Privacy Policy for ragtale.com

1. Introduction

At ragtale.com (“we,” “our,” “us”), we are committed to protecting your personal data and respecting your privacy. This Privacy Policy outlines how we collect, use, disclose, and safeguard personal data in accordance with applicable data protection laws, including the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and the California Consumer Privacy Act (“CCPA”). We take privacy seriously and aim to uphold the highest standards of transparency, accountability, and data security.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all personal data collected through your use of the website ragtale.com, any associated services, platforms, or communication. We are the data controller for the purposes of this policy. As a data controller, we determine the purposes and means by which your personal data is processed.

3. Categories of Personal Data We Process

We may collect, use, store, and transfer the following categories of personal data:

a. Usage Data
Includes information about how you use our website, such as pages viewed, session duration, geographical location, browser type, IP address, referring URLs, and clickstream data.

b. Account Data
Includes your name, billing address, shipping address, email address, and phone number, typically collected when you register for an account or place an order.

c. Profile Data
Includes your communication preferences, product interests, order history, and other behavioral data relating to interactions with our website.

d. Communication Data
Includes correspondence and contact history with us, such as email messages, support requests, inquiries submitted through contact forms, and chat logs.

e. Technical Data
Includes device identifiers, operating system, internet connection information, browser configuration, and system diagnostic data collected automatically during usage.

f. Transaction Data
Includes details of purchases, payment method, billing records, delivery status, order dates, and transaction confirmations.

g. Preference Data
Includes your marketing and communication consents, newsletter signups, survey responses, and product or service interest indicators.

4. Legal Bases for Processing Personal Data

We process your personal data only when there is a lawful basis to do so, including the following:

– Contractual Necessity: To fulfill an agreement with you, such as processing orders or providing customer support.
– Legitimate Interests: To operate, improve, and secure our business and services, provided such interests are not overridden by your rights.
– Consent: Where legally required, for marketing or third-party data sharing. You can withdraw consent at any time.
– Legal Obligation: To comply with applicable laws and regulatory requirements.

5. Your Data Protection Rights

Subject to applicable laws (such as GDPR and CCPA), you may have rights that include:

– Right of Access: You can request a copy of the personal data we hold about you.
– Right to Rectification: You may request that inaccurate or incomplete data be corrected.
– Right to Erasure: You may request deletion of your data where legally permissible.
– Right to Restriction: You may request that we restrict how we process your data.
– Right to Data Portability: You may request your data be made available in a structured, commonly used format for transfer to another controller.
– Right to Object: Where we rely on legitimate interest or consent, you may object to further processing.
– Right to Withdraw Consent: If we rely on your consent, you may withdraw it at any time.
CCPA-Specific Rights: California residents may also exercise the rights to know, access, and delete personal information and not be discriminated against for exercising their privacy rights.

To exercise your rights, contact [email protected].

6. Security Measures

We implement technical and organizational security measures to protect your personal data from unauthorized access, disclosure, alteration, or destruction. These include:

– Industry-standard encryption for data in transit and at rest.
– Role-based and multi-factor access controls.
– Secure data storage systems and regular backups.
– Staff privacy training and strict confidentiality obligations.
– Regular security audits, testing, and incident response protocols.

7. International Data Transfers

If your personal data is transferred outside the European Economic Area (EEA) or another jurisdiction with similar standards, we ensure robust protection through:

– Standard Contractual Clauses approved by the European Commission.
– Verification of recipient country adequacy decisions.
– Binding corporate rules or contractual safeguards ensuring equivalent levels of data protection.

8. Data Retention

We retain personal data only for as long as necessary for the purposes for which it was collected or as required under applicable laws and regulations.

– Usage Data: Retained for up to 24 months for analytics and performance monitoring.
– Account, Profile, and Transaction Data: Kept for up to 7 years for legal, contractual, and customer service purposes.
– Communication Data: Retained for 2 years for support history and dispute resolution.
– Preference Data: Retained for as long as your marketing preferences remain active or until unsubscribed.

We securely delete or anonymize data once retention periods expire.

9. Cookie Policy

ragtale.com uses cookies and similar technologies to enhance your user experience. Cookies are small data files stored on your device. We categorize our use as follows:

– Essential Cookies: Allow core website functions (e.g., security, session management, shopping cart).
– Functional Cookies: Remember user preferences and enhance functionality.
– Analytics Cookies: Collect aggregated statistics (e.g., page views, bounce rates) to improve website performance.
– Performance Cookies: Monitor system capabilities for site optimization.

10. Cookie Management and Compliance

By visiting ragtale.com, you consent to the placement of cookies as described. You have full control via:

– Your browser settings (allowing you to block or delete cookies).
– A cookie consent dashboard to manage your preferences in compliance with GDPR and CCPA standards.

You may withdraw cookie consent at any time. Note that disabling some cookies may impact website functionality.

11. Children’s Privacy

Our services are not directed to or intended for children under the age of 13. We do not knowingly collect personal data from children. If we become aware of such data being processed, we will delete it promptly. Parents or legal guardians who believe their child has submitted data should contact us at [email protected].

12. Policy Updates and User Notification

We may update this Privacy Policy periodically to reflect legal, technical, or operational changes. Any significant changes will be communicated via our website or directly, when appropriate, to ensure you remain informed. Continued use of ragtale.com will constitute acceptance of the revised Policy.

13. Contact Us

If you have questions, requests, or concerns regarding this Privacy Policy or how your data is processed, please contact us at:

[email protected]

We are committed to compliance with applicable data protection laws and welcome your feedback. If you believe we have failed to uphold your privacy rights, you may file a complaint with your local data protection authority.