Effective 5/23/2018
Carmelite Monastery of the Sacred Hearts operates the https://www.sistersofcarmel.com website.
This page informs you of our policies regarding the collection, use, and disclosure of personal data when you use our Service and the choices you have associated with that data.
Information collection and use
We collect several different types of information for various purposes to provide and improve our Service to you. By using the Service, you agree to the collection and use of information in accordance with this policy.
Essential information we collect:
In operating our store, it is essential for us to capture some information about your device, such as your IP address and information related to your visit when you browse our store. For example, this might include time-stamp, the last page or product you visited, the indication that you logged in.
We do that in order to:
1.Remember who you are after you log in so that you do not need to authenticate at each click;
2.Monitor if our website is running with the high performance we are dedicated to providing;
3.Let you browse between products without having to start back from the home page at each click;
4.Remember if you put something in your shopping cart before you decide to checkout; and control that your data is processed securely.
We call the information mentioned above “essential information” and we collect it through the use of cookies. Cookies are small text files that most websites uses. A website places cookies in the web browser and then reads the information collected through the cookies every time the user performs an action. We use cookies. Without enabling this mechanism and this kind of cookies (first-party cookies), we could not provide you with the smooth experience that you expect while you are navigating.
You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.
Order information you expressly provide:
If you buy something from our store, we will need more specific information about you. To fully process your order and ship the merchandise you selected, we need your personal data such as your first and last name, your email address and your shipping and billing address. We also use your contact and order information to send you communication related to the processing of your order. We will ask you to provide this information in our “checkout page” before letting you finalize your purchase with the payment.
Accounts
You can sign up for an account if you’d like. We will remember your information and, when you decide to buy our products, you do not have to provide all of your information over again -- you just have to log-in. Before registering your account, we will ask you to expressly provide your consent to this privacy policy. Only if you give us your consent, we will open your account. We also you the possibility to easily withdraw your consent and delete your account. Just connect with us at the contact details at the bottom of the page.
Partial Purchases
If you have started to buy one of our products, but have not completed the purchase, you may have provided partial information, such as your email. In that case, we might send you an email to remind you about your interest. If you are not comfortable in receiving further emails of this kind, we will give you a simple opportunity to opt-out. Your privacy means a lot to us and we will stop sending you these communications right away.
Reviews
If you have completed a purchase, we will send you an email to ask you to review the product you bought. We want to be sure that whether you love your purchase or have a complaint, you can share your opinion with other customers.
Personalization
We also use some specific information related to your visit, such as the timestamp of your visit, the page or the product you viewed, where you are coming from (if you came to our store because you clicked on an advertisement or you just opened our direct link). This is very similar to the “essential information,” but we use it to provide you with a personalized experience. The information on your visit provides us with insights on your interests and allows us to send you relevant communications. We capture this information through cookies, called a "beacon," that we allow you to block.
How do we process your information?
Transfer of Data
Your information, including Personal Data, may be transferred to — and maintained on — computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from your jurisdiction.
If you are located outside United States and choose to provide information to us, please note that we transfer the data, including Personal Data, to United States and process it there.
Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer.
Carmelite Monastery of the Sacred Hearts will take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy and no transfer of your Personal Data will take place to an organization or a country unless there are adequate controls in place including the security of your data and other personal information.
BigCommerce
We use an external provider to run our store, BigCommerce. BigCommerce is based in the US and is a participant in the EU-US Privacy Shield Framework and committed to providing best-in-class service and data protection. You can check its participation in the Privacy Shield here on the official site of The International Trade Administration (ITA), U.S. Department of Commerce.
Through BigCommerce, we also use other, highly specialized external providers to provide the most competitive services.
MailChimp
You may sign up for our newsletter on our newsletter page or by clicking on the check box during the check-out process. We use MailChimp as our marketing automation platform. By signing up for our newsletter you acknowledge that the information you provide will be transferred to MailChimp for processing in accordance with their Privacy Policy and Terms.
MailChimp participates in and has certified its compliance with the EU-U.S. Privacy Shield Framework and the Swiss-U.S Privacy Shield Framework. To learn more about the Privacy Shield Frameworks, and to view Mailchimp’s certification, visit the U.S. Department of Commerce’s Privacy Shield website:https://www.privacyshield.gov/welcome.
You may always opt-out of receiving newsletters after subscribing by clicking on the unsubscribe link at the bottom of our newsletters.
Google Analytics
Google Analytics is a web analytics service offered by Google that tracks and reports website traffic. Google uses the data collected to track and monitor the use of our Service. This data is shared with other Google services. Google may use the collected data to contextualize and personalize the ads of its own advertising network.
You can opt-out of having made your activity on the Service available to Google Analytics by installing the Google Analytics opt-out browser add-on. The add-on prevents the Google Analytics JavaScript (ga.js, analytics.js, and dc.js) from sharing information with Google Analytics about visits activity.
For more information on the privacy practices of Google, please visit the Google Privacy Terms web page:https://www.google.com/intl/en/policies/privacy/
Payment Processor
We may provide paid products and/or services within the Service. In that case, we use third-party services for payment processing (e.g. payment processors).
We will not store or collect your payment card details. That information is provided directly to our third-party payment processors whose use of your personal information is governed by their Privacy Policy. These payment processors adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council, which is a joint effort of brands like Visa, Mastercard, American Express and Discover. PCI-DSS requirements help ensure the secure handling of payment information.
The payment processor we work with is: PayPal or Braintree
Their Privacy Policy can be viewed athttps://www.paypal.com/webapps/mpp/ua/privacy-full
Shipping Provider
We use an external shipping provider to print shipping labels for your order. The provider we use is Stamps.com. They are participants in the E.U. – U.S. Privacy Shield Framework, and their privacy policy can be viewed at https://www.stamps.com/privacy-policy/.
Drop Shipping
For some items that are large and difficult to ship or need to be shipped quickly, we will provide your mailing information (this does not include your payment information or email address) to our manufacturer so that the item may be shipped to you directly. In the case of E.U. citzens, we will ask permission through email to make such a transfer of information.
Your data protection rights under General Data Protection Regulation (GDPR)
If you are a resident of the European Economic Area (EEA), you have certain data protection rights. Carmelite Monastery of the Sacred Hearts aims to take reasonable steps to allow you to correct, amend, delete, or limit the use of your Personal Data.
If you wish to be informed what Personal Data we hold about you and if you want it to be removed from our systems, please contact us.
In certain circumstances, you have the following data protection rights:
The right to access, update or to delete the information we have on you. Whenever made possible, you can access, update or request deletion of your Personal Data directly within your account settings section. If you are unable to perform these actions yourself, please contact us to assist you.
The right of rectification. You have the right to have your information rectified if that information is inaccurate or incomplete.
The right to object. You have the right to object to our processing of your Personal Data.
The right of restriction. You have the right to request that we restrict the processing of your personal information.
The right to data portability. You have the right to be provided with a copy of the information we have on you in a structured, machine-readable and commonly used format.
The right to withdraw consent. You also have the right to withdraw your consent at any time where Carmelite Monastery of the Sacred Hearts relied on your consent to process your personal information.
Please note that we may ask you to verify your identity before responding to such requests.
You have the right to complain to a Data Protection Authority about our collection and use of your Personal Data. For more information, please contact your local data protection authority in the European Economic Area (EEA).
Links to other sites
Our Service may contain links to other sites that are not operated by us. If you click on a third party link, you will be directed to that third party's site. We strongly advise you to review the Privacy Policy of every site you visit.
We have no control over and assume no responsibility for the content, privacy policies or practices of any third party sites or services.
Children's Privacy
Our Service does not address anyone under the age of 18 ("Children").
We do not knowingly collect personally identifiable information from anyone under the age of 18. If you are a parent or guardian and you are aware that your Children has provided us with Personal Data, please contact us. If we become aware that we have collected Personal Data from children without verification of parental consent, we take steps to remove that information from our servers.
How long do we keep your data?
We keep your data for as long as you have an account with us. We also keep some data for security investigation. Most importantly, we have specific obligations for fraud detection and tax reasons. Therefore, we might need to retain certain data even if you ask to delete it.
Disclosure of Data
Disclosure for Law Enforcement
Under certain circumstances, Carmelite Monastery of the Sacred Hearts may be required to disclose your Personal Data if required to do so by law or in response to valid requests by public authorities (e.g. a court or a government agency). Legal Requirements
Carmelite Monastery of the Sacred Hearts may disclose your Personal Data in the good faith belief that such action is necessary to:
-To comply with a legal obligation -To protect and defend the rights or property of Carmelite Monastery of the Sacred Hearts -To prevent or investigate possible wrongdoing in connection with the Service -To protect the personal safety of users of the Service or the public -To protect against legal liability
Who can you reach out to for privacy matters?
If you have any questions about our privacy policy or a privacy complaint, you can email us at sisters@sistersofcarmel.com or contact us through our contact us page.
Changes to this Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page.
We will let you know through a prominent notice on our website, prior to the change becoming effective and update the "effective date" at the top of this Privacy Policy.
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.