This Policy explains the types of information we collect, the purposes of processing that information, the legal basis for processing that information, how we use that information, and with whom we share it. Our Policy describes the measures we take to protect the security of the information and the rights that you have as a data subject regarding this information. We also tell you how you can reach us to update your contact information, remove your name from our mailing lists, or get answers to questions you may have about our privacy practices. Please read this Policy carefully. By continuing to interact with our sites, you are agreeing to the practices described in this Policy.
All of KAYEZEN’s websites and mobile apps, as well as the products or services offered through those platforms or at KAYEZEN sponsored events or KAYEZEN training courses are collectively referred to in the Policy as the “Services”. Unless otherwise noted, our Services are provided by Kayezen, LLC , and if you are located in the European Union, your data controller is Kayezen, LLC to the extent that it is processing your Personal Data as permitted in this Policy.
INFORMATION WE COLLECT
We collect personal information (“Personal Data”) including your name, address, telephone number, email address, site password, demographic information or financial information when you visit the Sites, order or participate in Services, create an account with us, respond to applications or questionnaires, comment on, review or otherwise post content you generate, or register a product or purchase with the Sites. Some of our Sites also offer you the option to interact with, capture, or save information through the Sites such as photos or forum posts.
We also automatically collect information about the devices you use to interact with our Sites (“Device IDs”). The information we automatically collect includes device identifier, web browser, precise geolocation (with your knowledge and consent), browsing information collected through cookies and beacons on our Sites, and IP address. We also automatically collect information about how you use the Sites, such as what you have searched for and viewed with the Sites. The information automatically collected will be associated with any personal information you have provided.
From time to time, we may also create anonymous data from the Personal Data we collect from our Site users by excluding personally identifiable data components (such as your name, email address, telephone number, or other IDs) that might make the data identifiable as yours, through one or more secure methods of data anonymization. Our use of anonymized data is not subject to this Policy.
BY USING THE SERVICES, YOU CONSENT TO THE COLLECTION, USE, AND TRANSFER OF YOUR PERSONAL DATA FOR PROCESSING IN THE UNITED STATES AS PROVIDED IN THIS POLICY.
HOW DO WE COLLECT PERSONAL DATA?
We may collect Personal Data in any situation where you voluntarily provide it to us (i.e., via email, a response to a survey, participation in an event or course, or another direct contact from you), as well as, in a number of other ways which include:
- If you choose to register with us and create a user account or profile you are required to enter your name, email, and create a password. If you make a payment to KAYEZEN you are required to provide your billing details, a name, address, email address and financial information corresponding to your selected method of payment (e.g., a credit card number and expiration date or other payment information). If you provide a billing address, we will regard that as the location of the account holder to determine which KAYEZEN entity with whom you contract.
- Additionally, you have the option of providing and/or storing additional information as may be specified on the applicable KAYEZEN Services. For example, if you register with one of KAYEZEN’s apps, then such additional information may include the collection of a limited amount of fitness, physical activity, and health-related information from you (collectively, “Health-Related Information”). This Health-Related Information (such as whether you are pregnant, suffer from a heart condition, dizziness, high blood pressure, and knee or back problems) helps you determine your eligibility to participate in training programs that may be accessed through the corresponding KAYEZEN app. If you participate in such training programs, we may also obtain certain measurements, height, weight and age from you.
- When you access the Services from your own devices (whether your own computer or mobile phone, tablet, or other devices), then we may collect certain identifying information of your device such as the IP address, UUID (for mobile devices), operating system version, device type, system and performance information, the files viewed on our Services (e.g., HTML pages, graphics, etc.), and browser type (collectively, “Device IDs”). We may use your Device ID to provide a tailored experience for you. In addition, the Device ID information may be collected in order to determine the aggregate number of unique devices using a particular Service, to track total usage, analyze data, and communicate with you more effectively. We may combine your Device ID with information from third parties to provide you with a better experience and to improve the quality of our Services. We do not share any Personal Data with third parties in association with your Device ID.
Most web browsers will tell you how to stop accepting new cookies, how to be notified when you receive a new cookie, and how to disable existing cookies. Please note, however, that without cookies you may not be able to take full advantage of all the features and functionality of the Sites.
- Certain pages on our websites contain “web beacons” (also known as Internet tags, pixel tags and clear GIFs). These web beacons allow third parties to obtain information such as the IP address of the computer that downloaded the page on which the beacon appears; the URL of the page on which the beacon appears; the time the page containing the beacon was viewed; the type of browser used to view the page; and the information in cookies set by the third party.
- Visitors or unregistered guest users are only required to provide as much information as is reasonably necessary to complete any transaction which they have initiated through the Services, including an email address, billing, and shipping information. However, unlike a registered user who may opt to have shipping information stored, unregistered guest users’ shipping information will not be stored and will only be used for purposes of completing the transaction for which it was provided.
- We will be using browser session data to store your shopping cart on any KAYEZEN website where products or services may be purchased, as well as your session data while you browse these websites. Your session data will be stored only for that browser session. However, if you have logged into your KAYEZEN website account as a registered user, then your activities will be saved by browser session and stored on the server with a session ID.
- In some instances, we may collect aggregate data through cookies and similar files. The majority of browser applications accept cookies and similar files, but you can usually change the browser settings to prevent this. However, if you do so, some functionality of the Services may be impaired or lost, particularly any customization features of the Services. Cookies help us customize your content experience (for example to store your password so you do not have to re-enter it each time you access your account on a KAYEZEN app) and to learn which areas of the Services are useful and which areas need improvement.
- We also do allow certain Google Analytics features on our Services that are used as part of our display advertising (such as banners or other ad formats that include text, videos, images, flash, and etc.) and subsequent retargeting ads. You may opt out of certain types of Google Analytics tracking (or preempt your participation in Google Analytics) by contacting Google directly through its customer ad support feature and/or downloading the Google Analytics opt-out browser add-on. Again, you may always remove or disable cookies via your own browser’s settings.
- If you arrive at any of KAYEZEN’s Services from an external source (such as “refer a friend” promotions), we record information about the source that referred you to us. We collect your Personal Data from third parties if you give permission to those third parties to share your information with us or where you have made that information publicly available online.
- Our Services may provide links to third-party websites that are outside of our control and not covered by the Policy (e.g. Instagram, Facebook, Twitter, etc.). We encourage you to review the privacy policies posted on these (and all) websites and corresponding apps to learn about these third parties’ policies and practices with respect to your Personal Data.
- Some of our Sites may enable you to locate a dealer near you through the “find dealer” request form. Where this service is available, it is completely voluntary and you will have a choice as to whether to provide your personal information. In order to assist you in locating a dealer, we will ask you for information, such as your first and last name, full postal address and telephone number. We use this information to locate a dealer near you, to evaluate your needs and to give you the best and most relevant service. We, or the authorized dealer in your area, may use the information to communicate with you directly about our products and services.
Any improper collection or misuse of Personal Data provided to KAYEZEN may be a violation of the Policy and should be reported to email@example.com or to our mailing address as provided in the Contact Section below.
HOW DOES KAYEZEN USE PERSONAL DATA?
Whether you access any of the Services either as a visitor or unregistered guest, or as a registered user, your Personal Data is used to provide the transaction or give you access to the products, content, or other services you may purchase or request. If you choose to create a username and profile/account, we may additionally use your Personal Data to contact you to remind you about products which remain in your shopping cart or to obtain product feedback or reviews.
Other ways we may use your Personal Data include:
- We may disclose your Personal Data internally within KAYEZEN and with other companies that are affiliated with or controlled by KAYEZEN in order to provide and improve the Services, or for marketing purposes.
- We may disclose your Personal Data with our business partners, service providers, vendors, authorized distributors, agents, or contractors in order to provide a requested service or transaction, or to process information on our behalf (collectively, “Data Processors”). For example, if we need to ship something to you, we must share your name and address with a shipping company. We require that these Data Processors agree to process Personal Data based on our instructions and in compliance with prevailing privacy laws and any other appropriate confidentiality and security measures.
- We also may share non-personal, aggregate information regarding customer demographics, traffic patterns, sales, and site usage with our Data Processors or other thirty party internet advertisers or content publishers. We may transact some services or offer access to content in collaboration with these Data Processors or other third parties. Personal Data that you provide to those Data Processors or other third parties may be sent to us so that we can deliver the requested product, content, or service.
- Personal Data may also be accessed by third-party applications, such as gadgets or extensions, through Services. Any Personal Data when you enable such a third party application is processed under the Policy. Any information collected by a third party application provider is governed by their privacy policies.
- We may disclose your Personal Data with our social media network providers and any comments, statuses, updates, likes, tweets, and etc. that you voluntarily share with us through our social media networks may appear on our Services in the scrolling bar or other designated areas that shows activity on our pages or profiles.
- We may use your Personal Data to develop a personal profile about you. We may use the Personal Data in your profile to respond to requests for purchasing products and services from us.
- From time to time, some of our Sites may offer online product registration. By registering your product online, you agree that we, our business partners, an authorized dealer/service provider, or third-party advertising agency may contact you related to the product registration for a variety of reasons including, but not limited to, providing product notifications, as required by law, for customer service and/or warranty assistance, to maintain KAYEZEN’s databases and business processes, and/or to contact you for purposes otherwise stated in this Policy.
- We may from time to time contact individuals based on Personal Data that you may provide us that will be used for “refer a friend” or similar “email to a friend” promotions. You must have the consent of those individuals whose Personal Data or other information you are providing to us. By submitting the Personal Data or other information of such individuals, you confirm that you have that individual’s prior consent: (a) to his/her Personal Data (such as their name and email address) being disclosed to us, and (b) to our contacting them. KAYEZEN reserves the right to disclose that we have obtained the individual’s Personal Data or other information from you and that we are contacting them because you have told us they may be interested in our Services and have provided us with their name and email address. You are solely responsible for any personal messages you submit to the individual. You must not submit any message containing content that is illegal, obscene, indecent, offensive, blasphemous, defamatory or otherwise inappropriate.
- In order to accommodate changes in our business, we may sell our company or buy other companies or assets, including any Personal Data or related information collected through our Services as outlined in this Policy. If we sell substantially all of our assets, customer information, including Personal Data, will be one of the assets transferred to the acquirer and that entity and its affiliates may use your Personal Data under the terms of their own privacy policies, which may differ from this Policy.
If you notify us that you do not wish to be contacted for marketing purposes, we will not send you marketing information.
Our Sites do not collect personal information about your online activities over time and across third party websites or online services. Therefore, “do not track” signals transmitted from web browsers do not apply to our sites, and we do not alter any of our data collection and use practices upon receipt of such a signal.
Our use of Personal Data other than for the reasons set out above is on an opt-in basis. This means that you will not receive communications from us regarding, for example, specials, new products or new services unless you have given us affirmative permission to receive such communications.
Except in connection with our obligations to comply with any Legal Requirements, we will not share any Health-Related Information with any third parties for marketing and advertising purposes or for any other purpose without your prior consent.
WHAT ABOUT A CHILD’S PERSONAL DATA?
Our Services do not target and are not intended to attract children under the age of 13. We do not knowingly collect information from or about children under the age of 13. If you become aware that a child has provided us with Personal Data without parental consent, please contact us at firstname.lastname@example.org or at the mailing address provided in the Contact Section below. If we become aware that a child under 13 has provided us with Personal Data without parental consent, we will take immediate steps to remove such Data and cancel the child’s account without notice.
Please be aware that in order to maintain our compliance with GDPR requirements (see Rights to Personal Data Section – EU Residents below), we will not process the Personal Data of any child who is below the age of 16 years unless we receive the express consent of the parent or authorized guardian of the child. In order to comply with the foregoing, we will make reasonable efforts, inquiries, or other contacts with you in order to verify the age of the child and the person who is properly vested with the authority to provide consent on behalf of the child. In the event we cannot verify the age of the child or the parent/guardian’s capacity to provide consent, we will not process the Personal Data of the child and cancel the applicable account without notice.
HOW LONG DO WE KEEP YOUR PERSONAL DATA?
We will retain all Personal Data for the duration of the relevant business relationship or, where required, in accordance with our information management policies and schedules. When deleting personal information based on a request by the data subject, we will make reasonable attempts to ensure that all instances of the information are deleted in their entirety. For requests for access, corrections, or deletion, please refer to the Contact Section of this Policy.
We will maintain the necessary documentation to demonstrate compliance with all of our obligations and to allow audits, including inspections, to be carried out by us or another auditor we have mandated.
WHAT RIGHTS DO YOU HAVE TO YOUR PERSONAL DATA?
You may contact us any time at email@example.com (or at our mailing address provided in the Contact Section below) to request any of the following:
- View or access what Personal Data we have about you, if any
- Change or correct any Personal Data we have about you
- Request us to delete any Personal Data we have about you
- Express any concern you have about our use of your Personal Data
If you are a California resident, California Civil Code Section 1798.83 permits you to request information regarding the disclosure of your personal information by us to third parties for the third parties’ direct marketing purposes within the immediately preceding calendar year. We will provide you with a list of the categories of personal information disclosed and a list of the names and addresses of the third parties. To make such a request, please send an email including evidence of residency in California to firstname.lastname@example.org.
Some of the Sites provide the opportunity for you to publicly post content. If you are a California resident under the age of 18, and a registered user of any site where this policy is posted, California Business and Professions Code Section 22581 permits you to request and obtain removal of content or information you have publicly posted. To make such a request, please send an email with a detailed description of the specific content or information to email@example.com. Please include evidence of residency in California, and age of requester. Please be aware that such a request does not ensure complete or comprehensive removal of the content or information you have posted and that there may be circumstances in which the law does not require or allow removal even if requested.
If you are a resident of a member nation of the European Union, we wish to confirm for you the legal basis on which we process your Personal Data as required by the European General Data Protection Regulation (“GDPR”). We only will use and process your Personal for the following lawful reasons:
- When it is necessary to process a transaction on your behalf or to perform under a contract. For example, if you purchase products from us, we will send you emails related to your order.
- When we have a legitimate business interest or compelled by Legal Requirements. For example, when we email you about products we have available that are related to your order with us.
As a resident of a member nation of the European Union, we also provide you with the following rights as required by the GDPR:
- Right to Access of Personal Data: You may request confirmation regarding the purposes for which we have processed your Personal Data, as well as, access relevant information on that processing and what Personal Data is involved.
- Right to Receive Personal Data: You may request to receive the Personal Data that you have provided to us in a secure, portable manner or request that we transmit your Personal Data directly to a data controller that you identify to us.
- Right to Request Restriction of the Processing of Personal Data (Right to Withdraw Consent): You may request that we restrict our processing of Personal Data in certain situations such as when there is a discrepancy or mistake involving your Personal Data, or when you may oppose the deletion of your Personal Data, and instead, request an appropriate restriction on our use of your Personal Data. You also retain the right at any time to withdraw your consent to any processing of your Personal Data for purposes where you had previously consented (such as receiving direct marketing emails from us).
- Right to Object to Processing: You have the right to object to our processing of Personal Data in any situation where our processing is unlawful, or which may subject your personal freedoms, interests, or rights to prejudicial and irreparable harm; provided, however, that if Legal Requirements or other compelling legitimate business grounds apply in such circumstances, then these may override the impact of prejudicial and irreparable harm to your personal freedoms, interests, or rights and we may still process your Personal Data as needed.
- Right to Have Corrections Made to Personal Data: You have the right to request any lawful change or correction to Personal Data that you have provided to us.
- Right to Deletion of Personal Data: You have the right to ask us to delete your Personal Data to the full extent permitted by law and any Legal Requirements to which we are bound.
We will respond to your request to exercise these rights within a reasonable time (and in all cases within 30 days of receiving a request). In order to exercise any of these rights, please contact us at firstname.lastname@example.org or at our mailing address as provided in the Contact Section of this Policy.
WHAT IS KAYEZEN’S COMMITMENT TO THE PROTECTION OF PERSONAL DATA?
We implement appropriate technical, physical and organizational safeguards to protect against unauthorized or unlawful processing of Personal Data and against accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to Personal Data. We are committed to testing, monitoring, and maintaining records related to data security and access controls impacting our Systems that are aligned with industry best practices and commensurate with the size of transactions and collection of Personal Data that we process and transfer. While we cannot fully eliminate security risks associated with the storage, transfer, and transmission of Personal Data, we will endeavor to remain educated and retain the internal and external resource expertise in order to adapt and modify our data protection practices as required by evolving global data security and cyber threats, terrorism, and fraudulent or malicious programs.
Please contact us with any concerns or questions regarding our compliance with the Policy in any of the manners provided in the Contact Section of this Policy.
HOW WILL YOU KNOW OF CHANGES TO THE POLICY?
The most recent version of this Policy was updated on November 12, 2018. We may change the Policy from time to time. In circumstances where a change will materially change the way in which we collect or use your Personal Data, we will send a notice of this change to all of our then-current registered account holders in advance of implementing such changes.
HOW CAN YOU CONTACT US IN ORDER TO EXERCISE YOUR RIGHTS OR MAKE ANY INQUIRIES OR COMPLAINTS?
If you wish to exercise any of your rights regarding your Personal Data as outlined in this Policy, or if have any questions or complaints about the Policy, please contact us at email@example.com
You may also contact us by mail at:
c/o Privacy Manager
PO Box 218
Proctorsville, VT 05153
Complaints will be resolved internally in accordance with our complaints procedures. If you live in the European Union or Switzerland and efforts to resolve the matter internally are unsatisfactory, the complaint may be submitted to the ICDR-AAA which has been selected as the independent recourse mechanism to resolve complaints and disputes relating to the treatment of Personal Data originating from residents of the European Union or Switzerland under this Policy.
We encourage you to contact us directly and allow us to work with you to address your concerns. Nevertheless, you have the right to lodge a complaint with a competent data protection supervisory authority, in particular in the EU member country where you reside, work or the place of the alleged complaint. You have the right to do so if you consider that our collection, processing, or transfer of Personal Data relating to you violates applicable privacy or data protection laws.