PRIVACY POLICY

PRIVACY POLICY

Last Updated on 11/1/2021

Your privacy is very important to us. This privacy policy (“Privacy Policy”) addresses how BODY, INC dba Body by Raven Tracy ("Body by Raven Tracy") collects, protects, and uses information you provide. By visiting www.bodybyraventracy.com (the "Site"), and providing your information to us, you agree to accept the practices described in this Privacy Policy.

What Information Is Collected

Types of Information

We may collect the following types of Information through our Services:

(1) “Personal Data” such as your name, e-mail address and phone number, account or mailing address, and other information that can be used to directly identify and contact you (which, in some cases, may include certain Device Information or information from the signature block of your e-mail);

(2) “Device Information” which is information relating to the computer or device you are using when you access our Services, such as your computer’s IP address, your mobile device identifiers (including Apple IDFA or an Android Advertising ID), the type of browser and operating system you are using, the identity of your internet service provider, and your device and browser settings.

(3) “Usage Data” which is data related to your use of the Services such as the pages you visit, the sites you use before or after visiting ours, your actions within the Services, the type of content or advertisements you have accessed, seen, forwarded and/or clicked on, Wi-Fi connections, date and time stamps, log files, and diagnostic, crash, website, and performance logs and reports.

As described in more detail below, we collect Personal Data only when you provide it to us but may collect other types of Information whenever you use our Services through automated means such as software developer kits, cookies and web beacons (which are discussed in more detail below).

Personal Data

You may enter the Website and browse its content without submitting any Personal Data. However, we will need to collect relevant Personal Data to provide you with certain services offered by the Services, including if you choose to create an account on our website, contact us or otherwise communicate with us in any way, subscribe or opt in to our newsletter, alerts, or other communications, subscribe or opt in to SMS messages, sign up for product waitlists, participate in a contest or promotion, order our products, submit product reviews, questions, feedback or user comments, complete an optional survey, contact customer service or otherwise interact with the Services.

We use the Personal Data that we collect to respond to your requests, communicate with you regarding the Services and our content, send you promotional or marketing communications, guard against potential fraud, provide product information, se

rvice your requests and orders, and provide you with the applicable services, features or functionality associated with your submission. When you submit Personal Data through the Services, whether by directly providing it to us upon request or voluntarily disclosing it through comments, you are giving your consent to the collection, use and disclosure of your Personal Data as set forth in this Privacy Policy.

Device Information & Usage Data

Whether or not you submit Personal Data, any time you visit our Services, we or our service providers may collect, store or accumulate certain Device Information and Usage Data. This Information may be used in furtherance of the purposes described above with respect to Personal Data and in aggregate form for internal business purposes, such as optimizing the Services, evaluating the popularity of content, generating statistics and developing marketing plans, and otherwise for general administrative, analytical, research, optimization, and security purposes.

Information to and from Social Networks

We may provide functionality that will allow you to connect to our Services through a third-party social network such as Facebook, Twitter or Instagram (each, a “Social Network”). If you connect through a Social Network, we may collect Personal Data from your profile, such as your name, username, and e- mail address, and we will use that Personal Data for the purposes set forth herein. In addition, our Services may offer social sharing features which will allow you to “Share” or “Like” on a Social Network. If you decide to use such features, it may allow the sharing and collection of Information both to and from such Social Network, so you should check the privacy policy of each Social Network before using such features.

How We Use Your Information

In no event will we disclose, rent, sell or share any of your Personal Data to third parties for direct marketing purposes. We only share your Information with third parties for the purposes described below.

We contract with companies or individuals to provide certain services related to the functionality and features of the Services, including content streaming, email and hosting services, software development, data management, orders, payment processing, management of forms, quizzes and polls, customer service, returns, live chat, marketing, fraud prevention, product review and questions, and administration of contests and other promotions. We call them our “Service Providers.” We may share your Information with Service Providers as appropriate for them to perform their services for us and our Service Providers are permitted to use your Information only for such purposes.

We use Shopify, Inc. to host our website and to process our orders. Shopify’s privacy policy is located at: https://www.shopify.com/legal/privacy

The server automatically logs the IP address you use to access our website as well as other information about your visit such as the pages accessed, information requested, the date and time of the request, the source of your access to our website (e.g. the website or URL (link) which referred you to our website), and your browser version and operating system.

In certain instances, as with Paypal and Afterpay, which process payments, you may also be directed to a third-party website which is governed by its own privacy policy:

https://www.paypal.com/us/webapps/mpp/ua/privacy-full https://www.afterpay.com/privacy-policy

We may also share or transfer Device Information and Usage Data in aggregated, anonymized form with or to our affiliates, licensees, partners and Service Providers for administrative, analytical, research, optimization, and security purposes, but no such Information will be linked with your Personal Data or be used to identify or contact you.

Finally, we may share your Information: (i) In response to subpoenas, court orders, or other legal process; to establish or exercise our legal rights; to defend against legal claims; or as otherwise required by law. In such cases we reserve the right to raise or waive any legal objection or right available to us; (ii) When we believe it is appropriate to investigate, prevent, or take action regarding illegal or suspected illegal activities; to protect and defend the rights, property, or safety of our company, our users, or others; and in connection with the enforcement of our Terms of Use and other agreements; or (iii) In connection with a corporate transaction, such as a divestiture, merger, consolidation, or asset sale, or in the unlikely event of bankruptcy.

Cookies and Web Beacons

This Site uses cookies and web beacons to gather aggregated, non-personally identifiable information in order to help us better understand user behavior, tell us which parts of this Site users have visited, and facilitate and measure the effectiveness of advertisements and web searches. Such information may be shared with trusted third parties but the information will not personally identify you. To the extent that Internet Protocol (IP) addresses or similar identifiers are considered personal information by local law, we also treat these identifiers as personal information. Similarly, to the extent that non-personal information is combined with personal information, we treat the combined information as personal information. As we develop this Site, we may gather additional information from you through the use of other technologies.

Cookies

A cookie is a small text file that is stored on a user's computer for record-keeping purposes. We use cookies to collect anonymous information about how you use this Site by setting and accessing cookies on your computer. These cookies track information such as how often you visit our Site, what pages you view, and where you go after you leave our Site. The cookies are not connected to your personal information. We recommend that you leave cookies turned on because they allow you to take advantage of some of the Site's features and disabling may cause some features on the Site to operate improperly.

Web Beacons

Web beacons, or clear gifs, are tiny graphics with a unique identifier, similar in function to cookies, and are used to track the online movements of web users. In contrast to cookies, which are stored on a user's computer hard drive, web beacons are embedded invisibly on web pages. Web beacons help us better manage content on our Site by informing us what content is effective. We do not tie the information gathered by web beacons to your personal information.

Security

The security of your personal information is important to us. When you provide sensitive personal information (such as a credit card number), we encrypt that information using secure socket layer technology (SSL). We follow generally accepted industry standards to protect the personal information submitted to us and to guard against loss, unauthorized access, misuse, disclosure, alteration and destruction, both during transmission and once we receive it. However, no method of transmission over

the Internet, or method of electronic storage, is 100% secure. Therefore, while we strive to use commercially acceptable means to protect your personal information, we cannot guarantee the absolute security of such information. Please keep this in mind when disclosing any personal information to us or any other party online. In the event that we learn of a security breach, we may notify you electronically or in writing, to the extent required by law, so you may take appropriate protective steps. If you have any questions about security on our Site, please contact us as indicated below.

Links to Other Sites

This Site may contain links to other sites that are not owned or controlled by us. Please be aware that we are not responsible for the privacy practices of such other sites. This privacy statement applies only to information collected by this Site and does not apply to other sites that are owned and operated by third parties. We encourage you to be aware when you leave our Site and to read the privacy statements of each and every Web site that collects personally identifiable information. This Privacy Policy does not cover any information that you disclose to such sites or that they may collect, and you will need to contact the other sites directly for information regarding their privacy policies. The privacy policies of the other sites may be significantly different from this Privacy Policy. We are not responsible for the privacy practices of the other sites and cannot guarantee the security of any of your personal information collected there.

Opting Out

As described above, we may use the Personal Data we collect from you to send you newsletters or other communications from us, including those promotional or marketing in nature. If you do not want to receive such communications, you have the right to opt out.

You may also at any time opt out of receiving communications from us by sending an e-mail to info@bodybyraventracy.com with the subject line “Opt Out.”

At your option, you may communicate through text messages regarding your orders and our products. You may withdraw permission to communicate with you by text message at any time by texting “STOP” to 31996. For more information or assistance, reply “HELP” to 31996 or contact us at info@bodybyraventracy.com.

Disallowing Cookies and Location Data Collection

You can opt out of the collection and use of certain information, which we collect about you by automated means, by changing the settings in the device you use to access the Services. In addition, your browser may tell you how to be notified and opt out of receiving certain types of cookies. Please note, however, that without cookies you may not be able to use some or all of the features of the Services.

The online advertising industry also provides websites from which you may opt out of receiving targeted ads from data partners and other advertising partners that participate in self-regulatory programs. You can access these and learn more about targeted advertising and consumer choice and privacy, at:

http://optout.networkadvertising.org http://www.youronlinechoices.eu https://youradchoices.ca/choices http://optout.aboutads.info

Children Under 18

This Site is not designed for children and we do not wish to collect personal information from children under 18. If a child under the age of 18 has provided us with personally identifiable information online, we ask that a parent or guardian contact us to have that child’s information deleted. You must be 18 or over to purchase products and provide personal information to this Site.

Important Information for California Residents

California’s “Shine the Light” law, permits our users who are California residents to request and obtain from us a list of what personal information (if any) we disclosed to third parties for their own direct marketing purposes in the previous calendar year and the names and addresses of those third parties. Requests may be made only once per year per person, must be sent to info@bodybyraventracy.com, and are free of charge. However, we do not disclose personal information protected under the “Shine the Light” law to third parties for their own direct marketing purposes.

The CCPA provides California residents with the following rights:

1. Right to Know: You have the right to request that we disclose certain information to you about the Personal Information we collected, used, disclosed, and sold about you in the past 12 months. This includes a request to know any or all of the following:

  • The categories of Personal Information collected about you;

  • The categories of sources from which we collected your Personal Information;

  • The categories of Personal Information that we have sold or disclosed about you for a business

    purpose;

  • The categories of third parties to whom your Personal Information was sold or disclosed for a

    business purpose;

  • Our business or commercial purpose for collecting or selling your Personal Information; and

  • The specific pieces of Personal Information we have collected about you.

2. Data Portability: You have the right to request a copy of Personal Information we have collected and maintained about you in the past 12 months.

3. Right to Deletion: You have the right to request that we delete the Personal Information we collected from you and maintained, subject to certain exceptions. Please note that if you request deletion of your Personal Information, we may deny your request or may retain certain elements of your Personal Information if it is necessary for us or our service providers to:

  • Complete the transaction for which the Personal Information was collected, provide a good or service requested by you, or reasonably anticipated within the context of our ongoing business relationship with you, or otherwise perform a contract between our business and you.

  • Detect security incidents, protect against malicious, deceptive, fraudulent, or illegal activity; or prosecute those responsible for that activity.

  • Debug to identify and repair errors that impair existing intended functionality.

  • Exercise free speech, ensure the right of another consumer to exercise his or her right of free

    speech, or exercise another right provided for by law.

  • Comply with the California Electronic Communications Privacy Act pursuant to Chapter 3.6

    (commencing with Section 1546) of Title 12 of Part 2 of the Penal Code.

  • Engage in public or peer-reviewed scientific, historical, or statistical research in the public interest that adheres to all other applicable ethics and privacy laws, when the deletion of the information is likely to render impossible or seriously impair the achievement of such research, if you have provided informed consent.

  • To enable solely internal uses that are reasonably aligned with your expectations based on your relationship with us.

  • Comply with a legal obligation.

  • Otherwise use the Personal Information, internally, in a lawful manner that is compatible with the

    context in which you provided the information.

4. Right to Opt-In to Financial Incentives: You have the right to opt-in to financial incentives. You also have the right to opt-out at any time. Please see the “Notice of Financial Incentive(s)” section below for more information about the financial incentive(s) and/or price or service difference(s) that we may offer.

5. Right to Opt-Out/In: You have the right to opt-out of the sale of your Personal Information. You also have the right to opt-in to the sale of Personal Information.

6. Right to Non-Discrimination: You have the right not to receive discriminatory treatment by us for the exercise of your CCPA privacy rights. Unless permitted by the CCPA, we will not:

  • Deny you goods or services.

  • Charge you different prices or rates for goods or services, including through granting discounts or

    other benefits, or imposing penalties.

  • Provide you a different level or quality of goods or services.

  • Suggest that you may receive a different price or rate for goods or services or a different level or

    quality of goods or services.

Some of our products and services, however, may require your Personal Information. If you choose not to provide your Personal Information that is necessary to provide any aspect of our products or services, you may not be able to use those products or services. In addition, as described in the section captioned “Your Rights” in the Privacy Policy, it is possible to change your browser settings to block the automatic collection of certain information.

III. SUBMITTING A VERIFIED CONSUMER REQUEST

To exercise your Right to Know, Data Portability, and Right to Delete, you must provide us with sufficient information to allow us to verify your identity, and describe your request with sufficient detail that allows us to properly understand, evaluate, and respond to it. Once we receive the information you provide to us, we will review it and determine if more information is necessary to verify your identity as required by law, and we may request additional information in order to do so.

To exercise your California privacy rights described above, please submit a verifiable request to us by:

Emailing us at to info@bodybyraventracy.com.

Only you, or a person authorized by you to act on your behalf, may make a verifiable consumer request related to your Personal Information.

You may only make a verifiable consumer request for Right to Know or Data Portability twice within a 12- month period. The verifiable consumer request must:

  • Provide sufficient information that allows us to reasonably verify you are the person about whom we collected Personal Information or an authorized representative. We will need to verify your identity with at least two (2) pieces of information, such as name and email address.

  • Describe your request with sufficient detail that allows us to properly understand, evaluate, and respond to it.

We may deny your request if we are unable to verify your identity or have reason to believe that the request is fraudulent.

Consumer Request by an Authorized Agent

If any authorized agent submits a consumer request on your behalf, in order to confirm that person or entity’s authority to act on your behalf and verify the authorized agent’s identity, we require the below items:

  • To verify your authorization to request on behalf of a California resident, provide one or more of the following: (1) California Secretary of State authorization, (2) written permission from the California resident, or (3) power of attorney.

  • Sufficient information to verify the authorized agent’s identity, depending on the nature of the request.

  • To verify the identity of the California resident for whom the request is being made, provide the information set forth above for verification of the consumer request.

We cannot respond to your request or provide you with Personal Information if we cannot verify your identity or authority to make the request and confirm the Personal Information relates to you. We will only use Personal Information provided in a verifiable consumer request to verify the request’s identity or authority to make the request.

We will acknowledge receipt of the request within ten (10) business days of its receipt. We will respond to a verifiable consumer request within forty-five (45) days of its receipt. If we require more time (up to 90 days), we will inform you of the reason and extension period in writing. We will deliver our written response by mail or electronically, at your option. Any disclosures we provide will only cover the 12-month period preceding the receipt of the verifiable consumer request. The response we provide will also explain the reasons we cannot comply with a request, if applicable. For Data Portability requests, we will provide the responsive information in a portable and, to the extent technically feasible, in a readily useable format that allows you to transmit the information to another entity without hindrance.

We do not charge a fee to process or respond to your verifiable consumer request unless it is excessive, repetitive, or manifestly unfounded. If we determine that the request warrants a fee, we will tell you why we made that decision and provide you with a cost estimate before completing your request.

IV. SALE OF PERSONAL INFORMATION

We do not sell your Personal Information to third parties for money. However, the CCPA defines “sale” broadly, and that definition could include information that we have shared with certain technology providers that provide certain services to us, including delivering advertisements that we believe may be of interest to you. In the past twelve (12) months, we have “sold” (as defined under the CCPA) the following categories of Personal Information to the following categories of third parties:

  • Category 1: Advertising Networks and Social Networks

  • Category 3: Advertising Networks and Social Networks

  • Category 4: Advertising Networks and Social Networks

Category 5: Advertising Networks and Social Networks

We “sell” (as defined under the CCPA) your Personal Information for the following business or commercial purposes:

  • Marketing our products and services to you, including sending you promotional or marketing communications, which may include contests, promotions, and special offers for products and services.

  • Auditing related to a current interaction with the consumer and concurrent transactions, including, but not limited to, counting ad impressions to unique visitors, verifying positioning and quality of ad impressions.

We do not and will not knowingly sell the Personal Information of minors under the age of 16 without affirmative authorization.

Do Not Track

We use analytics systems and providers and participate in ad networks that process Personal Information about your online activities over time and across third-party websites or online services, and these systems and providers may provide some of this information to us. We currently process or comply with any web browser’s “do not track” signal or similar mechanisms.

Note, however, that you may find information about how to opt out of online behavioral advertising and/or block or reject certain tracking technologies in our Privacy Policy.

V. NOTICE OF FINANCIAL INCENTIVE(S)

From time to time, we may offer a financial incentive and/or price or service difference to our customers related to the collection of Personal Information. This Notice of Financial Incentive(s) explains the financial incentives or price or service differences that we may offer, so that you can make an informed decision on whether you would like to participate.

Customers who sign up for our emails may receive a coupon code on their next purchase. You can opt-in to receive this code by providing your email address and/or phone number. You have the right to withdraw your consent to participate at any time and can do so by clicking on the “Unsubscribe” link at the bottom of our marketing communications.

Generally, we do not assign monetary or other value to Personal Information. However, in the event we are required by law to assign such value in the context of financial incentives or price or service differences that we offer, we have valued the Personal Information collected and used as being equal to the value of the discount code or financial incentive offered, and the calculation of the value is based upon a reasonable and good-faith estimate often involving the consideration of (i) the categories of Personal Information collected (e.g., email addresses and phone numbers), (ii) the value of the discount offered, and (iii) the value of the total purchase (excluding taxes and fees). The disclosure of the value described herein is not intended to waive, nor should be interpreted as a waiver to, our proprietary or business confidential information, including trade secrets, and does not constitute any representation with regard to generally accepted accounting principles or financial accounting standards.

VI. MODIFICATIONS AND UPDATES TO THIS CALIFORNIA NOTICE

This California Notice replaces all previous disclosures we may have provided to you about our information practices with respect to the Services. We reserve the right, at any time, to modify, alter, and/or update this California Notice, and any such modifications, alterations, or updates will be effective upon our posting of the revised California Notice. We will use reasonable efforts to notify you in the event material changes are made to our processing activities and/or this California Notice, such as by posting a notice on the Services or sending you an email. Your continued use of the Services following our posting of any revised California Notice will constitute your acknowledgement of the amended California Notice.

VII. ADDITIONAL INFORMATION AND ASSISTANCE

If you have any questions or concerns about this California Notice and/or how we process Personal Information, please contact us at:

info@bodybyraventracy.com

Nevada Residents

info@bodybyraventracy.com.

Nevada law permits our users who are Nevada consumers to request that their personal data not be sold

(as defined under applicable Nevada law), even if their personal data is not currently being sold.

Requests may be sent to

International Data Transfers

If you are located outside the United States, including in the EEA, we transfer Personal Data for processing in the United States, including Personal Information sent via e-mails or when you make an order. Under the GDPR, we are considered a “controller” of the Personal Data of EEA Data Subjects. By using the Services outside the United States, you acknowledge that we will transfer your data to, and store your Personal Data in, the United States, which may have different data protection rules than in your country, and Personal Data may become accessible as permitted by law in the United States, including law enforcement and/or national security authorities in the United States. For transfers of data into and out of the EEA, pursuant to Article 46 of the GDPR, we use standard contractual clauses adopted by the European Commission.

Rights of EEA Residents

This section of the Privacy Policy is applicable to individuals located in the EEA, Switzerland, and the United (“EEA Data Subjects”).

Our purpose for collecting and processing Personal Data from EEA Data Subjects is to provide them with the features and functionalities of our Services and information regarding our Services. The legal basis for processing Personal Data is because it is necessary for performance of a contract between us to provide you with the Services and its related features and functionality and in other circumstances may be necessary for our legitimate interests in making the Services available and secure, or to exercise our rights or comply with legal obligations. We also rely on your consent to receive information about our Services. You may withdraw consent from receiving marketing and promotional communications by clicking the “Unsubscribe” link on the communication or sending an e-mail

to info@bodybyraventracy.com with the subject line “Opt Out.” If EEA Data Subjects do not provide Personal Data to us or withdraw consent for processing such Personal Data, we may not be able to provide such individuals with certain features or functionalities of the Services or information regarding

the Services, including processing orders. Note that we do not collect any sensitive personal information about you.
EEA Data Subjects may obtain information about the Personal Data that we hold about them by contacting us at
info@bodybyraventracy.com.

Amendments or Modifications to this Privacy Policy

We reserve the right to amend this Privacy Policy at any time without prior notice. Notice of any change will be posted on this Site. Please check this page periodically for changes. Your continued use of the Site after any changes or revisions to this Privacy Policy shall indicate your agreement with the terms of such revised Privacy Policy.

Contact Us

If you have any questions regarding the use of our Site or Privacy Policy, please contact us please contact us info@bodybyraventracy.com with “Privacy” in the subject line of your email.