Privacy Policy

1. Introduction

At The Celtic Center (“we,” “our,” “us”), available at thecelticcenter.com, we are deeply committed to protecting the privacy and personal data of our users. We acknowledge the importance of safeguarding information and ensure compliance with all applicable privacy regulations, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). This Privacy Policy explains how we collect, use, store, and protect your personal information when you interact with our website and services.

2. Scope and Data Controller Responsibility

This Privacy Policy applies to all users, visitors, and customers accessing thecelticcenter.com and any associated services. The Celtic Center acts as the Data Controller for the personal data collected via this website. If you have any questions regarding how your data is handled, you may contact us at [email protected].

3. Categories of Data Processed

We collect and process the following categories of personal data:

a. Usage Data
This includes data such as your IP address, browser type and version, operating system, referral source, pages viewed, browsing behavior, session duration, and related diagnostic data. Such information is automatically collected through cookies and other tracking technologies.

b. Account Data
When you create an account or place an order on thecelticcenter.com, we collect information including your full name, billing and shipping address, email address, and phone number.

c. Profile Data
We collect data related to your preferences, interests, previous purchases, behavior on our platform, and service use history to better tailor our offerings.

d. Communication Data
This includes your correspondence with us, such as support inquiries, complaints, or other interactions, including timestamps and related metadata.

e. Technical Data
This includes device identifiers, hardware model, browser configuration, app version, operating system version, screen resolution, and other system settings.

f. Transaction Data
We process payment details, purchase history, shipping information, and billing records strictly in conjunction with completing transactions through thecelticcenter.com. Sensitive payment data is processed in compliance with PCI DSS standards via secure third-party payment processors.

g. Preference Data
We maintain records of your marketing communication preferences, product interests, and any consent you have given regarding promotional communications.

4. Legal Bases for Processing Personal Data

We rely on the following legal bases under GDPR and equivalent U.S. legal frameworks for the processing of your personal information:

– Consent: Where you have explicitly given consent for specific processing purposes, such as receiving newsletters or targeted marketing.
– Contractual Necessity: To fulfill our contractual obligations when you make a purchase or create an account.
– Legal Obligation: To comply with applicable legal duties and regulatory requirements.
– Legitimate Interests: To administer and improve our services, prevent fraud, support customer service activities, and ensure security, provided these interests are not overridden by your rights and freedoms.

5. Your Data Protection Rights

Subject to applicable data protection laws, you have the following rights regarding your personal information:

– Right of Access – You may request information regarding the data we hold about you.
– Right to Rectification – You may request that incomplete or inaccurate data be corrected.
– Right to Erasure – You may request deletion of your data where there is no legal justification for continued processing.
– Right to Restriction – You may request limited processing of your data in certain circumstances.
– Right to Data Portability – You can obtain and reuse your personal data across different services.
– Right to Object – You may object to processing based on legitimate interests or direct marketing.

To exercise any of the above rights, please contact us at [email protected].

6. Security Measures

We employ robust technical and organizational measures to safeguard your data, including:

– Data encryption in transit and at rest
– Strict access control protocols
– Secure server infrastructure with constant monitoring
– Regular backups and disaster recovery protocols
– Employee training on privacy and data handling

While we take all reasonable steps to protect your personal data, no transmission of data over the internet can be guaranteed as completely secure.

7. International Data Transfers

Personal data collected by The Celtic Center may be processed in jurisdictions outside your country of residence. Where applicable, we use appropriate safeguards such as the European Commission’s Standard Contractual Clauses (SCCs) and other recognized legal mechanisms to ensure data transferred internationally receives an adequate level of protection.

8. Data Retention

Your personal data will only be retained for as long as necessary to fulfill the purposes for which it was collected, including legal, tax, accounting, or regulatory requirements. Specific retention periods are as follows:

– Usage Data: up to 12 months
– Account and Transaction Data: up to 7 years after last interaction
– Communication Data: 3 years following last contact
– Preference and Profile Data: retained while active account exists or prior consent is active
– Technical Data: retained for up to 12 months

Once data is no longer required, it will be securely deleted or anonymized.

9. Cookie Policy

We use cookies and similar technologies to improve user experience and analyze site traffic. The types of cookies used include:

– Essential Cookies – Required to enable core functionality such as security, network management, and accessibility.
– Functional Cookies – Enhance functionality and personalization, e.g., remembering your preferences.
– Analytics Cookies – Allow us to understand how visitors interact with our website so we can improve our services.
– Performance Cookies – Track performance metrics to optimize site speed and usability.

10. Cookie Management and Legal Compliance

When you first visit thecelticcenter.com, you are presented with a cookie banner allowing you to accept or manage your cookie preferences in compliance with GDPR and CCPA requirements. You can also modify your preferences at any time through your browser settings or our cookie consent manager.

Under CCPA, residents of California have the right to opt-out of the “sale” or “sharing” of their personal information. While we do not sell your data in the conventional sense, we provide mechanisms to comply with these opt-out provisions.

11. Children’s Data Protection

The Celtic Center does not knowingly collect or solicit personal information from children under the age of 13. If we discover that a child under that age has provided us with personal data without verified parental consent, we will delete such information from our records. If you believe we may have collected data from a minor, please email us at [email protected].

12. Policy Updates

We may update this Privacy Policy to reflect changes in our legal obligations or data handling practices. Any material changes will be communicated to you through prominent notices on the website or directly via email, where appropriate. Continued use of thecelticcenter.com constitutes your acknowledgment of the current Privacy Policy.

13. Contacting Us

If you have any questions regarding this Privacy Policy, your personal data, or how we handle privacy-related concerns, please contact our Data Protection Officer at:

[email protected]

We are fully committed to ensuring your personal information is handled in accordance with all applicable data protection regulations. Your trust and privacy are of the utmost importance to us.