Privacy Policy

1. Introduction

At ima-mfon.com, we are firmly committed to safeguarding your personal data and upholding your privacy. We recognize your right to control your personal information and are fully dedicated to protecting the integrity, confidentiality, and security of any information you share with us. This Privacy Policy outlines how we collect, use, store, and share your personal data and sets forth your rights under applicable laws such as the General Data Protection Regulation (“GDPR”) and the California Consumer Privacy Act (“CCPA”).

2. Scope and Data Controller Role

This Privacy Policy applies to all users who access or engage with services through ima-mfon.com. The data controller responsible for your personal information under this Privacy Policy is the entity that determines the purposes and means of processing your personal data. For all inquiries regarding this Privacy Policy or the way we handle your information, you may contact us at [email protected].

3. Categories of Data We Process

In the course of providing our services, we may collect and process the following categories of data:

– Usage Data: This includes data such as IP addresses, browser types, operating systems, referring URLs, and patterns of usage (e.g. session duration, page visits).
– Account Data: Information you provide upon creating an account, including your full name, mailing address, email address, and phone number.
– Profile Data: Personal preferences, user-generated content, feedback, and records of purchases or behaviors on ima-mfon.com.
– Communication Data: Records of your interactions with our support or customer service teams, along with the content of your inquiries, and communication preferences.
– Technical Data: Information related to your device and technical environment, such as device identifiers, system configurations, time zone settings, and browser plug-in types.
– Transaction Data: Details regarding payments, billing addresses, delivery information, and transaction history.
– Preference Data: Your opt-in choices such as marketing consents, product or service preferences, and survey responses.

4. Legal Bases for Processing

We process your personal data based on the following lawful bases:

– Contractual Necessity: Where the processing is necessary for the performance of a contract or to take steps at your request before entering a contract.
– Consent: Where you have provided clear, informed consent for a specific purpose, especially for marketing or non-essential cookies.
– Legitimate Interests: Where processing is necessary for our legitimate interests and does not override your fundamental rights and freedoms—for example, to enhance website functionality or prevent fraud.
– Legal Obligation: Where processing is required to comply with legal and regulatory obligations.

5. Your Rights

Under applicable privacy laws, you have the following rights regarding your personal data:

– Right of Access: You may request confirmation of whether we process your data and request a copy of that data.
– Right to Rectification: You are entitled to request that we correct inaccurate or incomplete personal information.
– Right to Erasure (“Right to be Forgotten”): You may request the deletion of your personal data where there is no compelling reason for its continued processing.
– Right to Restriction: You may restrict our processing under certain conditions.
– Right to Data Portability: You have the right to receive a structured, commonly used, and machine-readable copy of your personal data for transmission to another controller.
– Right to Object: You may object to processing where we rely on legitimate interest or process your data for direct marketing.

To exercise any of your rights, you may contact us at [email protected].

6. Security Measures

We implement a range of security safeguards to protect your personal information against unauthorized access, loss, misuse, or accidental destruction, including:

– Encryption of data in transit and at rest
– Access controls based on roles and responsibilities
– Regular cybersecurity audits and vulnerability assessments
– Secure infrastructure hosting with industry-standard protocols
– Regular staff training on data protection and security practices
– Routine data backups and disaster recovery procedures

7. International Transfers

Where we transfer your personal data outside the European Economic Area (EEA) or your jurisdiction (e.g., California), we ensure appropriate safeguards such as:

– Standard Contractual Clauses approved by the European Commission
– Binding Corporate Rules (as applicable)
– Transfers to jurisdictions recognized by the European Commission or applicable privacy authorities as providing adequate data protection

8. Data Retention

We retain your personal data only for as long as is necessary for the purposes set out in this Privacy Policy, subject to legal and contractual requirements. The standard retention periods per category are as follows:

– Usage Data: Retained for up to 12 months for analytical and operational purposes.
– Account Data: Stored for as long as your account remains active.
– Profile and Communication Data: Retained for up to 24 months following the last user interaction.
– Transaction Data: Retained for a minimum of 7 years to comply with legal and tax audit obligations.
– Technical Data: Retained for up to 6 months.
– Preference Data: Maintained until you withdraw your consent or update your preferences.

9. Cookie Policy

Our website uses cookies and similar technologies to improve your browsing experience, provide analytics, and support core functionalities. The categories of cookies used on ima-mfon.com include:

– Essential Cookies: Required for technical operation and security of the website.
– Functional Cookies: Enable enhanced features and user customization.
– Performance Cookies: Collect usage data to assess website performance and usability improvements.
– Analytics Cookies: Provide aggregated insights on traffic and user behavior using third-party providers (e.g., Google Analytics).

10. Cookie Management and Compliance

Users can manage their cookie preferences at any time through the cookie banner or settings panel on ima-mfon.com. In line with GDPR and CCPA regulations, non-essential cookies are only set upon obtaining your explicit consent. You may also manage cookie usage directly through your browser settings by clearing or restricting website cookies.

Residents of California have additional rights under the CCPA, including the right to opt out of the “sale” of personal data. While ima-mfon.com does not sell personal information as defined under the CCPA, we honor users’ rights to opt-out and provide clear cookie preference options.

11. Children’s Data Protection

ima-mfon.com is not intended for use by children under the age of 13. We do not knowingly collect, maintain, or process personal data of children under 13 without verifiable parental consent. If we become aware that such data has been inadvertently collected, we will take immediate steps to delete it from our systems.

12. Policy Updates and User Notifications

We reserve the right to amend this Privacy Policy at any time to reflect changes in our practices, legal requirements, or operational needs. Users of ima-mfon.com will be informed of significant policy changes through appropriate means, such as website notices or email communications (where consented).

We encourage you to review this policy periodically so that you remain informed of how we protect your privacy.

13. Contact

If you have any questions, concerns, or requests related to this Privacy Policy or our data protection practices, please contact us at:

Privacy Officer
Email: [email protected]
Website: https://ima-mfon.com

We are committed to complying fully with GDPR, CCPA, and other applicable data protection laws. If you believe your rights under these regulations have been infringed, or if you have questions regarding the handling of your personal data, you are encouraged to contact us directly via the above email address.

Your privacy is important to us. We will take all reasonable steps to ensure your data is secured and processed lawfully, fairly, and transparently.