Effective October 1st, 2024
Welcome to Marnoa (“we,” “our,” “us”). Protecting your privacy is fundamental to us. This Privacy Policy outlines how we collect, use, disclose, and protect your information when you visit our website https://marnoa.ca, use our services, or interact with us in any other way. By accessing or using our website, you agree to the terms of this Privacy Policy.
1. Information We Collect
We collect the following types of information to provide and improve our services:
Personal Information: This includes your name, email address, phone number, postal address, date of birth, payment information, and any other information you voluntarily provide to us (e.g., via contact forms, sign-ups, or customer support).
Sensitive Information: We do not intentionally collect sensitive personal information (such as health data, political opinions, or religious beliefs). If you choose to share this data with us, you consent to its processing for the purposes for which you provide it.
Technical Information: We collect information such as IP address, browser type, operating system, and referral URLs. We use cookies, pixel tags, and similar tracking technologies to collect information about your interaction with our website, helping us improve your experience and services.
Transactional Information: This includes billing details, shipping addresses, and order history for any transactions made on our platform.
Geolocation Data: If you use our website or services from a mobile device, we may collect geolocation information. You can control the collection of location data by adjusting your device’s settings.
User-Generated Content: Any information you submit publicly on the website, such as reviews, comments, or feedback, may be visible to others.
2. How We Use Your Information
We use your information for various purposes, including:
Service Delivery and Fulfillment: To fulfill orders, process payments, manage your account, and deliver the products or services you request.
Communication: To contact you regarding service updates, account activity, or customer support issues. We may also send you product-related communications and respond to inquiries.
Legal Compliance: To comply with legal obligations, including data retention requirements, responding to legal requests, or enforcing our policies.
Personalization and Recommendations: To personalize your experience on our website by recommending products or services based on your previous interactions.
Marketing and Promotional Offers: To send you newsletters, special offers, and information about our services or events. You can opt-out of these communications by following the unsubscribe instructions provided in each message.
Analytics and Performance Tracking: To monitor and analyze website usage, enhance user experience, and improve website functionality using tools like Google Analytics. We may also use this information to detect, prevent, or address technical issues.
3. Consent and Legal Basis for Processing
Consent Management: We ensure that consent is obtained before collecting any personal information. By using our website, you acknowledge that you have read and agreed to the terms of this Privacy Policy. Where required by law, we will request explicit consent for processing specific types of data (e.g., marketing communications).
Legal Basis (for GDPR Compliance): Under the General Data Protection Regulation (GDPR), we process personal information only if we have a lawful basis to do so, such as:
- Consent: You have given explicit consent to the processing.
- Contractual Obligation: Processing is necessary to fulfill a contract with you.
- Legitimate Interest: Processing is necessary for our legitimate business interests, such as improving our services or preventing fraud, except where overridden by your rights and interests.
- Legal Obligation: Processing is necessary to comply with a legal obligation.
4. Data Sharing and Third-Party Disclosures
We value your privacy and only share your information with trusted third parties under the following circumstances:
Service Providers and Contractors: We engage third-party service providers to assist with business operations, such as payment processors, data storage providers, email marketing platforms, and shipping services. These providers have access to personal data only as necessary to perform their functions and are obligated to protect it.
Salesforce: We use Salesforce as our customer relationship management (CRM) platform to store and manage customer data, such as personal information, interactions, and transaction history. Salesforce is a trusted service provider with stringent security measures in place to protect your data. Salesforce will only use your data for the purposes of providing services to us and is contractually obligated to maintain the confidentiality and security of your information.
Advertising and Analytics Partners: We may share data with advertising networks and analytics providers (e.g., Google Analytics, Facebook Ads) to better understand user behavior and deliver relevant ads. These third parties may use cookies and other tracking technologies for analytics purposes.
Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you if your data is transferred to a different entity or becomes subject to another privacy policy.
Legal and Regulatory Disclosures: We may disclose your information in response to legal obligations, including subpoenas, court orders, or government requests. We may also disclose information if necessary to protect the rights, property, or safety of Marnoa, our users, or the public.
Cross-Border Data Transfers: If your data is transferred outside of your jurisdiction (e.g., to servers in other countries), we take steps to ensure your data is adequately protected according to applicable data protection laws.
5. Data Retention and Deletion
We retain personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, including to meet legal, accounting, or reporting requirements.
Data Minimization: We implement strict data minimization practices to ensure that we only collect data necessary for our stated purposes. We regularly review our data retention policies and anonymize or delete information that is no longer required.
Data Deletion Requests: You may request the deletion of your personal data at any time by contacting us. We will process your request in accordance with applicable laws, subject to legal or regulatory obligations that require us to retain certain data.
6. Your Rights (GDPR & CCPA Compliance)
We respect your privacy rights and provide you with the following controls over your personal data:
Access to Data: You have the right to request access to the personal data we hold about you, including receiving a copy of your data in a structured, machine-readable format.
Rectification: You have the right to request that we correct any inaccurate or incomplete information.
Erasure: You may request the deletion of your personal data, subject to certain exceptions (e.g., where we are required by law to retain it).
Portability: You may request that your data be transferred to another service provider in a machine-readable format.
Opt-Out of Marketing: You may unsubscribe from our marketing communications at any time.
Non-Discrimination (for CCPA): We will not discriminate against you for exercising your privacy rights.
7. Data Security Measures
We take the security of your personal information seriously and implement advanced security measures, including:
Encryption: All data transmitted to and from our website is encrypted using industry-standard Secure Socket Layer (SSL) technology.
Access Control: Access to personal data is restricted to authorized personnel only. Employees, contractors, and agents who need access to perform their job duties are subject to strict confidentiality obligations.
Data Anonymization: Where possible, we anonymize or pseudonymize personal data to enhance security.
Regular Security Audits: We conduct regular security assessments, vulnerability scans, and penetration tests to proactively identify and mitigate potential risks.
While we strive to protect your information, no method of transmission over the Internet or electronic storage is completely secure, and we cannot guarantee its absolute security.
8. International Data Transfers
Your information may be transferred to, and processed in, countries other than your own. In such cases, we ensure that data is protected to the same standard as required by local laws, such as through the use of approved contractual clauses or certifications.
9. Minors Privacy
Our services are not directed to individuals under the age of 18, and we do not knowingly collect information from minors. If we become aware of any such data being collected, we will take steps to delete it promptly.
10. Updates to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or regulatory requirements. We will notify you of significant changes by updating the “Effective Date” at the top of this policy and providing additional notices if required by law.
11. Contact Us
If you have any questions or concerns about this Privacy Policy or wish to exercise your privacy rights, please contact us:
By visiting this page on our website: https://marnoa.ca/contact
This Privacy Policy was last updated on October 1st, 2024.