This Privacy Policy describes how Donna Ricco (“Donna Ricco,” “we,” “us,” or “our“) collects, uses, and shares information about you when you visit our website at donna-ricco.com or any website on which we offer our products or services (collectively, the “Site“), or when you otherwise interact with us.
Please take a few minutes to review this Privacy Policy carefully. When you use our Site or provide any personal information to us, you consent to our collection, use and disclosure of your information as described in this Privacy Policy. If you have any questions about our privacy practices or this Privacy Policy, please contact our Data Protection Officer at [email protected].
What Information We Collect
Information you provide to us directly: We collect information you provide to us directly when you sign up for a Donna Ricco account, make a purchase, participate in a contest or promotion, submit a product review, communicate with customer service, or otherwise interact with us. This information may include:
- Contact information, such as your name, email address, mailing address, and phone number.
- Account information, such as your username and password that you may set to establish an online account with us.
- Payment information, such as credit card or other payment details.
- Demographic information, such as your gender, age, country, and preferred language.
- Preference information that helps us understand your product and service needs and preferences.
- Customer service and other correspondence, such as information you provide when you interact with our customer service team.
Information we collect automatically: We may automatically collect certain types of information when you access or use our Site or transact business with us. For example:
- Usage information, such as your IP address; browser type, operating system, referral URLs, device information (e.g., device IDs), pages visited, links clicked, the state or country from which you accessed our Site, and other clickstream data.
- Geolocation data, such as your computer or device’s geographic location, if you enable location services on your device.
- Cookies, which are described further below.
Information from third party sources: We may collect information about you from third party sources, such as:
- Publicly available sources, such as open government databases.
- Social media platforms, such as if you interact with us on social media.
- Third party data providers, such as identity verification services.
- Marketing partners and resellers.
Information from your integrations: If you integrate or connect our Site with a third party service, we may receive information about you from that service. For example, if you login via Single Sign On (SSO).
How We Use Information
We use information about you as permitted by law and for the following purposes:
- To operate our Site and business. This includes authenticating users, processing orders and payments, communicating with you about orders and our Site, products and services, providing customer service and support, fulfilling and delivering products and services, auditing interactions on our Site, and improving our Site and services.
- For marketing and advertising. With your consent, we may send you marketing communications to keep you informed about our products, services, and promotions.
- To comply with law. To comply with legal obligations and as may be required by applicable laws and regulations or legal process.
- With your consent. We may use information about you for other purposes if you provide your consent to us in a clear and conspicuous manner.
How We Share Information
We do not sell your personal information. We share information about you in the following circumstances:
- With third party service providers. To assist us in meeting business operations needs, we may share information about you with third party service providers, such as payment processors, web analytics providers, advertising networks, call centers, data management services, help desk providers, accountants, law firms, auditors, shopping cart and email service providers, and shipping companies.
- To comply with laws. To comply with legal obligations, judicial proceedings, court orders, warrants, subpoenas or other legal process requirements.
- To protect rights. To protect the rights or safety of you, us or others.
- With your consent. We may share information about you for other purposes with your consent.
- Aggregated or de-identified data. We may share aggregated or de-identified information that cannot reasonably be used to identify you.
Legal Basis for Processing Data
We collect and process information about you only where we have legal grounds for doing so under applicable EU laws. The legal grounds depend on the services you use and how you use them. This means we collect and use your information only where:
- We need it to provide you the Site, products or services, including to operate the Site, provide our products and services, ensure the security of our Site and services, maintain back-ups of our databases and communicate with you.
- It satisfies a legitimate interest, which is not overridden by your rights, such as for research and development, and to protect our legal rights and interests.
- You give us consent to do so for a specific purpose, such as send you marketing communications.
- We need to process your information to comply with a legal obligation.
Retention of Personal Data
We retain personal data only for as long as necessary to provide the services you have requested, or for other essential purposes such as complying with our legal obligations, resolving disputes, and enforcing our agreements. Depending on the laws of your country or state of residence, the retention period may be the duration of our contractual relationship, plus a reasonable period of time thereafter to allow us time to remove residual copies of data from our servers and backup systems.
Data Subject Rights
If you reside in certain territories, including the EU, you have rights with respect to your personal data.
- You have the right of access, which means you may contact us to access the data we hold about you.
- You may request rectification of any inaccurate or incomplete data we hold about you.
- You may have the right to request erasure of any outdated or unnecessary data we hold about you.
- You may have the right to restrict or limit the ways in which we use your data.
- In some cases, you may have the right to data portability, which means we will provide your data to you in a readily usable format.
- You may have the right to object to us processing certain data about you and for marketing to you.
Where our processing is based on consent, you have the right to withdraw consent at any time without detriment. You also have the right to lodge complaints with your local data protection authority.
Cookies and Tracking Technologies
A cookie is a small file with a string of characters that is sent to your computer when you visit a website. When you visit the Site again, the cookie allows the Site to recognize your browser. Cookies may store preferences and other information. You can reset your browser to refuse all cookies or to indicate when a cookie is being sent. However, some Site features or services may not function properly without cookies.
We also use tracking technologies such as web beacons to collect information about your interactions with our Site and your use of features, such as our emails.
Our third party advertisers and partners may use cookies or similar technologies to collect information about you when you use our Site.
Do Not Track Settings
We support Do Not Track (DNT). Please note you will need to enable DNT on each browser and device you use to browse our Site.
Security
We implement technical and organizational security measures in an effort to protect your information from unauthorized access, use, or disclosure. However, no system can be 100% secure. Therefore, although we take reasonable steps to secure your information, we do not promise, and you should not expect, that your information will always remain secure.
International Data Transfers
We are headquartered in the United States and may use service providers that operate in other countries. Your personal information may be transferred to the United States or other locations where privacy laws may not be as protective as those in your state or country.
We comply with legal frameworks for international data transfers, including Standard Contractual Clauses (SCCs) where required. Please contact us if you would like to see a copy of the specific mechanisms we use to transfer data.
Children’s Privacy
Our Services are not designed for children under 16. We do not intentionally collect personal information from children under 16 without parental consent. If we learn that a child under 16 has provided us with personal information, we will take reasonable steps to delete such information.
California Resident Rights
If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA) with respect to your personal information, including:
- Right to Know – access your data, including categories, sources, business purposes, and sharing.
- Right to Delete – request deletion of your data, subject to certain exceptions.
- Right to Non-Discrimination – not be discriminated against for exercising these rights.
We do not sell your personal information or share it with third parties for their direct marketing purposes.
Changes to this Privacy Policy
We may update this Privacy Policy from time to time as necessary to reflect changes in our business, legal, and regulatory obligations. If we make any material changes, we will notify you by email or by posting a notice on our Site prior to the changes taking effect. We encourage you periodically review this page for the latest information on our privacy practices.
How to Contact Us
If you have any questions about this Privacy Policy or our personal data practices, please contact our Data Protection Officer at:
Data Protection Officer
Donna Ricco
[email protected]