Privacy Policy
Entity Notice:
Doris Day MD PC, doing business as Doris Day MD and Day Dermatology & Aesthetics, operates this website.
Privacy Policy Overview
Your privacy is very important to us. This Privacy Policy explains how we collect, use, and share personal information in accordance with applicable laws and regulations, including the California Consumer Privacy Act (CCPA) and the General Data Protection Regulation (GDPR).
1. Information We Collect
We collect personal information to provide services, including:
- Contact Information: Name, email address, phone number, birthdate (where voluntarily provided), and mailing address.
- Subscription-Specific Data: Preferences for product subscriptions (e.g., delivery frequency, selected products) and payment details for recurring orders.
- Payment Information: Securely processed through third-party providers. Payment details are encrypted during transmission and not stored directly on our servers.
- Device Information and Tracking Data: IP address, browser type, operating system, and other data collected through cookies and similar technologies.
- Behavioral Data: Information about how you interact with our website, such as pages visited, items viewed or added to the cart.
2. How We Use Your Information
We use the information we collect to:
- Fulfill and manage orders, including subscription services.
- Process payments securely through trusted third-party providers.
- Communicate with you about orders, subscriptions, news, and promotional offers.
- Enhance your shopping experience with personalized recommendations.
- Detect and prevent fraudulent transactions or unauthorized access.
- Comply with legal obligations and protect our rights.
3. Subscription-Specific Data
If you subscribe to our products, additional information is collected and processed to manage your subscription:
- Recurring Billing: Payment details are processed for recurring charges.
- Communication Preferences: Notifications about subscription updates or changes.
Retention: Retention of subscription-related data is described in Section 9 below.
4. Cookies and Tracking Technologies
We use cookies, web beacons, and similar technologies to:
- Enhance site functionality and user experience.
- Analyze site performance and usage patterns.
- Deliver personalized advertisements, including retargeting.
- Track preferences for marketing and shopping optimization.
You can manage or disable cookies through your browser settings or opt out of personalized ads through platforms such as Google Ads Settings.
5. Sharing Your Information
We share personal data with trusted third parties to:
- Process payments.
- Fulfill orders and deliver products.
- Provide customer support and marketing communications.
- Conduct analytics and improve site functionality.
These third parties include but are not limited to:
- Payment processors
- Ecommerce platform
- Email platform
- Review platforms
- Fulfillment providers
- Subscription platforms
- Marketing and analytics providers
6. Google Analytics
This website uses Google Analytics, a web analysis service provided by Google Inc. ("Google"). We use Google's third-party audience data (e.g., age, gender, and interests) with Google Analytics reports. This information is used for aggregate reporting and is not connected to user-identifiable data.
In no circumstances shall Google combine your IP address with other Google data. You can prevent Google's tools from recognizing you on return visits to this site by:
- Disabling cookies on your browser, or
- Using the Google Analytics Opt-out Browser Add-on: https://tools.google.com/dlpage/gaoptout.
You can also opt out of Google's interest-based ad serving by visiting Google Ads Settings at www.google.com/settings/ads.
7. Fraud Prevention
We may collect IP addresses, device information, and behavioral activity to:
- Detect and prevent fraudulent transactions.
- Monitor and secure user accounts against unauthorized access.
8. Data Transfers Outside the EEA
For users in the European Economic Area (EEA), personal data may be transferred outside the EEA. These transfers comply with GDPR through mechanisms such as Standard Contractual Clauses or adequacy decisions approved by the EU Commission.
9. Data Retention
We retain personal information only as long as necessary for:
- Completing transactions.
- Fulfilling legal or regulatory obligations.
- Resolving disputes or enforcing agreements.
Subscription-related data is retained as long as the subscription is active and no longer than necessary for the purposes described. Some data, such as canceled subscriptions or deleted customer records, may be removed by third-party service providers (e.g., the Seal Subscriptions app) according to their data retention settings. We may also retain certain information afterward if required by law.
Marketing and email subscription data is retained until you unsubscribe or withdraw your consent, unless a longer retention period is required by law.
10. Children’s Privacy
This website is not intended for children under 18. We do not knowingly collect personal data from children under 13 in compliance with COPPA. If we become aware of such data, it will be deleted promptly.
11. Your Privacy Rights
For California Residents (CCPA):
Right to Know: Request details about the personal information we collect, use, and share.
Right to Delete: Request deletion of your personal information, subject to exceptions.
Right to Opt-Out: Request that we do not sell your personal information (note: we do not sell personal information).
Right to Non-Discrimination: You will not be discriminated against for exercising your privacy rights.
For EU Residents (GDPR):
- Right to Access: Request access to your data.
- Right to Rectification: Request corrections to inaccurate data.
- Right to Erasure: Request deletion of data no longer needed.
- Right to Restrict Processing: Limit how your data is processed.
- Right to Portability: Request a copy of your data or transfer it.
- Right to Object: Object to data processing for marketing.
To exercise your rights, contact us via:
Email: info@drdorisday.com
Mail: Day Dermatology & Aesthetics
10 East 70th Street #1C, New York, NY 10021
We will respond within the timeframes required by applicable law.
12. Security
We implement industry-standard measures to protect your personal data from unauthorized access, disclosure, alteration, or destruction.
13. Changes to This Policy
We may update this Privacy Policy periodically. Changes will be communicated via email or a notice on our website. Your continued use of our site or services after any changes to this Privacy Policy are posted constitutes your acceptance of those changes.
14. Acceptance of Our Privacy Policy
By using this website, you signify your acceptance of our Privacy Policy and agree to adhere to the terms and conditions posted on this website. Your continued use of our website after changes are posted constitutes your acceptance of those changes.
15. HIPAA Compliance
We protect patient medical records in accordance with HIPAA laws. This includes implementing safeguards to secure protected health information (PHI) and limiting access to only authorized personnel.
16. Contact Us
If you have questions or concerns about this Privacy Policy, contact us at:
Email: info@drdorisday.com
Mail: Day Dermatology & Aesthetics
10 East 70th Street #1C, New York, NY 10021
