COLLECTING PERSONAL INFORMATION
When you visit the Site, we collect certain information about your device, your interaction with the Site, and information necessary to process your purchases. This information is used to provide you with our products and services, to allow us to understand how you navigate the Site, and to provide advertising that is relevant to your interests.
If you pre-order or purchase our products from our Site, we request you provide your name, billing address, shipping address, payment information (including credit card numbers), email address, and phone number. The purpose of collection is to provide products or services to you to fulfill our contract, to process your payment information, arrange for shipping, and provide you with invoices and/or order confirmations, communicate with you, screen our orders for potential risk or fraud, and when in line with the preferences you have shared with us, provide you with information or advertising related to our products or services. Your information is shared with our processor Shopify, Google Analytics and/or PayPal.
If you visit our Site, we record your version of web browser, IP address, time zone, cookie information, what products you view, search terms, and how you interact with the site. We collect this data to load the Site accurately for you, and to perform analytics on Site usage to optimize our Site. Your information is shared with our processor Shopify, Google Analytics and/or PayPal.
Mailing list information
You may choose to submit your email address via a submission form located on our Site. Your email address may be used to send you news about company-related services, surveys, products, or promotions. We may use one or more service providers to administer these messages, but we do not share your email address with spammers or any other third-party without your permission.
ONLINE TRACKING AND YOUR CHOICES
Website use information
Like many websites, we and our third-party partners analyze log file information and other data collected through cookies, web beacons, and other tracking technology, to collect information about your browsing behaviour when you visit our Site. Information collected includes: your browser type, domains, page views, IP address, referring/exit pages, information about how you interact with our Site's webpages and third-party links, traffic and usage trends on the service, etc. We use session cookies to keep you logged in while you use features of our Site; these disappear after you close your browser. We also use persistent cookies, which stay in your browser and allow us to recognize you when you return to the Site. We use this to remember your information so you will not have to re-enter it, to better understand how you use our website and products and services, to diagnose and fix technology problems, and otherwise enhance our Site, products, and services. In some of our email messages, we use a "click-through URL" linked to content on the Site. We track this click-through data to help us measure the effectiveness of our customer communications. We also use third-party analytics tools (including Google Analytics) to assist us with analyzing and improving our service. Most internet browsers automatically accept cookies, but you may be able to change the settings of your browser to stop accepting cookies or to prompt you before accepting a cookie from the websites you visit. If you set your browser to reject cookies, parts of our Site may not work for you. Please note, depending on your type of device or browser, it may not be possible to delete or disable all tracking mechanisms on your device.
- Your selection of the "Do Not Track" option provided by your browser may not have any effect on our collection of cookie information for analytic and internal purposes. The only way to completely "opt out" of the collection of any information through cookies or other tracking technology is to actively manage the settings on your browser or mobile device to delete and disable cookies and other tracking/recording tools.
THIRD-PARTY SITES AND FEATURES
The Site is not intended for individuals under the age of 13. We do not intentionally collect Personal Information from children. If you are the parent or guardian and believe your child has provided us with Personal Information, please contact us at the address below to request deletion.
SHARING DATA AND PERSONAL INFORMATION
We share your Personal Information with service providers to help us provide our services and fulfill our contracts with you, as described above. For example:
- We use Shopify to power our online store. You can read more about how Shopify uses your Personal Information here: https://www.shopify.com/legal/privacy.
- We may share your Personal Information to comply with applicable laws and regulation, to respond to a subpoena, search warrant or other lawful request for information we receive, or to otherwise protect our rights.
- We use Google Analytics to help us understand how our customers us the Site. You can read more about how Google uses your Personal Information here: https://policies.google.com/privacy?hl=en. You can also opt-out of Google Analytics here: https://tools.google.com/dlpage/gaoptout.
USING PERSONAL INFORMATION
We use your Personal Information to provide our services to you, which includes: offering products for sale, processing payments, shipping and fulfillment of your order, and keeping you up to date on new products, services, and offers.
Pursuant to the General Data Protection Regulation ("GDPR"), if you are a resident of the European Economic Area ("EEA"), we process your personal information under the following lawful basis:
- Your consent;
- The performance of the contract between you and the Site;
- For our legitimate interests, which do not override your fundamental rights and freedoms.
When you place an order through the Site, we will retain your Personal Information for our records unless and until you ask us to erase this information. For more information on your right or erasure, please see the 'Your rights' section below.
If you are a resident of the EEA, you have the right to object to processing based solely on automated decision-making (which includes profiling), when that decision-making has a legal effect on you or otherwise significantly affects you.
We DO NOT engage in fully automated decision-making that has a legal or otherwise significant effect using customer data.
Our processor Shopify uses limited automated decision-making to prevent fraud that does not have a legal or otherwise significant effect on you.
Services that include elements of automated decision-making include:
- Temporary denylist of IP addresses associated with repeated failed transactions. This denylist persists for a small number of hours.
- Temporary denylist of credit cards associated with denylisted IP addresses. This deny list persists for a small number of days.
If you are a resident of the EEA, you have the right to access the Personal Information we hold about you, to port it to a new service, and to ask that your Personal Information be corrected, updated, or erased. If you would like to exercise these rights, please contact us through our contact page. Your Personal Information will be initially processed in Ireland and then will be transferred outside of Europe for storage and further processing, including to Canada and the United States. For more information on how data transfers comply with the GDPR, see Shopify's GDPR Whitepaper: https://help.shopify.com/en/manual/your-account/privacy/GDPR.
If you are a resident of California, you have the right to access the Personal Information we hold about you (also known as the 'Right to Know'), to port it to a new service, and to ask that your Personal Information be corrected, updated, or erased. If you would like to exercise these rights, please contact us via our contact form.
A cookie is a small amount of information that's downloaded to your computer or device when you visit our Site. We use a number of different cookies, including functional, performance, advertising, and social media or content cookies. Cookies make your browsing experience better by allowing the website to remember your actions and preferences (such as login and region selection). This means you don't have to re-enter this information each time you return to the site or browse from one page to another. Cookies also provide information on how people use the website, for instance whether it's their first time visiting or if they are a frequent visitor.
We may disclose your personal information if we are required by law to do so or if you violate our Terms of Service.
The length of time that a cookie remains on your computer or mobile device depends on whether it is a "persistent" or "session" cookie. Session cookies last until you stop browsing and persistent cookies last until they expire or are deleted. Most of the cookies we use are persistent and will expire between 30 minutes and two years from the date they are downloaded to your device.
You can control and manage cookies in various ways. Please keep in mind that removing or blocking cookies can negatively impact your users experience and parts of our website may no longer be fully accessible.
Most browsers automatically accept cookies, but you can choose whether or not to accept cookies through your browser controls, often found in your browser's "Tools" or "Preferences" menu.
Additionally, please note that blocking cookies may not completely prevent how we share information with third-parties such as our advertising partners. To exercise your rights or opt-out of certain uses of your information by these parties, please follow the instructions in the "Behavioral Advertising" section above.
_session_id, unique token, sessional, Allows Shopify to store information about your session (referrer, landing page, etc).
_shopify_visit, no data held, Persistent for 30 minutes from the last visit, Used by our website provider’s internal stats tracker to record the number of visits.
_shopify_uniq, no data held, expires midnight (relative to the visitor) of the next day, Counts the number of visits to a store by a single customer.
cart, unique token, persistent for 2 weeks, Stores information about the contents of your cart.
_secure_session_id, unique token, sessional storefront_digest, unique token, indefinite If the shop has a password, this is used to determine if the current visitor has access.
PREF, persistent for a very short period, Set by Google and tracks who visits the store and from where.
If our store is acquired or merged with another company, your information may be transferred to the new owners so that we may continue to sell products to you.
To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed.
If you provide us with your credit card information, the information is encrypted using secure socket layer technology (SSL) and stored with a AES-256 encryption. Although no method of transmission over the Internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement additional generally accepted industry standards.
If you would like to: access, correct, amend or delete any personal information we have about you, register a complaint, or simply want more information contact via our contact form or by mail at
The Children's Book Company
1155 Metcalfe #1578
Montreal, Quebec, Canada H3B2V6