Privacy Policy for First Leap Startup

This Privacy Policy (“Policy”) describes how First Leap Startup (“we,” “us,” “our,” or the “Company”) collects, uses, discloses, and safeguards personal data when you visit or interact with our website at https://www.firstleapstartup.com or contact us via [email protected]. We are committed to respecting your privacy and protecting your personal information in accordance with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other data protection laws.

1. Commitment to Privacy and Data Protection

At First Leap Startup, your privacy is our priority. We recognize the importance of safeguarding the personal information you entrust to us. We process personal data lawfully, fairly, and transparently with a privacy-first mindset, ensuring the integrity, confidentiality, and security of data is upheld at every stage. This Policy serves to inform you about the manner and purposes for which your personal data is processed.

2. Scope of Policy and Data Controller Role

This Policy applies to the personal data collected via our website, https://www.firstleapstartup.com, including when you participate in our services, contact our support, or interact with our digital platforms. For purposes of data protection legislation, the data controller responsible for your personal data is:

First Leap Startup
Email: [email protected]

We process data as both a data controller and, where applicable, as a data processor acting on behalf of our users and clients.

3. Categories of Data Processed

We may process the following categories of personal data:

a. Usage Data
Includes information such as your browser type, IP address, device identifiers, access dates and times, pages visited, referring URLs, and session data. This data helps us analyze trends and optimize our services.

b. Account Data
Includes personal identification details such as your name, email address, mailing address, and phone number, typically provided when you sign up, place an order, or create an account on firstleapstartup.com.

c. Profile Data
Includes information about your preferences, user behavior, feedback, purchase history, and any interests explicitly stated or inferred from your usage patterns.

d. Communication Data
Includes correspondence sent via our contact forms, support channels, email exchanges, or any other communications you initiate with us, such as support tickets or inquiries.

e. Technical Data
Includes device information such as hardware model, operating system, screen resolution, browser version, system language settings, and other technical configurations relevant to service delivery.

f. Transaction Data
Includes payment and billing information, delivery addresses, order details, invoicing records, and purchase confirmation history resulting from transactions conducted through our website.

g. Preference Data
Includes your marketing preferences, consent choices, product or service interests, opt-in or opt-out statuses, and responses to promotional campaigns or surveys.

4. Legal Bases for Processing

We process personal data under the following lawful bases, as defined by the GDPR and other applicable regulations:

– Consent: Where you have given explicit permission for us to process your data.
– Contractual Necessity: When processing is necessary to fulfill a contract or take steps at your request before entering into a contract.
– Legitimate Interests: Where processing is necessary for our legitimate business purposes and does not override your fundamental rights and interests.
– Legal Obligation: Where processing is required to comply with applicable laws and regulations.

5. Your Rights

Subject to applicable data protection law, you may exercise the following rights in respect of your personal data:

– Right of Access: Obtain a copy of your personal data we process.
– Right of Rectification: Request correction of incomplete or inaccurate data.
– Right to Erasure: Request deletion of your personal data under certain circumstances.
– Right to Restrict Processing: Request restriction of data processing where applicable.
– Right to Data Portability: Receive your personal data in a structured, machine-readable format, and transmit it to a third party.
– Right to Object: Object to the processing of your personal data where we rely on legitimate interests or for marketing purposes.

To exercise your rights or make a complaint, please contact us at [email protected].

6. Security Measures

We implement appropriate technical and organizational measures to protect your personal data, including:

– Encryption of data during transmission and storage.
– Role-based access control and authentication protocols.
– Secure network infrastructure and firewall protection.
– Regular data backups and disaster recovery planning.
– Internal policies and staff training on data protection and cybersecurity.

While we strive to secure your data, no method of transmission or storage is entirely infallible. You share data with us at your own risk.

7. International Transfers

Your personal data may be transferred to, and processed in, countries outside your country of residence. Where such transfers occur, we ensure adequate protection in accordance with relevant data protection laws via mechanisms such as:

– Standard Contractual Clauses approved by the European Commission.
– Binding corporate rules or other lawful transfer mechanisms.
– Additional safeguards where legally required.

8. Data Retention

We retain personal data only as long as necessary for the purposes for which it was collected and to comply with legal, accounting, or reporting obligations. Generally:

– Usage and technical data: Retained for up to 26 months.
– Account and transaction data: Retained for up to 7 years for tax and legal purposes.
– Communication and profile data: Retained for up to 3 years following final user interaction.
– Preference data: Retained according to the period of active consent, with reassessment every 12 months.

9. Cookie Policy

Our website uses cookies to enhance your experience and collect analytical information. The types of cookies used include:

– Essential Cookies: Necessary for site functionality and access control.
– Functional Cookies: Enable optional features like remembering login credentials.
– Analytics Cookies: Gather usage data to help improve our services.
– Performance Cookies: Monitor website performance to ensure responsiveness.

10. Cookie Management and GDPR/CCPA Compliance

You can manage or disable non-essential cookies through our cookie banner and consent management platform upon your first visit to firstleapstartup.com. You may also adjust your browser settings to reject cookies. Under the GDPR and CCPA, we honor Do Not Track and Global Privacy Control signals to the extent feasible.

Visitors from California may request detailed information about how their personal information is shared with third parties, and may opt-out from selling or sharing personal data where applicable.

11. Special Protections for Children Under 13

Our website and services are not directed to, and we do not knowingly collect personal data from, children under 13 years of age. If you are a parent or guardian and believe that your child has provided personal information through our site, please contact us immediately at [email protected], and we will take steps to delete such data promptly.

12. Policy Updates and User Notifications

We may revise this Privacy Policy from time to time in response to changes in the law, our data practices, or the nature of our services. Any updates to this Policy will be posted on https://www.firstleapstartup.com, and, where legally required, we will notify you by appropriate means. Please review this Policy periodically to remain informed of your rights and our obligations.

13. Contact

If you have questions, concerns, or requests related to this Privacy Policy or your personal data, you may reach out to us at:

Email: [email protected]
Website: https://www.firstleapstartup.com

We are committed to full compliance with data protection laws and to ensuring that privacy and transparency remain central to our services. Please do not hesitate to contact us with any privacy concerns or inquiries.