Privacy policy.

Privacy policy

This privacy policy describes how we, the data controller NA Sher Foundation c/o Hannah Sher

13 Sher Ln, Chelsea, ME 04330 (hereinafter “NA Sher Foundation” or “we” or “us”) collect, store and process information about individual visitors to this website.

This privacy policy only applies to the website of NA Sher Foundation on which this privacy policy is stored or from which reference is made to this privacy policy by means of a link (hereinafter: "website"). This privacy policy does not apply to linked websites that are not owned and controlled by NA Sher Foundation.

Commitment to data protection 

Personal information is any information relating to personal or material circumstances that relates to an identified or identifiable individual. This includes, for example, your name, date of birth, e-mail address, postal address or telephone number as well as online identifiers such as your IP address. In contrast, information of a general nature that cannot be used to determine your identity is not Personal information. This includes, for example, the number of users of a website. 

In principle, we will only use your Personal information in accordance with the applicable data protection laws, in particular Maine`s An Act to Protect the Privacy of Online Customer Information (“Act”), the General Data Protection Regulation (“GDPR”), and only as described in this privacy policy. 

However, we reserve the right to put this data to additional uses to the extent permitted or required by law or necessary to support legal or criminal investigations. In this case, we will inform you again about this further data processing to the extent required by law and obtain your consent.

In the next sections we explain when and how we process Personal information about you when you visit our website.

Purposes of use of Personal information and legal basis 

a) Log Files

We only collect and process access data that your internet browser automatically transmits to us for technical reasons in order to provide the website. Depending on the access protocol used, the protocol data record contains general information with the following contents: Your session data (usage behavior, length of stay, which links were clicked on, etc.), your abbreviated and unabbreviated IP address, your browser version, your operating system, your website-specific settings, your cookie IDs, your pixel IDs. This data does not allow any direct inference to your person and is processed to improve our website offer and to defend against attempted attacks on our web server. The legal basis for the processing of your Personal information is Art. 6 (1) f) GDPR. We have a legitimate interest in presenting you with a website optimized for your browser and in enabling communication between our server and your device.

b) Contact requests 

Enquiries via telephone, email or social media may include your name, address, e-mail address, the subject of your contact and your message and your phone number if provided. We process and store the Personal information provided in the contact enquiry solely for the purpose of processing and responding to your enquiry and contacting you. The legal basis for the processing of your Personal information is Art. 6 (1) b) GDPR.

c) Donations

We store and process information that you give us as part of a donation primarily for the purpose of carrying out the collection of donations that you have instructed us to do. Your donation will be processed through the payment service provider PayPal as described below and the payment data will not be passed on to any other third parties. The data collected is required for carrying out the donation. The user's e-mail address is required to confirm receipt of the donation. The data will not be used for any other purpose. The legal basis for the processing of your personal information is Art. 6 (1) b) GDPR.

If you make a donation your payment will be processed via the payment service provider PayPal and your Personal information will be processed through the payment system of PayPal. As such PayPal transmits the following Personal information to PayPal S.á.r.l. & Cie, S.C.A. in order to process your donation: Total amount of the donation, Reference on the PayPal account, your e-mail address of the PayPal account, Encrypted PayPal account number. The legal basis for the processing of your Personal information is the establishment and implementation of the user contract for the use of the service in accordance with Art. 6 (1) b) GDPR

d) Administration, financial accounting, office organization, contact management

We may also process your Personal information in the context of administrative tasks as well as organization of our operations, financial accounting, offline donations, and compliance with legal obligations, such as archiving Art. 6 (1) c) GDPR. In this regard, we process the same data that we process in the course of providing our contractual services Art. 6 (1) b) GDPR. 

e) Cookies and similar technologies 

We use so-called cookies on our website. Cookies are small text files that are stored on your respective device (PC, smartphone, tablet, etc.) and saved by your browser. For further information please refer to our Cookie Policy. The legal basis for the use of cookies is your consent (Art. 6 (1) a) GDPR) as well as our legitimate interest (Art. 6 (1) f) GDPR).

Transfer of Personal information 

NA Sher Foundation will not disclose or otherwise distribute your Personal information to third parties unless this is necessary for the performance of our services (legal basis for processing: Art. 6 (1) b) GDPR), you have consented to the disclosure (legal basis for processing: Art. 6 (1) a) GDPR) or the disclosure of data is permitted by relevant legal provisions. 

NA Sher Foundation is entitled to outsource the processing of your Personal information in whole or in part to external service providers acting as processors for NA Sher Foundation pursuant to Art. 4 No. 8 GDPR within the framework of the data protection provisions. External service providers support us, for example, in the technical operation and support of the website, data management, the provision and performance of services, marketing, as well as the implementation and fulfillment of reporting obligations. 

The service providers commissioned by NA Sher Foundation process your data exclusively in accordance with our instructions. NA Sher Foundation remains responsible for the protection of your data, which is ensured by strict contractual regulations, technical and organizational measures and additional controls by us.

Personal information may also be disclosed to third parties if we are legally obliged to do so e.g., by court order (legal basis for processing: Art. 6 (1) (c) GDPR) or if this is necessary to support criminal or legal investigations or other legal investigations or proceedings at home or abroad or to fulfill NA Sher Foundation' legitimate interests (legal basis for processing: Art. 6 (1) (f) GDPR).

Transfer of Personal information

NA Sher Foundation will not sell, rent, or otherwise transfer your Personal information to third parties. We will transfer your data to third parties if you have consented to this in accordance with Art. 6 (1) (a) GDPR, or in the following cases:

NA Sher Foundation may engage other companies and individuals in certain cases to fulfill its obligations to its customers on its behalf. This may involve sharing your data with these third parties in order to provide products or services to you. Examples include payment data processing and technical support. In these cases, data is transferred to such service providers and contractors (such as payment service providers, technical service providers) for the purpose of fulfilling the contract in accordance with Art. 6 (1) (b) GDPR.

It goes without saying that NA Sher Foundation ensures that the respective service provider guarantees data security before passing on Personal information. NA Sher Foundation will therefore only commission companies that can guarantee secure and proper data processing based on their qualifications and their technical and organizational capabilities.

Storage and retention 

Your Personal information will be stored by us only for as long as is necessary to achieve the purposes for which the data was collected or - if statutory retention periods exist that go beyond this point and for the duration of the legally prescribed retention period (typically 6 years). We then delete your Personal information. Only in a few exceptional cases is your data be stored beyond this period, e.g., if storage is necessary in connection with the enforcement of and defense against legal claims against us. 

NA Sher Foundation is entitled to process your Personal information insofar as this is necessary to fulfill legal obligations. For this purpose, NA Sher Foundation may transfer this data in particular to authorities, law enforcement agencies and courts. In this case, the transfer of your data is required by Art. 6 (1) (c) GDPR for compliance with a legal obligation to which we are subject. NA Sher Foundation is further entitled to process Personal information if and to the extent necessary to detect or prevent misuse of this website or to enforce claims of NA Sher Foundation, our staff, or users, whereby the data processing in these cases is necessary to protect these aforementioned legitimate interests of NA Sher Foundation pursuant to Art. 6 (1) (f) GDPR. Insofar as the disclosure of health data is necessary for the assertion of claims or the defense against claims, the related data processing is based on Art. 9 (2) f) GDPR.

International transfers

Our main operations are based in the USA and your Personal information is generally processed, stored and used in the USA. In some instances, your Personal information may be processed outside the USA. If and when this is the case, we take steps to ensure there is an appropriate level of security, so your Personal information is protected in the same way as if it was being used within the USA.

Automated decision-making

Automated decision-making including profiling pursuant to Art. 22 (1) and (4) GDPR does not take place on the part of NA Sher Foundation.

Your Rights

You have a number of ‘Data Subject Rights’ below is some information on what they are and how you can exercise them. These rights are standardized in the Act and the GDPR and includes:

  • the right to information,

  • the right to erasure,

  • the right to rectification,

  • the right to data portability,

  • the right to restriction of data processing,

  • the right to object to data processing.

The above rights may be limited in some circumstances, for example, if fulfilling your request would reveal Personal information about another person, if you ask us to delete information which we are required to have by law, or if we have compelling legitimate interests to keep it. 

We will let you know if that is the case and will then only use your information for these purposes. You may also be unable to continue using our services if you want us to stop processing your Personal information.

We encourage you to get in touch if you have any concerns with how we collect or use your Personal information. You do however also have the right to lodge a complaint. 

Security and confidentiality 

To ensure the security and confidentiality of the personal information we collect on the website, we use data networks that are protected by, among other things, industry-standard firewalls and password systems. When handling your Personal information, we take appropriate technical and organizational measures to protect your information from loss, misuse, unauthorized access, disclosure, alteration or destruction and to ensure its availability.

Online presences in social media 

We maintain online presences on the basis of our legitimate interests. We maintain online presences within social networks and platforms in order to communicate with customers, interested parties and users who are active there. Unless otherwise stated in this policy, we process the data of users if they communicate with us within the social networks and platforms, e.g., write articles on our online presences or send us messages.

We would like to point out that you use these platforms and their functions on your own responsibility, in particular to the use of the interactive functions (e.g., commenting, sharing, rating). 

In the case of requests for information and the assertion of user rights, we would also like to point out that these can most effectively be asserted with the providers. Only the providers have access to the users' data and can take appropriate measures and provide information directly. If you still need help, you can contact us using hannah@sherfoundation.org.

Personal information and children 

Most of the services available on this website are aimed at people aged 18 and over. We will not knowingly collect, use or disclose Personal information from minors under the age of 18 without first obtaining consent from a legal guardian through direct offline contact. The parent or guardian will be provided with (i) information about the specific type of Personal information being collected from the minor, (ii) the purpose for which it will be used, and (iii) the opportunity to object to any further collection, use or storage of such information. We comply with youth protection laws.

Links to other website 

The website may contain links to another website. We have no control over the privacy practices or the content of those other websites. Therefore, we recommend that you carefully read the respective privacy policies of these other websites that you visit.

Changes 

This Policy and our commitment to protecting the privacy of your Personal information can result in changes to this Policy. Please regularly review this Policy to keep up to date with any changes.

Queries and Complaints 

Any comments or queries on this policy should be directed to us using the following contact details.

NA Sher Foundation

c/o Hannah Sher

13 Sher Ln 

Chelsea, ME 04330

hannah@sherfoundation.org

www.sherfoundation.org 

Instagram: https://www.instagram.com/nasfoundation/

Facebook: https://www.facebook.com/NASherFoundation 

YouTube: https://www.youtube.com/user/chunmukhnan 

If you believe that we have not complied with this policy or acted otherwise than in accordance with data protection law, then you should notify us. 

This Privacy Policy was last updated on Sunday, August 14, 2022