Effective Date: July 9th, 2025
1. Who We Are & Contact Information
Trish Arato Inc. (“we”, “our”, “us”) operates as both a service provider and online retailer.
Our website address is: https://trisharato.com.
You may contact us regarding this Privacy Policy or your personal information by mail at:
#1 – 4803 Haviland St, Delta, BC V4K 2V6
Or via any contact methods listed on our Contact Us page.
We are committed to transparency about who controls and processes your data. Unless otherwise specified, trisharato.com is the data controller responsible for your information. For plugins or extensions from providers such as Automattic (WordPress, WooCommerce, Jetpack), we adopt best practices reflected in their privacy policy.
2. What Data We Collect & Why
We collect different types of personal data depending on your interaction with our website:
A. Data You Provide Directly:
- Name, email address, phone number, and postal address (for orders, registrations, customer service, and newsletters)
- Account credentials, such as username and password, if you create an account
- Details submitted in contact forms and consultations
- Content of comments or reviews you leave
- Payment and billing information for purchases, processed by providers like PayPal
- Information submitted when booking services
B. Data Collected Automatically:
- Technical data: IP address, browser type, device information, and website usage logs
- Cookies and similar tracking technologies (to remember preferences, manage shopping carts, enable logins, and improve user experience)
- Products you have viewed or added to your cart
- Location (IP-based) for calculating shipping and taxes
C. Information from Other Sources:
- Data from third-party logins (if used)
- Data processed by anti-spam services (such as Akismet), including anonymized email hashes, IP address, and browser agent
- Media metadata (e.g., if you upload images with embedded EXIF GPS data)
- Data collected by analytics or advertising partners
Why we collect your data:
- To provide requested services, process orders, and communicate with you
- To verify your identity, set up and manage your account, and facilitate refunds or support
- To improve our offerings and website performance
- To comply with legal obligations (tax, accounting, fraud prevention, regulatory)
- For marketing, if you consent
3. How We Use and Share Your Data
A. How We Use It:
We use your information only as necessary for the purposes described above, such as:
- Fulfilling orders and service requests
- Sending essential communications about your account, orders, or updates
- Customizing your experience on our site
- Preventing and addressing fraud, security breaches, and abuse
- Using analytics to understand trends and optimize the website
B. How We Share It:
Your data may be shared with:
- Payment processors (e.g., PayPal)
- Shipping carriers (to deliver orders)
- Third-party service providers (e.g., hosts, analytics, anti-spam such as Akismet, customer support platforms)
- Members of our team (Admins, Shop Managers) for order fulfillment and support
- Legal or regulatory agencies as required
- Plugin/extension providers integrated into our site (review their privacy practices for details)
- When required by law, in connection with potential business transfers, or as necessary to protect rights and safety
We do not sell or rent your data to third parties.
Public contributions (like comments) may be visible to other users, and public data (e.g., Gravatar profile pictures) may appear alongside your content.
Cookies and Tracking:
We use cookies for login management, cart functionality, display preferences, storing product interactions, and to support third-party integrations. Cookies durations vary (session, 2 days, 1 year, etc.).
Embedded Content & Third-Party Links:
Content from other websites (videos, social embeds, plugins) may behave as if you visited those sites directly, possibly collecting their own data about you.
4. Data Retention
We retain your data as follows:
- Comments and metadata: indefinitely (“so we can recognize and approve any follow-up comments automatically”)
- User profile/account data: as long as the account exists (editable by you except username)
- Order, transaction, and shipping records: for legal/tax/accounting purposes [insert retention duration, e.g., 7 years]
- Contact form submissions: [insert period, e.g., 6 months]
- Cookies: session-only, or up to a maximum of 1 year (details provided in cookie policy)
- Website analytics data: as long as needed for internal analysis, not more than 1 year
- Deleted content (e.g., comments, pages): moved to trash for 30 days before permanent deletion, may persist in backups
You can request removal of your personal data at any time unless required for legal, regulatory, or security reasons.
5. Your Rights & Choices
Your Rights Include:
- Access: Request details of personal data we hold about you.
- Correction: Update or amend incorrect, out-of-date, or incomplete data.
- Erasure: Ask for deletion of your data, unless required to retain it for legal reasons.
- Data Portability: Receive a portable copy of your data.
- Restriction: Limit how we process your personal data under certain circumstances.
- Objection: Object to processing for direct marketing or certain legitimate interests.
- Withdrawal of Consent: Where processing is based on consent, you may withdraw it at any time.
To exercise your rights, contact us via the details above.
Requests will be verified via your account/email address.
Your Choices:
- Opt out of marketing communications at any time
- Control cookies via browser settings or provided opt-outs
- Close/delete your user account by contacting us
For users in the EU/EEA or jurisdictions with specific data rights (e.g., California), these rights are implemented in accordance with applicable law.
6. Security, Data Transfers & Regulatory Disclosures
Security:
We implement technical and organizational measures (such as HTTPS, restricted access, and staff training) to safeguard your personal information.
No website or service is 100% secure, but we regularly monitor for vulnerabilities and strive to apply best practices.
Data Transfers:
- Your information may be stored or processed outside your country of residence.
- We use only reputable vendors and require them to adhere to similar security and privacy standards.
- Transfers from the EU/EEA are protected by appropriate mechanisms (such as Standard Contractual Clauses).
Disclosures:
- If required by law, court order, or government request, your data may be disclosed.
- In the event of a business transaction (e.g., merger), we will ensure continued protection of your data.
Data Breach Procedures:
If a data breach occurs, we will promptly notify affected users and take legal and remedial actions as required.
Third-Party Plugins & Integrations:
Some plugins (e.g., WooCommerce, Akismet Anti-Spam, PayPal) and embedded content may process personal data; refer to their privacy policies for details.