Privacy Policy
The Privacy Policy (“Policy”) defined herein states how Natural Society, LLC, (“Natural Society,” “we,” “us,” “our”) collects, uses, and discloses information obtained from and about its users (“you”), and user choices regarding such information. This policy applies to our websites, including naturalsociety.com and shop.naturalsociety.com (collectively, the “Websites”).
This Policy only applies to the Websites and does not apply to any websites, apps, or other services that we do not own or control, such as, but not limited to, social media websites. It also applies to personal data we collect offline, such as by phone or in person, including at conferences or other events.
By using or otherwise accessing the Websites, you acknowledge and accept the terms of this Policy. Please read this Policy carefully to understand our practices regarding your information. You can reach out to us via our contact form if you have questions about these practices.
Information We Collect
Depending on how you interact with the Websites, we may collect information directly from you or from other sources.
Information You Provide to Us
We collect information directly when you use the Websites, such as when you create an account, provide feedback, place an order, sign up for emails or newsletters, engage with customer service, respond to surveys or quizzes, post on the Websites, or grant our Websites access to your photos or other information. The following describes common types of information you may provide to us.
- Contact information, such as your name, email address, phone number, and physical address.
- Account information, such as your login information, preferences, and areas of interest. You may provide this information when you create and access/use your account.
- Demographic information, such as your gender, birth date, and marital status.
- Order information, such as billing and shipping address, contents of your order, transaction history, and payment information such as that found on debit or credit cards.
- User content, such as comments, photos, posts, ideas, reviews, feedback, or other content that you submit or otherwise make available through the Websites. This content may be viewable by other account holders or the public and may be associated with account information like your name or username.
- Communications, including, but not limited to, any information that you provide to us through email, during customer service interactions, at events, or on social media (such as, but not limited to, liking or sharing our posts, responding to surveys, quizzes, or sweepstakes, or direct messaging).
- Information from your device or other apps that you provide to the Websites or grant permission for an App to access, such as your photos or content from your device’s camera, calendar, microphone, and any fitness app or health app information.
- Health-related information, including information about your health status, condition, or diagnosis; medications you are taking or prefer; the type of care you are seeking; your sex life and sexual orientation; and information related to scheduling medical appointments.
- Location information, which may include your general location inferred from your IP address or information that identifies the precise location of your mobile device (when you agree to allow an App or Websites to collect this).
- Information requested by sign up and order forms, such as contact and payment information (as described above) as well as other information such as military status or information relevant to providing insurance (such as car make and model).
- Any other information you provide to us.
You are not required to provide us with any information about yourself. However, if you do not provide us with certain information, the Websites will not function as intended or you will be unable to access certain features. For example, if you do not provide us with your name and email address, you cannot create an account.
Some of the information we collect, such as health-related information, may be considered “sensitive” under some laws. Where relevant, this is discussed in the Additional Privacy Notice.
Information We Collect Automatically
We collect some kinds of information automatically when you interact with the Websites, including, but not limited to:
- Device information, including IP address, device hardware information, device’s software, browser type, version, and language, time zone; unique device identifiers (UDIs), and advertising identifiers such as mobile advertising ID.
- Usage information about how you interact with the Websites, such as the date and time you interacted with the Websites, pages viewed, links clicked, the time spent on each page, the Websites or apps you visited before and after you visited the Websites, search history, and the content you post to the Websites.
- Location information, which may include your general location inferred from your IP address or information that identifies the precise location of your mobile device (when you agree to allow an App or Websites to collect this).
We and other parties may use cookies and similar technologies to collect and store some of this information. For more information about the use of cookies and similar technologies on the Websites, continue to Cookies, Analytics, and Advertising below.
Information We Collect from Other Sources
We may collect information about you from other sources, such as:
- Our affiliates and subsidiaries if you use or interact with their services.
- Log-in services and social network connections. If you access the Websites through a third-party connection or login (e.g., through a social network or similar service), you may allow us to have access to and collect certain information from your social network profile(s), which may include account and profile information, information regarding your posts, “likes,” and/or “shares,” and your list of friends, depending on your account settings on such services. If you do not wish for us to access this information, do not use a third-party connection to access the Websites. Please see the terms and privacy policies of each social media network you use to access their privacy practices and about how to review or adjust your settings.
- Credit reporting services. For certain offerings on the Websites, we may collect information from credit reporting services to comply with applicable law and facilitate your transactions.
- Other parties. We may collect additional information about you to supplement information we collect in other ways (such as demographic, contact, and statistical information) from parties such as business partners, marketers, advertising networks, data providers, analysts, public databases, and other parties.
How We Use Your Information
We use the information we collect for a variety of purposes, which may vary depending on the type of information and how you interact with the Websites. These purposes may include to:
- Maintain the Websites, including registering your account.
- Personalize the Websites, including remembering your preferences.
- Conduct analysis and research related to the Websites.
- Improve and enhance the Websites by developing new features and designs.
- Develop new products and services.
- Communicate with you about your account, any services you have requested, and your customer service requests or other inquiries, subject to any preferences you have communicated to us.
- Advertise and market the Websites and other products or services to you, subject to any preferences you have communicated to us.
- Conduct surveys, quizzes, polls, sweepstakes, and similar activities.
- Maintain security.
- Verify identity or authenticate you.
- Comply with applicable laws, regulations, and other legal process and procedures.
- Exercise our legal rights (including by enforcing our terms and policies), detect and prevent illegal activity on the Websites, or protect the rights, property, or safety of Natural Society, our users, our employees, or other affiliates.
We may combine the information we collect through the Websites with information we collect automatically or receive from other sources. We may use such combined information in accordance with this Policy. We may also aggregate and/or de-identify information we collect in such a way that it cannot reasonably be linked to you or your device. We may use such aggregated and/or de-identified information for any purpose, including for research and marketing purposes, and may disclose such information.
Cookies, Analytics, and Advertising
Cookies
We and other parties may use cookies or similar technologies such as pixels (clear GIFs) to collect data. A cookie is a small text file that web servers place on your device, designed to store basic information. Cookies help websites and apps recognize your browser and serve a variety of purposes, such as helping you navigate and interact with the Websites, making your experience of the Websites more relevant and personalized, helping us analyze use of the Websites, saving your preferences, authenticating you, and enabling certain kinds of advertising. The cookies on the Websites may be set by us or by third parties. We may use session cookies (which are deleted when you close your browser) and/or persistent cookies (which stay on your browser or device for longer). We may also use pixels in emails you receive from us to record actions such as whether you open an email or click a hyperlink in it.
To adjust your cookie preferences, consult the “Help” section of your browser for information about how to adjust your browser settings. Do this on each separate device and/or browser as needed. Some cookies are strictly necessary for the Websites to function, meaning that you cannot opt out of them.
If you are a resident of the European Economic Area (“EEA”) or the United Kingdom (“UK”), please see the EEA/UK Privacy Notice below for more information about our use of cookies.
Analytics
We and third-party web analytics services, including but not limited to Google Analytics, may use cookies and similar technologies on the Websites for analytics purposes. You can find more information about Google’s analytics practices here. To prevent Google Analytics from using your information for analytics, you may install the Google Analytics Opt-out Browser Add-on by clicking here. Any preferences you have exercised through these methods will only apply to the specific device/browser on which you made them, so if you want these preferences to apply when you access the Websites from a different browser or device, you will need to install the browser add-on or otherwise indicate your preferences in that specific browser or device.
Online Advertising
On the Websites, we may allow third party cookies and third-party advertising technologies (e.g., Google’s ad services and/or similar ad networks and ad servers) that use cookies and other technologies to deliver relevant and targeted advertisements and other content to you on the Websites and other websites you visit, as well as applications you use. These ads may be based on the contents of the page you are visiting, automatically collected information, information you provide, and other information about you or your device. These ads may also be based on your current activity or your activity over time and across other websites and may be tailored to your interests or perceived interests.
If you are interested in more information about tailored advertising, you may visit the Network Advertising Initiative’s Consumer Opt-Out Link and/or the Digital Advertising Alliance’s WebChoices Tool to opt out of receiving tailored advertising from companies that participate in those programs. For region-specific opt-out options, please see Additional Privacy Notice below. Please note that you may still see ads on the Websites or ads for the Websites on other websites or apps, but these ads may not be tailored to you. We do not control any of the above opt-out links and are not responsible for any choices you make using them or their continued availability or accuracy. Any preferences you have exercised through these methods may only apply to the specific device/browser on which you made them.
Mobile App Advertising
You may receive tailored in-app advertisements when using our Apps or other mobile apps. We may use vendors or other parties to deliver ads on mobile apps or for mobile app analytics. The operating system of your device provides instructions on how to prevent the delivery of tailored in-application advertisements. Please review these instructions and/or your device settings for more information on how to control in-app advertisements. We have no control over how and to what extent your operating system allows you to control tailored in-app advertisements.
Do Not Track
Do Not Track (“DNT”) is a privacy preference that is available in certain web browsers which you can learn more about here. We, like many other Websites, do not currently recognize or respond to browser initiated DNT signals. Please note that DNT is different than the user “preference signal” referenced in the “Your Rights and Choices” section below.
How We Disclose Your Information
We may disclose the information we collect from and about you in the following ways:
- Personnel: Our employees, contractors, and other personnel have access to your information as needed to maintain the Websites.
- Affiliate: Information you provide to one of our Websites or Apps may be disclosed to our other Websites and Apps. We may also disclose your information to our corporate affiliates (e.g., parent company, sister companies, subsidiaries, joint ventures, or other companies under common control).
- Vendors: We may disclose or provide access to your information to vendors that provide services on our behalf, including website hosting, data storage, analytics, research, marketing and advertising, payment processing, security, data enrichment, content, contests and similar offerings, and other services.
- Advertising: We may share certain data with Advertising platforms or partners, such as private advertisers, or Google and Social Networks such as, but not limited to, Twitter, Facebook, LinkedIn and Snapchat to allow us to target existing users and customers with highly relevant advertising campaigns. For the purposes of such campaigns. We may share a unique code (such as a hashed email address) with the applicable Advertising platform for that identifier to be matched against existing users of the relevant Advertising Platform and to identify potentially relevant audiences for targeted advertising. We may use services such as Google Ads’ Customer Match, LinkedIn Matched Audiences, ID5, LiveRamp, and Facebook Custom Audiences for these purposes.
In addition to advertisements for our own goods and services, we may also facilitate third parties to advertise their own goods and services including by targeting those advertisements to those that might be most interested in them. To provide advertisements relevant to you, your IP address may be used, as well as your operating system and other device information.
- Business transfers: In the event of a sale of some or all our assets, merger, reorganization, dissolution, or similar event, including during negotiations of such an event, your data may be part of the transferred assets.
- Legal compliance: We may disclose your information if required to do so by law or legal process, or in the good faith belief that disclosure is reasonably necessary to either comply with a legal obligation, protect and defend the rights, property, or personal safety of ourselves, our personnel, users of the Websites or the public, obtain legal advice, or protect against legal liability. This includes disclosures for fraud prevention.
- With your consent: If you consent for us to disclose your information beyond the ways already defined herein, we may do so with your consent. You have the right to revoke consent at any time by using our contact form with the subject line “Revoke Consent” and explaining the information and disclosure(s) for which you want to revoke consent.
You may choose to post or otherwise provide information to the Websites in such a way that other parties can view or access this information. For example, if you interact with the Websites via social media platforms or use “social features” on the Websites, such social media platforms may have access to information about you.
Rights Regarding Your Information
Depending on your jurisdiction, you may have the right to make certain requests regarding your “personal information” or “personal data,” as defined in applicable law. This includes, but is not limited to, the right to request that we:
- Provide you with access to and/or a copy of certain personal information we hold about you.
- Inform you about the categories of personal information we collect or disclose about you, the categories of sources of this personal information, the business or commercial purpose for collecting this personal information, and the categories of parties to which we disclose this personal information.
- Correct any inaccurate personal information we hold about you.
- Delete certain personal information we hold about you.
You may have different or additional rights depending on your jurisdiction of residence. For example, you may have the right to object to, restrict, or opt out of our processing of certain information. Please see Additional Privacy Notice for more information about region-specific rights.
You may exercise the rights provided to you by contacting us via this form. You may also be able to access, correct, and delete certain information through your user account with the Websites. Please note that certain information may be exempt from your requests under applicable law. We may also need to retain certain information to comply with applicable law or exercise our legal rights.
We may need to take reasonable steps to verify your identity before responding to certain requests, which may include, at a minimum, depending on the type of request and the sensitivity of the information involved, verifying your name and email address. If stated in applicable law, you may designate an authorized agent to make requests on your behalf. To do so, you or the agent must provide us with written authorization or power of attorney, signed by you, for the agent to act on your behalf. You still need to verify your identity directly with us.
If we ask for and rely on consent to process information, you have the right to revoke this consent at any time by using our contact form with the subject line “Revoke Consent” and explaining the information for which you want to revoke consent. Please be advised that revocation of consent will not affect the validity of consent prior to revocation.
Depending on your jurisdiction, you may also have the right to contact the applicable data protection authority with complaints regarding our practices. Please consult the website of your jurisdiction’s data protection authority for more information. However, we encourage you to contact us first to resolve any questions or complaints.
Right to Opt Out of “Sales” and “Sharing”
If you are a resident of California and certain other jurisdictions, you may have the right to opt out of our “sale” or “sharing” of your information, which may be characterized by some laws as “targeted advertising.”
As discussed in the “Cookies, Analytics, and Advertising” section above, we may provide your information to advertising providers for purposes such as to show you more relevant ads. Under applicable law, the disclosure of your personal information to these parties to provide these services may be considered a “sale” of personal information, a “sharing” of personal information, or the processing of personal information for targeted advertising purposes.
To opt out of our online disclosures of your information (such as through cookies and similar technologies) for purposes that could be considered a “sale” or “sharing,” please adjust your privacy settings in your browser and device. To opt out of any other such disclosures, use our contact form.
Please note that we do not knowingly “sell” or “share” personal information of individuals under 16 years of age.
Your Choices About Marketing Communications and Push Notifications
Email: Subject to any applicable legal requirements, if you provide us with your email address, we may send you marketing and promotional communications (in addition to news communications) on behalf of ourselves and other parties (this may include, for example, offers from our partners). You may opt out of these emails using the “Unsubscribe” instructions in such emails. If you unsubscribe from marketing and promotional emails, you may still receive administrative and service-related emails from us, such as emails regarding your account and updates to our terms or policies.
Text/SMS: Subject to any applicable legal requirements, if you provide us with your mobile phone number, we may send you text/SMS-based marketing and promotional communications. To opt out of these communications, reply “STOP” to the number in which the communication was sent.
Direct Mail: Subject to any applicable legal requirements, if you provide us with your physical address, we may send you marketing and promotional communications via direct mail. To opt out of these communications, please use our contact form.
Push Notifications. Our Apps may send push notifications to your device. You can disable these notifications and adjust your notification preferences in your device settings.
Retention:
We retain your information for as long necessary for the purposes for which it is collected and processed. These periods vary depending on the nature of the information, your interactions with us, and the purposes for collection/processing.
When the purposes for which we processed your information have concluded, we will either permanently delete or destroy the relevant information or anonymize it such that it no longer identifies you.
Security:
We use reasonable efforts to protect your information from unauthorized access, use, or disclosure, but we cannot guarantee the absolute security of your information because no method of transmission over the Internet or electronic storage is fully secure.
To improve the security of your information and accounts, it is advised that you create strong, unique passwords, log off accounts when not in use, and not access the Websites over unsecured networks. You are solely responsible for any activity that occurs through your account, whether or not you authorized the activity. Please notify us if you become aware of unauthorized use of your password or account.
Miscellaneous
International users
We are located and process your information in the United States and elsewhere. We and our vendors may process your information in the United States and other locations, where privacy protections may not be the same or as strict as the protections in your jurisdiction / country of residence. By using or otherwise engaging with the Websites, you acknowledge and consent to us transferring and processing your information in the United States and anywhere else that we and our personnel, affiliates, vendors, and other associated parties are located.
Third-party links
The Websites may contain links to third-party websites, apps, or other services. This Policy does not apply to the privacy practices of other parties or their websites, apps, or other services. Before engaging with another party, please review their privacy policy.
Children’s privacy
The Websites are not intended for use by children. We do not knowingly collect “personal information” (as defined in the U.S. Children’s Online Privacy Protection Act) from children under the age of 13, or under the age of 16 in the case of children in the European Economic Area (EEA). If we learn that someone under 13 (or 16 in EEA regions) has provided us with their personal information, we will use reasonable efforts to remove that information from our databases as required by applicable law.
Changes to this Policy
We may update this Policy from time to time. When we do so, we will post the updated Policy here with a new “Last updated” date. By continuing to use or otherwise interact with the Websites after an update to this Policy is posted, you agree that we may process your information in accordance with the updated Policy.
Contact Us
If you have questions about this Policy or our privacy practices, please use our contact form or contact us via phone at (646) 504-8303.
Additional Privacy Notice
This Additional Privacy Notice is provided to comply with the requirements of certain state privacy laws, including California, Colorado, Connecticut, and Virginia. This Additional Privacy Notice only applies to residents of those states and explains what information we collect about you, where and from whom we collect it, why we collect it and your respective state rights related to it.
Categories of PI (personal identifiers) we collect. We have collected / reserve the right to collect the following categories of PI from consumers:
- Identifiers, including name, email address, physical address, telephone number, IP address, and login information.
- Internet, electronic network, and device activity and device information and any related identifiers, such as information about your interactions with the Websites, device and advertising identifiers, information about your device hardware and software (see section “Information We Collect”).
- Geolocation data, such as your general location inferred from an IP address.
- Legally protected classification information, including gender and marital status.
- Inferences from some of the above information to create a profile reflecting, for example, your preferences.
- Sensitive personal information, such as information concerning your health, sex life, or sexual orientation, and login information allowing access to a user account.
- Other information that directly or indirectly identifies you, such as date of birth, account preferences, and information on any publicly available social media profile of yours through which you use the Websites.
Categories of sources from which we collect PI. We collect the categories of PI listed above either directly from you, automatically from your activities on the Websites or your devices, our affiliates, and from other parties such as data enrichment services.
Purposes for collection and disclosure. In the past 12 months, we or our vendors have collected the categories of PI listed above for the business or commercial purposes listed above in the section, “How We Use Your Information.” Our purposes for using PI may vary based on the circumstances and the nature of the PI.
Categories of parties to which we disclose PI: We or our vendors have disclosed or reserve the right to disclose the categories of PI listed above for a business or commercial purpose to the categories of parties listed in the “How We Disclose Your Information” section. To whom we disclose PI varies based on the nature of the PI and the purposes for which we use it.
Categories of PI we have “sold” or “shared”: We have, or reserve the right to, “sell” and “share” (as such terms are defined in the CCPA) IP addresses (an “identifier”) and internet, electronic network, and device activity and device information and related identifiers (such as information collected via advertising cookies). We have “sold” these categories of PI to, and/or “shared” them with, the following categories of parties: advertising providers such as ad networks, analytics providers, and partners (as described in “How We Disclose Your Information). We do not knowingly “sell” or “share” the personal information of children under 16.
Retention: See the Retention section of this Policy above for our retention practices.
You have the right to:
- Request that we disclose certain information to you about our collection and use of your PI, including:
- What PI we collect about you
- Our business purpose for collecting PI about you
- The types of third parties with whom we share your PI
- The specific pieces of PI we collect about you and provide it in a readily usable format
- The types of PI that we disclosed about you for a business purpose, and the categories of third parties to whom we disclosed your PI
- You have the right to be informed about the PI we collect about you at or before the time we collect it.
- You have the right to request that we delete any PI that we have about you.
- You have the right to request a correction of any inaccurate information in the PI we collect.
- You have the right to stop us from sharing your PI to display advertisements to you based on your activities, preferences, and interests.
- If we use your sensitive PI for purposes other than to render services or offer products to you, you will have the right to request that we limit the processing of your sensitive PI.
- You will not be discriminated against or penalized for exercising your rights to your PI.
To exercise your rights, please use our contact form.
EEA/UK Data Subject Rights
The European Union’s General Data Protection Regulation (GDPR) and other privacy laws provide certain rights for data subjects. If you are a resident of the European Economic Area (“EEA”) and the Services are targeted to you, please note:
The EU General Data Protection Regulation (GDPR) is a comprehensive data protection law that strengthened the protection of “personal data” (any information relating to an identified or identifiable natural person, so called “data subjects”) in light of rapid technological developments, the increasingly global nature of business and more complex international flows of personal data. The GDPR replaces a patchwork of national data protection laws with a single set of rules, directly enforceable in each EU member state.
You may request information about: the general purpose of the processing; the categories of personal data concerned; who else outside NGS may have received data from NGS; what the source of the information was (if you didn’t provide it directly to NGS); and how long it will be stored. You have the right to correct (rectify) the record of your personal data maintained by NGS if it is inaccurate. You may request that NGS erase that data or cease processing it, subject to certain exceptions. You may also request that NGS cease using your data for direct marketing purposes. In many countries, you have a right to lodge a complaint with the appropriate data protection authority if you have concerns about how NGS processes your personal data. When technically feasible, NGS will—at your request—provide your personal data to you or transmit it directly to another controller at your request.
Reasonable access to your personal data will be provided at no cost to you upon request made to NGS at dataprivacy@ngs.org. If access cannot be provided within a reasonable time frame, NGS will provide you with a date when the information will be provided. If for some reason access is denied, NGS will provide an explanation as to why access has been denied.
Legal Bases for Processing Personal Data
We rely on the following legalities to “process” the personal data described in Section 1 of the Policy (where “process” and its cognates refer to collection, use, disclosure, and other operations performed on personal data):
- Contractual obligations. We may process personal data to honor our contractual obligations to you.
- Legitimate interests. In some cases, we process personal data on the ground that it furthers our legitimate business interests in ways that are not overridden by the interests or fundamental rights and freedoms of the affected individuals, such as customer service, certain promotional activities, analyzing and improving our business, providing security for our Websites, preventing fraud, and managing legal issues.
- Legal compliance. We need to use, share, and disclose information in certain ways to comply with our legal obligations. This includes processing personal data subject to tax, financial, or other governmental regulations.
- With your consent. Where required by law and in some other cases, we process personal data based on your consent. You may withdraw your consent at any time by using our contact form with the subject line “REVOKE” and explaining the personal data and processing activities for which you want to revoke consent.
Our use of cookies:
- Strictly Necessary cookies. These cookies enable you to use our Websites. These cookies are essential to enable you to browse our Websites and use certain features. Disabling them may prevent you from using certain parts of the Websites. Without these cookies, services such as shopping activity and paying activity cannot be provided. These cookies also help keep our Websites safe and secure.
- Preference cookies. These cookies store information such as your preferred country and language selection, login data and website preferences. Without these cookies, our Websites may not be able to remember certain choices you’ve previously made (such as a saved country / language preference) or personalize your browsing experience by providing you with relevant information. These cookies can also be used to recognize your device so that you do not have to provide the same information more than once.
- Performance cookies. These cookies collect information about how you use our Websites such as which pages you visit regularly. These cookies are used to provide you with a high-quality experience by doing things such as tracking page load, site response times, and error messages.
- Targeting / Advertising cookies. These cookies gather information about your use of our Websites so we may improve your experience and provide you with more relevant content and advertising. They are also used to gather feedback on customer satisfaction through surveys. Some of these cookies are from other parties that collect information about users of our Websites in order to provide advertising (on our Websites and elsewhere) based on users’ online activities (so-called “interest-based advertising”) on our Websites and elsewhere online. The other parties may also collect internet browsing information to provide you with ads (from us and other companies) across the internet.