Privacy Policy

At Hearthline Living (https://hearthlineliving.com), we are committed to safeguarding the privacy, integrity, and security of our users’ personal information. This Privacy Policy outlines how we collect, use, disclose, and protect your data—whether you are browsing our website, registering an account, interacting with our services, or contacting us. We prioritize transparency and compliance with applicable privacy regulations, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

1. Commitment to Privacy and Data Protection

We recognize the importance of protecting your personal data and take this responsibility seriously. Hearthline Living maintains industry-standard security and data governance practices to ensure that your information remains private, secure, and used only for clear and lawful purposes. By using our website, you consent to the practices described in this Privacy Policy.

2. Scope of this Policy and Data Controller

This Privacy Policy applies to all interactions with the website hearthlineliving.com, including data collected through online forms, purchases, newsletters, customer service interactions, and browsing behavior. Hearthline Living is the data controller with respect to personal data processed via this website and can be contacted at [email protected] for all inquiries related to data protection.

3. Categories of Personal Data Processed

We may collect and process the following categories of personal data:

a. Usage Data
Information automatically collected when visiting hearthlineliving.com, such as IP address, browser type, pages visited, session duration, time zone settings, and site navigation patterns.

b. Account Data
Identifiers and contact details that you provide when creating an account or making a purchase, including your full name, shipping/billing address, email address, and phone number.

c. Profile Data
Your preferences, interests, order history, and behavioral data gathered to improve personalization and user experience.

d. Communication Data
Details from correspondence with customer support, inquiry forms, or other modes of communication, including contact history and support ticket information.

e. Technical Data
Device-specific technical information, hardware model, operating system, platform, browser plug-ins, and other configurations that help ensure website functionality on your device.

f. Transaction Data
Details related to transactions, including purchase history, payment method identifiers (e.g., masked card details), delivery addresses, and transaction timestamps.

g. Preference Data
Information you provide regarding marketing topics of interest, newsletter subscriptions, communication preferences, and consent to receive promotional messages.

4. Legal Bases for Data Processing

We process your personal data in accordance with applicable law, relying on the following legal bases:

– Consent: When you explicitly agree to processing (e.g., marketing emails or cookies).
– Performance of a Contract: For order fulfillment, account creation, or customer service related to purchases.
– Legitimate Interest: To offer secure, tailored website experiences, prevent fraud, ensure IT security, and improve services.
– Legal Obligation: When processing is necessary to comply with legal and regulatory requirements under applicable law.

5. Your Rights under GDPR and CCPA

As a user, you have specific rights relating to the personal data we hold about you:

– Right to Access: Obtain confirmation and access to your personal data processed by us.
– Right to Rectification: Request corrections to inaccurate or incomplete information.
– Right to Erasure (“Right to be Forgotten”): Request the deletion of your personal data under certain conditions.
– Right to Restriction: Request limitation of processing during resolution of disputes or data accuracy checks.
– Right to Data Portability: Receive your data in a structured, common, machine-readable format and transmit it to another controller.
– Right to Object (GDPR) / Opt-Out (CCPA): Object to processing based on legitimate interests or withdraw consent to direct marketing.

To exercise your rights, please contact: [email protected]. We will honor your request in accordance with GDPR, CCPA, and other applicable laws.

6. Security Measures

We implement comprehensive technical and organizational safeguards to protect your information:

– Secure encrypted data transmission (e.g., SSL/TLS protocols)
– Role-based access controls to restrict internal access
– Regular data backups and disaster recovery practices
– Staff training in data privacy principles and best practices
– Ongoing monitoring and vulnerability assessments

While we strive to use all reasonable means to protect your personal data, no method of transmission or storage is completely secure. By using our services, you acknowledge this risk.

7. International Transfers of Data

Your personal data may be processed or stored in countries outside of your country of residence, including jurisdictions without equivalent data protection legislation. Where such transfers occur, Hearthline Living uses appropriate safeguards in line with GDPR and other regulatory requirements—such as Standard Contractual Clauses (SCCs) or adequacy decisions—to ensure a similar level of protection is afforded to your data.

8. Data Retention

We retain data only for as long as necessary, taking into account the type of data, its purpose, and legal or contractual obligations. Generally:

– Usage and Technical Data: retained for up to 13 months for analytics and optimization.
– Account and Transaction Data: retained for 7 years for legal, tax, and accounting purposes.
– Communication and Support Data: retained up to 3 years from the last contact.
– Marketing Preference Data: retained until consent is withdrawn or 2 years of inactivity.

9. Cookie Policy

We use cookies and similar tracking technologies to enhance user experience, analyze traffic, and offer personalized content. The types of cookies we use include:

– Essential Cookies: Necessary for website functionality and security.
– Functional Cookies: Enable enhanced features like saved preferences.
– Analytical Cookies: Help measure user behavior on our website to inform improvements.
– Performance Cookies: Monitor site speed, responsiveness, and design effectiveness.

10. Cookie Management and Compliance

Visitors can manage or withdraw consent for cookies through our cookie banner or browser settings. Our practices are in compliance with the GDPR ePrivacy Directive and CCPA requirements, including the right to opt out of the sale or sharing of personal information. We honor Global Privacy Control (GPC) signals transmitted by user agents.

11. Children’s Privacy

Our services are not directed to individuals under the age of 13, and we do not knowingly collect data from children. If we discover that we have inadvertently processed data from a child without verified parental consent, we will take timely action to delete such information. Parents or guardians with concerns should contact us at [email protected].

12. Changes to this Privacy Policy

We reserve the right to modify this Privacy Policy as our business, legal obligations, or technological practices evolve. Significant changes may be communicated via email or an updated notice on the homepage of hearthlineliving.com. Continued use of the website following changes constitutes agreement to the revised policy.

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:

Email: [email protected]
Website: https://hearthlineliving.com

We are committed to maintaining full compliance with applicable data protection laws and to resolving user concerns in a timely and transparent manner.