Introduction
Who We Are
kendallgill.com and bykendallart.com, represent the digital presence of Kendall Gill and her online store ByKendallArt. The website serves as an art store, showcasing and selling original art, prints, digital downloads, and offering custom commission services. For any privacy-specific concerns, please contact us via email at [email protected].
Personal Data We Collect and Why
Registration and Checkout Process
Both kendallgill.com and bykendallart.com support guest checkout, account registration during checkout, and account creation via the “My Account” page. This process enhances your shopping experience by collecting data that includes:
- Name and job title for personalized interaction.
- Email address for account setup, communication, and promotional purposes.
- Demographic information to tailor personalized offers.
- Purchase and transactional data for order fulfillment.
- Technical data like IP address and browser details for site functionality and security.
Usernames are auto-generated to maintain privacy, and new users receive a password setup link. We honor account erasure requests, including the removal of personal data and access to downloads.
Comments
When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.
An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
Likes
In order to process a post like action, the following information is used: IP address, WordPress.com user ID, WordPress.com username, WordPress.com-connected site ID (on which the post was liked), post ID (of the post that was liked), user agent, timestamp of event, browser language, country code.
Post likes are tracked.
Media
If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.
Contact Forms
Data submitted through contact forms is retained for customer service purposes but not used for marketing unless explicitly consented to by the user.
Contact form submission data — IP address, user agent, name, email address, website, and message — is submitted to the Akismet service (also owned by Automattic) for the sole purpose of spam checking. The actual submission data is stored in the database of the site on which it was submitted and is emailed directly to the owner of the form (i.e. the site author who published the page on which the contact form resides). This email will include the submitter’s IP address, timestamp, name, email address, website, and message.
Post and post meta data associated with a your contact form submission. The IP address and user agent originally submitted with the comment are synced, as well, as they are stored in post meta.
Cookies
If you leave a comment on our site you may opt-in to saving your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.
If you visit our login page, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.
When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.
If you edit or publish an article, an additional cookie will be saved in your browser. This cookie includes no personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.
Google captcha 3 is used to verify that the user is not a bot.
Analytics
kendallgill.com uses third-party analytics tools to gather anonymous data for site improvement.
Embedded content from other websites
Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.
These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.
Who we share your data with
If you request a password reset, your IP address will be included in the reset email.
Data may be shared with third-party providers essential to our services, including payment processors and shipping companies. All third-party partners are required to adhere to data protection standards.
How long we retain your data
If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.
For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.
Data retention periods vary based on the type of data, with details specified in our Data Retention section. For instance, comments may be retained indefinitely for follow-up, whereas transactional records may be kept for legal and accounting purposes.
Your rights over your data
If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.
Where your data is sent
Visitor comments may be checked through an automated spam detection service.
We use woocommerce and its third party extensions to handle payments, shipping, and tax.
Woo Commerce
Our store collects information during the checkout process as detailed in the WooCommerce section. This includes products viewed, location and IP for tax and shipping estimates, and provided personal information for order processing and fulfillment.
We collect information about you during the checkout process on our store.
What we collect and store
While you visit our site, we’ll track:
- Products you’ve viewed: we’ll use this to, for example, show you products you’ve recently viewed
- Location, IP address and browser type: we’ll use this for purposes like estimating taxes and shipping
- Shipping address: we’ll ask you to enter this so we can, for instance, estimate shipping before you place an order, and send you the order!
We’ll also use cookies to keep track of cart contents while you’re browsing our site. cookies policy
When you purchase from us, we’ll ask you to provide information including your name, billing address, shipping address, email address, phone number, credit card/payment details and optional account information like username and password. We’ll use this information for purposes, such as, to:
- Send you information about your account and order
- Respond to your requests, including refunds and complaints
- Process payments and prevent fraud
- Set up your account for our store
- Comply with any legal obligations we have, such as calculating taxes
- Improve our store offerings
- Send you marketing messages, if you choose to receive them
If you create an account, we will store your name, address, email and phone number, which will be used to populate the checkout for future orders.
We generally store information about you for as long as we need the information for the purposes for which we collect and use it, and we are not legally required to continue to keep it. This includes your name, email address and billing and shipping addresses.
We will also store comments or reviews, if you choose to leave them.
Who on our team has access
Members of our team have access to the information you provide us. For example, both Administrators and Shop Managers can access:
- Order information like what was purchased, when it was purchased and where it should be sent, and
- Customer information like your name, email address, and billing and shipping information.
Our team members have access to this information to help fulfill orders, process refunds and support you.
Payments
We process payments through secure third-party payment gateways. Information shared with payment processors is limited to what is required for transaction completion.
We use multiple third party processors for payment.
Paypal
We accept payments through PayPal. When processing payments, some of your data will be passed to PayPal, including information required to process or support the payment, such as the purchase total and billing information.
Please see the PayPal Privacy Policy for more details.
Payments Block
To facilitate new signup and renewals, the following is sent to Stripe (governed by Stripe TOS): Name, Credit Card number, CVV, Expiry date. Note – the credit card details are not stored by us – this data is collected and stored by Stripe. WordPress.com systems are fully PCI compliant.
We plan to store anonymized analytics about which step in the purchase process was reached for the purpose of improving the user experience. Cookies may be stored to implement content blocking in the future.
We create a new WordPress.com account for the user, or use the account associated with the email customer gives us. An explanation of WordPress.com data used can be found here. History of signups and billing facilitated via this feature is stored on WordPress.com servers for accounting and subsequent renewal purposes. For the purpose of renewing subscription, on our servers we store: Safely encrypted Stripe ID of the credit card connected to subscription, User id that initiated the purchase, Details about the product, Payment history for the subscription, Last 4 digits of the credit card and the brand – what is known in the industry as “safe details”. Also, we connect the ID of the credit card to the WordPress.com user id, which allows for one-click payments on other subscription products sold on WordPress.com network.
Shipping & Tax
Personal data related to shipping and tax calculations may be stored or shared with external services as necessary, in compliance with legal obligations.
WooCommerce Shipping and Tax
Data Used: For payments with PayPal or Stripe: purchase total, currency, billing information. For taxes: the value of goods in the cart, value of shipping, destination address. For checkout rates: destination address, purchased product IDs, dimensions, weight, and quantities. For shipping labels: customer’s name, address as well as the dimensions, weight, and quantities of purchased products.
Data Synced (?): For payments, we send the purchase total, currency and customer’s billing information to the respective payment processor. Please see the respective third party’s privacy policy (Stripe’s Privacy Policy and PayPal’s Privacy Policy) for more details. For automated taxes we send the value of goods in the cart, the value of shipping, and the destination address to TaxJar. Please see TaxJar’s Privacy Policy for details about how they handle this information. For checkout rates we send the destination ZIP/postal code and purchased product dimensions, weight and quantities to the carrier directly or via EasyPost, depending on the service used. For shipping labels we send the customer’s name, address as well as the dimensions, weight, and quantities of purchased products to EasyPost. We also store the purchased shipping labels on our server to make it easy to reprint them and handle support requests.
Contact Information
For privacy-specific concerns, contact us via email Contact.
How We Protect Your Data
Kendall Gill implements reasonable measures to secure www.kendallgill.com and www.bykendallart.com and the personal information of its users. However, no internet-based service can be 100% secure. As such, Kendall Gill cannot guarantee absolute security and assumes no liability for any unauthorized access to, or use of, the site and stored information. Users are responsible for safeguarding their own personal information and should use secure internet practices. By accessing the sites, users acknowledge and accept the inherent security risks present in online interactions and transactions.
Automated Decision Making
We do not use automated decision making or profiling with user data.
No Liability
kendallgill.com assumes no liability for data breaches or unauthorized data access despite our stringent security measures.
Cookies
Kendall Gill utilizes cookies on www.kendallgill.com and www.bykendallart.com to enhance user experience and analyze site performance. While cookies are designed to improve website functionality and the overall user experience, Kendall Gill assumes no liability for any issues arising from the use of cookies, including but not limited to:
- Any loss of privacy or security breaches resulting from the use of cookies to track user interactions with the websites.
- Inaccuracies in the personalized content or recommendations provided through the use of cookies.
- Any adverse effects on the user’s system or data resulting from cookies placed by the websites.
Users have the option to manage, disable, or refuse cookies through their web browser settings. However, users should be aware that disabling cookies may affect the functionality of the websites and limit access to certain features.
By using kendallgill.com and bykendallart.com, users acknowledge their understanding of and agree to the potential risks associated with the use of cookies. It is advised that users regularly review and manage their cookie preferences within their browser settings to maintain control over their online privacy.
Security
Kendall Gill implements reasonable measures to secure www.kendallgill.com and www.bykendallart.com and the personal information of its users. However, no internet-based service can be 100% secure. As such, Kendall Gill cannot guarantee absolute security and assumes no liability for any unauthorized access to, or use of, the site and stored information. Users are responsible for safeguarding their own personal information and should use secure internet practices. By accessing the sites, users acknowledge and accept the inherent security risks present in online interactions and transactions.