Table of Contents
- Introduction
- Information We Collect
- How We Use Your Information
- Sharing Your Information
- Your Rights
- Cookies and Tracking Technologies
- Data Security
- Retention of Data
- Children’s Privacy
- Third-Party Links
- Policy Updates
- Contact Us
- Jurisdiction-Specific Rights
- International Data Transfers
- Automated Decision-Making and Profiling
- Third-Party Advertising and Analytics
- Data Breach Notification
- Effective Date
1. Introduction
Welcome to Scopione.com, where your privacy is a top priority. We are dedicated to protecting the personal information you entrust to us. This Privacy Policy explains our practices regarding the collection, use, sharing, and protection of your data across our website, product purchases, and service interactions.
At Scopione.com, our team brings decades of expertise in automotive and motorcycle parts to the table. We are proud to provide an extensive selection of carbon fiber parts, each rigorously tested for quality throughout the production process. Our carbon fiber products for automotive and motorcycle applications feature top-notch UV-resistant protection, ensuring they remain pristine and durable, even in severe weather.
By accessing and using our site, you consent to abide by the terms outlined in this Agreement. This policy describes how Scopione.com manages your personal information, including data from your interactions with our products and services. Personal information is any data that can identify you, such as your name, address, email, or phone number, and is not publicly accessible.
Please be aware that this policy is only applicable to Scopione.com and does not extend to third-party entities that we do not control or manage. Additionally, some of our affiliated entities may have their own privacy policies, which we encourage you to read.
1.1 Why We Have a Privacy Policy
Your trust is the foundation of our business. This Privacy Policy is designed to ensure transparency and demonstrate our commitment to protecting your personal information in compliance with global privacy regulations, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).
1.2 Scope of the Privacy Policy
This Privacy Policy applies to all users of Scopione.com, including customers, visitors, and anyone interacting with our website or services. It governs the collection, use, and management of personal data obtained through:
- Browsing or using our website.
- Purchasing products or contacting customer support.
- Signing up for newsletters, promotional emails, or creating an account.
- Engaging with us on social media or third-party platforms.
1.3 Commitment to Transparency
At Scopione, we believe in clear and open communication regarding how your information is managed. This Privacy Policy outlines:
- The types of data we collect and the reasons for collecting it.
- How we use your data to enhance your experience.
- Your rights concerning your personal information.
- The measures we implement to safeguard your data.
1.4 Acknowledgment and Acceptance
By using Scopione.com, you acknowledge that you have read and understood this Privacy Policy. Your continued use of our website signifies your acceptance of our practices. If you disagree with any part of this policy, we recommend refraining from using our services.
1.5 Our Goal
Our primary goal is to enhance your experience with Scopione.com while maintaining the highest level of privacy protection. We continually adapt our practices to comply with evolving privacy regulations and technological advancements.
2. Information We Collect
At Scopione.com, we collect various types of information to provide a seamless shopping experience and improve our products and services. Below, we outline the types of information we collect, how it’s collected, and the purposes for doing so.
2.1 Types of Information Collected
A. Personal Information
This includes information that directly identifies you or can be used to contact you. Examples:
- Name: First and last name provided during account registration or checkout.
- Contact Information: Email address, phone number, and shipping/billing address.
- Payment Details: Credit/debit card information, PayPal account details, and billing address (processed securely via third-party payment gateways).
- Account Details: Username, password, and preferences set when registering for an account.
B. Non-Personal Information
This includes data that does not directly identify you but provides insights into how you interact with our website. Examples:
- Device Information: Type of device (e.g., desktop, smartphone, tablet), operating system, and browser type/version.
- Usage Data: Pages visited, time spent on each page, links clicked, and browsing patterns.
- Referrer Information: The website or search engine that referred you to Scopione.com.
- Geolocation Data: Approximate location based on your IP address (used for website analytics and shipping calculations).
C. Sensitive Information
We do not intentionally collect sensitive information (e.g., health data, biometric information, or social security numbers). If such data is inadvertently collected, it will be handled in accordance with applicable privacy laws.
D. Communications Data
Includes customer support inquiries, chat conversations, email correspondence, and feedback submitted via forms or surveys.
E. Information from Third Parties
- Social Media Accounts: If you connect your social media account (e.g., via Facebook or Google), we may collect your profile name, profile picture, and email address.
- Marketplace Integrations: Information shared when you purchase products via third-party platforms (e.g., Amazon, eBay, Etsy).
2.2 How We Collect Information
A. Information You Provide Directly
You provide personal information when you:
- Register for an account.
- Place an order or request a quote.
- Subscribe to newsletters or marketing communications.
- Submit a contact form or customer service inquiry.
- Leave reviews or participate in surveys, promotions, or contests.
B. Information Collected Automatically
We automatically collect non-personal information through:
- Cookies and Tracking Technologies: Tools like cookies, web beacons, and pixels track your browsing activity and preferences.
- Analytics Services: Tools like Google Analytics monitor website performance and usage.
- Log Files: Records of your interactions with our site, such as timestamps, pages visited, and download errors.
C. Information from Third Parties
- Partners and Vendors: Data shared by shipping companies, payment processors, and marketing agencies.
- Social Media Platforms: Information collected when you interact with our ads, pages, or posts on platforms like Instagram, Facebook, or Twitter.
2.3 Why We Collect Information
We collect and use information for the following purposes:
- Order Processing: To process orders and manage transactions securely.
- Personalization: To personalize your shopping experience (e.g., saving preferences and order history).
- Website Improvement: To enhance website functionality, troubleshoot issues, and improve user experience.
- Service Updates: To send important updates regarding orders, product availability, or changes to our services.
- Marketing: To deliver targeted promotions, offers, and messages tailored to your interests.
- Legal Compliance: To comply with legal obligations and prevent fraudulent activity.
3. How We Use Your Information
At Scopione.com, we use the information collected from you for various purposes to enhance your experience, provide efficient services, and ensure legal compliance. Below is a detailed breakdown of how we use your data:
3.1 Processing and Fulfilling Orders
- To verify and process your purchase transactions.
- To manage shipping and delivery, ensuring your orders are sent to the correct address.
- To handle returns, refunds, and post-purchase customer service inquiries.
3.2 Communication
A. Customer Support
- To respond to your questions, requests, or concerns via email, phone, or live chat.
B. Transactional Updates
- To send order confirmations, invoices, and notifications related to your purchases or account activity.
C. Account Management
- To manage and communicate details about your account, such as password resets or subscription updates.
3.3 Marketing and Promotions
- To send newsletters, promotions, and special offers tailored to your interests (only if you have opted in).
- To conduct email or SMS campaigns, notifying you of new products, discounts, or events.
- To deliver personalized advertisements on Scopione.com or other platforms, as permitted by applicable laws.
3.4 Improving Website Functionality
- To analyze user behavior and preferences on the site, helping us optimize your browsing experience.
- To fix bugs, improve website navigation, and enhance product recommendations based on your interactions.
3.5 Personalization
- To provide product suggestions, curated collections, and personalized shopping experiences based on your preferences and past purchases.
- To save your preferences (e.g., wishlist items or saved searches) for future visits.
3.6 Legal Compliance
- To comply with legal obligations, such as tax reporting, fraud prevention, and regulatory requirements.
- To fulfill requests from law enforcement or government entities when legally mandated.
3.7 Fraud Prevention and Security
- To detect and mitigate fraudulent activity, unauthorized access, or abuse of our website.
- To ensure secure transactions and safeguard your personal data against potential breaches.
3.8 Analytics and Research
- To gather insights about website performance and customer preferences.
- To conduct research and surveys that help us improve our services, product offerings, and overall user satisfaction.
3.9 Third-Party Integrations
- To facilitate services provided by third parties, such as payment gateways, shipping providers, and marketing platforms.
- To share anonymized or aggregated data (e.g., for market analysis) without identifying individual users.
3.10 Employee Training and Internal Use
- To train staff in providing better customer service and ensuring they understand the privacy and security standards at Scopione.com.
5. Your Rights
We value your privacy and are committed to ensuring transparency and giving you control over your personal information. Depending on your location and applicable privacy laws, you may have the following rights concerning your personal data:
5.1 Right to Access
You have the right to request access to the personal information we hold about you. This includes details such as:
- The categories and specific pieces of data we have collected.
- The purposes for collecting your data.
- The third parties with whom we have shared your data.
5.2 Right to Rectification
If you believe any of your personal information is incorrect, incomplete, or outdated, you have the right to request that we correct or update it.
5.3 Right to Deletion (Right to Be Forgotten)
You can request the deletion of your personal information under certain circumstances, such as:
- When the data is no longer necessary for the purposes for which it was collected.
- If you withdraw your consent (where data processing was based on consent).
- When data processing is unlawful.
- If you object to data processing, and there are no overriding legitimate grounds.
Note: Some data may be retained if required by law or for legitimate business purposes (e.g., record-keeping or fraud prevention).
5.4 Right to Data Portability
You may request a copy of your personal information in a structured, commonly used, and machine-readable format. Where feasible, you can also request that this data be transferred directly to another organization of your choice.
5.5 Right to Restrict Processing
You can ask us to restrict the processing of your data under certain conditions, such as:
- If you contest the accuracy of the data.
- If the processing is unlawful, but you oppose deletion.
- If we no longer need the data, but you require it for legal claims.
- If you have objected to processing pending verification of overriding legitimate grounds.
5.6 Right to Object
You have the right to object to the processing of your personal information for:
- Direct marketing purposes: Including profiling related to direct marketing.
- Data processing based on legitimate interests or public interest, unless we can demonstrate compelling legitimate grounds for the processing.
5.7 Right to Withdraw Consent
If we rely on your consent to process your personal information, you have the right to withdraw that consent at any time. Withdrawing consent will not affect the legality of any processing conducted prior to the withdrawal.
5.8 Right to Non-Discrimination (California Residents)
Under the California Consumer Privacy Act (CCPA), you have the right to not be discriminated against for exercising your privacy rights. This means we will not:
- Deny you goods or services.
- Charge you different prices or rates.
- Provide a different level of service or quality.
5.9 Right to Know (California Residents)
If you are a California resident, you have the right to request information about:
- The categories and specific pieces of personal information we have collected about you.
- The categories of sources from which the information is collected.
- The purposes for collecting or selling the information.
- The categories of third parties with whom we share personal information.
- If applicable, the categories of personal information sold or disclosed for business purposes.
5.10 Automated Decision-Making
Where applicable, you can request not to be subject to decisions based solely on automated processing (e.g., algorithms) that significantly affect you unless necessary for entering into a contract or based on your explicit consent.
5.11 Right to File a Complaint
If you believe we have violated your privacy rights, you have the right to file a complaint with a data protection authority or relevant regulatory body in your jurisdiction.
How to Exercise Your Rights
To exercise any of these rights, please contact us at:
- Email: [email protected]
- Phone: 1-800-820-6346
We may need to verify your identity before processing your request to ensure your information is protected and secure.
Response Timeline
We will acknowledge your request within 30 business days and respond in full within the timeframes required by applicable laws (e.g., 30 days under GDPR, 45 days under CCPA).
7. Data Security
7.1 Our Commitment to Data Security
At Scopione.com, safeguarding your personal information is a top priority. We implement robust measures to protect your data from unauthorized access, misuse, disclosure, alteration, and destruction. While we strive to use industry-standard practices to ensure your data’s security, no online system is entirely infallible. Therefore, we cannot guarantee absolute protection.
7.2 Measures We Take to Protect Your Information
Encryption:
- All sensitive data transmitted to and from our website (e.g., payment details and personal information) is encrypted using Secure Sockets Layer (SSL) or Transport Layer Security (TLS) protocols.
- Sensitive data stored on our systems is encrypted where appropriate to provide an additional layer of security.
Access Controls:
- Access to personal data is restricted to authorized personnel who require it to perform specific tasks, such as processing orders or providing customer support.
- We use strict authentication mechanisms, including unique user IDs, strong passwords, and two-factor authentication (2FA), to manage access securely.
Firewalls and Monitoring:
- Firewalls are in place to protect our network and servers from unauthorized access.
- Real-time monitoring tools detect and respond to potential threats, such as unusual activity or attempted breaches.
Regular Security Audits:
- We conduct routine audits and vulnerability assessments to identify and mitigate potential security risks.
- Independent third-party security firms may be engaged to perform penetration testing and ensure compliance with industry best practices.
Payment Security:
- Payment transactions are securely processed through trusted third-party payment gateways that comply with PCI DSS (Payment Card Industry Data Security Standard) requirements.
- Scopione.com does not store complete credit card details on its servers.
Data Minimization and Anonymization:
- We collect and retain only the minimum necessary personal data required for its intended purpose.
- Whenever possible, data is anonymized to reduce the risk of identification.
7.3 Your Role in Data Security
While we take extensive steps to secure your data, your role in maintaining security is equally important:
- Use Strong Passwords: Create unique, complex passwords for your account and avoid reusing passwords across multiple websites.
- Be Vigilant: Watch for phishing attempts or suspicious emails claiming to represent Scopione.com. We will never request sensitive information, such as your password, via email.
- Secure Your Devices: Keep your devices protected with up-to-date antivirus software and ensure your web browser is secure.
7.4 Response to Security Breaches
In the unlikely event of a data breach, Scopione.com will:
- Promptly investigate the scope and cause of the breach.
- Notify affected individuals and relevant regulatory authorities as required by applicable laws (e.g., GDPR or CCPA).
- Provide guidance on steps you can take to protect yourself.
- Implement corrective measures to prevent future breaches, including reviewing and updating our security protocols.
7.5 Third-Party Service Providers
We require all third-party service providers handling personal data on our behalf to adhere to strict data security practices. Contracts with these providers include provisions for data protection, confidentiality, and compliance with relevant regulations.
7.6 Ongoing Improvements
We are committed to continuously improving our security measures to adapt to evolving threats and technologies. Feedback from security experts, customer concerns, and advancements in cybersecurity are regularly incorporated into our practices.
8. Retention of Data
8.1 Purpose of Data Retention
Why Data is Retained:
Scopione.com retains data to:
- Process transactions, fulfill orders, and provide customer support.
- Comply with legal obligations (e.g., tax laws and reporting requirements).
- Resolve disputes, detect fraudulent transactions, and enforce policies.
- Improve services, analyze trends, and enhance user experience.
8.2 Retention Periods for Different Categories of Data
1. Account Information:
- Retained for the duration of the user’s active account.
- After account deactivation, data is retained for up to 3 years for auditing, security, or compliance purposes, unless otherwise requested.
2. Order Information (e.g., purchase history, shipping, and billing information):
- Retained for 7 years after the transaction is completed (based on tax and legal compliance).
3. Customer Support Data (e.g., support tickets, chat logs, emails):
- Retained for 5 years after the inquiry is resolved.
4. Marketing Preferences and Communications:
- Retained until the user unsubscribes or withdraws consent.
- Data related to email opens, clicks, and preferences is retained to provide personalized marketing but deleted upon user request.
5. Cookies and Tracking Data:
- Session Cookies: Deleted after the browsing session ends.
- Persistent Cookies: Retained for a set duration (e.g., 1 month, 1 year) or until manually cleared by the user.
8.3 Criteria for Determining Retention Periods
Scopione.com uses the following factors to determine the retention period for each data type:
- Legal Requirements: Compliance with laws (e.g., tax regulations, consumer protection laws).
- Contractual Obligations: Retaining records necessary for ongoing service agreements.
- Business Needs: Ensuring operational continuity (e.g., fraud prevention, providing refunds).
- User Requests: Adjusting retention periods based on user requests, where legally permitted.
8.4 Secure Deletion of Data
Personal data that is no longer required is securely deleted or anonymized to prevent unauthorized access.
Methods include:
- Secure deletion from databases.
- Regular audits to ensure expired data is purged.
8.5 User Controls and Rights Related to Data Retention
- Request for Deletion: Users can request the deletion of their personal information through the “Contact Us” form.
- Exceptions to Deletion Requests: Certain data may be retained to comply with legal obligations (e.g., invoices for tax audits).
- Account Deletion: Upon account deletion, personal information is removed except where retention is required by law or for legitimate business purposes.
9. Children’s Privacy
9.1 Purpose of This Section
Scopione.com values the privacy of all its users, including children. This section outlines our policies regarding the collection, use, and protection of personal information from children, ensuring compliance with laws such as the Children’s Online Privacy Protection Act (COPPA) in the United States and other applicable regulations globally.
9.2 No Data Collection from Children Under 13 (or Applicable Age Limit)
Scopione.com is not directed at, nor intentionally targeted toward, children under the age of 13 (or the minimum age of consent as required by relevant jurisdictions, such as 16 in certain EU countries). We do not knowingly collect or solicit personal information from children.
If we discover that personal data from a child under the applicable age has been collected without verifiable parental consent, we will take immediate steps to delete that information.
9.3 How We Address Unintentional Data Collection
If we become aware that personal information from a child under the applicable age has been inadvertently collected:
- Notification: We will notify the parent or guardian (if possible) and explain the situation.
- Deletion: We will promptly delete the child’s data from our records unless there is a lawful reason to retain it.
- Guidance: We may provide information to parents on how they can monitor their child’s online activities and take further actions if necessary.
9.4 Parental Rights and Control
Parents and guardians have the right to:
- Review: Request a copy of any personal data collected (if applicable).
- Request Deletion: Request the deletion of their child’s personal information.
- Revoke Consent: Revoke any consent previously provided on behalf of their child.
To exercise these rights, parents can contact us at [insert support contact email/phone number].
9.5 Educational Content and General Safety Advice for Families
Although Scopione.com does not offer services or products specifically directed at children, we encourage families to practice safe online behavior by:
- Using parental controls and monitoring software when children access online platforms.
- Educating children about the importance of not sharing personal information online.
- Reviewing purchases and online browsing activities, especially on e-commerce sites.
9.6 External Resources for Protecting Children Online
For additional guidance on online safety, we recommend visiting the following resources:
- Federal Trade Commission (FTC) COPPA Page
- Common Sense Media
- Internet Matters (EU-focused guidance)
9.7 Updates to This Section
This section may be updated to reflect changes in laws, practices, or technological developments related to children’s online privacy. We encourage users to review this section periodically for any updates.
10. Third-Party Links
At Scopione.com, we strive to provide a seamless and informative shopping experience by offering links to third-party websites for additional resources, related services, or information. However, we want our users to understand how interacting with third-party links may impact their privacy.
10.1 Purpose of Third-Party Links
Scopione.com may include links to third-party websites for the following purposes:
- Partner Products and Services: Links to affiliated vendors, shipping partners, or manufacturers for extended product information.
- Social Media Sharing and Engagement: Links to Scopione’s official pages on platforms like Instagram, Facebook, and YouTube to foster community engagement.
- External References: Links to relevant automotive blogs, articles, or videos for tutorials, fitment guides, or industry updates.
10.2 No Control Over Third-Party Content
While we carefully select external resources, we do not control the content, policies, or practices of third-party websites. When you click a third-party link:
- You are directed to a website that operates independently of Scopione.com.
- The external website may have its own terms of service and privacy policy.
- We cannot guarantee the accuracy, reliability, or availability of their content.
10.3 Privacy Practices of Third-Party Websites
Third-party websites may collect personal information or use cookies, tracking technologies, or analytics tools that differ from those used by Scopione.com. Key considerations:
- Data Collection: The third party may request personal information, such as login credentials or payment details, that Scopione.com does not control.
- Cookies and Tracking: Some third-party sites may use cookies or trackers to monitor user behavior for marketing purposes.
- Responsibility: Scopione.com is not responsible for the privacy practices or policies of third-party sites. We recommend reviewing their privacy policies before interacting with them.
10.4 Security and Risks of Third-Party Interactions
- Security Concerns: Scopione.com cannot vouch for the security of external sites, which may pose risks such as phishing attempts, malware, or unauthorized data collection.
- Safe Browsing Tips: Ensure the website URL is secure (using “https://”) before submitting any sensitive information. Avoid interacting with suspicious pop-ups or unexpected redirects.
10.5 Recommendations for User Safety
To protect your privacy when visiting third-party websites, we recommend:
- Reading the third-party privacy policies and terms of service.
- Avoiding the submission of sensitive information unless you trust the source.
- Returning to Scopione.com for further browsing or purchases if you have concerns about an external link.
10.6 Disclaimer
The inclusion of third-party links on Scopione.com does not imply endorsement, affiliation, or partnership unless explicitly stated. These links are provided solely for the user’s convenience and informational purposes.
11. Policy Updates
At Scopione.com, we prioritize transparency and aim to keep our customers and users informed about any changes to our privacy practices. This section explains how updates to our Privacy Policy are made, communicated, and how they may affect your rights.
11.1 Frequency of Updates
We may update our Privacy Policy periodically to reflect changes in our business operations, legal obligations, technological advancements, or other relevant factors.
Updates may typically occur under the following circumstances:
- When we introduce new services, features, or partnerships.
- In response to changes in privacy regulations (e.g., GDPR, CCPA, or other legal requirements).
- When security updates or changes to data collection, processing, or sharing practices are implemented.
11.2 Notification of Changes
When significant changes are made to our Privacy Policy, we will notify you through one or more of the following methods:
- Posting an updated version of the Privacy Policy on our website with a visible banner or notification.
- Sending an email notification to registered users or customers, if necessary.
11.3 Types of Changes
The types of changes that may trigger updates include, but are not limited to:
- Material Changes: Updates that significantly affect your rights or how your data is handled (e.g., new data-sharing partners, changes regarding sensitive data, cross-border transfers).
- Minor Updates: Clarifications, typo corrections, or changes that do not affect the substance of the policy.
11.4 User Responsibility
We encourage users to regularly review our Privacy Policy to stay informed about how we collect, use, and protect their personal information.
By continuing to use our website and services after updates are posted, you acknowledge and accept the revised terms of the Privacy Policy unless otherwise specified.
11.5 Opt-In for Critical Changes
For updates that require explicit consent (e.g., introducing data collection practices not previously covered), users will be prompted to opt-in or provided with an opportunity to review and accept the changes.
11.6 Contact for Policy Questions
If you have any questions or concerns regarding changes to the Privacy Policy, please feel free to contact us at [insert relevant contact information].
11.7 Effective Date of Updates
For transparency, we may include a brief summary of significant changes at the top of the Privacy Policy or provide a changelog for reference.
12. Contact Us
At Scopione, we value transparency and are committed to addressing your privacy-related concerns. If you have questions about how we handle your personal data, need assistance exercising your privacy rights, or wish to report a data-related issue, please contact us using the information provided below.
12.1 Ways to Get in Touch
Email Support:
- Email Address: [email protected]
- Purpose: For general questions about our privacy practices, requests to access, correct, or delete your personal information, or to opt-out of marketing communications.
Phone Support:
- Phone Number: 1-800-820-6346
- Purpose: For urgent privacy-related inquiries or additional assistance.
Contact Form:
- Website: https://scopione.com/contact-us/
- Purpose: If you prefer using an online form, you can reach out via our dedicated contact page for privacy-related matters.
12.2 Information to Include in Your Request
To ensure we can respond promptly and effectively, please provide the following details when contacting us:
- Your full name.
- The email address associated with your account (if applicable).
- A detailed description of your request or concern (e.g., type of data request, correction needed, or opt-out preference).
- Any supporting documents or screenshots (if relevant).
12.3 Response Time
We strive to respond to all privacy-related inquiries within 7–14 business days.
For complex cases, such as data deletion requests or complaints, we will keep you updated on our progress and provide timely follow-ups.
12.4 Escalation and Complaints
If you feel that your request has not been adequately resolved, you may request escalation to a privacy officer or manager.
Depending on your location, you may also have the right to contact your local data protection authority (e.g., the Information Commissioner’s Office (ICO) for UK users or relevant EU authorities under GDPR).
12.5 Business Hours for Support
- Monday – Friday: 10:00 AM – 6:00 PM (EST)
- Saturday – Sunday: Closed
13. Jurisdiction-Specific Rights
We respect and adhere to privacy regulations across different jurisdictions. Depending on your location, you may have specific privacy rights under applicable laws. Below is a breakdown of these rights based on regional regulations:
13.1 General Data Protection Regulation (GDPR) – European Union (EU)/European Economic Area (EEA)
If you reside in the EU/EEA, you have the following rights under the General Data Protection Regulation (GDPR):
- Right to Access:
You can request a copy of the personal data we hold about you and information on how we process your data. - Right to Rectification:
You have the right to request corrections to any incomplete or inaccurate data. - Right to Erasure (“Right to be Forgotten”):
You can request that we delete your personal data when it’s no longer necessary for the purposes for which it was collected. - Right to Restrict Processing:
You may request a temporary halt to processing your data if you contest its accuracy or object to its use. - Right to Data Portability:
You can request that your personal data be transferred to another service provider in a machine-readable format. - Right to Object:
You have the right to object to data processing for direct marketing, profiling, or other legitimate interest-based uses. - Right to Withdraw Consent:
You can withdraw consent for data collection at any time for processing activities that rely on your consent. - Right to File a Complaint:
You can lodge a complaint with your country’s data protection authority if you believe we’ve mishandled your personal data.
13.2 California Consumer Privacy Act (CCPA) – California, USA
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to Know:
You can request information about the categories and specific pieces of personal information we’ve collected, the sources of that data, our purpose for collecting it, and any third parties with whom we’ve shared it. - Right to Delete:
You have the right to request that we delete any personal data we have collected from you, subject to certain exceptions (e.g., for completing transactions or legal compliance). - Right to Opt-Out of Data Sales:
You may opt-out of the sale of your personal data. Although Scopione.com does not sell personal data, we include this right for transparency. - Right to Non-Discrimination:
You have the right not to receive discriminatory treatment if you exercise your CCPA rights (e.g., we will not deny you goods or services or charge you different prices for exercising your privacy rights).
To make a request under CCPA, you can contact us via email at [insert email address]. Please include “CCPA Request” in your subject line for faster processing.
13.3 Personal Information Protection and Electronic Documents Act (PIPEDA) – Canada
If you reside in Canada, you have the following rights under the Personal Information Protection and Electronic Documents Act (PIPEDA):
- Right to Access:
You can request access to your personal information and details about how it has been used or disclosed. - Right to Challenge Accuracy:
You can request corrections or updates to your personal data if it is inaccurate or incomplete. - Right to Withdraw Consent:
You may withdraw your consent for data collection where consent is required. - Right to File a Complaint:
You can file a complaint with the Office of the Privacy Commissioner of Canada if you believe your data has been mishandled.
13.4 Privacy Act – Australia
If you are an Australian resident, you have the following rights under the Privacy Act 1988:
- Right to Access:
You can request access to your personal information. - Right to Correction:
You can request that incorrect or incomplete information is corrected. - Right to Anonymity:
In certain cases, you can interact with us without providing personal data or by using a pseudonym. - Right to File Complaints:
You can file a complaint with the Office of the Australian Information Commissioner (OAIC) if you believe we’ve breached the Australian Privacy Principles (APPs).
13.5 Brazilian General Data Protection Law (LGPD) – Brazil
If you reside in Brazil, you have the following rights under the Lei Geral de Proteção de Dados (LGPD):
- Right to Access:
You can request confirmation of whether we process your personal data and request a copy. - Right to Rectification:
You can request corrections or updates to inaccurate or incomplete personal data. - Right to Anonymization, Blocking, or Deletion:
You can request anonymization, blocking, or deletion of unnecessary or excessive data. - Right to Data Portability:
You can request your personal data in a portable format for transfer to another service. - Right to Information:
You can request details about any data-sharing with third parties. - Right to Withdraw Consent:
You can withdraw your consent for data collection and processing at any time.
13.6 Additional Rights for Other Regions
We also comply with privacy laws for other regions, including:
- UK: The UK Data Protection Act (post-Brexit regulations).
- New Zealand: The New Zealand Privacy Act.
If your country has privacy laws not specifically listed here, we will respect your rights to the extent applicable.
14. International Data Transfers
At Scopione.com, we understand the importance of protecting your personal data, regardless of where it is processed or stored. This section outlines how we manage international data transfers to comply with applicable data protection laws, including the General Data Protection Regulation (GDPR) for users within the European Economic Area (EEA) and other international regulations.
14.1. Data Storage Locations
Scopione.com’s servers and data centers may be located in various jurisdictions, including:
- Primary data centers in the United States.
- Backup and cloud storage providers that may have servers in other countries.
Your personal information may be transferred to and processed in a country different from your country of residence. These countries may have different data protection laws and, in some cases, may not offer the same level of protection as your home jurisdiction.
14.2. Reasons for International Data Transfers
We may transfer your data internationally for the following purposes:
- Processing and fulfilling orders, payments, and shipping.
- Providing customer support services.
- Enhancing website performance using global Content Delivery Networks (CDNs).
- Integrating with third-party tools for analytics, advertising, and marketing.
- Maintaining business continuity, including backups and disaster recovery services.
14.3. Legal Basis for International Transfers
To ensure your personal data remains protected during international transfers, Scopione.com adheres to applicable data transfer laws. When data is transferred outside the EEA or other jurisdictions with strict privacy regulations, we rely on the following legal mechanisms:
- Standard Contractual Clauses (SCCs): We use SCCs approved by the European Commission to ensure your data receives the same level of protection as within the EEA.
- Data Processing Agreements (DPAs): We enter into DPAs with third-party service providers, which include data transfer clauses to ensure compliance.
- Adequacy Decisions: In some cases, your data may be transferred to countries deemed by the European Commission or other relevant authorities to provide adequate data protection.
14.4. Safeguards and Security Measures
To protect your data during international transfers, we implement the following safeguards:
- Encryption: Data is encrypted during transmission and at rest using industry-standard protocols (e.g., SSL/TLS).
- Access Controls: Access to your data is restricted to authorized personnel with a business need to access the information.
- Regular Audits: We conduct regular security assessments of our systems and third-party service providers to ensure ongoing compliance.
14.5. Your Rights Regarding International Transfers
You have the following rights concerning your personal data transferred internationally:
- Right to Be Informed: You can request details about where your data is stored and processed.
- Right to Access: You may request a copy of the safeguards in place for international transfers (e.g., SCCs).
- Right to Object: Under GDPR, you can object to the transfer of your data outside your country of residence if you believe it may jeopardize your privacy rights.
- Data Portability: If applicable, you can request that your data be transferred to another service provider.
14.6. Third-Party Service Providers
We may share your personal data with trusted third-party providers who assist us in delivering our services, including:
- Payment Processing: Providers such as Stripe and PayPal.
- Shipping and Logistics: Providers such as USPS and FedEx.
- Analytics and Marketing: Platforms such as Google Analytics and Meta (Facebook) for advertising and performance tracking.
These providers may process your data in other countries, and we ensure they meet all required legal obligations.
14.7. Updates to International Data Transfer Practices
We continuously review our data transfer practices to comply with evolving data protection laws and regulations. Any significant changes to our international data transfer methods will be reflected in this Privacy Policy, and you will be notified as required.
15. Automated Decision-Making and Profiling
Automated decision-making and profiling involve the use of algorithms and systems to make decisions or predictions based on user data with little to no human intervention. At Scopione.com, these processes are used to enhance the shopping experience, streamline operations, and ensure website security. Below is an expanded overview tailored to Scopione.com.
15.1 What is Automated Decision-Making and Profiling?
- Automated Decision-Making: Refers to the ability of software or algorithms to make decisions without human involvement. Examples include fraud detection during checkout and dynamic pricing adjustments.
- Profiling: Involves analyzing user data to make predictions or create profiles based on browsing behavior, purchasing patterns, and preferences (e.g., recommending specific carbon fiber products based on past purchases).
15.2 Types of Automated Decision-Making and Profiling
1. Personalized Product Recommendations
- We may use your browsing history, product searches, and previous purchases to suggest products that align with your interests.
- For example, if you frequently browse carbon fiber hood replacements, our system may display related items, such as matching fenders or spoilers.
2. Fraud Detection and Payment Security
- Automated systems may review transaction data to detect unusual patterns that could indicate fraudulent activity.
- This includes evaluating IP addresses, payment attempts, and shipping details to flag potentially suspicious orders.
3. Targeted Advertising
- We use tools such as Facebook Pixel and Google Ads to display personalized advertisements based on your interactions with Scopione.com.
- This may include retargeting ads showing you products you previously viewed or promotions tailored to your browsing behavior.
4. Inventory Management and Dynamic Pricing (if applicable)
- If Scopione uses dynamic pricing, algorithms may adjust product prices based on market demand or stock levels to ensure competitive pricing and availability.
15.3 User Rights Related to Automated Decision-Making and Profiling
In accordance with data protection regulations (such as GDPR), users have the following rights regarding automated decision-making and profiling:
1. Right to Object
- You have the right to object to profiling used for direct marketing purposes.
- To opt out of personalized advertising, you can adjust your cookie preferences or use “Do Not Track” options in your browser.
2. Right to Request Human Intervention
- If you believe that an automated decision has negatively impacted you (e.g., flagged your order incorrectly), you can request a manual review by contacting our support team.
3. Right to Access and Transparency
- You may request information about the logic behind automated decisions that affect you and receive clarification on how your data is processed.
4. Right to Correct or Update Data
- Ensure the information used for profiling is accurate by updating your profile details on our website or contacting us directly for corrections.
15.4 How to Exercise Your Rights
1. Contact Method:
- If you wish to exercise any of the above rights, you can reach out to us via our contact page or email.
2. Response Time:
- We aim to respond to your inquiries within 30 days, in accordance with applicable laws.
15.5 Safeguards in Place
- Scopione.com employs strict security measures to ensure that automated processes do not result in biased or harmful outcomes.
- Algorithms undergo regular audits to prevent inaccuracies, discrimination, or unjust profiling.
- We avoid using sensitive data (e.g., race, religion, or health information) for automated decision-making purposes.
16. Third-Party Advertising and Analytics
Scopione.com leverages third-party advertising and analytics services to enhance the user experience, improve website performance, and deliver relevant content and promotions. This section outlines how these services work, the types of information collected, and how users can manage their data preferences.
16.1. Types of Third-Party Services Used
Advertising Platforms:
We partner with advertising platforms such as Google Ads, Facebook Ads, and Instagram Ads to display personalized ads based on your browsing history, interests, and interactions with Scopione.com.
Analytics Services:
We use analytics tools, such as Google Analytics, to monitor website traffic, user behavior, and engagement trends. These insights help us optimize website performance and tailor content to meet user preferences.
Retargeting and Remarketing:
Cookies and tracking pixels enable us to show you relevant ads on other websites and platforms after visiting Scopione.com. These ads remind you of products you’ve shown interest in.
Affiliate and Partner Networks:
Occasionally, third-party affiliate partners track user interactions to monitor referral sales and commissions.
16.2. Data Collected by Third Parties
Third-party services may collect the following types of data:
- Device Information: IP address, browser type, and operating system.
- Website Interactions: Pages visited, products viewed, and time spent on each page.
- Purchase Behavior: Products added to the cart or purchased.
- Demographic Information: Age range, location (based on IP address), and inferred interests based on browsing patterns.
16.3. How Third-Party Advertising Works
Cookies and Pixels:
Cookies and tracking pixels (such as the Facebook Pixel) track user interactions on Scopione.com and associate them with user profiles on social media and advertising platforms.
These technologies allow us to:
- Serve relevant ads (e.g., reminding you of items left in your cart).
- Optimize ad spending by targeting users more likely to engage or convert.
Behavioral Targeting:
Ads may be customized based on your past visits to Scopione.com. For example, car enthusiasts may see premium carbon fiber parts tailored to their vehicle’s make and model.
16.4. Managing Your Preferences and Opting Out
Cookie Consent Management:
Scopione.com provides a cookie consent banner to inform users about data collection and allow you to accept or reject non-essential cookies.
Ad Preferences on Platforms:
- Google Ads: Manage your ad settings through Google Ad Settings to opt out of personalized ads.
- Facebook and Instagram: Adjust your ad preferences within your Facebook account settings to control how your data is used for advertising.
Opting Out of Analytics Tracking:
Install the Google Analytics Opt-out Browser Add-on to prevent Google Analytics from collecting your data.
General Opt-Out Tools:
- Network Advertising Initiative (NAI): https://optout.networkadvertising.org
- Digital Advertising Alliance (DAA): https://optout.aboutads.info
16.5. Data Sharing with Third Parties
We only share necessary data with third-party advertising and analytics providers to perform the services described above. These third parties are contractually obligated to protect your data and use it solely for authorized purposes.
16.6. Your Rights and Control
Right to Withdraw Consent:
You may withdraw your consent for non-essential data collection at any time by adjusting your cookie preferences.
Requesting Data Deletion:
To delete your personal data associated with advertising and analytics services, please use the self-service options provided by each ad platform.
16.7. Policy Updates
This section may be updated as we introduce new third-party tools or comply with changes in data protection regulations. Updates will be communicated through revisions to our Privacy Policy.
17. Data Breach Notification
To comply with applicable laws and demonstrate transparency, Scopione.com is committed to notifying affected users in the event of a data breach that may expose personal information. This section outlines our policies and procedures for mitigating risks and protecting user data.
17.1 Definition of a Data Breach
A data breach occurs when sensitive, confidential, or otherwise protected data is accessed, disclosed, or used without authorization. Examples include, but are not limited to:
- Unauthorized access to user accounts or databases.
- Theft, loss, or exposure of personal information, such as names, email addresses, payment information, or shipping details.
- Hacking, malware, ransomware, or any deliberate attempt to compromise user data.
17.2 Breach Detection and Monitoring
Scopione.com employs the following methods to detect and monitor potential breaches:
- Real-time monitoring of servers and databases for unusual activity.
- Routine security audits and vulnerability assessments.
- Use of intrusion detection systems (IDS) and firewalls.
- Alerts from third-party service providers and partners (e.g., payment gateways, hosting providers).
17.3 Notification Triggers
A data breach notification will be triggered if the breach is likely to result in:
- Financial loss.
- Identity theft.
- Disruption of website services.
- A significant impact on user privacy or confidentiality.
Scopione.com will evaluate whether the breach meets legal thresholds for reporting based on jurisdiction-specific laws (e.g., GDPR, CCPA).
17.4 Notification Timeline
Once a data breach has been identified:
- Immediate internal notification: Our security team is notified within minutes and initiates an investigation.
- Initial containment and assessment: The source of the breach is contained within 24–48 hours to prevent further damage.
- User notification: Depending on the severity, affected users will be notified within 72 hours, as required by GDPR, or sooner if necessary.
17.5 Information Provided in the Notification
When notifying users, Scopione.com will provide clear and detailed information, including:
- A description of the breach and how it occurred.
- The types of data involved (e.g., email addresses, payment information, shipping details).
- Steps taken to contain and resolve the breach.
- Recommended actions for users (e.g., password reset, enabling two-factor authentication, monitoring financial accounts).
- Contact details for further assistance (e.g., customer support, privacy team).
17.6 Methods of Notification
Users may be notified through the following methods:
- Email to the address associated with their account.
- Notices on the Scopione.com website.
- Social media announcements (if necessary for public awareness).
- Direct phone calls for high-risk cases.
17.7 Reporting to Authorities
If required by law, Scopione.com will report the data breach to relevant regulatory bodies, such as:
- GDPR Compliance: Notify supervisory authorities within 72 hours if the breach affects EU residents.
- CCPA Compliance: Notify affected California residents if the breach meets the criteria for personal data exposure.
Authorities may include data protection commissions, state agencies, and law enforcement.
17.8 Mitigation Measures
After the breach has been contained, Scopione.com will:
- Conduct a post-breach investigation to identify vulnerabilities.
- Implement stronger security controls (e.g., enhanced encryption, improved user authentication).
- Offer assistance to affected users (e.g., credit monitoring services for financial breaches).
17.9 Ongoing Improvements
To prevent future breaches, Scopione.com will:
- Provide regular security training to employees.
- Perform periodic penetration testing to assess vulnerabilities.
- Partner with cybersecurity firms for independent security assessments.
18. Effective Date
18.1 Effective Date and Policy Updates
Effective Date: January 3, 2025
At Scopione.com, we value your privacy and are committed to keeping you informed about how we handle your personal information. This privacy policy is effective as of the date mentioned above.
We may update this policy periodically to reflect changes in our business operations, legal requirements, or user feedback. When updates are made, we will revise the “Effective Date” to indicate when the latest changes occurred.
18.2 Notification of Changes
We will notify you of significant updates to this privacy policy through the following methods:
- Website Notice: A notification banner or pop-up may appear on our homepage or during the checkout process.
- Email Communication: If you have provided your email address for account or order purposes, we may send an email notification regarding important changes to the privacy policy.
By continuing to use our website and services after any changes to the privacy policy, you acknowledge that you have read and understood the updated policy. We encourage you to review this page periodically to stay informed about how your personal data is protected.