Privacy Policy
Last Updated: May 6, 2025
Information We Collect
- Personal Information You Provide: We collect information you knowingly give us when you sign up for newsletters, register for an account, or purchase a course—such as your name, email address, billing address, and payment details (handled by Stripe).
- Automatically Collected Data: We use cookies and similar technologies to gather technical data (for example, IP addresses, browser type, and pages viewed) for site functionality and analytics purposes.
Use of Information
- Service Delivery: We use collected information to operate, maintain, and improve our website and any services you purchase.
- Communications: If you subscribe to communications, we will send you emails about updates, newsletters, or marketing.
- Legal Compliance: We may use or disclose your information as required by law or to protect our rights.
Cookies and “Do Not Track”
- Cookies: We use cookies for essential site functions and analytics. You can disable cookies in your browser settings, though doing so may affect site performance.
- Do Not Track Disclosure: CalOPPA requires that we state whether we honor browser “Do Not Track” signals. We do not change our data collection or use practices in response to Do Not Track signals.
Legal Disclosures
California (CalOPPA)
- We maintain this clear, conspicuous Privacy Policy so California residents know what personal information we collect and how we use it.
California Consumer Privacy Act (CCPA)
- Notice at Collection: At the point of data collection, we inform you which categories of personal information we collect and the purposes for which we use it (e.g., payment processing, communications, analytics) as required by CCPA Section 1798.100(a).
Children’s Online Privacy Protection Act (COPPA)
- We do not knowingly collect personal information from children under 13. If we learn we have inadvertently done so, we will delete that data. COPPA applies to sites that direct services to children under 13 or have actual knowledge of collecting from them.
European Union (GDPR)
- Data Controller: Mallows Nutrition is the data controller responsible for your personal data.
- Information to Provide: Under Article 13 of the GDPR, we disclose our identity, contact details, purposes of processing, data retention periods, and your data subject rights at or before data collection.
- Lawful Basis: We process data based on your consent (e.g., newsletter sign-up), performance of a contract (e.g., course purchase), or our legitimate interests (e.g., site analytics).
Your Rights
Under CCPA
- Access & Deletion: California residents may request access to or deletion of their personal information, subject to certain exceptions, by contacting us.
- Opt-Out of Sale: We do not sell personal information as defined by the CCPA.
Under GDPR
- Data Subject Rights: If you are in the EU/EEA, you have the right to access, correct, delete, or restrict processing of your data, and to data portability. You may withdraw consent at any time without affecting prior processing.
Contact Information
For any questions about this Privacy Policy or to exercise your rights, please email us at:
hello@tallownutrition.com