Privacy Policy for The PEEP Project

At The PEEP Project (“we”, “our”, “us”), accessible through the website located at thepeepproject.com (“Website”), we are deeply committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy outlines how we collect, use, share, and protect your personal information in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). We are dedicated to a privacy-first approach and strive for transparency and user control in all of our data practices.

1. Scope of This Policy and Data Controller

This Privacy Policy applies to all personal data collected through thepeepproject.com and associated services. The PEEP Project is the data controller responsible for the collection and processing of your personal information under this Policy.

If you are located in the European Economic Area (EEA), we process your personal data in compliance with the GDPR. For residents of California, our practices also comply with the CCPA.

2. Categories of Personal Data We Process

We collect and process various categories of personal information either directly from you, through your use of our services, or from third parties. These categories include:

a. Usage Data
This includes information about how you use our Website, such as browser type, device identifiers, IP address, session data, referring URLs, page interaction, access times, and diagnostic data.

b. Account Data
Such data is collected when you create or maintain an account with us. It may include your full name, physical address, email address, and telephone number.

c. Profile Data
This includes your user preferences, purchasing behavior, browsing patterns, and interactions with our service and content.

d. Communication Data
We retain records of your correspondence with us, which may include support requests, feedback, contact history, and other inquiries submitted through email or the Website.

e. Technical Data
Collected when you interact with the Website, this may include information about your device type, hardware model, operating system, browser language, and system settings.

f. Transaction Data
We collect data relating to transactions you complete through our Website, including billing information, payment method, transaction dates, delivery details, and purchase history.

g. Preference Data
This includes information you provide regarding marketing content, product categories of interest, communication preferences, and opt-in/opt-out records.

3. Legal Bases for Processing Your Data

We process your data only when lawful grounds apply, including:

– Contractual Necessity: When processing is required to fulfill a contract with you (e.g., delivering products or services).
– Consent: Where you have provided your explicit and informed consent (e.g., for newsletter subscriptions or marketing communications).
– Legitimate Interests: When processing is necessary for our legitimate business purposes provided they do not override your rights (e.g., fraud prevention, improvement of services).
– Compliance with Legal Obligations: When required to comply with applicable laws or lawful government requests.

4. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

– Right of Access: Obtain confirmation of whether your data is processed and access to a copy.
– Right to Rectification: Correct any inaccuracies in your data.
– Right to Erasure: Request deletion of your data, subject to our legal retention obligations.
– Right to Restrict Processing: Limit the way we use your data under certain circumstances.
– Right to Data Portability: Receive your data in a structured, commonly used format and request its transfer.
– Right to Object: Withdraw consent or object to data processing based on legitimate interest or direct marketing.

To exercise any of these rights, please contact us at: [email protected].

5. Security Measures

We implement rigorous technical and organizational measures to secure your personal data, including:

– SSL encryption for data in transit.
– Role-based access controls to limit access to authorized personnel only.
– Regular, encrypted system backups to prevent loss of data.
– Ongoing security training and awareness for all employees.
– Routine vulnerability assessments and intrusion detection protocols.

6. International Data Transfers

Whenever we transfer your data outside of the European Economic Area (EEA), we ensure protection through:

– Standard Contractual Clauses (SCCs) approved by the European Commission.
– Transfers to jurisdictions considered to have adequate levels of data protection.
– Robust contractual mechanisms and safeguards imposed on third-party service providers.

7. Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including:

– Usage Data: Retained for up to 12 months for analytics and service improvement.
– Account Data: Retained for the duration of the user relationship and up to 3 years following account deletion.
– Transaction Data: Retained for 7 years in accordance with tax and financial recordkeeping obligations.
– Communication Data: Retained for 2 years to ensure service quality and customer support.
– Preference Data: Retained until consent is withdrawn or data is deleted.

Where data is no longer required, it is securely deleted or anonymized.

8. Cookie Policy

We use cookies and similar tracking technologies to provide, improve, and personalize your experience on thepeepproject.com. Cookies may be set by us or third parties and fall into the following categories:

– Essential Cookies: Required for core site functionality (e.g., login, cart summary).
– Functional Cookies: Remember user settings and preferences.
– Analytics Cookies: Monitor aggregate site usage patterns via tools such as Google Analytics.
– Performance Cookies: Enhance Website speed, responsiveness, and feature execution.

9. Cookie Management and Compliance

Upon first visit from regions governed by GDPR and CCPA, a clear cookie consent banner allows you to:

– Accept all cookies
– Reject non-essential cookies
– Customize cookie settings

You may also manage cookie preferences at any time via our cookie management panel or directly through your browser settings.

10. Children’s Privacy Protection

Our Website is not directed at, nor intended for, children under the age of 13. We do not knowingly collect personal data from children. If we become aware that we have inadvertently received such data, we will take all reasonable steps to delete it.

Parents or guardians who believe that their child has provided us with personal data can contact us at [email protected], and we will take prompt action.

11. Updates to This Policy

We reserve the right to modify this Privacy Policy as needed to reflect changes in legal, regulatory, or operational requirements. Any material updates will be communicated via appropriate channels and will be effective immediately upon publication. We encourage you to review this Policy regularly.

12. Contact Information

For questions about this Privacy Policy, or if you wish to exercise your data rights or raise any privacy concerns, please contact us:

The PEEP Project
Email: [email protected]
Website: thepeepproject.com

We are committed to full compliance with applicable data protection laws and to providing a secure, transparent, and user-respecting service. Please reach out to us with any questions or concerns about your privacy.