1. Types of Information Collected
Directly Provided PII: This refers to information that lets us know the specifics of who you are. When you engage in certain Services on this Site, such as registering for an account, ordering a product, chatting with an agent, completing a “contact us” web form, or sending us testimonials and feedback, we may ask you to provide certain information about yourself by filling out and submitting an online form. It is completely optional for you to engage in these activities. If you elect to engage in these activities, however, we may ask that you provide us PII, such as your first and last name, mailing address (including zip code), email address, employer, job title and department, telephone and facsimile numbers, and other personal identifying information. When ordering products on the Site, you may be asked to provide a credit card number. You may also provide additional PII if you chat with our agent or complete a “contact us” form. Depending upon the activity, some of the information we ask you to provide is identified as mandatory and some as voluntary. If you do not provide the mandatory data with respect to a particular activity, you will not be able to engage in that activity.
Automatically Collected PII: This refers to information that does not by itself identify a specific individual. We gather certain information about you based upon which pages you visit on our Site in several ways. This information is compiled and analyzed on an aggregated basis. This information may include the Uniform Resource Locator (“URL”) of the website from which you just navigated, which URL you next go to, what browser you are using, and your Internet Protocol (“IP”) address. A URL is the global address of documents and other resources on the World Wide Web. An IP address is an identifier for a computer or device on a Transmission Control Protocol/Internet Protocol (“TCP/IP”) network, such as the World Wide Web. Networks like the Web use the TCP/IP protocol to route information based on the IP address of the destination. In other words, an IP address is a number that is automatically assigned to your computer whenever you are surfing the web, allowing web servers to locate and identify your computer. Computers require IP addresses in order for users to communicate on the Internet.
We do not sell PII. We may disclose the PII you directly provide to us to our vendors, contractors, or service providers for a legitimate business purpose such as to create your account, process your payments, or ship your products to you. We may disclose the PII we automatically collect with our vendors, contractors, or service providers for a legitimate business purpose such as for search engine optimization, Site processing, and Site performance and analytics.
2. Cookies and Tracking
We may use an outside ad service company to display banner advertisements on our Site and through our Services. As part of their service, they will place a separate cookie on your computer. We will not provide any third-party ad server with any of your PII or information about your purchases. We and our third party ad server will collect and use Non-PII about you, such as your IP address, browser type, the server your computer is logged onto, the area code and zip code associated with your server and whether you responded to a particular ad. Other advertisers may also place banner ads on our Site in the same manner as above, but we will not disclose any PII to them.
Do Not Track: Please note that because there is no consistent industry understanding of how to respond to “Do Not Track” signals, we do not alter our data collection and usage practices when we detect such a signal from your browser.
Analytics: We use Google Analytics to help us understand how our customers use the Site and Services. You can read more about how Google uses your PII here: https://policies.google.com/privacy?hl=en.You can also opt-out of Google Analytics here: https://tools.google.com/dlpage/gaoptout.
Please refer to the Google Ads Privacy Notice and Google’s Ads Setting page for more information about the ability to opt out, https://policies.google.com/privacy?hl=en.
For more information about how targeted advertising works generally, you can visit the Network Advertising Initiative’s (“NAI”) educational page at http://www.networkadvertising.org/understanding-online-advertising/how-does-it-work.
You can opt out of targeted advertising by visiting:
FACEBOOK - https://www.facebook.com/settings/?tab=ads
GOOGLE - https://www.google.com/settings/ads/anonymous
BING - https://advertise.bingads.microsoft.com/en-us/resources/policies/personalized-ads]
Members of the Digital Advertising Alliance - http://optout.aboutads.info/
Members of the Network Advertising Initiative - https://optout.networkadvertising.org/?c=1
3. Privacy Policies of Third Party Websites
4. Release of Information
5. Updating and Correcting Information
We believe you should have the ability to access and edit the PII that you have provided to us. You may change any of your PII in your account online at any time by logging in to your account in accordance with instructions posted elsewhere on this Site. You may also access and correct your PII and privacy preferences by submitting a Verifiable Consumer Request as described below in the “Notice to California Residents Section.”
We encourage you to promptly update your PII if it changes. You may ask to have the information on your account deleted or removed; however, because we keep track of past transactions, you cannot delete information associated with past transactions on this Site. In addition, it may be impossible to completely delete your information without some residual information because of backups.
6. User Choices on Collection and Use of Information
We may, from time to time, send you emails regarding our products and services. In addition, if you indicated upon registration that you are interested in receiving offers or information from us and our partners, we may occasionally send you direct mail about products and services that we feel may be of interest to you. Only Kem-Shield (or agents working on behalf of Kem-Shield and under confidentiality agreements) will send you these direct mailings and only if you indicated that you do not object to these offers. If you do not want to receive such mailings, simply tell us when you give us your PII. Or, at any time you can easily edit your account information to no longer receive such offers and mailings.
7. Notice to California Residents
Right of Access to Specific Information: You have the right to request that we disclose certain information to you about our collection and use of your Personal Information over the past 12 months. Once we receive and confirm your Verifiable Consumer Request, we will disclose to you:
The categories of Personal Information we collected about you;
The categories of sources for the Personal Information we collected about you;
Our business or commercial purpose for collecting, sharing, or selling that Personal Information;
The categories of third parties with whom we share that Personal Information;
The specific pieces of Personal Information we collected about you (also called a data portability request) and provide a copy to you in an electronic or paper format; and
The categories of Personal Information, if any, we disclosed for a business purpose to a third party.
Deletion Request Right: You have the right to request that we delete any of your Personal Information that we collected from you and retained, subject to certain exceptions. Once we receive and confirm your Verifiable Consumer Request, we will delete (and direct our Contractors and Service Providers to delete) your Personal Information from our (and their) records, unless an exception applies (as described below).
As permitted by CCPA we may delete your Personal Information by (a) permanently and completely erasing the Personal Information on our existing systems with the exception of archived or back-up systems; (b) de-identifying the Personal Information; or, (c) aggregating the Personal Information.
We may deny your deletion request if retaining the information is necessary for us or one of our Contractors or Service Providers to:
Complete the transaction for which we collected the Personal Information, provide a good or service that you requested, take actions reasonably anticipated within the context of our ongoing business relationship with you, or otherwise perform our contract with you;
Detect security incidents, protect against malicious, deceptive, fraudulent, or illegal activity, or prosecute those responsible for such activities;
Debug products to identify and repair errors that impair existing intended functionality;
Exercise free speech, ensure the right of another consumer to exercise their free speech rights, or exercise another right provided for by law;
Comply with the California Electronic Communications Privacy Act (Cal. Penal Code § 1546 et. seq.);
Enable solely internal uses that are reasonably aligned with consumer expectations based on your relationship with us;
Comply with a legal, regulatory or law enforcement obligation; or
Make other internal and lawful uses of that information that are compatible with the context in which you provided it.
Provide sufficient information that allows us to reasonably verify you are the person about whom we collected Personal Information or an authorized representative of that person and
Describe your request with sufficient detail that allows us to properly understand, evaluate, and respond to it.
We cannot respond to your request or provide you with Personal Information if we cannot verify your identity or authority to make the request and confirm that the Personal Information relates to you. Making a Verifiable Consumer Request does not require you to create an account with us. We will only use Personal Information provided in a Verifiable Consumer Request to verify the requestor's identity or authority to make the request.
Upon receiving a data access, correction, data port or deletion request from you, we will verify your identity based on the information we have on file for you. Upon verification of your identity, we will proceed to process your request (subject to the exceptions stated above).
We endeavor to confirm receipt of your request within ten (10) days of receiving it. We will respond to a Verifiable Consumer Request within forty-five (45) days of its receipt. If we require more time (up to an additional forty-five (45) days), we will inform you of the reason and extension period in writing.
We will deliver our written response via email to the email address associated with you or, if we are unable to determine your email address, via mail.
Any disclosures we provide will only cover the 12-month period preceding the Verifiable Consumer Request receipt. The response we provide will also explain the reasons we cannot comply with a request, if applicable. For data portability requests, we will select a format to provide your Personal Information that is readily useable and should allow you to transmit the information from one entity to another entity without hindrance.
We do not charge a fee to process or respond to your Verifiable Consumer Request unless it is excessive, repetitive, or manifestly unfounded. If we determine that the request warrants a fee, we will tell you why we made that decision and provide you with a cost estimate before completing your request.
Non-Discrimination: We will not discriminate against you simply for exercising your rights under the CCPA.
8. Notice to Nevada Residents
9. Notice to Residents of Non-U.S. Countries
Our headquarters is in the United States. The PII we or our service providers and contractors collect may be stored and processed in servers within or outside of the United States and wherever we and our service providers and contractors have facilities around the globe, and certain PII may be accessible by persons or companies outside of the United States who provide services for us. As such, we and our service providers and contractors may transfer your Personal Information to, or access it in, jurisdictions that may not provide equivalent levels of data protection as your home jurisdiction. We will take reasonable steps to ensure that your Personal Information receives an adequate level of protection in the jurisdictions in which we process it.
10. Notice to European Union and United Kingdom Residents
Rights of European Union and United Kingdom Residents
If you are located in the European Union or the United Kingdom, you have certain rights regarding the Personal Data that we maintain about you, which in certain circumstances you will be able to exercise. The rights are as follows:
Access. You may request a copy of the Personal Data that we maintain about you.
Portability. If we maintain your Personal Data based on your consent or so that we can enter into or perform under a contract with you, you have the right to obtain your Personal Data from us that you consented to give us, that is necessary to enter into or perform the contract, or that is necessary to provide member benefits to you. We will give you your Personal Data in a structured, commonly used and machine-readable format.
Correction. If you believe your Personal Data is incorrect, you may request that we correct, amend or delete your Personal Data that is inaccurate or incomplete.
Deletion or Restriction of Processing. You may request that we erase or restrict the processing of your Personal Data.
Object to Processing. You may object to the processing of your Personal Data in certain circumstances when we process your Personal Data for the purposes of our legitimate interests.
Right to Complain. You have the right to file a complaint with a supervisory authority, in particular in the European member state of your habitual residence, place of work or place of the alleged infringement if you consider that the processing of your Personal Data infringes upon your rights.
Withdraw Consent. If we are processing your Personal Data based on your consent to do so, you may withdraw that consent at any time.
Collection of Personal Data
We only collect Personal Data that is reasonably necessary for us to provide our Services. Subject to applicable exceptions, we will obtain your Consent before collecting, using and disclosing your Personal Data for the specified purposes. In addition to circumstances in which you Consent to the use of your Personal Data, the Personal Data we collect may be used or processed where we have a legitimate interest in or other legal basis for processing such data.
Processing Personal Data
We only process Personal Data when we have a legal basis to do so including
when you have consented to the processing of your Personal Data;
when processing is necessary to perform a contract with you or fulfil a request you have made;
when processing is necessary to comply with a legal obligation that applies to us; or
when processing is necessary for purposes that are in our legitimate interests and you have given any required explicit or implicit Consent to such processing, including protecting the security of our Services, improving the functioning of our Services, or providing you with information about products in which you have expressed interest.
If we need to process your Personal Data to fulfil or enter into a contract with you, failure to provide that Personal Data will mean that we cannot perform or enter into a contract with you. If we collect your Personal Data for one purpose and need to process it for second purpose, we will provide you with additional information regarding this secondary purpose to ensure fair and transparent processing before we engage in further processing.
11. Notice to Canadian Residents
Our collection, use, and disclosure of your Personal Information is generally consistent with our privacy practices for EU and United Kingdom residents and complies with the Personal Information Protection and Electronic Documents Act (“PIPEDA”). Personal Information, as defined in PIPEDA, includes the references to PII, Personal Information, and Personal Data herein.
12. Security of Information
At our Site you can be assured that your PII is secure, consistent with current industry standards. The importance of security for all PII associated with our user is of utmost concern to us. Your PII is protected in several ways. Access by you to your PII is available through a password and unique customer ID selected by you. This password is encrypted. We recommend that you do not divulge your password to anyone. In addition, your PII resides on a secure server that only selected Kem-Shield personnel and contractors have access to via password. We encrypt your PII when it is transmitted to us and thereby prevent unauthorized parties from viewing such information.
Information that you provide that is not PII also resides on a secure server and is only accessible via password. Since this information is not accessible from outside Kem-Shield, you will not be asked to select a password in order to view or modify such information.
In order to most efficiently serve you, credit card transactions and order fulfillment are handled by established third party banking, processing agents and distribution institutions. They receive the information needed to verify and authorize your credit card or other payment information and to process and ship your order.
Unfortunately, no data transmission over the Internet or any wireless network can be guaranteed to be 100% secure. As a result, while we strive to protect your PII, you acknowledge that: (a) there are security and privacy limitations of the Internet which are beyond our control; (b) the security, integrity and privacy of any and all information and data exchanged between you and us through this Site or the Services cannot be guaranteed; and (c) any such information and data may be viewed or tampered with in transit by a third party.
13. Data Retention
When you access our Site or Services, we will retain your PII as long as it is necessary for the processing purpose in question or in accordance with our data retention policy. We may retain your PII for longer periods if required by law, if you give us your permission, or in case of a legal dispute in which your PII may be used as evidence.
14. Automatic Decision-making
We do not profile or use automated decision making.
You must be at least 18 years old to have our permission to use this Site or the Services. Our policy is that we do not knowingly collect, use or disclose PII about visitors that are under 18 years of age. If we learn that we have collected or received PII from a child under 18 without verification of parental consent, we will delete that information. If you believe a child has provided us with PII, please contact us through the means indicated below to request deletion.
16. Contact Information
Attn: Legal Administrator
1080 Middleton Run Road
Brighton, MI 48116