Privacy Policy for hobohaji.com

1. Introduction

At hobohaji.com, we are fully committed to safeguarding your personal data with the utmost integrity and transparency. We recognize the importance of privacy in the digital age and endeavor to process your personal information in accordance with all applicable data protection laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). This Privacy Policy outlines the types of data we collect, how we use it, your rights, and the safeguards we have implemented to protect your information.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all users and visitors of hobohaji.com. It governs the collection and use of personal data processed through the website and its associated services. For the purposes of applicable data protection legislation, hobohaji.com is the data controller responsible for ensuring that your personal data is collected and handled lawfully, fairly, and transparently.

3. Categories of Data Processed

We may collect and process the following categories of personal data:

a. Usage Data: This includes information on how you interact with our website such as IP address, browser type, browsing behavior, pages visited, session duration, and referring URLs. This data helps us understand user behavior and improve our services.

b. Account Data: If you create an account on hobohaji.com, we may collect your full name, mailing address, email address, and phone number.

c. Profile Data: We process data related to your product preferences, feedback, shopping history, and interaction patterns to personalize your user experience.

d. Communication Data: When you contact us, including via [email protected], we collect communication records, including your messages, support queries, or call transcripts.

e. Technical Data: We collect device-specific information including device type, operating system, device settings, and system configurations for compatibility and security purposes.

f. Transaction Data: This encompasses details necessary for processing purchases such as payment card information (handled via secure third-party processors), billing addresses, and delivery confirmation details.

g. Preference Data: We track consent preferences for marketing communications and your indicated interests in specific products or services where applicable.

4. Legal Bases for Processing

We process personal data on one or more of the following legal bases:

– Consent: Where you have explicitly provided consent for the processing of your data (e.g. marketing subscriptions).
– Contract: Where the processing is necessary to fulfill a contract with you or to take steps prior to entering into a contract.
– Legal Obligation: Where we are required to process data to comply with our legal obligations.
– Legitimate Interest: Where processing is necessary for our legitimate interests in improving our services, maintaining security, or communicating effectively—provided that such interests are not overridden by your rights and freedoms.

5. Your Rights

In accordance with the GDPR and CCPA, you may exercise the following rights with respect to your personal data:

– Right of Access: Obtain confirmation of whether we process your data and request access to your data.
– Right to Rectification: Request correction of inaccurate or incomplete information.
– Right to Erasure: Request the deletion of your data, subject to legal obligations.
– Right to Restriction: Request temporary suspension of data processing under certain conditions.
– Right to Data Portability: Request that we provide your data in a structured, commonly used, and machine-readable format, and transmit it to another controller where feasible.
– Right to Object: Object to processing for direct marketing or on legitimate interest grounds where applicable.

You may exercise these rights by contacting us at [email protected]. We will address all such requests in compliance with applicable legislation.

6. Security Measures

We implement robust organizational and technical safeguards to ensure the confidentiality, integrity, and availability of your data. These include:

– Encryption of data in transit and at rest
– Access controls and user authentication protocols
– Secure data storage and redundancy through regular backup procedures
– Employee training on data protection and privacy best practices
– Monitoring and auditing of systems to detect and prevent unauthorized access

7. International Transfers

Where your personal data is transferred outside of the European Economic Area (EEA) or other applicable jurisdictions, we ensure appropriate safeguards are in place. These include the use of Standard Contractual Clauses approved by the European Commission and adherence to adequacy decisions where applicable. We also require any third-party processors to comply with equivalent data protection standards.

8. Data Retention

We retain personal data only for the duration necessary to fulfill the purpose for which it was collected. The specific retention periods are as follows:

– Usage Data: Retained for up to 12 months for analytics and optimization.
– Account Data: Retained during the lifetime of the account and for 6 months thereafter for legal compliance.
– Profile and Transaction Data: Retained for 6 years in accordance with tax and contract law.
– Communication Data: Retained for 2 years to maintain service continuity.
– Technical and Preference Data: Retention depends on cookie settings and user consent but generally does not exceed 12 months.

Upon expiration of applicable retention periods, data is securely deleted or anonymized.

9. Cookie Policy

hobohaji.com uses cookies to enhance user experience, measure website performance, and deliver personalized content. The types of cookies in use include:

– Essential Cookies: Required for website functionality (e.g., session management, secure log-in).
– Functional Cookies: Enable customization of user interface and settings.
– Performance Cookies: Collect anonymized data to evaluate website usability and performance.
– Analytics Cookies: Enable insights into visitor behavior and traffic patterns.

We use both first-party and third-party cookies, including from service providers such as Google Analytics, for statistical analysis and service improvement.

10. Cookie Management and Compliance with GDPR & CCPA

You may manage your cookie preferences at any time by adjusting your browser settings or using our cookie consent banner provided upon first visit. In accordance with GDPR, we obtain explicit consent before placing non-essential cookies. Under CCPA, California residents may opt out of the sale or sharing of personal data associated with cookies through our “Do Not Sell or Share My Personal Information” links.

11. Special Protections for Children Under 13

hobohaji.com does not knowingly collect or process personal data from children under the age of 13. If we become aware that such information has been collected inadvertently, it will be promptly deleted. Parents or guardians who believe we have processed information about a child under 13 should contact us immediately at [email protected].

12. Policy Updates & User Notifications

We may revise this Privacy Policy periodically to reflect changes in legal requirements, operational practices, or technological advancements. All updates will be posted to hobohaji.com, and where legally required, you will be notified via email or pop-up notifications prior to significant changes taking effect. Continued use of the site constitutes your agreement to the updated terms.

13. Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or the handling of your personal data, please contact us at:

Email: [email protected]

We are committed to complying with all applicable privacy laws and to working transparently and responsively in relation to your privacy concerns.