Privacy Policy

At Heyday®, we respect the privacy of our users and recognize the importance of protecting personal information. This privacy policy outlines how we collect, use, share, and protect the personal data of those who visit our website or use our products and services. Please read this policy carefully to understand our practices regarding your data.

What Information Do We Collect?

We collect both personal and non-personal data from users for various purposes to provide and improve our products and services. The types of information we may collect include:

  • Contact information such as your name, email address, postal address, and phone number when you create an account, make purchases, contact customer support, or interact with us in other ways.
  • Account information such as username, profile photo, passwords, and other details associated with your account.
  • Purchase and order information including details about the products you purchase or add to your cart and shipping/billing details.
  • Payment information such as payment card numbers, security codes, expiration dates, and billing addresses. This is collected only when providing purchases and is processed by secure third-party payment processors.
  • Device information such as IP address, browser type, operating system, unique device identifiers, and other information about the device you use to access our website or app.
  • Usage information about how you interact with our website and app including pages visited, features used, frequency of visits, and referral sources.
  • Location information such as your device’s GPS signal, WiFi signal, or inferred location based on IP address that we collect only with your consent to provide localized content and improve your experience.
  • Marketing preferences that indicate your contact permissions and preferences for receiving Heyday® marketing emails, messages, or notifications.
  • Social media information that you choose to share from social media platforms when interacting with our brand online.
  • Audio recordings of your voice commands when using Heyday® voice assistant features.

We collect personal information directly from you when you provide it voluntarily. We also use automated technologies like cookies and web beacons to gather other information.

How Do We Use Your Information?

We use the data collected for the following purposes:

  • Provide, operate, and improve our website, products, services, and user experience.
  • Process orders and transactions for products or services purchased.
  • Communicate with you about your account, purchases, services, product updates, and promotional offers.
  • Personalize content and recommendations based on your interests and activity.
  • Provide customer support, respond to requests and questions, and resolve issues.
  • Protect user safety, security, reputation and property along with our own.
  • Send marketing communications, newsletters, surveys, and promotional offers if you opt-in.
  • Debug errors and optimize site performance.
  • Conduct research, analytics and analysis to improve our products and services.

We process your personal information for the above based on our legitimate business interests. When we collect sensitive data like location or audio recordings, we ask your explicit consent and provide options to opt-out at any time.

Do We Share Your Information?

We do not sell or rent your personal data to third parties. We only disclose it in the following circumstances:

  • To third party service providers, affiliates and partners who assist us in operating the website, conducting our business or servicing customers.
  • To payment processors and fraud prevention services to process orders and donations.
  • To law enforcement, government agencies or authorized third parties when compelled by subpoena, court order or other legal process or to prevent harm.
  • If needed to protect the vital interests of individual rights, property or safety.
  • In case of a sale, merger, liquidation, or other corporate change, we may transfer customer data to the relevant parties involved.
  • With your consent, we may share account data with third party apps or services you choose to connect to your Heyday® account.

We only share the minimum essential amount of personal information required for the stated purpose. Third party services are obligated to safeguard your data based on contract and our security policies.

How Do We Secure Your Information?

We take data security seriously, using industry standard encryption and access controls to safeguard your personal information. Our security practices include:

  • SSL encryption of data in transit and sensitive information at rest.
  • Tokenization of payment information with PCI DSS compliant payment processors.
  • Role-based access controls to limit employee access to only necessary user data.
  • Regular security audits and penetration testing conducted by internal teams and third party services.
  • Secure cloud infrastructure located in specialized data centers with high physical and digital security.
  • Mandatory employee security training and privacy education programs.

While we follow generally accepted standards to protect data, no method of storage or transmission over the internet can provide 100% protection. We handle any breach of personal data with utmost seriousness per breach notification laws and our incident response plan.

Your Rights and Choices

You have the following rights and control over your personal data:

  • Opt-out of non-essential communications like promotional emails at any time.
  • Access, modify or delete your account information and related personal data upon request.
  • Download a copy of your account data for records or to transfer to another service.
  • Deactivate your account and request erasure of associated personal information.
  • Object to specific uses of personal data like marketing analytics.
  • Revoke consents and opt-out of data sharing where applicable.

To make a request under the above rights, contact our Privacy Officer at the details provided at the end. For security, we may require identity verification before granting access or making changes to data.

Cookies and Online Tracking

We utilize first-party and third-party cookies on our website for functionality, analytics, marketing and other similar purposes. Cookies are small data files with a unique identifier stored on your device that allow websites or advertisers to track your browsing behavior, recognize you across devices and deliver tailored ads.

You can instruct your browser to refuse all cookies or indicate when a cookie is sent. Disabling cookies may affect website experience and some features may not work as intended.

We also allow select third parties to deploy web beacons, pixels, tags and scripts on our site. These technologies allow us and third parties to provide relevant advertising and monitor traffic, usage and other activity.

Privacy Policies of Linked Websites and Services

Our website or services may contain links to third party sites and apps such as social media platforms. Heyday® is not responsible for the privacy practices or content of these external sites. We recommend reading their own privacy policies closely regarding data collection and use practices.

Changes to this Privacy Policy

We may update this privacy policy to comply with relevant laws and reflect any new practices. Changes will be indicated on our website along with the updated date. Please revisit this page periodically to stay informed on how we collect, use, and share personal information.

For significant changes to policies, we will attempt to notify users directly or provide an additional notice on our website. Your continued usage of our website or services constitutes acceptance of amended privacy policies.

EU-U.S. Privacy Shield Framework

Heyday® complies with the EU-U.S. Privacy Shield Framework and Swiss-U.S. Privacy Shield Framework as set forth by the U.S. Department of Commerce regarding the collection, use, and retention of personal information transferred from the European Union/European Economic Area and Switzerland to the United States. We have certified that we adhere to the Privacy Shield Principles of notice, choice, onward transfer, security, data integrity, access, and enforcement. To learn more about the Privacy Shield program, visit www.privacyshield.gov.

If you have an unresolved privacy or data use concern related to participation in Privacy Shield that we have not addressed satisfactorily, we commit to cooperate with EU data protection authorities and comply with the advice given by such authorities with regard to such data. As further explained in the Privacy Shield Principles, a binding arbitration option may also be made available to you to address residual complaints not resolved by other means.

COPPA Compliance

The Heyday® website and services are intended for general audiences over the age of 13 and not directed at children under 13 years old. We do not knowingly collect personal data from children below the age of 13. If we discover that a child below 13 has provided us with personal information, we will take steps to delete such data immediately. Contact our Privacy Officer if you believe we may have collected personal data from a child under 13.

CAN-SPAM Act Compliance

Heyday® and our marketing partners fully comply with the federal CAN-SPAM Act. We provide a simple way to opt-out of marketing emails and never send such communications without user consent. We clearly identify marketing emails as promotions, indicate the sender, and include a valid postal address.

California Privacy Rights

The California Consumer Privacy Act provides residents of California with specific rights around personal data. To learn more about these rights and how Heyday® complies with CCPA, please check our California Privacy Disclosure.

Conclusion

At Heyday®, your privacy matters. Please reach out if you have any concerns or questions about our privacy practices so we may promptly address them. We will continue to evaluate operations, new technologies, and partnership arrangements to ensure we uphold user privacy while delivering great products and services.