1. Introduction & Scope
Welcome to Holistic Flower (“we,” “us,” or “our”). We are committed to protecting the privacy and security of your personal information. This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you visit our website https://holisticflower.com (the “Site”), including any other media form, media channel, mobile website, or mobile application related or connected thereto.
Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site. We reserve the right to make changes to this Privacy Policy at any time and for any reason. We will alert you about any changes by updating the “Last Updated” date of this Privacy Policy.
2. Information We Collect
We may collect information about you in a variety of ways. The information we may collect on the Site includes:
2.1. Personal Data You Provide to Us
Personally identifiable information, such as your name, shipping address, email address, telephone number, and demographic information (like age, necessary for age verification) that you voluntarily give to us when you register with the Site, place an order, fill out a contact form, subscribe to newsletters, respond to surveys, or otherwise interact with the Site.
- Account Information: Username, password, name, email, address details when you create an account.
- Order Information: Name, billing address, shipping address, email, phone number, products purchased when you place an order via WooCommerce.
- Communication Information: Information you provide when you contact us via email or contact forms (e.g., using WPForms).
- Age & ID Verification Data (If Applicable): If our Site requires age or identity verification for compliance, we (or our third-party verification partner) may collect information necessary to perform this check, such as date of birth or information derived from a government-issued ID. This data is collected solely for verification and compliance purposes and is handled with strict security measures. Sensitive documents, if uploaded directly to us as part of a manual review process, are intended to be deleted promptly after verification is complete, unless required otherwise by law. Refer to the specific terms during the verification process for details provided by any third-party service used.
- Comments: When visitors leave comments on the site (if enabled), we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection. An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
2.2. Derivative Data Collected Automatically
Information our servers automatically collect when you access the Site, such as your IP address, browser type, operating system, access times, and the pages you have viewed directly before and after accessing the Site. We also collect information through cookies and similar tracking technologies.
- Cookies and Tracking Technologies: We use cookies, web beacons, tracking pixels, and other tracking technologies on the Site to help customize the Site and improve your experience. Cookies are small data files stored on your hard drive or in device memory. We use them to:
- Enable essential site functions (e.g., keeping items in your cart, user logins).
- Remember your preferences and settings.
- Analyze site usage and performance (see Analytics).
- Assist with promotional and marketing efforts (if applicable, based on your consent where required).
Most browsers are set to accept cookies by default. You can usually choose to set your browser to remove or reject browser cookies, but be aware that such action could affect the availability and functionality of the Site.
- Website Analytics: We may use third-party analytics services, such as Google Analytics, to collect and analyze usage data, determine the popularity of certain content, and better understand online activity. This may involve cookies and the collection of data like your IP address (often anonymized), geographical location, browser type, etc. We use this data to improve our website and services. By accessing the Site, you consent to the collection and use of your information by these third-party vendors (subject to their privacy policies and your opt-out choices where available).
- Log Files & Security Data: Standard server logs and data collected by security tools (e.g., IP addresses) are used for maintaining site security, preventing fraud, and troubleshooting.
2.3. Embedded Content from Other Websites
Articles on this site may include embedded content (e.g., videos, images, articles). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website. These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction if you have an account and are logged in to that website (e.g., YouTube, Vimeo).
2.4. Payment Information
When you make a purchase, your payment details (like credit card numbers) are processed directly by our secure third-party payment processors (e.g., Stripe, PayPal, depending on your choice at checkout). We do not store your full credit card information on our servers. We receive only confirmation of payment, billing address, and partial card details (like the last four digits) for verification and order processing.
3. How We Use Your Information
Having accurate information permits us to provide you with a smooth, efficient, and customized experience. Specifically, we may use information collected about you via the Site to:
- Create and manage your account.
- Process your orders, payments, and refunds.
- Deliver products and services you requested.
- Communicate with you about your account or orders.
- Email you regarding your account or order confirmation, shipping, etc.
- Send you newsletters, promotions, and information about our products (if you have opted-in).
- Respond to your customer service requests and inquiries.
- Improve the efficiency and operation of the Site.
- Monitor and analyze usage and trends to improve your experience.
- Prevent fraudulent transactions, monitor against theft, and protect against criminal activity.
- Comply with legal and regulatory requirements (e.g., age verification, tax calculations).
- Enforce our terms and conditions.
4. Disclosure of Your Information (Data Sharing)
We value your privacy and do not sell your personal information. We may share information we have collected about you in certain situations necessary for our business operations and legal compliance:
- Service Providers: We share information with third-party vendors, consultants, and other service providers who perform services for us or on our behalf and require access to such information to do that work (e.g., payment processing, data analysis, email delivery, hosting services, shipping carriers, customer service).
- Payment Processors: To securely handle your payments. They receive necessary transaction details but we do not store your full credit card number.
- Shipping Carriers: To deliver your orders (Name, Address, Contact Info).
- By Law or to Protect Rights: If we believe the release of information about you is necessary to respond to legal process, to investigate or remedy potential violations of our policies, or to protect the rights, property, and safety of others, we may share your information as permitted or required by any applicable law, rule, or regulation.
- Business Transfers: We may share or transfer your information in connection with, or during negotiations of, any merger, sale of company assets, financing, or acquisition of all or a portion of our business to another company.
- Analytics Providers: Anonymized or aggregated data may be shared with analytics providers.
- Age/ID Verification Services: If using a third-party service for verification, necessary data is shared with them according to their privacy policy.
- With Your Consent: We may disclose your personal information for any other purpose with your consent.
- Spam Detection Services: Visitor comments may be checked through an automated spam detection service (e.g., Akismet).
5. Data Retention
We retain your personal data only for as long as necessary for the purposes set out in this Privacy Policy, or as required by law.
- Order Information: We generally keep customer order information (name, email, address, products purchased) for 7 years for tax, accounting, and legal record-keeping purposes.
- Account Information: We keep your account information for as long as your account remains active. You can request account deletion (see Your Rights below).
- Contact Form Submissions: We retain submissions for 6 months for customer service purposes, but we do not use them for marketing unless you opt-in.
- Comments: The comment and its metadata are retained indefinitely so we can recognize and approve any follow-up comments automatically.
- Analytics Data: Retained for 26 months to allow for trend analysis.
- ID Verification Data: Documents or data provided solely for age/ID verification are retained only as long as necessary to complete the verification process and are then securely deleted, unless a specific legal requirement dictates otherwise.
When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymize it, or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.
6. Your Data Protection Rights
Depending on your location, you may have certain rights regarding your personal data. We generally provide the following rights to our users:
- The right to access – You have the right to request copies of your personal data.
- The right to rectification – You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
- The right to erasure – You have the right to request that we erase your personal data, under certain conditions and subject to our legal obligations.
- The right to restrict processing – You have the right to request that we restrict the processing of your personal data, under certain conditions.
- The right to object to processing – You have the right to object to our processing of your personal data (e.g., for direct marketing), under certain conditions.
- The right to data portability – You have the right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.
- The right to withdraw consent – If we rely on your consent to process your personal information (like for marketing emails), you have the right to withdraw that consent at any time.
Exercising Your Rights:
To exercise any of these rights, please contact us at admin@holisticflower.com. We may need to verify your identity before processing your request. We will respond within the timeframes required by applicable law.
State-Specific Rights (e.g., California Residents):
Residents of certain states, such as California, may have additional specific rights regarding their personal information. If you are a resident of such a state, please contact us for more information on exercising your rights as provided under your state’s applicable laws.
7. Data Security
We use administrative, technical, and physical security measures to help protect your personal information. We utilize SSL/TLS encryption (HTTPS) on our website, work with secure payment processors (we do not store full credit card data), implement security plugins, and limit internal access to your data. While we have taken reasonable steps to secure the personal information you provide to us, please be aware that despite our efforts, no security measures are perfect or impenetrable, and no method of data transmission can be guaranteed against any interception or other type of misuse. Any information disclosed online is vulnerable to interception and misuse by unauthorized parties.
8. Cookies and Tracking Technologies
We use cookies and similar technologies as described in Section 2.2. You can manage cookie preferences through your browser settings, though disabling essential cookies may affect site functionality.
9. Policy for Children
This Site and our products are intended for use by adults aged 21 and older. We do not knowingly collect personal information from individuals under the age of 21. If we become aware that we have collected personal data from someone under the age of 21, we take steps to remove that information from our servers.
10. Do Not Track Signals
Most web browsers and some mobile operating systems include a Do-Not-Track (“DNT”) feature or setting you can activate to signal your privacy preference not to have data about your online Browse activities monitored and collected. At this time, we do not currently respond to DNT browser signals or mechanisms.
11. International Data Transfers
Your information, including personal data, may be transferred to — and maintained on — computers located outside of your state, province, country, or other governmental jurisdiction where the data protection laws may differ from those in your jurisdiction. If you are located outside the United States and choose to provide information to us, please note that we transfer the data, including Personal Data, to the United States and process it there.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. The updated version will be indicated by an updated “Last Updated” date and the updated version will be effective as soon as it is accessible. We encourage you to review this privacy policy frequently to be informed of how we are protecting your information.
13. Contact Us
If you have questions or comments about this Privacy Policy, please contact us at:
Email: admin@holisticflower.com