Posted and effective as of January 19, 2017

TOMMY TOMPKINS PRIVACY POLICY

Please read this privacy policy carefully. It applies to all interactions you have with the tommytompkins.com web site including all web services and application programming interfaces (APIs).

The Information We Collect

Account Information.
When you register for an account, we ask you to choose a name, email address, and password. Your email address is your username. If you select a plan that requires payment, we’ll also ask you for billing information.

Information About Your Use of tommytompkins.com.
We receive some information automatically when you use the tommytompkins.com service. This includes data about your device, software, and the operating system you use when accessing our service, your Internet Protocol address and the date and time of each request you make to tommytompkins.com. We also aggregate statistics about the features you use through the service including the products and items that you place in your shopping cart and wish list.

How We Use Your Information

We use your personal information to keep tommytompkins.com running, understand how you use our service, customize your experience, prevent abuse, provide customer support, sell and market our products, and improve tommytompkins.com. We also use this information to restrict certain application features based on your current free or paid service plan. We use your information internally only as necessary to accomplish these goals.

How We Disclose Your Information

We share your personally identifiable information only in the limited circumstances below. We never sell your information or share it with third-party advertisers.

With your permission.
We may share your information with your consent, after letting you know what information will be shared and with whom.

In response to the law.
We may disclose your information if we believe it is reasonably necessary to comply with a law, regulation, or valid legal process. If we are going to release your information, our policy is to provide you with notice unless we are prohibited from doing so by law or court order (e.g., an order under 18 U.S.C. § 2705(b)). We may disclose your information without giving you prior notice if we believe it’s necessary to prevent imminent and serious bodily harm to a person. Nothing in this policy is intended to limit any legal objections or defenses you might have to demands to compel disclosure of your information, including demands from the government.

With third parties helping us provide tommytompkins.com.
We may share your information with third-party services helping us provide our products and services. Those third parties access and use the information we share with them only on our behalf. They include Stripe, Paypal, ZenDesk, Mailgun, and Google Analytics. Please note that this Privacy Policy explains our practices only, and doesn’t cover the practices of other services. Take a look at those companies’ privacy policies to learn more about their data practices.

Aggregate information.
We may disclose aggregate, non-identifying information about how our users use tommytompkins.com products and services.

Sale or merger.
If all or part of tommytompkins.com is sold, merged, or otherwise transferred to another company in the future, your information may be transferred as part of that transaction. If that happens, Tommy Tompkins will take reasonable steps to make sure your information continues to be treated consistently with this privacy policy.

Web Tracking Policy

We use cookies to enable our servers to recognize your web browser and tell us how and when you use the tommytompkins.com websites. We use cookies to identify whether you have logged in and recognize that your web browser has accessed our servers before, and we may associate that information with your account. Most browsers have an option for disabling cookies, but if you disable them you may not be able to log into your tommytompkins.com account.  We use Google Analytics to help us track and report web traffic in order to better understand our customers and where they are coming from.

Account Termination

If you’re on a paid plan, you can cancel your plan at any time by signing into your account and canceling it online. This means your user account will be moved automatically to a free plan on our service. If you wish to have your account deleted entirely, including all of your account data, you may send a request to delete your account data via our contact form on tommytompkins.com and we will terminate and remove your account from our systems.

Data Security

The tommytompkins.com service is designed to have many layers of security.

  • We use Secure Sockets Layer (SSL)/Transport Layer Security (TLS) to create a secure tunnel to protect all data in transit between your web browser on your device to the tommytompkins.com web site and servers.
  • We do not store any passwords in plain text. We use WordPress which hashes and salts your passwords using the latest hashing algorithms to protect against possible compromise. We only store the hashed and salted version of your passwords which cannot be reverse engineered to reveal your original plain text passwords.
  • We limit the number of employees who have access to user data through policy and technical access controls.
  • No transmission over the internet is completely secure, so we can’t absolutely guarantee that unauthorized parties won’t be able to defeat our security measures. You use tommytompkins.com at your own risk, and are responsible for taking reasonable measures to secure your account (such as choosing strong, unique passwords and keeping them secret) and secure all devices and systems where you choose to store files that were generated with the tommytompkins.com service.

We are always on the lookout for vulnerabilities on tommytompkins.com. If you discover a vulnerability in our service, we would be grateful for your report and encourage you to let us know immediately. If you give us reasonable time to respond to your report before making any information public, and make a good-faith effort to avoid privacy violations, destruction of data, and interruption or degradation of our service during your research, we will not pursue any legal action against you or ask law enforcement to investigate your actions.

To report a security vulnerability, please use the contact form on tommytompkins.com.

Changes to This Policy

We may revise this Privacy Policy from time to time. The most current version of the policy will govern our use of your information and will always be at https://tommytompkins.com/privacy-policy. If we make changes that we believe will substantially alter your rights, we will post the revisions 7 days before they take effect so you can review them.

Contact

We would love to hear from you. Tommy Tompkins welcomes questions, concerns, and feedback about this policy. If you have suggestions for me, let me know by using the contact form.

X