Privacy Policy

Last Updated: December 19, 2023

Overview

We value your privacy and are committed to protecting your personal information. This Privacy Policy outlines how we collect, use, and safeguard your data when you interact with us, such as by visiting our website, purchasing a product, or subscribing to our newsletter.

Important Points

  • We handle your personal information during your interactions with us, such as website visits, product purchases, or newsletter subscriptions.
  • This policy details what data we collect, why and how we process it legally, and your rights.
  • Do not provide us with personal data if you are under 18. Parents or guardians should contact us if concerned about data from individuals under 18.
  • We are not responsible for the data practices of third-party websites you may access through our site.
  • We collect data using cookies; please see our Cookie Policy for details.

About Us

This Privacy Notice is issued Online Brand Services (or “we” or “us”) of 115 George Street Suite 108 Oakville ON L6J 0A2. We act as the “controller” under the General Data Protection Regulation (EU) 2016/679. This notice applies to customers and visitors of posterstore.cakemusic.com.

We are committed to safeguarding your personal data. This Privacy Notice provides essential information about how we collect, process, and protect your personal data during interactions with us, such as website visits, product purchases, or newsletter subscriptions. It also outlines your privacy rights and legal protections.

Contact Information

For any questions about this Privacy Notice, please reach out to us:

  • Privacy Manager: posterstoreprivacy@CakeMusic.com
  • Address: 115 George Street Suite 108 Oakville ON L6J 0A2.
  • Telephone number: (855) 491-1325

Note for Children

Our website is not designed for children, and we do not knowingly collect data from children.

Third-Party Links

Our website may contain links to third-party sites. Interacting with these links may allow third parties to collect or share your data. We do not control these third-party sites and are not responsible for their privacy policies. We recommend reading the privacy policies of any third-party sites you visit.

Updates to This Policy

We may update this Privacy Notice periodically. The latest version is always available here, and changes will be communicated via a website notice.

Key Terms

Understanding these terms is essential for interpreting this Privacy Policy:

  • Controller: The entity that determines the purpose and means of processing personal data.
  • Data Protection Laws: Regulations governing the handling of personal data, including GDPR.
  • Data Subject: The individual to whom personal data relates.
  • Personal Data: Any information that can identify a living individual, including names, addresses, and contact details.
  • Processing: Any operation performed on personal data, such as collecting, storing, or sharing.
  • Processor: A party that processes personal data on behalf of the controller.
  • Special Categories of Data: Sensitive information such as racial origin, political beliefs, or health data.

Data Collection

Information You Provide:

  • Contact Data: Name, email, phone number, billing and delivery addresses.
  • Order Data: Details for individuals for whom you purchase products.
  • Profile Data: Username, password, order history, interests, and survey responses.
  • Financial Data: Payment information and billing address.
  • Transaction Data: Details about payments and products purchased.
  • Technical Data: IP address, browser details, and technology used to access the site.
  • Usage Data: Interaction data with our website.
  • Marketing Data: Preferences for receiving marketing materials.
  • Communications Data: Emails and conversation notes.

Information from Third Parties:

  • Analytics from providers like Google.
  • Advertising data from networks like Google AdSense and Facebook.
  • Payment data from services like Chase Paymentech and Stripe.

Cookies:

We use cookies to collect data about your website interactions. See our Cookie Policy for more details.

Data Processing and Legal Basis

We process your personal data for the following purposes, under these legal bases:

  • Legitimate Interests: Processing is necessary for our business operations.
  • Contract Performance: Necessary to fulfill contractual obligations.
  • Legal Obligation: Compliance with legal and regulatory requirements.
  • Consent: Voluntary data processing, such as for newsletters.

Data Retention

We retain your data only as long as necessary for processing purposes. Specific retention periods include:

  • Technical Data: 7 years
  • Contact, Identity, Financial, and Transaction Data: 6 years after ending a customer relationship
  • Usage, Profile, Marketing, Communications, and Order Recipient Data: 7 years

Data may be anonymized for research or statistical purposes and used indefinitely.

Data Access and Sharing

We share your data with key service providers, including:

  • Order Fulfillment: Providers like Printful, MusicToday, and Isotope Music.
  • Shipping: Services like DHL and USPS.
  • Payment Processing: Providers like Stripe and PayPal.
  • Customer Service: Providers like Freshdesk.
  • Hosting and Email: Services like Microsoft Azure and MailUp.
  • Social Media: Plugins like Facebook and Twitter.

We require third-party processors to maintain data security and comply with legal standards.

Data Security

We implement appropriate measures to protect your personal data against unauthorized access, loss, or misuse. Access to your data is limited to those with a legitimate need.

Your Rights

Under data protection laws, you have the following rights:

  • Object to Processing: Challenge processing based on legitimate interests.
  • Access Data: Request copies of your data and processing details.
  • Correct Data: Amend inaccurate information.
  • Restrict Processing: Temporarily halt processing under certain conditions.
  • Withdraw Consent: Revoke consent for processing activities.
  • Erasure: Request data deletion.
  • Data Portability: Obtain an electronic copy of your data.
  • Automated Decision-Making: Challenge automated decisions affecting you.

To exercise these rights, contact us using the information provided.

Complaints

If you believe we have not processed your data according to this notice, please contact us. You may also file a complaint with the Office of the Privacy Commissioner of Canada (OPCC) or the UK Information Commissioner’s Office (ICO).