Privacy Policy
1. Introduction
At J-AJ (“we”, “us”, or “our”), accessible via https://j-aj.com, we are committed to protecting the privacy, confidentiality, and security of the personal data of our users and visitors. This Privacy Policy outlines our policies with respect to the collection, use, and sharing of your information and your rights under pertinent data protection regulations, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). We uphold a data protection philosophy rooted in transparency, accountability, and privacy-first principles.
2. Scope and Role of the Data Controller
This Privacy Policy applies to all personal data collected via j-aj.com and its subdomains, functionalities, services, and any associated digital interfaces. We, J-AJ, act as the data controller for all personal data processed through this website, and we determine the purposes and means of processing such data. For inquiries related to data protection, you may contact us at [email protected].
3. Categories of Personal Data We Process
We collect and process various categories of personal data as outlined below:
– Usage Data: Includes information such as IP address, browser type and version, device identifiers, operating system, geolocation data (if enabled), session timestamps, pages visited, referring URLs, and website interaction data.
– Account Data: Collected when you register with our services. May include your full name, billing/shipping address, email address, and telephone number.
– Profile Data: Derived from your interactions, such as saved preferences, purchase history, saved items, and behavioral inputs on our platform.
– Communication Data: Includes the content of communications you send to us, such as customer support inquiries, contact form submissions, or direct emails, as well as metadata about those communications.
– Technical Data: Includes device hardware identifiers, configuration details, operating system settings, system error logs, and browser plug-in types and versions.
– Transaction Data: Encompasses product or service purchases, credit/debit card and payment provider information (processed via our authorized third-party payment processors), order histories, delivery status, and invoice records.
– Preference Data: Marketing, survey, or promotional participation preferences, and expressed interests related to our offerings or partners.
4. Legal Bases for Processing
Under the GDPR, we rely on various lawful bases to process your personal data, including:
– Contractual necessity: For fulfilling a contract with you or to take steps at your request prior to entering into a contract (e.g., fulfilling an order).
– Legitimate interests: For safeguarding the integrity, performance, and usability of j-aj.com; improving user experience; or preventing fraud, provided such interests are not overridden by your interests or fundamental rights.
– Consent: When explicitly required (e.g., for sending marketing communications or collecting certain cookies), we will obtain your prior consent.
– Legal obligation: To comply with applicable law, legal process, or enforceable governmental request.
Residents of California may additionally invoke specific rights under the CCPA, discussed in Section 5.
5. Your Rights
Under applicable data protection laws, you may have the following rights in respect of your personal data:
– Right of Access: You have the right to request access to your personal data and to receive information on how it is processed.
– Right to Rectification: You may request that we correct inaccurate or incomplete data concerning you.
– Right to Erasure (“Right to be Forgotten”): Under certain circumstances, you may request the deletion of your personal data.
– Right to Restriction of Processing: You may request limitations be placed on how we process your personal information under specific conditions.
– Right to Data Portability: You may receive your personal data in a machine-readable format and request transfer to another controller, where feasible.
– Right to Object: Where processing is based on legitimate interests or involves profiling or automated decision-making, you have the right to object.
– Right to Withdraw Consent: If processing is based on your consent, you may withdraw it at any time without affecting the lawfulness of processing conducted prior to withdrawal.
To exercise any of these rights, contact us at [email protected]. Responses will be provided in accordance with applicable legal timeframes.
6. Security Measures
We implement a range of administrative, technical, and organizational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access. These include:
– Transport Layer Security (TLS) encryption for data transmission
– Role-based access control and multi-factor authentication
– Continuous system monitoring and logging
– Regular system patching and vulnerability assessments
– Secure data backups and disaster recovery mechanisms
– Ongoing staff training on privacy and data handling best practices
Despite our efforts, no method of transmission or storage is guaranteed to be 100% secure.
7. International Transfers
Your personal data may be transferred to, and processed in, countries outside your country of residence, including jurisdictions that may not offer the same level of data protection. In such cases, we ensure suitable safeguards are implemented, such as the use of Standard Contractual Clauses (SCCs) approved by the European Commission and assessments of the transfer destination’s legal landscape to ensure an adequate level of protection for your data.
8. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, or to satisfy legal, regulatory, tax, accounting, or reporting obligations.
– Usage and Technical Data: retained up to 24 months post-collection.
– Account and Profile Data: retained for the duration of your active account, and up to 6 years thereafter for regulatory compliance and defense of legal claims.
– Transaction Data: retained for 6 years in alignment with tax laws.
– Communication Data: retained for up to 24 months after final interaction.
– Preference Data (e.g., marketing consents): retained until consent is withdrawn or for 2 years, whichever occurs first.
9. Cookie Policy
We use cookies and similar tracking technologies for the following purposes:
– Essential Cookies: Necessary for the functioning of our website, including log-in management and security features.
– Functional Cookies: Enable enhanced features such as remembering preferences and facilitating user interactions.
– Analytics Cookies: Collect data to understand user behavior and site performance, allowing us to improve usability.
– Performance Cookies: Help monitor and improve website speed and responsiveness across devices and browsers.
These technologies may be deployed by j-aj.com or trusted third-party providers. You can learn more about the specific cookies in use via our Cookie Banner or by reaching out to [email protected].
10. Cookie Management and Compliance
In compliance with GDPR and CCPA requirements:
– We request your consent before placing non-essential cookies.
– You have the right to withdraw or change your cookie preferences at any time using the cookie management interface presented on your initial visit or by revisiting the cookie banner footer link.
– California residents may opt out of “sale” or “sharing” of personal data by activating “Do Not Sell My Personal Information” functionality, where applicable.
11. Children’s Privacy
J-AJ does not knowingly collect or solicit personally identifiable information from individuals under the age of 13. If we become aware that a child under 13 has provided personal data without verifiable parental consent, we will take steps to delete the information promptly. If you become aware that such data may have been collected, please contact us at [email protected].
12. Changes to This Policy
We reserve the right to update this Privacy Policy from time to time to reflect changes in legal, technical, or business developments. We encourage you to review this page periodically. Where legally required, we will notify you of significant changes and obtain your consent where necessary.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data protection practices, please contact:
Privacy Manager
Email: [email protected]
Website: https://j-aj.com
We are committed to complying with global privacy standards and ensuring your personal data is respected and protected. Should you have any unresolved privacy concerns, please reach out to us at the contact information provided above.