Privacy Policy
Last Updated: July 11, 2024
Blackfridaydealstore.com (“our” “we” or “us”) respects your privacy and is committed to protecting the personal information of our Users (“user,” “you,” “your” or “yours”) when you visit or use blackfridaydealstore.com (this website) (the “App”). We provide our App and Services (hereinafter collectively referred to as either “App” or “Services”) to you under the following privacy policy (the “Policy”).
It is 1706262 Ontario Limited’s policy to comply with any applicable law and regulation regarding any personal information we may collect about you, including across this website, and other sites we own and operate. Personal information is any information about you which can be used to identify you. This may include information about you as a person (such as name, and email address), your devices, payment details, and even information about how you use our website or online service. In the event our site contains links to third-party sites and services, please be aware that those sites and services have their own privacy policies. After following a link to any third-party content, you should read their posted privacy policy information about how they collect and use personal information. This Privacy Policy does not apply to any of your activities after you leave our site.
Information we collect we collect falls into one of two categories: “voluntarily provided” information and “automatically collected” information.
“Voluntarily provided” information refers to any information you knowingly and actively provide us when using or participating in any of our services and promotions.
“Automatically collected” information refers to any information automatically sent by your devices in the course of accessing our products and services.
Log Data
When you visit our website, our servers may automatically log the standard data provided by your web browser. It may include your device’s Internet Protocol (IP) address, your browser type and version, the pages you visit, the time and date of your visit, the time spent on each page, and other details about your visit. Additionally, if you encounter certain errors while using the site, we may automatically collect data about the error and the circumstances surrounding its occurrence. This data may include technical details about your device, what you were trying to do when the error happened, and other technical information relating to the problem. You may or may not receive notice of such errors, even in the moment they occur, that they have occurred, or what the nature of the error is. Please be aware that while this information may not be personally identifying by itself, it may be possible to combine it with other data to personally identify individual persons.
Personal Information
We may ask for personal information — for example, when you subscribe to our newsletter or when you contact us — which may include one or more of the following:
Name
Phone/mobile number
Home/mailing address
Legitimate Reasons for Processing Your Personal Information
We only collect and use your personal information when we have a legitimate reason for doing so. In which instance, we only collect personal information that is reasonably necessary to provide our services to you.
Collection And Use Of Information
We may collect personal information from you when you do any of the following on our website:
Register for an account Sign up to receive updates from us via email or social media channels.
Use a mobile device or web browser to access our content
Contact us via email, social media, or any similar technologies
When you mention us on social media.
We may collect, hold, use, and disclose information for the following purposes, and personal information will not be further processed in a manner that is incompatible with these purposes:
To provide you with our platform’s core features and services to deliver products and/or services to you, for analytics, market research, and business development, including to operate and improve our website, associated applications, and associated social media platforms, for advertising and marketing, including to send you promotional information about our products and services and information about third parties that we consider may be of interest to you and to comply with our legal obligations and resolve any disputes that we may have.
We may combine voluntarily provided and automatically collected personal information with general information or research data we receive from other trusted sources. For example, Our marketing and market research activities may uncover data and insights, which we may combine with information about how visitors use our site to improve our site and your experience on it.
Security of Your Personal Information
When we collect and process personal information, and while we retain this information, we will protect it within commercially acceptable means to prevent loss and theft, as well as unauthorized access, disclosure, copying, use, or modification.
Although we will do our best to protect the personal information you provide to us, we advise that no method of electronic transmission or storage is 100% secure and no one can guarantee absolute data security. You are responsible for selecting any password and its overall security strength, ensuring the security of your own information within the bounds of our services. For example, ensuring any passwords associated with accessing your personal information and accounts are secure and confidential.
How Long We Keep Your Personal Information
We keep your personal information only for as long as we need to. This time period may depend on what we are using your information for, in accordance with this privacy policy. For example, if you have provided us with personal information as part of creating an account with us, we may retain this information for the duration your account exists on our system. If your personal information is no longer required for this purpose, we will delete it or make it anonymous by removing all details that identify you. However, if necessary, we may retain your personal information for our compliance with a legal, accounting, or reporting obligation or for archiving purposes in the public interest, scientific, or historical research purposes, or statistical purposes.
Children’s Privacy
We do not aim any of our products or services directly at children under the age of 13 and we do not knowingly collect personal information about children under 13.
Disclosure of Personal Information to Third Parties We may disclose personal information to: a parent, subsidiary or affiliate of our company third-party service providers for the purpose of enabling them to provide their services, including (without limitation) IT service providers, data storage, hosting and server providers, ad networks, analytics, error loggers, debt collectors, maintenance or problem- solving providers, marketing providers, professional advisors, and payment systems operators our employees, contractors, and/or related entities our existing or potential agents or business partners credit reporting agencies, courts, tribunals, and regulatory authorities, in the event you fail to pay for goods or services we have provided to you courts, tribunals, regulatory authorities, and law enforcement officers, as required by law, in connection with any actual or prospective legal proceedings, or in order to establish, exercise, or defend our legal rights third parties, including agents or subcontractors who assist us in providing information, products, services, or direct marketing to you third parties to collect and process data an entity that buys, or to which we transfer all or substantially all of our assets and business.
Third parties we currently use include:
Google Analytics
Meta Pixel
MailChimp
Instantly
Your Rights And Controlling Your Personal Information
Your choice: By providing personal information to us, you understand we will collect, hold, use, and disclose your personal information in accordance with this privacy policy. You do not have to provide personal information to us, however, if you do not, it may affect your use of our website or the products and/or services offered on or through it. Information from third parties: If we receive personal information about you from a third party, we will protect it as set out in this privacy policy. If you are a third party providing personal information about somebody else, you represent and warrant that you have such person’s consent to provide the personal information to us.
Marketing permission: If you have previously agreed to us using your personal information for direct marketing purposes, you may change your mind at any time by contacting us using the details below.
Access: You may request details of the personal information that we hold about you.
Correction: If you believe that any information we hold about you is inaccurate, out of date, incomplete, irrelevant, or misleading, please contact us using the details provided in this privacy policy. We will take reasonable steps to correct any information found to be inaccurate, incomplete, misleading, or out of date.
Non-discrimination: We will not discriminate against you for exercising any of your rights over your personal information. Unless your personal information is required to provide you with a particular service or offer (for example providing user support), we will not deny you goods or services and/or charge you different prices or rates for goods or services, including through granting discounts or other benefits or imposing penalties, or provide you with a different level or quality of goods or services. Notification of data breaches: We will comply with laws applicable to us in respect of any data breach.
Complaints: If you believe that we have breached a relevant data protection law and wish to make a complaint, please contact us using the details below and provide us with full details of the alleged breach. We will promptly investigate your complaint and respond to you, in writing, setting out the outcome of our investigation and the steps we will take to deal with your complaint. You also have the right to contact a regulatory body or data protection authority in relation to your complaint.
Unsubscribe: To unsubscribe from our email database or opt-out of communications (including marketing communications), please contact us using the details provided in this privacy policy, or opt-out using the opt-out facilities provided in the communication. We may need to request specific information from you to help us confirm your identity.
Use Of Cookies
We use “cookies” to collect information about you and your activity across our site. A cookie is a small piece of data that our website stores on your computer, and accesses each time you visit, so we can understand how you use our site. This helps us serve you content based on preferences you have specified.
Business Transfers
If we or our assets are acquired, or in the unlikely event that we go out of business or enter bankruptcy, we would include data, including your personal information, among the assets transferred to any parties who acquire us. You acknowledge that such transfers may occur, and that any parties who acquire us may, to the extent permitted by applicable law, continue to use your personal information according to this policy, which they will be required to assume as it is the basis for any ownership or use rights we have over such information.
Limits Of Our Policy
Our website may link to external sites that are not operated by us. Please be aware that we have no control over the content and policies of those sites, and cannot accept responsibility or liability for their respective privacy practices.
California Privacy Laws – CPPA
Under California Civil Code Section 1798.83, if you live in California and your business relationship with us is mainly for personal, family, or household purposes, you may ask us about the information we release to other organizations for their marketing purposes. In accordance with your right to non-discrimination, we may offer you certain financial incentives permitted by the California Consumer Privacy Act, and the California Privacy Rights Act (collectively, CCPA) that can result in different prices, rates, or quality levels for the goods or services we provide. Any CCPA-permitted financial incentive we offer will reasonably relate to the value of your personal information, and we will provide written terms that describe clearly the nature of such an offer. Participation in a financial incentive program requires your prior opt-in consent, which you may revoke at any time. Under California Civil Code Section 1798.83, if you live in California and your business relationship with us is mainly for personal, family, or household purposes, you may ask us about the information we release to other organizations for their marketing purposes. To make such a request, please contact us using the details provided in this privacy policy with “Request for California privacy information” in the subject line. You may make this type of request once every calendar year. We will email you a list of categories of personal information we revealed to other organizations for their marketing purposes in the last calendar year, along with their names and addresses. Not all personal information shared in this way is covered by Section 1798.83 of the California Civil Code.
California Notice Of Collection
In the past 12 months, we have collected the following categories of personal information enumerated in the CCPA:
Identifiers, such as name, email address, phone number, account name, IP address, and an ID or number assigned to your account. Customer records, such as billing and shipping address, and credit or debit card data. Demographics, such as your age or gender. This category includes data that may qualify as protected classifications under other California or federal laws. Commercial information, such as products or services history and purchases.
Internet activity, such as your interactions with our service. Audio or visual data, such as photos or videos you share with us or post on the service.
Geolocation data. Inferences, such as information about your interests, preferences and favorites.
For more information on the information we collect, including the sources we receive information from, review the “Information We Collect” section. We collect and use these categories of personal information for the business purposes described in the “Collection and Use of Information” section, including to provide and manage our Service.
Additional Disclosures For U.S. States Privacy Law Compliance
The following section includes provisions that comply with the privacy laws of these states (California, Colorado, Delaware, Florida, Virginia, and Utah) and is applicable only to the residents of those states. Specific references to a particular state (in a heading or in the text) are only a reference to that state’s law and applies only to that state’s residents. Non-state specific language applies to all of the states listed above.
Additional Disclosures For Australian Privacy Act Compliance (AU)
International Transfers of Personal Information Where the disclosure of your personal information is solely subject to Australian privacy laws, you acknowledge that some third parties may not be regulated by the Privacy Act and the Australian Privacy Principles in the Privacy Act. You acknowledge that if any such third party engages in any act or practice that contravenes the Australian Privacy Principles, it would not be accountable under the Privacy Act, and you will not be able to seek redress under the Privacy Act.
International Transfers Outside European Economic Area (EEA)
We will ensure that any transfer of personal information from countries in the European Economic Area (EEA) to countries outside the EEA will be protected by appropriate safeguards, for example by using standard data protection clauses approved by the European Commission, or the use of binding corporate rules or other legally accepted means.
Additional Disclosures For General Data Protection Regulation (GDPR) Compliance (EU)
Data Controller / Data Processor
The GDPR distinguishes between organizations that process personal information for their own purposes (known as “data controllers”) and organizations that process personal information on behalf of other organizations (known as “data processors”). We, 1706262 Ontario Limited, located at the address provided in our Contact Us section, are a Data Controller with respect to the personal information you provide to us.
Additional Disclosures for UK General Data Protection Regulation (UK GDPR) Compliance (UK)
Data Controller / Data Processor
The GDPR distinguishes between organizations that process personal information for their own purposes (known as “data controllers”) and organizations that process personal information on behalf of other organizations (known as “data processors”). For the purposes covered by this Privacy Policy, we are a Data Controller with respect to the personal information you provide to us and remain compliant with our data controller obligations under GDPR.
Legal Bases For Processing Your Personal Information
We will only collect and use your personal information when we have a legal right to do so. In which case, we will collect and use your personal information lawfully, fairly, and in a transparent manner. If we seek your consent to process your personal information, and you are under 16 years of age, we will seek your parent or legal guardian’s consent to process your personal information for that specific purpose. Our lawful bases depend on the services you use and how you use them. This means we only collect and use your information on the following grounds:
Consent From You
Where you give us consent to collect and use your personal information for a specific purpose. You may withdraw your consent at any time using the facilities we provide; however this will not affect any use of your information that has already taken place. You may consent to providing your email address for the purpose of receiving marketing emails from us. While you may unsubscribe at any time, we cannot recall any email we have already sent. If you have any further enquiries about how to withdraw your consent, please feel free to enquire
using the details provided in the Contact Us section of this privacy policy.
Performance Of A Contract Or Transaction
Where you have entered into a contract or transaction with us, or in order to take preparatory steps prior to our entering into a contract or transaction with you. For example, if you contact us with an inquiry, we may require personal information such as your name and contact details in order to respond.
Our Legitimate Interests
Where we assess it is necessary for our legitimate interests, such as for us to provide, operate, improve and communicate our services. We consider our legitimate interests to include research and development, understanding our audience, marketing and promoting our services, measures taken to operate our services efficiently, marketing analysis, and measures taken to protect our legal rights and interests.
Compliance With Law
In some cases, we may have a legal obligation to use or keep your personal information. Such cases may include (but are not limited to) court orders, criminal investigations, government requests, and regulatory obligations. If you have any further enquiries about how we retain personal information in order to comply with the law, please feel free to enquire using the details provided in the Contact Us section of this privacy policy.
Your Rights And Controlling Your Personal Information
Restrict: You have the right to request that we restrict the processing of your personal information if (i) you are concerned about the accuracy of your personal information; (ii) you believe your personal information has been unlawfully processed; (iii) you need us to maintain the personal information solely for the purpose of a legal claim; or (iv) we are in the process of considering your objection in relation to processing on the basis of legitimate interests.
Objecting to processing: You have the right to object to the processing of your personal information that is based on our legitimate interests or public interest. If this is done, we must provide compelling legitimate grounds for the processing which overrides your interests, rights, and freedoms, in order to proceed with the processing of your personal information.
Data portability: You may have the right to request a copy of the personal information we hold about you. Where possible, we will provide this information in CSV format or other easily readable machine format. You may also have the right to request that we transfer this personal information to a third party.
Deletion: You may have a right to request that we delete the personal information we hold about you at any time, and we will take reasonable steps to delete your personal information from our current records. If you ask us to delete your personal information, we will let you know how the deletion affects your use of our website or products and services. There may be exceptions to this right for specific legal reasons which, if applicable, we will set out for you in response to your request. If you terminate or delete your account, we will delete your personal information within 15 days of the deletion of your account. Please be aware that search engines and similar third parties may still retain copies of your personal information that has been made public at least once, like certain profile information and public comments, even after you have deleted the information from our services or deactivated your account.
Analytics
We use Google Analytics and Facebook Pixel to collect information when users access or interact with our App. This information may include, among other things, the browser and operating system you are using, the URL or advertisement that referred you to our website, the search terms you entered into a search engine that led you to our website, areas within our website that you visited, and other information commonly shared when browsers communicate with websites. This information may also include x/y coordinates of mouse events, unique ID tracking cookie, Internet Protocol (IP) address (anonymized for residents of the European Economic Area), unique device identifier (Device Identifier) for any device (computer, mobile phone, tablet, etc.). A Device Identifier is a number that is automatically assigned or connected to the device you use to access the Service, and our servers identify your device by its Device Identifier. Some mobile service providers may also provide us or our third-party service providers with information regarding the physical location of the device used to access the Service.
We use the information from Google Analytics and Facebook Pixel to assemble statistics regarding usage of our App as well as to help us understand how users engage with our App on an individual and aggregate basis in order to improve it; to help with customer service needs (such as troubleshooting issues that users report to us); and for research and analytical purposes such as service performance, customer behavior, and common navigation through the App.
We do not share our App traffic data with any third party for any purpose unless required for legal reasons such as meeting applicable laws, regulations, legal processes, or enforceable governmental requests, and/or unless you have given explicit consent to allow us to do so; enforcing applicable terms of service; detecting, preventing, or otherwise addressing fraud, security, or technical issues; protecting against harm to the rights, property, or safety of our company, our customers, or the public as required or permitted by law.
If you’d like to opt-out or obtain a copy of your data, make a correction, or have it erased, please contact us in any way convenient for you in the Contact Us section.
Marketing And Behavioural Remarketing
We use marketing and remarketing services to advertise to you, or on third-party websites to you after you visited our Service. We and our third-party vendors use cookies to inform, optimize, and serve ads based on your past visits to our Service. To learn more about cookies, including how to view which cookies have been set and how to manage and delete them, please visit www.allaboutcookies.org.
Google Ads
We may use Google AdSense Advertising on our App. Google, as a third-party vendor, uses cookies to serve ads on our site. Google’s use of the DART cookie enables it to serve ads to our users based on previous visits to our site and other sites on the Internet. Users may opt out of the use of the DART cookie by visiting the Google Ad and Content Network privacy policy. You may view their advertising and privacy policies at the following links:
Google Ads
Google Privacy
Meta
Meta remarketing service is provided by Facebook Inc.
You can learn more about interest-based advertising from Facebook by visiting this page: Facebook Ad Preferences
To opt out from Facebook’s interest-based ads, follow these instructions from Facebook: Facebook Help
Facebook adheres to the Self-Regulatory Principles for Online Behavioral Advertising established by the Digital Advertising Alliance.
You can also opt out from Facebook and other participating companies through the Digital Advertising Alliance in the USA, the Digital Advertising Alliance of Canada, or the European Interactive Digital Advertising Alliance, or opt out using your mobile device settings. For more information on the privacy practices of Facebook, please visit Facebook’s Data Policy: Facebook Data Policy
Ads And External Links
Please note that the App may contain links to third-party Apps and advertisements, and if you link to a third-party App from the App, any data you provide to that App and any use of that data by the third party are not under our control and are not subject to this Policy. You should consult the privacy policies of each App you visit. This Policy applies solely to personal information collected by our App. If you upload content, including personal information, to a social network and then tag the App, your submission will be subject to that social network’s terms of use and privacy policy, even where you post on an official business.com page on the social network. We do not have control over these terms of use and privacy policies and have not reviewed their adequacy. You should therefore review these before submitting any personal information.
Affiliate Links
We may display affiliate links on our App, which means we may earn a commission from qualifying purchases made through these links. This does not affect the price you pay for the product or service. We only recommend products and services that we believe in and use ourselves. If you choose to purchase through an affiliate link, it is your responsibility to read the privacy policy and terms of service of the website you are purchasing from.
Social Media Widgets
Our App includes social media features, such as the Facebook Like button and Twitter button. These features may collect your IP address, and which page you are visiting on our site, and may set a cookie to enable the feature to function properly. Social media features and widgets are either hosted by a third party or hosted directly on our site. Your interactions with these features are governed by the privacy policy of the company providing it.
Security
The security of your Personal Information is important to us. We use commercially reasonable efforts to store and maintain your Personal Information in a secure environment and have implemented commercially reasonable procedures designed to limit unauthorized access, use, or disclosure of your Personal Information. Even though we have taken steps to protect your Personal Information, we cannot guarantee the security of any data you disclose online. You accept the inherent security risks of providing information and dealing online over the Internet and will not hold us responsible for any breach of security unless this is due to our negligence.
Changes To This Policy
At our discretion, we may change our privacy policy to reflect updates to our business processes, current acceptable practices, or legislative or regulatory changes. If we decide to change this privacy policy, we will post the changes here at the same link by which you are accessing this privacy policy. If the changes are significant, or if required by applicable law, we will contact you (based on your selected preferences for communications from us) and all our registered users with the new details and links to the updated or changed policy. If required by law, we will get your permission or give you the opportunity to opt in to or opt out of, as applicable, any new uses of your personal information.
Right To Know And Delete
You have the right to delete the personal information we collected and know certain information about our data practices in the preceding 12 months. In particular, you have the right to request the following from us:
The categories of personal information we have collected about you;
The categories of sources from which the personal information was collected;
The categories of personal information about you we disclosed for a business purpose or
sold;
The categories of third parties to whom the personal information was disclosed for a
business purpose or sold;
The business or commercial purpose for collecting or selling the personal information; and The specific pieces of personal information we have collected about you. To exercise any of these rights, please contact us using the details provided in this privacy policy. In addition to the rights discussed above, you have the right to request information from us regarding the manner in which we share certain personal information as defined by applicable statutes with third parties and affiliates for their own direct marketing purposes. To receive this information, send us a request using the contact details provided in this privacy policy. Requests must include “Privacy Rights Request” in the first line of the description and include your name, street address, city, state, and ZIP code.
Third-Party Provided Content
We may indirectly collect personal information about you from third parties who have your permission to share it. For example, if you purchase a product or service from a business working with us, and give your permission for us to use your details in order to complete the transaction. We may also collect publicly available information about you, such as from any social media and messaging platforms you may use. The availability of this information will depend on both the privacy policies and your own privacy settings on such platforms.
Additional Disclosure For Collection And Use Of Personal Information
In addition to the aforementioned purposes warranting the collection and use of personal information, we may also conduct marketing and market research activities, including how visitors use our site, website improvement opportunities, and user experience.
Personal Information No Longer Required For Our Purposes
If your personal information is no longer required for our stated purposes, or if you instruct us under your Data Subject Rights, we will delete it or make it anonymous by removing all details that identify you (“Anonymisation”). However, if necessary, we may retain your personal information for our compliance with a legal, accounting, or reporting obligation or for archiving purposes in the public interest, scientific, or historical research purposes or statistical purposes.
Legal Bases For Processing Your Personal Information
Data Protection and Privacy Laws permit us to collect and use your personal data on a limited number of grounds.. In which case, we will collect and use your personal information lawfully,
fairly and in a transparent manner. We never directly market to any person(s) under 18 years of age. Our lawful bases depend on the services you use and how you use them. This is a non-exhaustive list of the lawful bases we use:
Consent From You
Where you give us consent to collect and use your personal information for a specific purpose. You may withdraw your consent at any time using the facilities we provide; however, this will not affect any use of your information that has already taken place. When you contact us, we assume your consent based on your positive action of contact, therefore you consent to your name and email address is used so we can respond to your enquiry.
Where you agree to receive marketing communications from us, we will do so based solely on your indication of consent or until you instruct us not to, which you can do at any time. While you may request that we delete your contact details at any time, we cannot recall any email we have already sent. If you have any further enquiries about how to withdraw your consent, please feel free to enquire using the details provided in the Contact Us section of this privacy policy.
Performance Of A Contract Or Transaction
Where you have entered into a contract or transaction with us, or in order to take preparatory steps prior to our entering into a contract or transaction with you. For example, if you contact with an inquiry, we may require personal information such as your name and contact details in order to respond.
Our Legitimate Interests
Where we assess it is necessary for our legitimate interests, such as for us to provide, operate, improve and communicate our services. We consider our legitimate interests to include research and development, understanding our audience, marketing and promoting our services, measures taken to operate our services efficiently, marketing analysis, and measures taken to protect our legal rights and interests.
Compliance With Law
In some cases, we may have a legal obligation to use or keep your personal information. Such cases may include (but are not limited to) court orders, criminal investigations, government requests, and regulatory obligations. For example, we are required to keep financial records for a period of 7 years. If you have any further inquiries about how we retain personal information in order to comply with the law, please feel free to enquire using the details provided in the Contact Us section of this privacy policy.
International Transfers of Personal Information
The personal information we collect is stored and/or processed in the United Kingdom by us. Following an adequacy decision by the EU Commission, the UK has been granted an essentially equivalent level of protection to that guaranteed under UK GDPR.
On some occasions, where we share your data with third parties, they may be based outside of the UK, or the European Economic Area (“EEA”). These countries to which we store, process, or transfer your personal information may not have the same data protection laws as the country in which you initially provided the information. If we transfer your personal information to third parties in other countries:
we will perform those transfers in accordance with the requirements of the UK GDPR (Article 45) and Data Protection Act 2018; we will adopt appropriate safeguards for protecting the transferred data, including in transit, such as standard contractual clauses (“SCCs”) or binding corporate rules.
Your Data Subject Rights
Right to Restrict Processing: You have the right to request that we restrict the processing of your personal information if (i) you are concerned about the accuracy of your personal information; (ii) you believe your personal information has been unlawfully processed; (iii) you need us to maintain the personal information solely for the purpose of a legal claim; or (iv) we are in the process of considering your objection in relation to processing on the basis of legitimate interests.
Right to Object: You have the right to object to processing of your personal information that is based on our legitimate interests or public interest. If this is done, we must provide compelling legitimate grounds for the processing which overrides your interests, rights, and freedoms, in order to proceed with the processing of your personal information.
Right to be Informed: You have the right to be informed with how your data is collected, processed, shared and stored.
Right of Access: You may request a copy of the personal information that we hold about you at any time by submitting a Data Subject Access Request (DSAR). The statutory deadline for fulfilling a DSAR request is 30 calendar days from our receipt of your request.
Right to Erasure: In certain circumstances, you can ask for your personal data to be erased from the records held by organizations. However this is a qualified right; it is not absolute, and may only apply in certain circumstances. When may the right to erasure apply? When the personal data is no longer necessary for the purpose for which it was originally collected or processed for. If consent was the lawful basis for processing personal data and that consent has been withdrawn. 1706262 Ontario Limited relies on consent to process personal data in very few circumstances. The Company is relying on legitimate interests as a legal basis for processing personal data and an individual has exercised the right to object and it has been determined that the Company has no overriding legitimate grounds to refuse that request. Personal data are being processed for direct marketing purposes e.g. a person’s name and email address, and the individual objects to that processing. There is legislation that requires that personal data be destroyed.
Right to Portability: Individuals have the right to get some of their personal data from an organization in a way that is accessible and machine-readable, for example as a CSV file. Associated with this, individuals also have the right to ask an organization to transfer their personal data to another organization.
However, the right to portability: only applies to personal data that a person has directly given to 1706262 Ontario Limited in electronic form; and onward transfer will only be available where this is “technically feasible”.
Right to Rectification: If personal data is inaccurate, out of date, or incomplete, individuals have the right to correct, update or complete that data. Collectively this is referred to as the right to rectification. Rectification may involve filling the gaps i.e. to have to have incomplete personal data completed – although this will depend on the purposes for the processing. This may involve adding a supplementary statement to the incomplete data to highlight any inaccuracy or claim thereof. This right only applies to an individual’s own personal data; a person cannot seek the rectification of another person’s information. Notification of data breaches: Upon discovery of a data breach, we will investigate the incident and report it to the UK’s data protection regulator and yourself, if we deem it appropriate to do so.
Complaints: You have the right, at any time, to lodge a complaint with the Information Commissioner’s Office (ICO), the UK supervisory authority for data protection issues (www.ico.org.uk). We would, however, appreciate the chance to deal with your concerns before you approach the ICO so please contact us in the first instance using the details below.
Please provide us with as much information as you can about the alleged breach. We will promptly investigate your complaint and respond to you, in writing, setting out the outcome of our investigation and the steps we will take to deal with your complaint.
Inquiries, Reports, And Escalation
To enquire about 1706262 Ontario Limited’s privacy policy, or to report violations of user privacy, you may contact our Data Protection Officer using the details in the Contact Us section of this privacy policy.
If we fail to resolve your concern to your satisfaction, you may also contact the Information Commissioner’s Office (ICO), the UK Data Protection regulator:
Information Commissioner’s Office
Wycliffe House
Water Lane
Wilmslow
Cheshire
SK9 5AF
Tel: 0303 123 1113 (local rate)
Website: www.ico.org.uk
Additional Disclosures For Personal Information Protection And Electronic Documents Act (PIPEDA) Compliance (Canada)
In accordance with PIPEDA, we broaden our definition of personal information to include any information about an individual, such as financial information, information about your appearance, your views and opinions (such as those expressed online or through a survey), opinions held about you by others, and any personal correspondences you may have with us. While this information may not directly identify you, be aware that it may be combined with other information to do so. As PIPEDA refers to personal information using the term Personally Identifying Information (PII), any references to personal information and PII in this privacy policy, and in official communications from 1706262 Ontario Limited, are intended as equivalent to one another in every way, shape and form.
Valid Consent
Where you give us consent to collect and use your personal information for a specific purpose. You may withdraw your consent at any time using the facilities we provide; however, this will not affect any use of your information that has already taken place. When you contact us, we assume your consent based on your positive action of contact, therefore you consent to your name and email address being used so we can respond to your inquiry. Under PIPEDA, consent is only valid if it is reasonable to expect that an individual to whom the organization’s activities are directed would understand the nature, purpose, and consequences of the collection, use, or disclosure of the personal information to which they are consenting.
Where you agree to receive marketing communications from us, we will do so based solely on your indication of consent or until you instruct us not to, which you can do at any time. While you may request that we delete your contact details at any time, we cannot recall any email we have already sent. If you have any further inquiries about how to withdraw your consent, please feel free to enquire using the details provided in the Contact Us section of this privacy policy.
International Transfers Of Information
While 1706262 Ontario Limited endeavors to keep, store and handle customer data within locations in Canada, it may use agents or service providers located in the United States (U.S.), European Economic Area (EEA) or United Kingdom (UK) to collect, use, retain and process personal information as part of providing services to you. While we use all reasonable efforts to ensure that personal information receives the same level of security in any other jurisdiction as it would in Canada, please be aware that privacy protections under U.S. laws may not be the
same adequacy.
Customer Data Rights
Although PIPEDA does not contain an extensive set of consumer rights, it does grant consumers the right to:
Access the personal information organizations hold about them;
Correct any inaccurate or outdated personal information the organization holds about them (or, if this is not possible, delete the inaccurate personal information)
Withdraw consent for any activities for which they have consented (e.g. direct marketing or cookies)
Right To Withdraw Consent
Where you give us consent to collect and use your personal information for a specific purpose. Subject to some restrictions, you can, at any time, refuse to consent or continue to consent to the collection, use, or disclosure of your personal information by notifying us using the email address below in the ‘Contact Us’ section. Withdrawal of consent may impact our ability to provide or continue to provide services.
Customers cannot refuse collection, use, and disclosure of their personal information if such information is required to: be collected, used or disclosed as required by any law; fulfill the terms of any contractual agreement; and be collected, used or disclosed as required by any regulators including self-regulatory organizations. While you may request that we delete your contact details at any time, we cannot recall any email we have already sent. If you have any further inquiries about how to withdraw your consent, please feel free to enquire using the details provided in the Contact Us section of this privacy policy.
Right Of Access Under PIPEDA
PIPEDA gives you a general right to access the PII held by businesses subject to this law. Under PIPEDA, you need to make your access request in writing and pay a minimal fee of $30.00.
If any organizational fees seem unjust, you have the right to complain about this. We retain the right to decide how we disclose the copies of your PII to you. We will take all necessary measures to fulfill your request within 30 days from receipt, otherwise, we must inform you of our inability to do so before the 30-day timeframe if: meeting the time limit would unreasonably interfere with our business activities; or the time required to undertake consultations necessary to respond to the request would make it impractical to meet the time limit. We can also extend the time limit for the length of time required to convert the personal information into an alternative format. In these circumstances, we will advise you of the delay within the first 30 days and explain the reason for it.
Right Of Rectification Under PIPEDA
You may request a correction to any factual errors or omissions within your PII. We would ask you to provide some evidence to back up your claim. Under PIPEDA, an organization must amend the information, as required, if you successfully demonstrate that it’s incomplete or inaccurate. You may contact us at any time, using the information provided in the Contact Us section of this privacy policy if you believe your PII on our systems is incorrect or incomplete. If we cannot agree on changing the information, you have the right to have your concerns recorded with the Office of the Privacy Commission of Canada.
Compliance With PIPEDA’s Ten Principles Of Privacy
This privacy policy complies with the PIPEDA’s requirements and ten principles of privacy,
which are as follows:
1. Accountability. 1706262 Ontario Limited is responsible for the PII under its control and will designate one or more persons to ensure organizational accountability for compliance with the ten
principles of privacy under PIPEDA, whose details are included below. All personnel are accountable for the protection of customers’ personal information.
2. Identifying purposes. 1706262 Ontario Limited identifies the purposes for which personal information is collected at or before the time the information is collected.
3. Consent. Consent is required for 1706262 Ontario Limited’s collection, use or disclosure of personal information, except where required or permitted by PIPEDA or other law. In addition, when customers access a product or service offered by us, consent is deemed to be granted. Express consent may be obtained verbally, in writing, or through electronic means. Alternatively, consent may be implied through the actions of customers or continued use of a product or service following 1706262 Ontario Limited’s notification of changes.
4. Limiting collection. Personal information collected will be limited to that which is necessary for the purposes identified by 1706262 Ontario Limited.
5. Limiting use, disclosure, and retention. We will not use or disclose personal information for purposes other than those for which the information was collected, except with your
consent or as required by law. We will retain personal information only for as long as is necessary to fulfill the purposes for collecting such information and compliance with any
legal requirements.
6. Accuracy. Personal information will be maintained by 1706262 Ontario Limited in an accurate, complete, and up-to-date format as is necessary for the purpose(s) for which the personal
information was collected.
7. Safeguards. We will protect personal information with security safeguards appropriate to the sensitivity of such information.
8. Openness. We will make our policies and practices relating to the collection and management of personal information readily available upon request, including our brochures or other information that explains our policies, standards, or codes.
9. Customer access. We will inform customers of the existence, use and disclosure of their personal information and will provide access to their personal information, subject to any legal restrictions. We may require written requests for access to personal information and in most cases, will respond within 30 days of receipt of such requests. Customers may verify the accuracy and completeness of their personal information, and may request the personal information be corrected or updated, if appropriate.
10. Challenging compliance Customers are welcome to direct any questions or inquiries concerning our compliance with this privacy policy and PIPEDA requirements using the contact information provided in the Contact Us section of this privacy policy.
Cookie Compliance
Our email interactions with our customers are compliant with Canadian Anti-Spam Legislation. The Company does not send unsolicited email to persons with whom we have no relationship. We will not sell personal information, such as email addresses, to unrelated third-parties. On occasion, your personal information may be provided to our third-party partners to administer the products and services you request from us.
When you leave our website by linking to another website, you are subject to the privacy and security policies of the new website. We encourage you to read the privacy policies of all websites you visit, especially if you share any personal information with them.
You may also contact the Office of the Privacy Commissioner of Canada:
30 Victoria Street
Gatineau, QC K1A 1H3
Toll Free: 1.800.282.1376
www.priv.gc.ca
Contact Us
For any questions or concerns regarding your privacy, you may contact us using the following
details:
email info@blackfridaydealstore.com