Privacy Policy

This Privacy Policy outlines how escapewillow.com (“we”, “our”, “us”, or “the Site”) processes, uses, and safeguards your personal information. We recognize the importance of protecting the privacy of all individuals whose data we handle and are committed to maintaining the highest standards of data protection in accordance with applicable privacy laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

1. Commitment to Privacy and Data Protection

At escapewillow.com, your privacy is of paramount importance. We are firmly committed to handling your personal data responsibly and transparently, ensuring it remains secure at all times. This policy explains our practices regarding the collection, processing, and use of your information when you interact with our website, communicate with us, or utilize our services.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all personal data collected through escapewillow.com and our associated services. We act as the “data controller” in relation to the processing of your personal data under applicable data protection laws. If you have any questions or concerns regarding the way your data is managed, please contact us using the details provided at the end of this policy.

3. Categories of Data Processed

We may collect and process the following categories of personal data:

• Usage Data: Includes information such as your browser type and version, IP address, time zone setting, access times, referring website addresses, and interactions with site elements.

• Account Data: Includes your name, billing and shipping addresses, email address, and telephone number as provided during registration or checkout processes.

• Profile Data: Includes your purchase history, activity on escapewillow.com, user preferences, and behavioral insights derived from interactions with our services.

• Communication Data: Includes correspondence records from messages sent via our contact forms, support requests, or other interaction history.

• Technical Data: Includes device identifiers, operating system details, browser configuration, and other technical variables required to support the functionality and security of our website.

• Transaction Data: Includes details of products or services purchased, order status, payment method, and delivery logistics.

• Preference Data: Includes your communication preferences, consent to receive marketing from us or third parties, and interests in specific products or offerings.

4. Legal Bases for Processing

We process your personal data pursuant to the following legal bases:

• Contractual Necessity: To fulfill our contractual obligations to you, such as delivering the products or services you have requested or processing a purchase.

• Legitimate Interests: For purposes such as improving our services, conducting internal analytics, and ensuring network and information security, provided that such interests are not overridden by your rights and interests.

• Consent: When you have provided explicit consent for specific processing activities, such as subscribing to newsletters or accepting cookies that go beyond strictly necessary types.

• Legal Obligation: For compliance with a legal obligation to which we are subject, including record-keeping or regulatory requirements.

5. Your Rights

You have certain rights concerning your personal data, subject to applicable law:

• Right of Access: You may request access to the data we hold about you.

• Right to Rectification: You may request that we correct any inaccurate or incomplete personal information.

• Right to Erasure: You may request the deletion of your personal data, subject to our legal obligations to retain certain records.

• Right to Restriction of Processing: You may request that we limit how we use your data in certain circumstances.

• Right to Data Portability: You have the right to receive your personal data in a structured, commonly used, and machine-readable format and request transmission to another data controller.

To exercise any of these rights, please contact us at [email protected].

6. Security Measures

We have implemented robust technical and organizational measures to protect your data, including:

• End-to-end encryption during transmission and at rest;
• Role-based access controls and authentication protocols;
• Regular security audits and vulnerability assessments;
• Data backups and disaster recovery planning;
• Ongoing staff training on data protection and privacy practices.

While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee absolute security.

7. International Transfers

If your personal data is transferred outside of the European Economic Area (EEA) or your jurisdiction, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission and compliance with other regional requirements. We take all necessary steps to ensure your data is treated securely, in accordance with this Privacy Policy and applicable law.

8. Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including satisfying legal, accounting, or reporting obligations. Specific retention periods include:

• Usage and Technical Data: up to 24 months
• Account and Profile Data: retained during the active account period and up to 3 years after inactivity
• Communication Data: up to 3 years for support and reference
• Transaction Data: retained for accounting and tax compliance for up to 7 years
• Cookie data: as outlined in our Cookie Policy

9. Cookie Policy

We use cookies and similar technologies to enhance user experience and improve website functionality. Types of cookies we use include:

• Essential Cookies: Required for basic functionality; for example, to maintain session integrity or process checkout.
• Functional Cookies: Allow the website to remember preferences such as language or location.
• Analytics Cookies: Help us understand how you interact with escapewillow.com in aggregate, aiding performance improvements.
• Performance and Advertising Cookies: Used for targeted advertising and campaign measurement.

10. Cookie Management and Compliance

You can manage your cookie preferences at any time via the cookie banner or browser settings. Under GDPR and CCPA, essential cookies are permitted without consent, while preferences, analytics, and marketing cookies require opt-in consent.

California residents may exercise additional rights under CCPA, such as the right to opt-out of the sale of personal information. Although escapewillow.com does not sell personal data in exchange for monetary compensation, certain data-sharing practices may be classified as “sale” under CCPA. We honor Do Not Sell My Personal Information requests accordingly.

11. Special Protections for Children

escapewillow.com is not directed at or intended for users under the age of 13. We do not knowingly collect personal data from children. If we become aware that a child under 13 has provided us with personal information, we will delete such data promptly. Parents and guardians are encouraged to monitor children’s online activities and contact us at [email protected] if they believe their child has provided us with data inappropriately.

12. Policy Updates & Notifications

We reserve the right to update or amend this Privacy Policy as required by legislative changes or operational adjustments. Material changes will be communicated through prominent notices on escapewillow.com or via direct communication methods, where legally required.

13. Contact

For any questions, concerns, or requests relating to this Privacy Policy or data protection practices, please contact us at:

Email: [email protected]

We remain fully committed to upholding your privacy rights and complying with all relevant privacy legislation. If you have any complaints or concerns about how we handle your data, we encourage you to reach out, and we will respond promptly.