How we secure your information
We seek to take reasonable technical and organizational measures to secure your information and to protect it against unauthorized or unlawful use and accidental loss or destruction. Unfortunately, no data transmission or storage system can be guaranteed to be 100% secure. If you have reason to believe that your interaction with us is no longer secure, please immediately notify us in accordance with the “Our details” section above.
Transmission of information to us by email
Transmission of information over the internet is not entirely secure, and if you submit any information to us over the internet (whether by email, via our website or any other means), you do so entirely at your own risk.
We cannot be responsible for any costs, expenses, loss of profits, harm to reputation, damages, liabilities or any other form of loss or damage suffered by you as a result of your decision to transmit information to us by such means.
We process data both inside and outside of the United States and rely on legally-provided mechanisms to lawfully transfer data across borders. Countries where we and our data processors process data may have laws which are different, and potentially not as protective, as the laws of your own country.
Your information will be transferred and stored outside the European Economic Area (EEA) in the circumstances set out below. We will also transfer your information outside the EEA or to an international organization in order to comply with legal obligations to which we are subject (compliance with a court order, for example). Where we are required to do so, we will ensure appropriate safeguards and protections are in place.
Server log information
Information collected when you visit our website is transferred outside of the EEA and stored on the servers of our third party hosting company, Shopify. You can access their privacy policy here: www.shopify.com/privacy
Country of storage: Canada and the United States
Safeguard(s) used: our third party hosting provider has self-certified its compliance with the EU-U.S. Privacy Shield.
Contact form and Email
Information you submit to us via our contact form is transferred outside the EEA and stored on our third party email and customer service systems. Our email provider is Klaviyo Inc. You can access their privacy policy here: www.klaviyo.com/privacy. Our customer service system provider is Zendesk. You can access their privacy policy here: https://www.zendesk.com/company/customers-partners/eu-data-protection/
Country of storage: United States. This country is not subject to an adequacy decision by the European Commission.
Safeguard(s) used: our third party email provider has self-certified its compliance with the EU-U.S. Privacy Shield
E-Newsletter
Information you submit to us when you sign up for our e-newsletter is transferred outside the EEA and stored on our third party mailing list provider’s servers. Our third party mailing list provider is: Klaviyo. You can access their privacy policy here: www.klaviyo.com/privacy
Country of storage: The United States. This country is not subject to an adequacy decision by the European Commission.
Safeguard(s) used: our third party mailing list provider has self-certified its compliance with the EU-U.S. Privacy Shield.
Google Analytics
Information collected by Google Analytics (your IP address and actions you take in relation to our website) is transferred outside the EEA and stored on Google’s servers. You can access Google’s privacy policy here: https://www.google.com/policies/privacy/
Country of storage: United States of America. This country is not subject to an adequacy decision by the European Commission.
Safeguard(s) used: Google has self-certified its compliance with the EU-U.S. Privacy Shield which is available here: https://www.privacyshield.gov/welcome. The EU-U.S. Privacy Shield is an approved certification mechanism under Article 42 of the General Data Protection Regulation, which is permitted under Article 46(2)(f) of the General Data Protection Regulation. You can access the European Commission decision on the adequacy of the EU-U.S. Privacy Shield here: http://ec.europa.eu/justice/data-protection/international-transfers/adequacy/index_en.htm
Payment Processor
Information you submit to us by our third party payment processor, Shopify Payments, is transferred outside the EEA and stored on their servers. You can access their privacy policy here: https://pay.shopify.com/tos-privacy-policy
Country of storage: The United States and Canada. These countries are not subject to an adequacy decision by the European Commission.
Safeguard(s) used: our payment processor has self-certified its compliance with the EU-U.S. Privacy Shield.