Who We Are
Our website address is: https://www.classicposters.com.
What Personal Data We Collect and Why We Collect It
We collect personal data to provide and improve our services, enhance user experience, and fulfill legal obligations. The data collected may include:
- Name and Contact Information: To communicate with you and provide services.
- Payment Information: For processing transactions securely.
- Account Details: Such as username, password, and preferences for account management.
- Device and Usage Information: For analytics, troubleshooting, and improving functionality.
- Comments or Feedback: To understand and address user needs. This data is collected directly from you or through automated tools like cookies (with consent where required).
Comments
When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.
An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
Media
If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.
Contact Forms
When you submit a contact form, we collect the information provided, including:
- Name
- Email address
- Message content: This data is used solely to respond to your inquiries, provide support, or follow up on requests. We do not use the information submitted through contact forms for marketing purposes without your explicit consent.
Cookies
If you leave a comment on our site you may opt-in to saving your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.
If you visit our login page, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.
When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.
If you edit or publish an article, an additional cookie will be saved in your browser. This cookie includes no personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.
Embedded Content From Other Websites
Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.
These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.
Analytics
We use analytics tools to understand how our website or app is used and improve its performance. This includes:
- Data Collected: User behavior, page views, session duration, geographic location, device type, and referral sources.
- Tools Used: Such as Google Analytics, which may use cookies or similar technologies to track user interactions.
- Purpose: To optimize user experience, improve site navigation, and ensure content relevance. All data is anonymized where possible and only shared with trusted analytics providers in compliance with privacy regulations.
Who We Share Your Data With
We may share your data with third parties to fulfill services, comply with legal obligations, or improve our offerings. These parties include:
- Service Providers: Such as hosting platforms, email services, or payment processors.
- Marketing and Advertising Partners: To deliver personalized content and campaigns.
- Regulatory Authorities: When required for legal compliance or in response to lawful requests.
- Other Third Parties: In the event of a merger, acquisition, or transfer of assets, where your data may be part of the transaction (with prior notice). We ensure all third parties adhere to strict data protection standards.
How Long We Retain Your Data
If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.
For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.
What Rights You Have Over Your Data
If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.
Where We Send Your Data
Visitor comments may be checked through an automated spam detection service.
Your Contact Information
We collect and securely store contact information, such as:
- Name
- Email address
- Phone number
- Mailing address (if required for specific services) This information is used to respond to inquiries, process transactions, send updates, or deliver requested services. We do not share your contact information without your explicit consent, except as required by law or to fulfill a legitimate business purpose.
Additional information
How We Protect Your Data
We prioritize the security of your personal information through a combination of technical, administrative, and physical safeguards. These measures include:
- Encryption protocols to protect data transmission and storage.
- Regular security audits and vulnerability assessments.
- Controlled access to sensitive data, ensuring only authorized personnel can access it.
- Implementation of strong password policies and multi-factor authentication.
- Secure hosting environments with firewalls and intrusion detection systems.
What Data Breach Procedures We Have in Place
In the event of a data breach, we have the following procedures to mitigate impact and notify affected parties:
- Immediate containment and assessment of the breach.
- Notification to impacted users within a specified timeframe as per regulatory requirements.
- Communication with data protection authorities if necessary.
- Root cause analysis and implementation of measures to prevent recurrence.
- Offering support and guidance to affected users to secure their information.
What Third Parties We Receive Data From
We may receive data from trusted third-party sources to enhance our services, including:
- Analytics providers to understand website usage patterns and improve user experience.
- Advertising partners for targeted and relevant advertising.
- Social media platforms for integrating and sharing user activities (with user consent).
- Payment processors to facilitate transactions securely.
- Service providers that assist with fraud prevention and identity verification.
What Automated Decision Making and/or Profiling We Do With User Data
Automated decision-making and profiling may be employed to:
- Personalize user experiences, such as recommending content or products based on preferences.
- Prevent fraud by analyzing transaction patterns and identifying anomalies.
- Enhance marketing efforts by segmenting audiences based on behavior or demographics.
- Assess creditworthiness or eligibility for certain services (where applicable). We ensure such processes comply with applicable laws and include human oversight when necessary.
Industry Regulatory Disclosure Requirements
We comply with applicable industry regulations and legal requirements, including:
- General Data Protection Regulation (GDPR) for processing and protecting personal data of individuals in the European Union.
- California Consumer Privacy Act (CCPA) for residents of California, USA.
- Payment Card Industry Data Security Standards (PCI DSS) for secure payment processing.
- Health Insurance Portability and Accountability Act (HIPAA) if handling health-related data. We are committed to transparency and promptly disclose any required information to regulatory authorities or users, as mandated by law.