WELCOME TO DC HOUSE OF FASHIONS - A DMV BASED BLACK & WOMAN OWNED BUSINESS

PRIVACY POLICY

DC House of Fashions, L.L.CTN – PRIVACY POLICY

(Updated December, 2022)   

PRIVACY POLICY
-----
DCHOUSEOFFASHIONS.COM - PRIVACY POLICY:

This Privacy Policy sets out how we, DC House of Fashions, L.L.C collects, stores and uses information about you when you use or interact with our website, dchouseoffashions.com (our website), and where we otherwise obtain or collect information about you. This Privacy Policy went into effect on 4/18/2020 and was last updated on 12/21/2022.

CONTENTS OF POLICY:

  1. Summary
  2. Our details
  3. Information we collect when you visit our website
  4. Information we collect when you contact us
  5. Information we collect when you interact with our website
  6. Information we collect when you place an order on our website
  7. Our use of automated decision-making and profiling
  8. How we collect or obtain information about you from third parties
  9. Disclosure and additional uses of your information
  10. How long we retain your information
  11. How we secure your information
  12. Transfers of your information outside the European Economic Area
  13. Your rights under the GDPR in relation to your information
  14. Your right to object to the processing of your information for certain purposes
  15. Sensitive Personal Information
  16. Changes to our Privacy Policy

SUMMARY:

This section summarizes how we obtain, store and use information about you. It is intended to provide a very general overview only. It is not complete in and of itself and it must be read in conjunction with the corresponding full sections of this Privacy Policy.

Data controller: DC House of Fashions, L.L.C

How we collect or obtain information about you: when you provide it to us (e.g. by contacting us, placing an order on our website, sign up for our email newsletter, take a quiz, or create an account) from your use of our website, using cookies and similar technologies, and occasionally, from third parties.

Information we collect: name, contact details, payment information e.g. your credit or debit card details, IP address, information from cookies, information about your computer or device (e.g. device and browser type), information about how you use our website (e.g. which pages you have viewed, the time when you view them and what you clicked on, the geographical location from which you accessed our website (based on your IP address), your answers to quizzes or surveys, and information about your internet connection.

How we use your information: for administrative and business purposes (particularly to contact you and process orders you place on our website), to improve our business and website, to fulfill our contractual obligations, to advertise our goods and services, to analyze your use of our website, and in connection with our legal rights and obligations.

Disclosure of your information to third parties: only to the extent necessary to run our business, to our service providers, and to fulfill any contracts we enter into with you, and where required by law or to enforce our legal rights.

Do we sell your information to third parties (other than in the course of a business sale or purchase or similar event)? No. We do not sell personal information, and we will not sell personal information except as described in this Privacy Policy or if we provide you with notice and a right to opt-out of such sale.

How long we retain your information: for no longer than necessary, taking into account any legal obligations we have (e.g. to maintain records for tax purposes), any other legal basis we have for using your information (e.g. your consent, performance of a contract with you or our legitimate interests as a business). For specific retention periods in relation to certain information which we collect from you, please see the main section below entitled “How Long We Retain Your Information”.

How we secure your information: using appropriate technical and organizational measures such as storing your information on secure servers, encrypting transfers of data to or from our servers using Secure Sockets Layer (SSL) technology, encrypting payments you make on or via our website using Secure Sockets Layer (SSL) technology, only granting access to your information where necessary and by only trusted individuals that have been trained and briefed on appropriate handling of personal information. If you have any questions about the security or retention of your personal information, you can contact Big Commerce directly.

Use of cookies and similar technologies: we use cookies and similar information-gathering technologies such as web beacons on our website including essential, functional analytical and advertising cookies. For more information, please visit our cookies policy here.

Transfers of your information outside the European Economic Area: We are a company based in the United States. In certain circumstances we transfer your information outside of the European Economic Area, including to the following countries: The United States of America, Canada, Ireland, and the United Kingdom. Where we do so, we will ensure appropriate safeguards are in place, including the third parties we use who transfer your information outside the European Economic Area have self-certified themselves as compliant with the EU-U.S. Privacy Shield.

Your rights under the GDPR in relation to your information:

  • to access your information and to receive information about its use
  • to have your information corrected and/or completed
  • to have your information deleted
  • to restrict the use of your information
  • to receive your information in a portable format
  • to object to the use of your information
  • to withdraw your consent to the use of your information
  • to complain to a supervisory authority

Sensitive personal information: we do not collect sensitive personal information on you.

OUR DETAILS:

The data controller with respect to our website is DC House of Fashions, L.L.C. You can contact the data controller by sending an email to customersupport@dchouseoffashions.com. If you have any questions about this Privacy Policy, please contact the data controller.

INFORMATION WE COLLECT WHEN YOU VISIT OUR WEBSITE:

We collect and use information from website visitors in accordance with this section and the section entitled Disclosure and additional uses of your information. We may collect the following information about you through the use of our website:

  • Real name; Alias; Unique personal identifier; Online identifier; Internet Protocol address; Account name; Driver’s license number, or other similar identifiers;
  • Physical characteristics;
  • Commercial information, or other purchasing or consuming histories or tendencies;
  • Internet or other electronic network activity information, including, but not limited to, browsing history, search history, and information regarding a consumer’s interaction with an Internet website, application, or advertisement;
  • Audio, electronic, visual, or similar information;
  • Inferences drawn from any of the information identified in this section to create a profile about you reflecting your preferences, characteristics, predispositions, behavior, and attitudes.

Web Server Log Information:

We use a third party server to host our website called Big Commerce, the privacy policy of which is available here Big Commerce - Privacy Policy. Our website server automatically logs the IP address you use to access our website as well as other information about your visit such as the pages accessed, information requested, the date and time of the request, the source of your access to our website (e.g. the website or URL (link) which referred you to our website), and your browser version and operating system.

Our website servers are located in the United States of America and, accordingly, your information is transferred outside the European Economic Area (EEA). For further information and information on the safeguards used, please see the section of this privacy policy entitled Transfers of your information outside the European Economic Area.

Use of Website Server Log Information for IT Security Purposes:

Our third party hosting provider collect(s) and store(s) server logs to ensure network and IT security and so that the server and website remain uncompromising. This includes analyzing log files to help identify and prevent unauthorized access to our network, the distribution of malicious code, denial of services attacks and other cyber-attacks, by detecting unusual or suspicious activity.

Unless we are investigating suspicious or potential criminal activity, We/we do not make, nor do we allow our hosting provider to make, any attempt to identify you from the information collected via server logs.

Legal basis for processing: compliance with a legal obligation to which we are subject (Article 6(1)(c) of the General Data Protection Regulation).

Legal obligation: we have a legal obligation to implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk of our processing of information about individuals. Recording access to our website using server log files is such a measure.

Legal basis for processing: our and a third party’s legitimate interests (Article 6(1)(f) of the General Data Protection Regulation).

Legitimate interests: we and our third party hosting provider have a legitimate interest in using your information for the purposes of ensuring network and information security.

Cookies and Similar Technologies:

Cookies are data files which are sent from a website to a browser to record information about users for various purposes.

We use cookies and similar technologies on our website, including essential, functional, analytical and advertising cookies and web beacons. For further information on how we use cookies, please see our cookies policy which is available here.

All of the cookies we use on or via our website by changing your browser settings or non-essential cookies by using our cookie control tool, but doing so can impair your ability to use our website or some or all of its features. 

INFORMATION WE COLLECT WHEN YOU CONTACT US:

We collect and use information from individuals who contact us in accordance with this section and the section entitled Disclosure and additional uses of your information.

Email and Contact Form:

When you send an email to the email address displayed on our website we collect your email address and any other information you provide in that email (such as your name, telephone number and the information contained in any signature block in your email).

Legal basis for processing: our legitimate interests (Article 6(1)(f) of the General Data Protection Regulation).

Legitimate interest(s): responding to inquiries and messages we receive and keeping records of correspondence.

Legal basis for processing: necessary to perform a contract or to take steps at your request to enter into a contract (Article 6(1)(b) of the General Data Protection Regulation).

Reason why it is necessary to perform a contract: where your message relates to us providing you with goods or services or taking steps at your request prior to providing you with our goods and services (for example, providing you with information about such goods and services), we will process your information in order to do so).

Transfer and Storage of Your Information:

We use a third party email provider/customer service management tool to store emails and messages you send us. If you have any questions about the security or retention of your personal information, you can contact big Commerce here.

Emails you send us will be stored outside the European Economic Area on our third party email provider’s servers in the United States and other locations based on their sub-processors. For further information please see the section of this privacy policy entitled Transfers of your information outside the European Economic Area.

Mail: If you contact us by mail, we will collect any information you provide to us in any postal communications you send us.

Legal basis for processing: our legitimate interests (Article 6(1)(f) of the General Data Protection Regulation)

Legitimate interest(s): responding to inquiries and messages we receive and keeping records of correspondence.

Legal basis for processing: necessary to perform a contract or to take steps at your request to enter into a contract (Article 6(1)(b) of the General Data Protection Regulation).

Reason why necessary to perform a contract: where your message relates to us providing you with goods or services or taking steps at your request prior to providing you with our goods and services (for example, providing you with information about such goods and services), we will process your information in order to do so).

INFORMATION WE COLLECT WHEN YOU INTERACT WITH OUR WEBSITE:

We collect and use information from individuals who interact with particular features of our website in accordance with this section and the section entitled Disclosure and additional uses of your information.

Legal basis for processing: Your consent (Article 6(1)(a) of the General Data Protection Regulation).

Consent: You give your consent to us sending you our e-newsletter by signing up to receive it using the steps described above.

Transfer and storage of your information:

Information you submit to subscribe for our text messages will be stored outside the European Economic Area on our third party text message provider’s servers in Canada. For further information about the safeguards used when your information is transferred outside the European Economic Area, see the section of this privacy policy below entitled Transfers of your information outside the European Economic Area.

Use of web beacons and similar technologies in text messages:

We use technologies such as web beacons (small graphic files) in the texts we send to allow us to assess the level of engagement our texts receive by measuring information such as the delivery rates, open rates and click through rates which our texts achieve. We will only use web beacons in our texts if you have consented to us doing so. For more information on how we use web beacons in our texts, see our cookies policy which is available here.

E-Newsletter:

When you sign up for our e-newsletter on our website or opt to receive news, offers, updates on out-of-stock items from us by entering your name and email address and clicking subscribe or ticking a box at checkout indicating that they would like to receive your e-newsletter, we collect your email address, information about your browser, information about the page you signed up on, and any other additional information you may provide to us.

Legal basis for processing: your consent (Article 6(1)(a) of the General Data Protection Regulation).

Consent: you give your consent to us sending you our e-newsletter by signing up to receive it using the steps described above.

Transfer and Storage of Your Information:

We use a third party service to send out our e-newsletter and administer our mailing list, Google Mail. Their privacy policy is available here.

Information you submit to subscribe for our e-newsletter will be stored outside the European Economic Area on our third party mailing list provider’s servers in the United States. For further information about the safeguards used when your information is transferred outside the European Economic Area, see the section of this privacy policy below entitled Transfers of your information outside the European Economic Area.

Use of Web Beacons and Similar Technologies in Emails:

We use technologies such as web beacons (small graphic files) in the emails we send to allow us to assess the level of engagement our emails receive by measuring information such as the delivery rates, open rates and click through rates which our emails achieve. We will only use web beacons in our emails if you have consented to us doing so.

For more information on how we use web beacons in our e-newsletter emails, see our cookies policy which is available here.

For more information about our third party mailing list provider and they use web beacons, please see their privacy policy which is available here.  

Registering On Our Website:

When you register and create an account on our website, we collect the following information: Email address, IP address, and any other information you provide to us when you complete the registration form.

If you do not provide the mandatory information required by the registration form, you will not be able to register or create an account on our website.

Legal basis for processing: our legitimate interests (Article 6(1)(f) of the General Data Protection Regulation).

Legitimate interest: registering and administering accounts on our website to provide access to content, secure access to order history and status for customers and to facilitate the running and operation of our business.

Transfer and Storage of Your Information

Information you submit to us via the registration form on our website will be stored outside the European Economic Area on our third party hosting provider’s servers in The United States and Canada. Our third party hosting provider is Big Commerce with servers located throughout North America and where its sub-processors may be located. Their privacy policy is available here.

For further information about the safeguards used when your information is transferred outside the European Economic Area, see the section of this privacy policy below entitled Transfers of your information outside the European Economic Area.

INFORMATION WE COLLECT WHEN YOU PLACE AN ORDER ON OUR WEBSITE:

We collect and use information from individuals who place an order on our website in accordance with this section and the section entitled Disclosure and additional uses of your information.

Information Collected When You Place an Order:

Mandatory Information:

When you place an order for goods or services on our website, we collect your name, email address, billing address, shipping address, company name (if applicable), billing name, and information about your browser.

If you do not provide this information, you will not be able to purchase goods or services from us on our website or enter into a contract with us.

Legal basis for processing: necessary to perform a contract (Article 6(1)(b) of the General Data Protection Regulation).

Reason why necessary to perform a contract: we need the mandatory information collected by our checkout form to establish who the contract is with and to contact you to fulfill our obligations under the contract, including sending you receipts and order confirmations.

Legal basis for processing: compliance with a legal obligation (Article 6(1)(c) of the General Data Protection Regulation).

Legal obligation: we have a legal obligation to issue you with an invoice for the goods and services you purchase from us and we require the mandatory information collected by our checkout form for this purpose. We also have a legal obligation to keep accounting records, including records of transactions.

Optional Information:

We also collect optional information from you, such as your telephone number or information about how your experience was in the form of a survey. We also ask you if you would like to receive marketing communications from us. For further information, see ‘Marketing communications’ in this section below.

If you do not supply the optional information requested at checkout, such as telephone number. We will not be able to contact you by telephone or SMS.

Legal basis for processing: our legitimate interests (Article 6(1)(f) of the General Data Protection Regulation.

Legitimate interests: finding out how a customer’s experience was to improve your business’ website or to be able to contact the customer by phone where (if necessary) in relation to their order.

AND

Legal basis for processing: your consent (Article 6(1)(a) of the General Data Protection Regulation).

Legitimate interests: you consent to us processing any optional information you provide by submitting that information to us.

Processing Your Payment:

After you place an order on our website you will need to make payment for the goods or services you have ordered. In order to process your payment we use a third party payment processor (Braintree Payments) and a fraud gateway to ensure that your order is not fraudulent (Encryption Everywhere Secure Certificate). Your payment will be processed by Braintree Payments.

Braintree Payments collects, uses and processes your information, including payment information, in accordance with their privacy policies. You can access their privacy policy via the following link(s): Braintree Payment Policy & Big Commerce - Privacy Policy.

Transfer and Storage of Your Information:

Information relating to the processing of your payment is stored outside the European Economic Area on our [third party payment processor’s servers in the United States}.

For further information about the safeguards used when your information is transferred outside the European Economic Area, see the section of this privacy policy below entitled Transfers of your information outside the European Economic Area.

Legal basis for processing: necessary to perform a contract (Article 6(1)(b) of the General Data Protection Regulation).

Reason why necessary to perform a contract: to fulfill your contractual obligation to pay for the goods or services you have ordered from us.

Marketing Communications:

At checkout and upon first arriving to the site you will have the option of receiving marketing communications from us.

Our Similar Goods and Services:

You can opt-out from receiving marketing communications in relation to our goods and which are similar to those which you purchase from us, by ticking a box to opt out or clicking ‘unsubscribe’ in any email from us.

We will send you marketing communications in relation to similar goods and services if you do not opt out from receiving them.

Legal basis for processing: our legitimate interests (Article 6(1)(f) of the General Data Protection Regulation).

Legitimate interests: direct marketing and advertising our products and services.

Transfer and Storage of Your Information:

We use a third party service to administer our mailing list, Google Mail. Information you submit to subscribe for our e-newsletter will be stored outside the European Economic Area on our third party mailing list provider’s servers in the United States. For further information about the safeguards used when your information is transferred outside the European Economic Area, see the section of this privacy policy below entitled Transfers of your information outside the European Economic Area.

Use Of Web Beacons [And Similar Technologies] In Emails:

We use technologies such as web beacons (small graphic files in the emails we send to allow us to assess the level of engagement our emails receive by measuring information such as the delivery rates, open rates and click through rates which our emails achieve. We will only use web beacons in our emails if you have consented to us doing so.

For more information on how we use web beacons in our emails, see our cookies policy which is available here.

For more information about our third party mailing list provider and they use web beacons, please see their privacy policy which is available here.

Our Goods and Services:

You can opt in to receiving marketing communications from us in relation to our goods and services by email ticking a box indicating that you would like to receive such communications during checkout or at any time while browsing the site by entering your email address into our newsletter sign-up form.

We will send you marketing communications in relation to our goods and services only if you opt-in to receive them.

Legal basis for processing: consent (Article 6(1)(a) of the General Data Protection Regulation).

Consent: you give your consent to us sending you information about our goods and services by signing up to receive such information in accordance with the steps described above.

Transfer and Storage of Your Information:

We use a third party service to administer our mailing list, Google Mail. Information you submit to subscribe for our e-newsletter will be stored outside the European Economic Area on our third party mailing list provider’s servers in the United States. For further information about the safeguards used when your information is transferred outside the European Economic Area, see the section of this privacy policy below entitled Transfers of your information outside the European Economic Area.