Privacy Policy for johngriffithsam.com
1. Introduction
At johngriffithsam.com, we are firmly committed to protecting your personal data and upholding your privacy rights under applicable data protection laws, including the General Data Protection Regulation (“GDPR”) and the California Consumer Privacy Act (“CCPA”). Your privacy is important to us, and this Privacy Policy has been designed to inform you, as a user of our website and services, of how we collect, process, store, and share personal information, and how we protect that information using industry best practices.
We believe in transparency and accountability and strive to process your data in a manner that is lawful, fair, and respectful of your rights. By visiting or interacting with johngriffithsam.com, you consent to the practices described in this policy, unless otherwise specified by law.
2. Scope and Data Controller
This Privacy Policy applies to all users accessing johngriffithsam.com and to all data collected through our website and its related services. The entity responsible for determining the purposes and means of processing your personal data (the “Data Controller”) is:
John Griffith Sam
Email: [email protected]
This policy applies whether you are accessing our site from within the European Union, the United States, or elsewhere, and regardless of how you access our services (via desktop, mobile device, or otherwise).
3. Categories of Personal Data We Process
We may collect and process the following categories of personal data, either directly from you or indirectly through your use of our website:
a) Usage Data
Includes information about how you use our website, such as IP address, browser type and version, time zone setting, browser plug-in types, pages viewed, session timings, referring URLs, and interactions with site elements.
b) Account Data
Includes your name, postal address, email address, phone number, and login details if you create an account with us.
c) Profile Data
Includes user preferences, service or content interests, previous purchases, and behavioral data based on your interactions with the website or services.
d) Communication Data
Includes records of your correspondence with us, including support requests, chat logs, inquiries submitted via contact forms, and complaint records.
e) Technical Data
Includes device identifiers, operating system, browser properties, network type, and other configurations or specifications provided by your browser or device.
f) Transaction Data
Includes details of services or subscriptions purchased or accessed, payment method used, delivery address (if applicable), and billing data.
g) Preference Data
Includes your choices with regard to receiving marketing from us and your communication preferences, as well as data you provide to personalize your user experience.
4. Legal Bases for Processing Personal Data
In accordance with the GDPR, our legal bases for processing your personal data may include the following, depending on the context of interaction:
– Performance of a contract: When processing is necessary to fulfill our obligations to you, such as delivering services or managing your transactions;
– Legitimate interests: When processing is required for our legitimate business interests, provided that such interests are not overridden by your rights and freedoms;
– Consent: When you have expressly consented to the processing of your data for one or more specific purposes, such as receiving marketing communications;
– Legal obligation: Where processing is necessary for compliance with retention, disclosure, or regulatory requirements under applicable law.
For users subject to the CCPA, certain data practices may also be considered a “sale” or “sharing” of personal information. You may exercise your right to opt out accordingly, as described below.
5. Your Rights Under Applicable Law
In accordance with the GDPR and the CCPA, you have the following rights regarding your personal data:
– Right of Access: You may request access to your personal data and information about how it is processed.
– Right to Rectification: You have the right to correct any inaccurate or incomplete data we hold about you.
– Right to Erasure (“Right to be Forgotten”): In certain circumstances, you may request the deletion of your personal data.
– Right to Restrict Processing: You may request that we restrict the processing of your information where appropriate.
– Right to Data Portability: You may request to receive a copy of your data in a machine-readable format or that we transmit it to a third party.
– Right to Object: You may object to our use of your personal data if based on legitimate interests or for direct marketing purposes.
– Right to Non-Discrimination (CCPA): California residents will not be denied goods or services, charged different prices, or provided a different level of service for exercising any privacy rights.
– Right to Opt Out (CCPA): You have the right to direct us not to “sell” or “share” your personal information.
To exercise your rights, please contact us at [email protected]. We will respond to all legitimate requests within the timeframe required by applicable law.
6. Security Measures
We implement robust technical and organizational measures to safeguard the confidentiality, integrity, and availability of your data. This includes:
– SSL/TLS encryption for all data transmissions;
– Strict access controls and secure password-protected systems;
– Regular security assessments, internal audits, and employee training;
– Routine data backups and geo-redundant storage;
– Monitoring systems to detect and respond to security incidents.
While no system can guarantee absolute security, we maintain appropriate safeguards designed to prevent unauthorized access, disclosure, alteration, or destruction of your personal data.
7. International Data Transfers
Your data may be transferred to, and processed in, countries other than your country of residence, including countries outside the European Economic Area (“EEA”) or California. In such cases, we ensure appropriate safeguards are in place, including:
– The use of Standard Contractual Clauses approved by the European Commission;
– Verification of vendor participation in approved international frameworks;
– Binding corporate rules or adequacy decisions where applicable.
By using our website, you acknowledge and agree to such international data transfers in accordance with applicable laws.
8. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including satisfying any legal, regulatory, tax, accounting, or reporting requirements. Specific retention periods include:
– Account and Profile Data: Retained for the duration of your account and up to 6 years thereafter;
– Transaction Data: Retained for 7 years for accounting and tax compliance;
– Communication Data: Retained for 3 years after the last interaction;
– Technical and Usage Data: Retained for up to 24 months for analytics and operational improvements;
– Marketing and Preference Data: Retained until you withdraw consent or request deletion.
Retention periods may be extended due to legal obligations or ongoing disputes.
9. Cookie Policy
johngriffithsam.com uses cookies and similar tracking technologies to enhance user experience, analyze site traffic, and deliver content tailored to user interests. Cookies are categorized as follows:
– Essential Cookies: Required for core site functionality, such as authenticating accounts or enabling secure payments.
– Functional Cookies: Enhance usability and improve features like saved preferences and account settings.
– Analytics Cookies: Help measure how users navigate and interact with the site, allowing us to optimize content and performance.
– Performance Cookies: Collect information on server load, site responsiveness, and gameplay or content load times.
10. Cookie Management and Compliance
We comply with GDPR (EU-based users) and CCPA (California residents) in managing your cookie preferences:
– You may control or delete cookies directly through your browser settings;
– Upon first visit from the EU or California, a cookie banner enables you to accept or reject non-essential cookies;
– You may withdraw consent or update preferences at any time using on-site cookie settings or by contacting us;
– Do Not Track (“DNT”) signals are honored where technically feasible and recognized.
11. Children’s Privacy
Our website and services are not intended for individuals under the age of 13. We do not knowingly collect or solicit personal data from children. If you believe we may have inadvertently collected data from a child under 13, please contact us immediately at [email protected] so that we may take appropriate steps to delete such information.
12. Policy Updates
We may amend or update this Privacy Policy periodically to reflect changes in law, technology, or our data practices. Users will be notified of material changes via prominent notice on the website or direct communication where appropriate. Continued use of johngriffithsam.com following any changes implies acceptance of the revised policy.
We encourage you to review this Privacy Policy regularly to stay informed about how we process and protect your data.
13. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or the way in which your personal data is treated, please contact us at:
Email: [email protected]
Website: https://johngriffithsam.com
We are committed to addressing your data privacy concerns promptly and in accordance with applicable laws and regulations.
—
This Privacy Policy reflects our continued commitment to data privacy and full compliance with regional and international data protection principles. If you require further clarification or would like to exercise your privacy rights, please contact us at [email protected].