Privacy Policy

Privacy Policy

Mary & Martin (accessible via https://maryandmartin.com) is committed to protecting and respecting your privacy. This Privacy Policy outlines how we collect, process, store, and safeguard your personal data. We are dedicated to upholding the rights of individuals under applicable data protection laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

1. Commitment to Privacy and Data Protection

At Mary & Martin, we prioritize the confidentiality, integrity, and lawful use of your personal data. We handle your information with transparency and in accordance with industry-leading security and privacy standards, placing your rights and interests at the center of our data practices.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all users of our website, maryandmartin.com, and any affiliated online services. For General Data Protection Regulation purposes, Mary & Martin is the Data Controller of your personal data. This means we determine the purposes and means of processing your personal information.

3. Categories of Data Processed

We may collect and process the following categories of personal data:

a. Usage Data
Information about how you interact with our website, including IP address, browser type, session duration, referring URLs, pages visited, and timestamps.

b. Account Data
Identifiers such as your name, postal address, email address, and phone number provided during account registration or purchase.

c. Profile Data
Preferences, browsing behavior, wishlist items, previous purchases, and other profile-related information that helps us tailor your experience.

d. Communication Data
Records of communications, such as customer support queries, submitted forms, or correspondence through [email protected].

e. Technical Data
Information relating to the device and software you use, including operating system, screen resolution, browser settings, and system configurations.

f. Transaction Data
Details of products ordered, payment information, shipping and billing addresses, delivery status, and order history (excluding full payment card data, handled by compliant payment processors).

g. Preference Data
Marketing preferences, user consents, categories of interest, opt-in or opt-out choices regarding newsletters and personalized content.

4. Legal Bases for Processing

In accordance with GDPR, we rely on the following lawful bases for processing your data:

– Contractual Necessity: Processing necessary for the performance of a contract (e.g., processing orders you place on maryandmartin.com).
– Legitimate Interests: Processing for our legitimate business interests (e.g., improving website function), balanced against your rights and freedoms.
– Consent: When you voluntarily provide consent, such as subscribing to our newsletter or accepting non-essential cookies.
– Legal Obligation: Where processing is required to comply with applicable legal or regulatory obligations.

5. Your Rights

Subject to applicable laws, you have the following rights regarding your personal data:

– Right to Access – You may request to receive a copy of the personal data we hold about you.
– Right to Rectification – You are entitled to have inaccurate or incomplete data corrected.
– Right to Erasure – Also known as the “right to be forgotten,” you may request deletion of your personal data under certain conditions.
– Right to Restriction – You may ask us to temporarily suspend processing where you object to its accuracy or purpose.
– Right to Portability – You may request to receive your data in a structured, machine-readable format and transmit it to another controller.

To exercise these rights, please contact us at [email protected].

6. Security Measures

We implement robust technical and organizational security measures to protect your personal data, including but not limited to:

– Encryption during data transmission and storage;
– Platform and database access limited to authorized personnel;
– Routine backups and disaster recovery plans;
– Security awareness and data protection training for staff.

7. International Transfers

Where personal data is transferred outside of the European Economic Area (EEA) or other regions with comprehensive data protection laws, we ensure such transfers are safeguarded using Standard Contractual Clauses or other appropriate legal mechanisms as approved under GDPR and applicable international legislation.

8. Data Retention

We maintain personal data for no longer than necessary for the purposes for which it was collected. Retention periods vary by data category:

– Usage Data: Retained for 12 months
– Account and Profile Data: Retained for the duration of the user relationship and up to 6 years thereafter
– Communication Data: Retained for 3 years
– Transaction Data: Retained for 6–7 years for accounting and legal compliance
– Marketing Preferences: Retained until consent is withdrawn or updated

We review our data retention practices regularly to ensure compliance.

9. Cookie Policy

We use cookies and similar technologies on maryandmartin.com for various purposes:

– Essential Cookies: Necessary for the operation and security of the website.
– Functional Cookies: Enhance personalization, such as saving language or region.
– Analytics Cookies: Help us understand user interactions to improve design and performance.
– Performance Cookies: Monitor site reliability and usage trends.

10. Cookie Management and GDPR/CCPA Compliance

You have control over the use of non-essential cookies. You may manage cookie preferences via the consent banner or through your browser settings. Where required, we obtain explicit consent for cookies under GDPR. Under CCPA, you have the right to opt out of the “sale” of personal data, including certain cookie usages. We honor Do Not Track (DNT) signals and provide comprehensive cookie declarations.

11. Special Protections for Children

maryandmartin.com is not intended for use by individuals under the age of 13. We do not knowingly collect personal data from children under 13. If we become aware that such data has been collected inadvertently, we will promptly delete it, in accordance with applicable law.

12. Policy Updates and User Notifications

We may update this Privacy Policy to reflect changes to our data practices. Substantive updates will be communicated via the website or by email to registered users. Continued use of our site constitutes your acceptance of these changes.

13. Contact

If you have questions, concerns, or requests related to this Privacy Policy or your personal data, please contact:

Email: [email protected]
Website: https://maryandmartin.com

We strive to maintain full compliance with GDPR, CCPA, and all applicable data protection laws. Your privacy matters to us—please don’t hesitate to reach out with any concerns.