Privacy policy

PRIVACY POLICY CONSENT

You, as a visitor and/or user of our website, agree to the following Privacy Policy, and your access and/or use of our website, products, contact forms, or services constitutes your voluntary acceptance to be bound by its terms. Your use of our website, and any information that you contribute or provide to us, is subject to this Privacy Policy.

CHANGES TO PRIVACY POLICY

We may revise and update this Privacy Policy from time to time in our sole discretion. We will alert you about any changes by updating the "Last updated" date of the Privacy Policy, and you waive any right to receive specific notice of each such change. All changes are effective immediately when posted, and apply to all access to and use of the Website. Your continued use of the Website following the posting of revised Privacy Policy means that you accept and agree to the changes. It is your responsibility to periodically review this page to be aware of any changes. You will be subject to, and will be deemed to have been made aware of and to have accepted, the changes in any revised Privacy Policy by your continued use of the Services after the date such revised Privacy Policy is posted.

INFORMATION YOU PROVIDE

We collect personal information that you voluntarily provide to us when you express an interest in obtaining information about us or our products and Services, when you participate in activities on the Services, or otherwise when you contact us.
Personal Information Provided by You. The personal information that we collect depends on the context of your interactions with us and the Services, the choices you make, and the products and features you use. The personal information we collect may include the following:
names
email addresses
contact preferences
contact or authentication data
Sensitive Information. We do not process sensitive information.
All personal information that you provide to us must be true, complete, and accurate, and you must notify us of any changes to such personal information.

HOW WE USE YOUR INFORMATION
We use and process your information to provide, improve, and administer our Services, communicate with you, for security and fraud prevention, and to comply with law. We may also process your information for other purposes with your consent.
We process your personal information for a variety of reasons, depending on how you interact with our Services, including:
To deliver and facilitate delivery of services to the user. We may process your information to provide you with the requested service.
To send administrative information to you. We may process your information to send you details about our products and services, changes to our terms and policies, and other similar information.
To request feedback. We may process your information when necessary to request feedback and to contact you about your use of our Services.
To send you marketing and promotional communications. We may process the personal information you send to us for our marketing purposes, if this is in accordance with your marketing preferences. You can opt out of our marketing emails at any time.
To contact you for other reasons. We may contact you for other business reasons, if necessary.
To fulfill a request. We may process and fulfill an order, download, subscription, or other transaction.
To respond to your inquiry. We may respond to your requests, inquiries, comments, and concerns.
To comply with our legal obligations. We may process your information to comply with our legal obligations, respond to legal requests, and exercise, establish, or defend our legal rights.

We will not sell or trade your personal information. We will not transfer your personal information unless we give you advance written notice or need to comply with our legal obligations, resolve disputes, and/or enforce our agreements.

HOW YOUR INFORMATION IS SHARED
We may need to share your personal information in the following situations:
Business Transfers. We may share or transfer your information in connection with, or during negotiations of, any merger, sale of company assets, financing, or acquisition of all or a portion of our business to another company.
Disclosure of Information:
Aggregated Data: We may disclose aggregated information (statistical data that does not identify any individual) about our users without restriction.
Company Disclosure: We may disclose personal information that we collect or you provide:
To buyers or other successors in the event of a merger, divestiture, restructuring, reorganization, dissolution or other sale or transfer of some or all of Company’s assets, in which personal information held by the Company about our Services users is among the assets transferred.
To subsidiaries, affiliates, contractors, service providers and other third parties we use to support our business, and who are bound by contractual obligations to keep personal information confidential and use it only for the purposes for which we disclose it to them.
If we reasonably believe disclosure is necessary or appropriate to enforce our Terms of Use, protect the rights, property, or safety of the Company, our customers or others. This includes exchanging information with other companies and organizations for the purposes of fraud protection, credit risk reduction, billing and collection purposes.
To comply with any court order, law or legal process, including to respond to any government or regulatory request.
To fulfill the purpose for which you provide it, or any other purpose disclosed by use with you provide the information.
For any other purpose with your consent.
Depending on how you interact with us, we share information with our third-party service providers, agents and representatives, including, but not limited to, Squarespace, Instagram, Google, and other software service providers.
Our current third-party service providers include
Squarespace – Domain and Web Hosting
Google Workspace – Email Marketing and Engagement 
Instagram - Social Media Engagement and Advertising


HOW YOUR INFORMATION IS RETAINED
We retain your information for as long as necessary to fulfill the purposes outlined in this privacy notice unless otherwise required by law. We will only keep your personal information for as long as it is necessary for the purposes set out in this privacy notice, unless a longer retention period is required or permitted by law (such as tax, accounting, or other legal requirements), or until you let us know you would like for us to delete it or unsubscribe from our marketing contacts.
When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymize such information, or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.

HOW WE KEEP YOUR INFORMATION SAFE
We aim to protect your personal information through a system of organizational and technical security measures. We have implemented appropriate and reasonable technical and organizational security measures designed to protect the security of any personal information we process. However, despite our safeguards and efforts to secure your information, no electronic transmission over the Internet or information storage technology can be guaranteed to be 100% secure, so we cannot promise or guarantee that hackers, cybercriminals, or other
unauthorized third parties will not be able to defeat our security and improperly collect, access, steal, or modify your information. Although we will do our best to protect your personal information, transmission of personal information to and from our Services is at your own risk. You should only access the Services within a secure environment.

CHILDREN’S ONLINE PRIVACY PROTECTION ACT (COPPA)

In accordance with the Children’s Online Privacy Protection Act (COPPA) and the General Data Protection Regulation of the EU (GDPR), our Services are not intended for children under 18 years of age. No one under age 18 may provide any personal information on the Services. We do not knowingly collect data from or market to children under 18 years of age. We do not knowingly solicit data from or market to children under 18 years of age. By using the Services, you represent that you are at least 18. If you are under 18, do not use or provide any information on the Services, or on any of its features, do not make any purchases through the Services, register on the Services, or provide any information about yourself to us. If we learn we have collected or received personal information from a child under 18 without verification of parental consent, we will delete that information. If you believe we might have any information from or about a child under 18, please contact us at: hello@secretastrocollective.com.

CAN-SPAM ACT OF 2003

We have taken the necessary steps to ensure that we comply with the Controlling the Assault of Non-Solicited Pornography And Marketing (CAN-SPAM) Act of 2003 and will not send misleading information.

CONTROLS FOR DO-NOT-TRACK FEATURES
Most web browsers and some mobile operating systems and mobile applications include a Do-Not-Track ("DNT") feature or setting you can activate to signal your privacy preference not to have data about your online browsing activities monitored and collected. At this stage no uniform technology standard for recognizing and implementing DNT signals has been finalized. As such, we do not currently respond to DNT browser signals or any other mechanism that automatically communicates your choice not to be tracked online. If a standard for online tracking is adopted that we must follow in the future, we will inform you about that practice in a revised version of this privacy notice.

USE AND TRANSFER OF YOUR INFORMATION OUT OF THE EUROPEAN ECONOMIC AREA (EEA)

This website is operated in the United States and the third parties with whom we might share your personal information (as explained above) are also located in the United States or other countries located outside the European Economic Area.

If you are located outside of the United States, please be aware that any information you provide will be transferred to the United States. By using this website, participating in any of its services and/or providing your information, you consent to this transfer.


YOUR PRIVACY RIGHTS
You may review, change, or terminate your account at any time.
Withdrawing your consent: If we are relying on your consent to process your personal information, which may be express and/or implied consent depending on the applicable law, you have the right to withdraw your consent
at any time. You can withdraw your consent at any time by contacting us by using the contact details provided at the end of this policy. However, please note that this will not affect the lawfulness of the processing before its withdrawal nor, when applicable law allows, will it affect the processing of your personal information conducted in reliance on lawful processing grounds other than consent.
Opting out of marketing and promotional communications: You can unsubscribe from our marketing and promotional communications at any time by clicking on the unsubscribe link in the emails that we send, or by contacting us using the details provided at the end of this privacy policy. You will then be removed from the marketing lists. However, we may still communicate with you — for example, to send you service-related messages that are necessary for the administration and use of your account, to respond to service requests, or for other non-marketing purposes. 
If you have questions or comments about your privacy rights, you may email us at hello@secretastrocollective.com.

If you are covered by the General Data Protection Regulation (GDPR), you may have rights under European and other laws to have access to your personal information and to ask us to rectify, erase and restrict the use of your personal information. You may also have the rights to object to your personal information being used, to ask for the transfer of personal information you have made available to us, and to withdraw consent to the use of your personal information. Further information on how to exercise your rights is set out below.
We will honor your rights under applicable data protection laws. You have the following rights under European laws, and may have similar rights under the laws of other countries:
Right of access: to make a written request for access to and a copy of your personal information
Right to rectification: to have your inaccurate personal information corrected or removed
Right to erasure ('right to be forgotten'): to have your personal information erased
Right to restriction of processing: to limit the purposes that your personal information may be used for
Right to object: to object to the processing of your personal information in cases where our processing is based on direct marketing, processing for scientific/historical research and statistics, legitimate interest processing, and processing in regards to the performance of a public interest or official authority task
Right to data portability: to have your personal information transferred to you or a third party in a machine-readable format
Right to withdraw consent: to withdraw your consent that we handle your personal information at any time. The withdrawal of your consent shall not affect the lawfulness of processing based on your consent before its withdrawal.
These rights are not absolute and they do not always apply in all cases. If you’d like to exercise any of these rights, please email hello@secretastrocollective.com.

If you are covered by the GDPR, and you are not content with how we manage your personal information, you may make a complaint with a supervisory authority, in the European Union (or European Economic Area) state where you are a resident, work, or where the alleged infringement of data protection laws took place.

CONTACT

To opt-out, exercise your rights under the GDPR, to submit any questions, comments, complaints or suggestions for data protection regarding this Privacy Policy, to change your personal information in our records, with concerns about how we process information, or with any other questions or concerns related to this Privacy Policy, please email us at hello@secretastrocollective.com. 
LAST UPDATED
February 2026.