Privacy Policy for Sugar&Soul ® 

 Please read this Privacy Policy carefully before using this Website.

 Privacy Policy Consent:

     The Website and its Contents are owned by Sugar&Soul ® and more specifically owner and operator, Rhonda Palmiero. Sugar&Soul ®  is henceforth known as, Company; we; our; or us. The term “you” or “users” refers to the user or viewer of our Website or the clientele that purchases services from us.

     This Privacy Policy describes how we collect, use, process and otherwise distribute your information, including Personal Data (as defined below) used to access this Website. We will not use or share your information with anyone except as described in this Privacy Policy. The use of information collected through our Website shall be limited to the purposes under this Privacy Policy and also our Terms of Use if you’re a client or customer.

     Please read this Privacy Policy carefully. Based on the fluidity of laws and statute changes, we reserve the right to change this Privacy Policy at any time without notice. In the event of a material change, we will let you know via e-mail and/or by placing a prominent notice on our Website.

     Use of any personal information or contribution that you provide to us, or that is collected by us on or through our Website or its content is governed by this Privacy Policy. By using our Website and/or its content, you inherently consent regardless of whether or not you have read it.

Information We May Collect:

     We collect personal information from you so that we can provide you with a positive experience when utilizing our Website or content. We will only collect the minimum amount of information necessary for us to fulfill our obligation to you. Things we may collect include:

1. A name and/or an e-mail address so we can deliver our newsletter to you. You would be affirmatively consenting to this by providing this information to us in our contact forms;

2. Billing information including name, address and credit card information so that we can process payment to deliver our products or services to you under our contractual obligation;

3. A name and and/or an e-mail address if you complete our contact form with a question. We may send you marketing e-mails with either your consent or if we believe we have a legitimate interest to contact you based on your contact or question; and

4. Demographic information, information about your health and emergency contact information depending on the type of services you’re seeking. All information is kept completely confidential and we are bound by the Health Insurance Portability and Accountability Act (HIPPA). 

     Please note that any personal data that you provide is voluntarily and by providing this information, you are giving consent for us to use, collect and process said data. You are welcome to opt-out or request that we delete all or some of your data at any point by contacting us.

If you choose not to provide us with certain data, you may not be able to partake in certain services. We would advise you of this so that you can make an informed decision.

Other Information We May Collect:

A. Anonymous Data Collection and Use:

     To maintain our Website’s high quality, we may use your IP address (the number assigned to computers connected to the Internet) to help diagnose problems with our server, to identify which areas are receiving the most traffic or to display content according to your preferences. While this data cannot personally identify you, it is helpful  for process and quality improvement, and marketing strategies. Traffic data collection does not follow a user’s activities on other websites in any way.  

B. Use of Cookies:

     We may use the standard cookies feature of major web browsers. We do not set any personally identifiable information in cookies, nor do we employ any data-capture mechanisms on our Website. You may elect to disable cookies through your own web browser’s settings. However, disabling this function may diminish your experience on our Website and some features may not work as intended.

What We Do with Information We Collect:

1. Contact you with information that you provide to us based on these lawful grounds for processing:

a. If you give us your clear, unambiguous, affirmative consent to contact you;

b. Based upon contractual obligation to deliver goods or services you purchase from us; or

c. If you have a legitimate interest in hearing from us. E.g. if you sign up for an educational program, we may send you marketing e-mails based on the content of that program. You will always have the choice to opt-out.

2. To process payments for the purchase of goods or services under a contract. We only use third party payment processors that take the utmost care in securing data and to comply with the General Data Protection Regulation (GDPR).

3. To run social media advertisements and/or create look-alike audiences for advertisements. A look-alike audience is an audience of prospective new customers, generated (often algorithmically) from a “seed audience” of current customers or likely customers. This allows companies to dramatically scale up their advertising’s reach without sacrificing sophisticated targeting.

4. We may share your information with trusted third parties such as our newsletter provider in order to contact you via e-mail, our merchant accounts to process payments or Google/social media accounts in order to run advertisements for example.

Viewing by Others:

     Note that whenever you voluntarily share information and/or otherwise post on a site or platform such as  commenting on a blog, or in a Facebook group that we manage, you make this available for public viewing. This can potentially be collected and used by others online and we would not be responsible for this misuse.

Submission, Storage, Sharing and Transferring of Personal Data:

     Personal data that you provide to us is stored internally or through a data management system. Your information will only be accessed by those who help to obtain, manage or store that information, or who have a legitimate need to know such information, e.g. our hosting provider, newsletter provider, payment processors or staff.

Data Retention:

     We retain your information for the minimum amount of time necessary to provide you with the information and/or services that you requested from us. We may retain certain data for longer periods of time if necessary for legal, contractual and accounting obligations.

Confidentiality:

     We aim to keep information that you share with us confidential. Please note that we may disclose such information if required to do so by law or in the good faith belief that:

a. Such action is necessary to protect and defend our rights, property, or the rights or property of our users or licensees;

b. To act as immediately necessary in order to protect the personal safety or rights of our users or the public; or

c. To investigate or respond to any real or perceived violation of this Privacy Policy, our Disclaimer, Terms and Conditions, or any other Terms of Use or agreement with us. 

Passwords:

     To use certain features of the Website or its content, you may need a username and password. You are responsible for maintaining the confidentiality of this information, and for all activities, whether by you or by others, that occur under your username or password, and within your account. If you share your username or password with others, they may be able to obtain access to your personal and protected information and you assume the risk in doing so. We cannot and will not be liable for any loss or damage arising from your failure to protect this sensitive information.

     You agree to notify us immediately of any unauthorized or improper use of your username or password or any other breach of security. To help protect against unauthorized or improper use, make sure that you log out at the end of each session requiring your username and password.

     We will use our best efforts to keep your username and password(s) private and will not otherwise share this information without your written consent, except as necessary when the law requires it or in the good faith belief that such action is necessary, particularly when disclosure is necessary to identify, contact or bring legal action against someone who may be causing injury to others or interfering with our rights or property.

How You Can Access, Update or Delete Your Personal Data

You have the right to:

1. Request information about how your personal data is being used and request a copy of what we use;

2. Restrict processing if you think the data is not accurate, unlawful, or no longer needed;

3. Rectify or have the data erased and receive confirmation of the rectification or erasure. This means you have the “right to be forgotten”;

4. Withdraw your consent at any time to the processing of your data;

5. Lodge a complaint with a supervisory authority if you feel we are using your data unlawfully

(https://its.ny.gov/breach-notification);

6. Receive data portability and transference to another controller without our hinderance;

7. Object to our use of your data; or

8. Not be subject to an automated decision based solely on automatic processing, including profiling, which legally or significantly affects you.

Unsubscribe:

     You may unsubscribe from our e-newsletters or updates at any time through the unsubscribe link at the footer of all e-mail communications. If you have questions or are experiencing problems unsubscribing, please contact us.

Security:

     We take reasonable steps to protect the data you provide to us from misuse, disclosure or unauthorized access. We only share your information with trusted third parties who use the same level of care in the processing your data as we do. We cannot guarantee however that your information will always be secure due to technology or security breaches. Should there be the unlikely event that we are made aware of a data breach, we will take the necessary steps to mitigate and resolve the issue and notify you.

Anti-Spam Policy:

     We have a no spam policy and provide you with the ability to opt-out of our communications by selecting the unsubscribe link at the footer of all e-mails. We have taken the necessary steps to ensure that we are compliant with the CAN-SPAM Act of 2003 ( https://www.fcc.gov/general/can-spam) by never sending out misleading information. We will never sell, rent or otherwise share your e-mail address.

Third Party Websites:

     We may link to other websites on our Website. We have no responsibility or liability for the content and activities of any other individual, company, group or entity whose website or materials may be linked to our Website or its content, and thus we cannot be held liable for the privacy of the information on their website or that you voluntarily share with their website. Please review their privacy policies for guidelines as to how they respectively store, use and protect the privacy of your data.

Children’s Online Privacy Protection Act Compliance:

     We do not collect any information from anyone under eighteen (18) years of age to remain in compliance with the Children’s Online Privacy Protection Act ( COPPA). Our Website and its contents are directed to individuals who are at least eighteen (18) years of age or older.

Notification of Changes:

     We may use your data, such as your contact information, to inform you of changes to the Website or its content, or, if requested, to send you additional information about us. We reserve the right, at our sole discretion, to change, modify or otherwise alter our Website, its content and this Privacy Policy at any time. Such changes and/or modifications shall become effective immediately upon posting. As such, please review this policy periodically. Continued use of any of information obtained through or on the Website, or its contents following the posting of changes and/or modifications, constitutes acceptance of revisions. Should there be a material change to our Privacy Policy, we will contact you via e-mail or by a prominent note on our Website.

Data Controller and Processors:

    We are the data controllers as we are the ones collecting and using your information. We use trusted third parties as our data processors for technical and organizational purposes, including for payments and e-mail marketing. We use reasonable efforts to make sure our data processors are GDPR compliant.

If you have any questions about this Privacy Policy, please contact us.

Last updated 3/25/2024