Data Collection for Online Payment Processing
If you purchase a product using our online order processing system, you will need to enter personal identifiers such as a credit card number. We use the current standard 128-bit SSL transmission protocol to secure your information in transit from your terminal to our web host. We do not store your credit card information in our own online databases or records after the transaction is complete, so your information will not be accessible to anyone who may gain illegal access to our server. However, customer data may be sent to the CyberCash payment processing system and then to your bank to process transactions and as necessary to prevent or detect fraud or obtain a fraud score on the transaction.
CyberCash also may use customer data to provide us with customer support or to resolve disputes in connection with processing transactions. CyberCash might, under certain circumstances, also need to use the customer data to comply with the requirements of law or the lawful order of a court or other governmental body.
CyberCash sends the transaction data to a database maintained for a credit card fraud consortium, where the transaction is profiled for indicators of fraud. The consortium operator is under contract with CyberCash to use the data solely for the purpose of developing its credit card fraud prevention model and assigning and returning fraud scores for the transactions it receives.
Children's Privacy
We do not knowingly collect personal data from children, however we do not take specific steps to protect the privacy of children who disclose their personal data to us.
We do not provide information about our personal data practices in relation to children on our home page, or at those sites on our Web site where we collect personal data.
Confidentiality / Security
We do not disclose your personal data to our subsidiaries or other organizations.
We give you the option of using a secure transmission method to send us the following types of personal data:
- primary personal data (such as name and contact details)
- identifiers (such as credit card details, Web site password)
We have implemented security policies, rules and technical measures to protect the personal
- data that we have under our control from: unauthorized access
- improper use or disclosure
- unauthorized modification
- unlawful destruction or accidental loss
All our employees and data processors, who have access to, and are associated with the processing of personal data, are obliged to respect the confidentiality of our visitors' personal data.
We ensure that your personal data will not be disclosed to State institutions and authorities except if required by law or other regulation.
Access to the personal data we may hold about you
Upon written request, we will provide you with a readable copy of the personal data which we keep about you, within a week, although we may before require proof of your identity. We will provide the information without any charge.
We allow you to challenge the data that we hold about you and, where appropriate, you may have the data erased, rectified or amended
We reserve the right to refuse to provide our visitors with a copy of their personal data, but will give reasons for our refusal.
Privacy Compliance
There are no self-regulatory schemes applicable to our web site or organization.
We certify that we comply with all applicable national laws, but we do not participate in any third party audit or procedure to demonstrate that our privacy policy accords with this privacy statement.
Privacy Support
If you have an inquiry or concern about our privacy policy, please contact:
Name/designation : Security Supervisor Email address : security@capilano.com
|