Legacy Lab Privacy Policy: Our Promise to You
At Legacy Lab, we understand you own your personal information and have entrusted this to us to provide services to you. Our Privacy Promise is our commitment to you, so you can feel safe and secure while working with us to leave your most cherished stories to those you love.
Our Privacy Promise:
1. You Call the Shots
You are in charge of your information, as well as when and how you hear from us.
2. No Lingering
Your stories and photographs won’t linger on our system. Once we have fulfilled our services and commitment to you, we will email your story entries and photographs to you and delete all entries on our end.
3. Safe and Sound
While you work with us, we are committed to ensuring your information is as safe as possible.
4. Only the Essentials
We will only use your data to fulfill our services to you, improve your Legacy Lab experience, help you, or if mandated by relevant laws or legal proceedings.
5. Open Book
If you have any questions or concerns, we are committed to being available and speaking your language – no nonsense, no surprises.
Welcome
At Legacy Lab we understand the importance of your trust in us, and we strive for our clients to feel secure while sharing their most cherished stories.
Coming from a healthcare business background, we understand the importance of our client’s privacy. We, as well as our closest family members, have been through the Legacy Lab story-sharing process, and have structured our privacy procedures in a way that we feel comfortable sharing our own stories and our closest family’s stories.
We recommend reading this Policy thoroughly before using our Services. By purchasing a package, establishing an online account, or engaging with our Services in any way, you acknowledge that you have read and consent to this Policy, granting us permission to process your information in accordance to our Promises and this Policy.
CONTENTS
-
- How We Use Your Information
- Additional Uses of Information
- Utilizing Personal Information
- How We Share and Disclose Information
- Your Photos and Content
- Retention
- Automated Decision-Making
- Your Rights
- GDPR
- CCPA
- Your Choices
- Data Protection Authority
- Updates
- Complaints
HOW WE USE YOUR INFORMATION
When we mention “information” or “personal information,” we’re referring to data that enables someone to identify you. At Legacy Lab, we are committed to only using your information in four main ways:
-
- To deliver our Services to you.
- To improve our Services to you
- To follow your instructions
- As mandated by relevant laws or legal proceedings.
Please refer to the following list for a comprehensive understanding of the types of Personal Information we collect, the reasons we do so, and any third parties we may liaise with around each specific personal information.
-
- Personal Identifiers
- Information Type:
- Personal Identifiers (including name, mailing address, phone number, email address, age, and social media handles)
- Source:
- Information Type:
- Directly provided by you or by the individual who invited you to utilize the Services.
- Purpose
- Maintaining and managing your account
- Providing customer support
- Processing and completing your orders
- Handling payments for your orders
- Advertising and promoting our products to you
- Detecting security threats and safeguarding against malicious, deceptive, fraudulent, or unlawful activities
- Service Providers
- Vendors for product creation and order fulfilment
- Services for marketing and advertising
- Administration of surveys, sweepstakes, and contests
- Processors for payments and chargebacks
- Services for mailing and shipping
- Personal Identifiers
-
- Your Content
- Information Type
- Your Content (Your story entries onto the Your Story Dashboard, your photographs, narratives, social media connections, voice recordings, and transcripts)
- Source
- Supplied either by you or by individuals you invite to engage with the Services, or indirectly accessed if you grant us permission to your social media accounts.
- Purpose
- Executing and completing your orders
- Delivering customer support
- Engaging product creation and order fulfillment vendors
- Service Providers
- Our team of graphic designers (all under Non-Disclosure Agreements)
- Automated book printers
- Providers of customer service
- Delivery companies (without access to product contents within packaging)
- Information Type
- Your Content
-
- Payment Details
- Information Type
- Payment details (comprising credit card information and other payment particulars – it’s important to note that while our payment processors retain your complete credit card number, only the last four digits are stored by us.)
- Source:
- Supplied directly by you
- Purpose:
- Facilitating payments for your orders
- Identifying security threats and safeguarding against malicious, deceptive, fraudulent, or unlawful activities
- Service Providers:
- Payment processing entities
- Providers specializing in fraud prevention and site security
- Suppliers of customer service
- Information Type
- Payment Details
-
- Engagement with our Services
- Information Type:
- Information regarding your engagement with our Services (encompassing email address and telephone log details from customer service inquiries, along with device event data such as crashes)
- Source:
- Indirectly provided by you through your use of the Services or when reaching out to us for customer support
- Purpose:
- Management and maintenance of your account
- Delivery of customer support
- Augmentation of your user experience
- Utilization of analytics to refine our products and services
- Service Providers:
- Vendors specializing in website performance and analytics
- Providers of customer service
- Information Type:
- Engagement with our Services
-
- Website Login Credentials
- Information Type:
- Credentials for website login
- Source:
- Submitted directly by you
- Purpose:
- Administering and managing your account
- Delivering customer service
- Improving your browsing experience
- Utilizing analytics to refine our offerings
- Service Providers:
- Providers specializing in website performance and analytics
- Customer service providers
- Information Type:
- Website Login Credentials
-
- Client Preferences and Traits
- Information Type:
- Customer preferences and traits
- Source:
- Derived from data provided by you, data indirectly gathered from your browser or device, and data acquired from third-party marketing databases
- Purpose:
- Elevating your browsing experience
- Utilizing analytics to refine our offerings
- Promoting and marketing our products to you
- Service Providers:
- Providers specializing in marketing and advertising services
- Vendors focusing on website performance and analytics
- Information Type:
- Client Preferences and Traits
ADDITIONAL USES OF INFORMATION
In regards to our second commitment (to improve our services to you), we may use information gathered from you in the following manners:
-
- Rectifying issues or malfunctions within our Services
- Preventing misuse or abuse of our Services
In regards to our fourth commitment to you (as mandated by relevant laws or legal proceedings), we may use information gathered from you in the following manners:
-
- Fulfilling obligations stipulated by applicable laws, legal proceedings, or regulations
- Pursuing other lawful objectives, of which our users and customers will be duly informed
USING PERSONAL INFORMATION
We use your personal information to deliver our services to you, encompassing activities such as presenting products for purchase, handling payments, managing shipping and order fulfilment, and keeping you informed about new products, services, and promotions.
Legal Grounds: In accordance with the General Data Protection Regulation (“GDPR”), if you reside within the European Economic Area (“EEA”), we process your personal information based on the following legal grounds:
-
- Your explicit consent;
- The execution of the contract between you and Legacy Lab;
- Adherence to our legal obligations;
- Protection of your vital interests;
- Execution of a task carried out in the public interest;
- Pursuit of our legitimate interests, which do not supersede your fundamental rights and freedoms.
HOW WE SHARE AND DISCLOSE INFORMATION
We uphold a strict policy of not selling, licensing, or sharing the personal information we collect with unrelated third parties for their marketing endeavours. However, there are circumstances under which we may share your information:
With Service Providers: We occasionally engage third-party service providers to assist us, such as facilitating product orders, processing payments, refining and customizing your shopping experience, or delivering advertisements. These service providers are contractually bound to utilize your information solely for the specific service they provide on our behalf. For more details on the information shared with service providers, please refer to the list above.
During Changes to Our Business: Your information may be transferred to another entity if, for instance, we undergo a change in ownership or operation of the Services due to a merger, acquisition, or asset liquidation. In such cases, the new company’s handling of your information will remain subject to this Policy and the privacy preferences you have conveyed to us.
Safety and Security: We may divulge your information to third parties if we reasonably determine that such disclosure is essential to: (a) safeguard any individual from death or severe bodily harm; (b) prevent fraud, abuse of our Services, or other illicit activities; (c) protect our rights, assets, safety, or interests; or (d) carry out a task for the public good. We reserve the right to report to pertinent law enforcement or government agencies any information that we suspect may indicate criminal activity or a violation of applicable laws.
To Comply with Laws: Upon receiving a request for information, we may disclose your information if we reasonably believe that such disclosure aligns with or is mandated by any applicable law, regulation, or legal proceeding. For instance, we may be obligated to share certain information to comply with a subpoena or similar judicial request.
In Aggregated/De-Identified Form: We may share aggregated, non-personally identifiable information publicly and with our partners, such as publishers, advertisers, or affiliated sites. This may involve sharing information publicly to illustrate trends regarding the general use of our services.
With Consent: We may share your information with third parties if you have explicitly granted us consent to do so.
YOUR PHOTOS AND CONTENT
Although we refrain from personally reviewing our customers’ photographs, narratives, transcripts, voice recordings, and additional content (collectively referred to as your “Content”), we do encounter a portion of this Content while delivering our Services, particularly during customer support interactions (refer to the chart above for further details). Unless explicitly stated otherwise, we solely utilize your Content to facilitate our Services for you. We refrain from employing your Content for other purposes, such as inclusion in our marketing materials, unless we have obtained your explicit consent.
You retain control over the Content you submit to us. By default, Legacy Lab adheres to a specific procedure concerning the retention of your information; please refer to the Retention section of this document for more details. If you opt to delete your Content from your account, it will be promptly removed from our application and web interface, and subsequently, permanently erased from our system in the ordinary course of business. In the event of account termination, we will send you an email containing your information and photographs, and proceed to delete your Content within a reasonable timeframe thereafter. Therefore, kindly notify us in advance at contact@legacylab.store if you wish for us to retain your Content following such termination.
RETENTION
When you place an order through the Site, we will retain your Personal Information for as long as it takes you to complete your Legacy Project and for us to fulfil our services. Once you have received your Legacy Lab product in the form of hardcover book(s) and digital ebook, we will email you a copy of your submitted information and photographs from our database. We will then request your consent to delete your information and photographs from our database so as to protect your privacy further. Once you give your consent, your information will then be deleted from our database.
COOKIES
When you visit our Site, a small piece of information, known as a cookie, is downloaded to your computer or device. We utilize various types of cookies, including functional, performance, advertising, and social media or content cookies. Cookies enhance your browsing experience by enabling the website to recall your actions and preferences, such as login details and region selection. This eliminates the need to re-enter this information each time you visit the site or navigate between pages. Moreover, cookies provide insights into how individuals utilize the website, indicating whether it’s their first visit or if they are frequent visitors.
We, along with our service providers, employ diverse technologies to gather and store information when you utilize our Services. This may involve transmitting one or more cookies or anonymous identifiers to your device. These cookies and technologies collect data on your usage of our Services, such as the web pages you have accessed and the search terms you have utilized. This information is then analyzed to identify trends, generate analytics, enhance user experience, improve our products and services, identify and prevent fraud or security incidents, and compile general demographic data for aggregate usage.
Additionally, cookies and similar technologies enable us to offer convenient features, including remembering your login details and account settings, recognizing your browser during visits, customizing your current and future visits, and providing product information tailored to your interests. Furthermore, our service providers may display advertisements for our products and services on other websites. They may combine this data with information gathered about your visits to these websites to ensure that the advertisements you encounter are more relevant to your interests.
AUTOMATED DECISION MAKING
Residents of the EEA hold the right to contest processing founded solely on automated decision-making, which includes profiling, if such decisions carry legal consequences or significantly impact them in other ways.
We refrain from engaging in entirely automated decision-making that could wield legal or significant impact using customer data. However, our processor, Shopify, does employ limited automated decision-making to combat fraud, which does not bear legal or significant effects on individuals.
Services incorporating automated decision-making elements include:
-
- Temporary blacklisting of IP addresses linked to repeated failed transactions, effective for a brief period.
- Temporary blacklisting of credit cards associated with blacklisted IP addresses, lasting for a short duration.
YOUR RIGHTS
Individuals worldwide, including those in the European Economic Area and the United Kingdom, hold certain legal entitlements regarding their personal information. Subject to any exemptions stipulated by law, you may possess the right to access your information, as well as to request updates, deletions, or corrections to such information. We commit to uphold those rights.
Some actions, like viewing or correcting your profile information, can be performed within the Services. If you wish to exercise any other right concerning your personal information, please contact us via email at contact@legacylab.store. We pledge to respond to your request within a reasonable timeframe. We reserve the right to reject requests that are unreasonably repetitive, necessitate disproportionate technical efforts (such as developing a new system or fundamentally altering an existing practice), pose risks to the privacy of others, or are highly impractical. When updating or making a request regarding your personal information, we may request verification of your identity before proceeding with your request.
GDPR
Residents of the EEA have the entitlement to access their Personal Information held by us, to transfer it to another service, and to request correction, updating, or deletion of their Personal Information. For exercising these rights, please reach out to us via the provided contact details.
CCPA
California residents possess the right to access their Personal Information held by us (referred to as the ‘Right to Know’), to transfer it to another service, and to request correction, updating, or deletion of their Personal Information. To exercise these rights or designate an authorized agent for such requests, please contact us using the provided contact information.
YOUR CHOICES
At Legacy Lab, we understand that individuals have varying privacy concerns. Our aim is to provide clarity regarding the information we collect, empowering you to make informed decisions about its usage.
Opting Out of Marketing: If you receive marketing materials from us, you have the option to opt out at any time. Should you prefer not to receive specific types of marketing content, simply click the ‘unsubscribe’ link provided in the respective emails or adjust your email settings via our website. Please be aware that opting out of marketing communications does not affect any transactional or operational notifications that may be necessary for us to send you.
Cookie Settings: You have the ability to configure your browser to block all cookies, including those associated with our Services, or to receive notifications when a cookie is being set by us. However, it’s essential to recognize that disabling cookies may impact the functionality of many of our services. For instance, if you choose to block all cookies, you will only be able to access our Services via email and will be unable to log in through our website. You can specify your cookie preferences for Legacy Lab here.
“Do Not Track” Signals: Certain browser settings may enable you to automatically transmit a “Do Not Track” signal to websites and online services you visit. However, similar to many other websites and online services, Legacy Lab does not acknowledge or respond to “Do Not Track” signals or similar mechanisms from a visitor’s browser.
DATA PROTECTION AUTHORITY
In accordance with relevant laws, you retain the right to (i) limit Legacy Lab’s utilization of your personal data and (ii) file a complaint with your local data protection authority.
UPDATES
This Privacy Policy may undergo occasional updates to reflect changes in our practices or for operational, legal, or regulatory purposes.
COMPLAINTS
If you wish to lodge a complaint, please reach out to us via email or mail using the contact information provided below.
If you find our response to be unsatisfactory, you retain the right to escalate your complaint to the appropriate data protection authority. You can contact your local data protection authority for further assistance.
CONTACTING LEGACY LAB
Please also feel free to contact Legacy Lab if you have any questions about this Policy or our practices, or if you are seeking to exercise any of your statutory rights.
You may contact us at contact@legacylab.store
Last Updated: May 23, 2024