Privacy Policy

This Privacy Policy outlines how FamilyFirstPath (“we,” “us,” “our”) collects, uses, discloses, and safeguards personal information through interactions with our website located at familyfirstpath.com (the “Site”). We are committed to protecting your privacy and ensuring your personal data is handled securely and in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

1. Our Commitment to Privacy and Data Protection

At FamilyFirstPath, safeguarding your privacy is a fundamental priority. We are dedicated to responsibly managing your personal information and ensuring transparency in our data processing practices. Our platform is built with a privacy-first approach, placing your rights and data protection at the forefront of our operations.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all personal information collected through familyfirstpath.com and any associated services. FamilyFirstPath acts as the Data Controller under relevant data protection legislation, determining the purposes and means of processing your personal information.

3. Categories of Data Processed

We collect and process the following categories of personal data when you interact with our Site:

a) Usage Data: Includes information such as IP address, browser type, operating system, referring URLs, session duration, and pages visited. This data helps us understand how visitors interact with the Site and optimize functionality.

b) Account Data: Consists of identifying information provided during account registration or online forms, including full name, mailing address, email address, and telephone number.

c) Profile Data: Encompasses personal preferences, feedback, communication preferences, purchase history, behavior on the Site, product interests, and user settings.

d) Communication Data: Includes emails, chat logs, help desk queries, and any correspondence or communications exchanged with us through built-in contact methods or user support requests.

e) Technical Data: Comprises data about the devices and technical configurations you use to access the Site, such as device type, operating system, screen resolution, browser plugins, and language preferences.

f) Transaction Data: Involves details relating to purchases or payments made through familyfirstpath.com, such as payment method (excluding full card information), transactional history, delivery address, and billing records.

g) Preference Data: Reflects your marketing and communication preferences, newsletter sign-ups, consent status, and areas of interest you have selected.

4. Legal Bases for Data Processing

In accordance with the GDPR, we process your data under the following legal grounds:

– Legitimate Interest: Where we process data for operational stability, security, fraud prevention, or user experience improvements, provided our interests are not overridden by your rights.
– Contractual Necessity: Where processing is essential to fulfill contractual obligations, such as providing purchased services or responding to support inquiries.
– Consent: Where you have explicitly consented to data processing for specific purposes, such as marketing communications.
– Legal Obligation: When processing is necessary to comply with legal requirements or judicial directives.

5. Your Rights Under Applicable Law

You retain full rights over your personal data under the GDPR and CCPA. These include:

– Right of Access: To receive confirmation of what personal data we hold and obtain a copy.
– Right to Rectification: To correct inaccurate or incomplete data.
– Right to Erasure: To request deletion of your personal data under certain conditions.
– Right to Restriction: To limit the processing of your data where legally applicable.
– Right to Data Portability: To obtain and reuse your personal data across different services.
– Right to Object: To object, on grounds relating to your particular situation, to processing based on our legitimate interests or for direct marketing.
– Right to Non-Discrimination: For California residents, you are entitled to exercise your CCPA rights without facing discrimination.

You may exercise any of these rights by contacting us at: [email protected].

6. Security Measures

We implement a comprehensive suite of organizational and technical measures to safeguard your data:

– Encryption of personal data during transmission and storage using industry-standard protocols.
– Strict access controls and role-based permissions to ensure only authorized personnel can access personal data.
– Regular data backups stored securely to protect integrity.
– Mandatory privacy and security training for personnel handling data.

Despite rigorous measures, no system is invulnerable; users are encouraged to exercise caution in sharing sensitive information.

7. International Data Transfers

If your data is transferred outside the European Economic Area (EEA), we ensure adequate protections are in place, including committing our partners to the EU Standard Contractual Clauses or verifying their compliance with equivalent frameworks such as the UK GDPR, Swiss Federal Act, or relevant local data legislation.

8. Data Retention

We retain personal information only as long as necessary to fulfill the purposes for which it was collected, or as otherwise required by law:

– Usage and technical data: retained for up to 2 years for analytics and system optimization.
– Account and profile data: retained while your account remains active and for up to 7 years thereafter.
– Transaction and communication data: held for 7 years for legal and compliance purposes.
– Marketing and preference data: retained until consent is withdrawn or contact is unsubscribed.

Upon expiration of retention periods, data is securely deleted or irreversibly anonymized.

9. Cookie Policy

We use cookies and similar technologies on familyfirstpath.com for several purposes:

– Essential Cookies: Critical for core Site functionality such as login authentication and user session continuity.
– Functional Cookies: Enhance user experience by remembering choices, language preferences, and customized settings.
– Analytics Cookies: Collect anonymized statistical data on user interaction to improve performance and usability.
– Performance Cookies: Monitor load speeds, script execution, and operational stability.

Cookies are first-party (set by us) or third-party (set by partners like analytics providers).

10. Cookie Management and Regulatory Compliance

You can manage cookie preferences via the cookie consent tool displayed upon first visit and accessible anytime thereafter. Most browsers also allow you to refuse or delete cookies.

We comply fully with the GDPR’s consent requirements and the CCPA’s “Do Not Sell or Share My Personal Information” obligations. California residents may opt-out of the sale or sharing of personal data via available settings or by contacting us.

11. Protection of Children’s Privacy

familyfirstpath.com is not intended for use by children under the age of 13. We do not knowingly collect personal data from children under 13. If we become aware that we have inadvertently collected such information, we will take immediate steps to delete the data. Parents or legal guardians who believe their child has submitted personal information may contact us directly at [email protected].

12. Policy Updates and Notifications

We reserve the right to modify or update this Privacy Policy from time to time. Material changes will be communicated through prominent notices on our Site or via email, as appropriate. Continued use of familyfirstpath.com after such updates constitutes acceptance of the revised terms.

13. Contact Us

If you have any queries, concerns, or requests regarding this Privacy Policy or the handling of your personal information, please contact us:

Email: [email protected]

At FamilyFirstPath, we are committed to maintaining transparency and upholding your privacy rights. We encourage all users to contact us directly with questions or requests related to data protection, and we will respond promptly in accordance with relevant legislation.