Privacy Policy of Twilight Tome
At Twilight Tome, located at Drumcondra Road Upper, Dublin, D09 X4R5, Ireland, we are committed to protecting the privacy and security of our customers and site visitors. This Privacy Policy outlines how we collect, use, and safeguard your information when you interact with our site, participate in our events, or purchase our products. This policy adheres to the General Data Protection Regulation (GDPR) and other applicable data protection laws.
1. Information We Collect
We collect various types of information from and about users of our online platform and services, including information that may identify you personally. This includes:
- Personal Identifiable Information (PII): This includes your name, postal address, email address, phone number, and payment information (e.g., credit card details) when you make a purchase, register for an account, sign up for a newsletter, or participate in a reading club or event.
- Transaction Information: Details about the products you purchase, events you register for, and your order history on our site.
- Usage Data: Information about how you access and use our site, including your IP address, browser type, operating system, referral source, pages viewed, and the dates/times of your visits. This helps us understand how our site is used and how we can improve it.
- Communication Data: Records of your correspondence with us, such as emails or messages sent through our contact forms.
2. How We Use Your Information
We use the information we collect for several purposes, including:
- Processing Orders and Services: To process your book orders, manage deliveries, and provide our services like event registrations and children's story times.
- Customer Support: To respond to your inquiries, provide customer service, and assist with any issues related to our products or services.
- Marketing and Communications: To send you newsletters, promotional offers, information about new arrivals, local author events, and reading club updates that may be of interest to you, based on your preferences. You can opt-out of these communications at any time.
- Site Improvement: To monitor and analyze trends, usage, and activities in connection with our site to improve its functionality, content, and user experience.
- Legal Compliance: To comply with legal obligations, resolve disputes, and enforce our agreements.
3. Legal Basis for Processing
We process your personal data based on the following legal grounds as outlined in GDPR:
- Consent: Where you have given clear consent for us to process your personal data for a specific purpose (e.g., subscribing to our newsletter).
- Contractual Necessity: Where processing is necessary for the performance of a contract with you or to take steps at your request before entering into a contract (e.g., processing an online book order).
- Legal Obligation: Where processing is necessary for compliance with a legal obligation to which we are subject.
- Legitimate Interests: Where processing is necessary for the purposes of the legitimate interests pursued by us or by a third party, except where such interests are overridden by your interests or fundamental rights and freedoms (e.g., improving our services, preventing fraud).
4. Data Sharing and Disclosure
We do not sell, trade, or otherwise transfer your Personal Identifiable Information to outside parties without your consent, except in the following circumstances:
- Service Providers: We may share your data with trusted third-party service providers who assist us in operating our site, conducting our business, or offering services to you, such as payment processors, shipping companies, marketing platforms, and website analytics providers. These parties are bound by confidentiality agreements and are permitted to use your information only as necessary to provide these services to us.
- Legal Requirements: We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court order or government agency).
- Business Transfers: In the event of a merger, acquisition, or sale of all or a portion of our assets, your personal data may be transferred to the acquiring entity.
5. Data Security
We implement a variety of security measures to maintain the safety of your personal information. This includes using secure servers, encrypting data during transmission, and regularly reviewing our security practices to protect against unauthorized access, alteration, disclosure, or destruction of your personal data.
6. Data Retention
We will retain your personal information only for as long as is necessary for the purposes set out in this Privacy Policy, including for the purposes of satisfying any legal, accounting, or reporting requirements. When it is no longer necessary to retain your data, we will securely delete or anonymize it.
7. Your Data Protection Rights (GDPR)
Under the GDPR, you have the following rights concerning your personal data:
- The right to access: You have the right to request copies of your personal data.
- The right to rectification: You have the right to request that we correct any information you believe is inaccurate. You also have the right to request that we complete information you believe is incomplete.
- The right to erasure: You have the right to request that we erase your personal data, under certain conditions.
- The right to restrict processing: You have the right to request that we restrict the processing of your personal data, under certain conditions.
- The right to object to processing: You have the right to object to our processing of your personal data, under certain conditions.
- The right to data portability: You have the right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.
- The right to withdraw consent: You have the right to withdraw your consent at any time where we relied on your consent to process your personal information.
To exercise any of these rights, please contact us using the details provided below. We will respond to your request within one month.
8. Cookies
Our site uses "cookies" to enhance your user experience. Cookies are small files placed on your hard drive for record-keeping purposes and sometimes to track information about you. You may choose to set your web browser to refuse cookies or to alert you when cookies are being sent. If you do so, note that some parts of the site may not function properly. We use cookies for purposes such as remembering your preferences, tracking items in your shopping cart, and analyzing site traffic.
9. Third-Party Links
Our site may contain links to other websites not operated by us. If you click on a third-party link, you will be directed to that third party's site. We strongly advise you to review the Privacy Policy of every site you visit. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.
10. Children's Privacy
Our services are not intended for children under the age of 13, and we do not knowingly collect personally identifiable information from children under 13. If we become aware that we have collected PII from a child under 13 without verification of parental consent, we take steps to remove that information from our servers.
11. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page. We encourage you to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
12. Contact Us
If you have any questions about this Privacy Policy, our data practices, or if you would like to exercise your data protection rights, please contact us:
Twilight Tome
Drumcondra Road Upper,
Dublin, D09 X4R5,
Ireland
You also have the right to lodge a complaint with the Data Protection Commission (DPC) in Ireland if you believe your rights under GDPR have been infringed.