital copy of the data that we hold about you. Your first request for a copy of your personal data will be provided free of charge; subsequent requests may incur a reasonable fee.

Transfer Your Data: You have the right to request that we gather and transfer your data to another controller, in a commonly used and machine readable format, unless doing so would cause us an undue burden.

Delete All Data: You have the right to request that we delete all data that we hold about you, and we must delete such data without undue delay. There are exceptions to this right, such as when keeping your data is required by law, is necessary to exercise the right of freedom of expression and information, is required for compliance with a legal obligation, or is necessary for the exercise or defense of legal claims. Such a request may result in a termination of your account with us. 

Emails Communications: You may opt out of receiving future email correspondence from us by clicking the unsubscribe button at the footer of our email newsletters.

Processing: You may, in some circumstances, restrict the processing of your data, such as when you contest the accuracy of your data or when you have objected to processing, pending the verification of that objection. When processing has been restricted, we will continue to store your data but will not pass it on to third-party processors without your consent, or as necessary to comply with legal obligations or protect your rights or those of others or our company. In addition, you may opt out of any processing of your data altogether. Note, however that doing so may result in the termination of your account. 

Complaints: If you are an EU resident, you have the right to complain to a supervising authority if you believe we are misusing your data or have violated any of your rights under this Privacy Policy or applicable law. You may do so in the EU member state in which you reside or have your place of business or in which the alleged infringement took place. If you are located outside the EU, you may have rights under privacy laws in the jurisdiction where you live.

If you would like to exercise any of these rights or have any questions or concerns, please contact us at carrie@mycrayonsdesign.com
Carrie Hendrix • MyCrayons Design • Henri Knutsplein 12, 3540 Herk-de-Stad, Belgium



14. NEWSLETTER PRIVACY

We offer the opportunity for you to volunteer certain information to us that is used for email and marketing purposes. This information includes, but is not limited to, your name and email. You will have an opportunity to unsubscribe from any future communications via email, but we reserve the right to maintain a database of past email subscribers. We reserve the right to use this information as reasonably necessary in our business and as provided by law. We do not ever sell your information to third parties. 

Last updated: December 16, 2020