FitWithinHome.us respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard the information you provide when you use our website, purchase our digital products (such as ebooks, software, design templates, online courses, etc.), or interact with us (for example, through newsletters or customer support). This policy applies to all visitors and customers worldwide.
We comply with all applicable privacy laws and regulations in the regions where we operate. For example, in many jurisdictions (including the United States and the European Union) privacy laws require businesses to have a transparent privacy notice. In particular, we follow standards set by laws such as the European Union’s General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). Having a clear privacy policy is not only a legal requirement but also builds trust with our customers: studies show that “clearly showing that you take customer data privacy seriously builds confidence in your company”.
We update this policy as needed to reflect changes in our practices or legal requirements. Any updates will be posted on this page with a revised effective date.
Information We Collect
We collect information about you when you use our site, make purchases, create an account, or communicate with us. Personal and account information: This may include your name, email address, mailing address, phone number, account username and password, and other contact or identification information you provide. Payment information: If you make purchases, we collect payment details (such as credit card or bank account information) only in conjunction with a third-party payment processor. (We do not store your full payment data on our servers.) Profile and demographic information: This may include your job title, preferences, interests, or other profile details if you choose to provide them. Usage and transactional data: We collect data about your purchases (products bought, purchase dates, download history) and your use of our site (pages visited, products viewed, referral source). Technical and device information: We automatically collect Internet or network activity information, such as your IP address, browser type and version, device identifiers, operating system, and timestamps. We also collect cookies and tracking data as described below.
For example, ecommerce sites like ours typically gather a wide range of data – “everything from phone numbers to stored credit card information to purchase history” – and we follow that practice. In general, under privacy laws like the GDPR, any information that can identify an individual is considered “personal data.” The GDPR defines personal data broadly as “any information relating to an identified or identifiable natural person,” which includes identifiers such as names, contact details, IP addresses, location data, cookies, and more. Accordingly, we treat the data categories above as personal information that we collect and protect.
How we collect information: We collect data directly from you when you fill out forms, place orders, register accounts, subscribe to newsletters, or otherwise provide information. We also collect information automatically through your use of our site (for instance, via cookies and analytics). And in some cases we may receive information from third parties (such as marketing partners, analytics providers, or public databases) to supplement what you provide.
How We Use Your Information
We use the information we collect for purposes necessary to run our business and provide our services to you. These purposes include, for example:
- Order processing and delivery: To process your orders, fulfill purchases of digital products, verify payment, send confirmations, and provide support related to your transactions.
- Account and customer service: To create and manage your account, authenticate your identity, respond to your inquiries or requests, and provide customer support.
- Personalization and improvements: To personalize your experience on our site (e.g. remembering your preferences, suggesting content) and to analyze and improve our products and services.
- Marketing and communications: To send you transactional emails (order receipts, updates) and promotional communications (newsletters, special offers) if you have opted in or to the extent permitted by law. We will only send marketing messages if you have consented or if it is otherwise lawful under applicable regulations. You can opt out of marketing communications at any time.
- Legal compliance and security: To verify compliance with our terms, to detect and prevent fraud or unauthorized activities, to respond to lawful requests by public authorities (e.g. subpoenas, court orders), and to enforce our legal rights.
- Analytics: To analyze site traffic, usage, and trends so that we can improve our site and service.
In short, we use your personal data “to operate, manage and maintain the business,” including processing transactions and providing the product or service. We also use data “to personalize user experience on websites or apps based on preferences and behaviors,” conduct website analytics, and for marketing and advertising. Under the GDPR, we process data on appropriate legal bases. For example, processing is necessary to perform our contract with you (e.g. delivering purchased products), to comply with legal obligations, or for our legitimate interests (such as improving our site and preventing fraud). Where required, we will rely on your consent (for instance, for marketing emails or certain cookies).
Sharing Your Information
We do not share your personal information except as described in this policy. We may disclose personal data to the following categories of third parties:
- Service providers and partners: We use third-party companies to facilitate our services. These may include payment processors (for handling your payments securely), website hosting and maintenance providers, email delivery services, customer support platforms, analytics providers, and other business service providers. These parties have access to your personal data as needed to perform their functions and are contractually obligated to protect it.
- Business transfers: If we merge with or are acquired by another company, or sell a portion of our assets, your personal data may be transferred as part of that transaction. We will require any successor to follow this Privacy Policy or a substantially similar one.
- Legal and safety reasons: We may disclose your data if required by law or in good faith belief that such disclosure is necessary to (a) comply with legal process (court orders, subpoenas), (b) protect our rights or property (including enforcing our agreements), or (c) protect the safety of our customers or the public.
- Affiliates: If applicable, we may share information with our parent companies, subsidiaries, or other entities under common control, for the purposes described in this policy.
- Advertising and marketing partners: We will share data with advertising or marketing partners only if you have consented or as otherwise permitted by law. (For instance, we might allow remarketing through an ad platform if you opt in.)
As one privacy guide advises, a good policy should “clearly state what third parties can access user data and explain how and why the information is shared”. We take care to limit sharing to the categories above. If we ever sell or share personal information to third parties for value, we will provide a clear opt-out mechanism. In fact, under California law a privacy policy must include a link labeled “Do Not Sell or Share My Personal Information” so consumers can opt out. FitWithinHome.us does not currently sell personal data to third parties, but if that changes we will comply with the requirement to display such a link.
Data Security
We implement technical and organizational measures to protect the security of your personal data. For example, we use industry-standard safeguards such as encryption (SSL/TLS) for data in transit, secure servers, access controls, firewalls, and routine security audits. As stated in a similar corporate privacy notice, we maintain “industry standard security measures in place, including storage of personal identifying information in a secure environment, to protect against the loss, misuse, and alteration of the information”. While we strive to secure your data, no method of transmission or storage is 100% secure. As the ITI privacy guide notes, we cannot “guarantee the confidentiality of any communication or material transmitted via the Internet”. Therefore, while we use reasonable efforts to protect your information, please be aware that absolute security cannot be guaranteed.
Cookies and Tracking Technologies
Our website uses cookies and similar tracking technologies. Cookies are small text files placed on your device to collect standard internet log information and visitor behavior information. We use them to enhance your experience (e.g. keeping you logged in, remembering preferences) and for analytics (e.g. Google Analytics) or marketing (e.g. remarketing pixels). As noted by privacy experts, “cookies are considered personal data under most data privacy laws”, which means we must explain their use and obtain consent where required (for instance, GDPR generally requires opt-in consent for non-essential cookies).
Cookies we use include:
- Essential cookies: Necessary for site functionality (shopping cart, secure areas).
- Preference cookies: Remember choices like language or display settings.
- Analytics cookies: Collect anonymous usage data to help us improve the site.
- Marketing cookies: Used to tailor advertising and measure ad performance.
You can control cookies through your browser settings. For example, as a guide explains: “you can delete any cookies residing on your hard drive by following the instructions for your Web browser”. Many browsers also allow you to block or restrict cookies. Your consent choices for cookies (via any cookie banner) will affect which cookies we use. For details on our cookie usage and options to opt out, please see our Cookie Notice (or cookie banner).
International Data Transfers
Because FitWithinHome.us serves customers globally, your personal data may be transferred to and processed in countries outside your own. For instance, we may transfer data to servers or service providers in the United States and other countries. When we transfer personal data from the European Economic Area (EEA) or other regions with data transfer restrictions (like the UK), we comply with applicable laws. Under the GDPR, transfers of personal data outside the EEA are allowed only if the receiving country has been deemed to provide an adequate level of protection, or if appropriate safeguards (such as Standard Contractual Clauses or binding corporate rules) are in place. We have implemented such safeguards where required. For example, transfers to the UK, Switzerland, and Canada are covered by adequacy decisions, and transfers to the U.S. rely on the current EU-U.S. Data Privacy Framework and approved Standard Contractual Clauses. We will inform you of any international transfers and the safeguards used as required by law.
Your Data Rights
You have certain rights regarding your personal information under the privacy laws of your country or region. We summarize the major rights below; please contact us (see Contact Us section) to exercise any rights or for assistance. Note that some rights may not apply depending on your jurisdiction or the context in which the data was collected.
- For EU/EEA and UK residents (GDPR): The GDPR grants you rights including: the right to be informed about how we use your data; the right of access (to obtain a copy of your data); the right to rectification (to correct inaccurate data); the right to erasure (sometimes called the “right to be forgotten”); the right to restrict processing; the right to data portability (to receive your data in a usable format); the right to object to processing; and rights related to automated decision-making. We will facilitate such requests in accordance with GDPR requirements. For example, we aim to respond to data access or other rights requests within one month (or up to three months if complex).
- For California residents (CCPA/CPRA): The CCPA and its amendments grant California consumers several rights. These include the right to know/access the personal data we have collected about you, the right to delete that data (subject to certain exceptions), the right to correct inaccurate personal information, the right to limit the use and disclosure of sensitive personal data, the right to opt out of the sale or sharing of personal information, and the right to non-discrimination for exercising these rights. (The privacy policy must disclose these rights and how to exercise them.) California law also requires that we provide at least two methods for submitting requests (for example, a toll-free number and an email address). We provide such mechanisms as described below.
- Other U.S. and international rights: Some other U.S. state laws (like Virginia’s CDPA, Colorado’s CPA, etc.) grant similar rights (access, deletion, correction, portability). Many international laws (such as Canada’s PIPEDA, Australia’s Privacy Act, Brazil’s LGPD) likewise grant rights like access and correction. If you reside under another privacy law, we will consider requests under that law as well.
To exercise any of the above rights, please Contact Us using the details below. We may require you to verify your identity before fulfilling certain requests. Please note that we will honor your requests within the timeframes required by law (for example, generally 30-45 days). For EU/EEA individuals, if we are unable to comply with your request, we will explain the reasons and inform you of your right to complain to a supervisory authority. For California residents, if we deny a request we will provide the reason and contact information for the California Privacy Protection Agency.
Children’s Privacy
Protecting the privacy of children is especially important. Our website and digital products are not directed to children under 13 years of age. We do not knowingly collect personal information from children under 13. If we learn that we have inadvertently collected personal data from a child under 13 (or under 16 in the EU, depending on the country), we will promptly delete that data.
In the United States, the Children’s Online Privacy Protection Act (COPPA) applies to sites that knowingly collect data from children under 13. In the European Union, the GDPR generally requires parental consent for processing the data of children under the age of 16 (member states can lower this to as young as 13). We comply with these rules: we do not target minors and we obtain parental consent where required. Even though we do not knowingly collect information from minors, we provide ways for parents or guardians to contact us. If a parent or guardian believes that FitWithinHome.us has collected personal information about their child without consent, they may contact us (see Contact Us below) to request deletion of that data. As one privacy guideline notes, even if a site “doesn’t collect data from children,” it should still inform guardians how to contact it if needed.
Changes to This Policy
We may update this Privacy Policy to reflect changes in our information practices or legal requirements. When we post changes to this policy, we will revise the Effective Date at the top of the page. We encourage you to review this Privacy Policy regularly. In particular, as required by California law, we review and update our privacy policy at least once every 12 months to ensure it remains up-to-date. Your continued use of our site after any change indicates your acceptance of the revised policy.
Contact Us
If you have questions, concerns, or requests about this Privacy Policy or your personal data, please contact us:
- Email: tahagillani841@gmail.com