This privacy notice applies solely to information collected by this website, our mobile apps and through REACH’s online Content Management System (CMS) portal for clients. It will notify you of the following:
- What personally identifiable information is collected from you through the website and portal, how it is used and with whom it may be shared.
- What choices are available to you regarding the use of your data.
- The security procedures in place to protect the misuse of your information.
- How you can correct any inaccuracies in the information.
Information Collection, Use, and Sharing
We are the sole owners of the information collected on this site. We only have access to/collect information that you voluntarily give us via email or other direct contact from you. We will not sell or rent this information to anyone. We will use your information to respond to you, regarding the reason you contacted us. We will not share your information with any third party outside of our organization, other than as necessary to fulfill your request, e.g., to ship an order.
Your Access to and Control Over Information
You may opt out of any future contacts from us at any time. You can do the following at any time by contacting us via the email address or phone number given on our website:
- See what data we have about you, if any.
- Change/correct any data we have about you.
- Have us delete any data we have about you.
- Express any concern you have about our use of your data.
We take precautions to protect your information. When you submit sensitive information via the website, your information is protected both online and offline.
Wherever we collect sensitive information (such as credit card data), that information is encrypted and transmitted to us in a secure way. You can verify this by looking for a lock icon in the address bar and looking for “https” at the beginning of the address of the Web page.
While we use encryption to protect sensitive information transmitted online, we also protect your information offline. Only employees who need the information to perform a specific job (for example, billing or customer service) are granted access to personally identifiable information. The computers/servers in which we store personally identifiable information are kept in a secure environment.
We collect anonymous data from every visitor of the Website to monitor traffic and fix bugs. For example, we collect information like web requests, the data sent in response to such requests, the Internet Protocol address, the browser type, the browser language, and a timestamp for the request.
You are able to view, change and remove your data associated with your profile. Should you choose to delete your account, please contact us at firstname.lastname@example.org, and we will follow up with such request as soon as possible.
Minors and children should not use REACH. By using the Website, you represent that you have the legal capacity to enter into a binding agreement.
Use of the Data
We only use your personal information to provide you the REACH services or to communicate with you about the services or the Website.
With respect to any documents, you may choose to upload to REACH, we take the privacy and confidentiality of such documents seriously. We encrypt all documents, and permanently delete any redacted edits you make to documents. If you choose to make a document public, we recommend you redact any and all references to people and addresses, as we can’t protect public data and we are not responsible for any violation of privacy law you may be liable for.
We employ industry standard techniques to protect against unauthorized access of data about you that we store, including personal information.
We do not share personal information you have provided to us without your consent, unless:
- Doing so is appropriate to carry out your own request.
- We believe it’s needed to enforce our Terms of Service, or that is legally required.
- We believe it’s needed to detect, prevent or address fraud, security or technical issues.
- Otherwise protect our property, legal rights, or that of others.
REACH is operated from the United States. If you are visiting the Website from outside the U.S., you agree to any processing of any personal information you provide us according to this policy.
REACH may contact you, by email or other means. For example, REACH may send you promotional emails relating to REACH or other third parties REACH feels you would be interested in, or communicate with you about your use of the REACH website. REACH may also use technology to alert us via a confirmation email when you open an email from us. You can modify your email notification preferences by clicking the appropriate link included in the footer of email notifications. If you do not want to receive email from REACH, please opt out of receiving emails at the bottom of any REACH emails.
Sharing of Data
We do not share your personal information with third parties. Only aggregated, anonymized data is periodically transmitted to external services to help us improve the REACH Website and service. We currently use Google Analytics (traffic analysis, SEO optimization) and automated chat bots. We listed below what data these third parties extract exactly. Feel free to check out their own Privacy Policies to find out more.
- Google Analytics: anonymous (ad serving domains, browser type, demographics, language settings, page views, time/date), pseudonymous (IP address)
- We also use social buttons provided by services like Twitter, Google+, LinkedIn and Facebook. Your use of these third-party services is entirely optional. We are not responsible for the privacy policies and/or practices of these third-party services, and you are responsible for reading and understanding those third-party services’ privacy policies.
We employ and contract with people and other entities that perform certain tasks on our behalf and who are under our control (our “Agents”). We may need to share personal information with our Agents in order to provide products or services to you. Unless we tell you differently, our Agents do not have any right to use Personal Information or other information we share with them beyond what is necessary to assist us. You hereby consent to our sharing of Personal Information with our Agents.
We may choose to buy or sell assets. In these types of transactions, user information is typically one of the transferred business assets. Moreover, if we, or substantially all of our assets, were acquired, or if we go out of business or enter bankruptcy, user information would be one of the assets that is transferred or acquired by a third party. You acknowledge that such transfers may occur, and that any acquirer of us or our assets may continue to use your personal information as set forth in this policy.
Google API Disclosure:
REACH’s use of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements.
Through our import process, we may also collect information provided by Customers, such as the name, company name, email address etc. of Customer End Users that you choose to share with us. When you provide us with personal information about your Customer End Users, we will only use this information for the specific reason for which it is provided, such as to add new records to your account, or as agreed in the applicable agreement with Customer. REACH does not share your information with any 3rd parties and is used only for the purposes of displaying your approved content within our digital signage platform.
The following Google Calendar permissions are required to integrate with Google Calendar:
- calendar.events.readonly permission:
- calendar.events.readonly permission will be used to read the events to display calendar events.
- calendar.readonly permission:
- calendar.readonly permission is used to read calendar information like owner, timezone, etc.
Third Party Disclosure
We do not include or offer third party products or services on our website.
We do not sell, trade, or otherwise transfer Personally Identifiable Information.
California Online Privacy Protection Act
According to CalOPPA we agree to the following:
- Users can visit our site anonymously.
Users are able to change their personal information:
- By emailing us
- By calling us
- By logging in to their account
- By chatting with us or sending us a ticket
How does our site handle do not track signals?
We honor them and do not track, plant cookies, or use advertising when a Do Not Track (DNT) browser mechanism is in place.
How can I opt out?
Our partners may use non-cookie technologies that may not be impacted by browser settings that block cookies. Your browser may not permit you to block such technologies. For this reason you can use the following third party tools to decline the collection and use of information for the purpose of serving you interest based advertising:
Does our site allow third party behavioral tracking?
We do not allow.
COPPA (Children Online Privacy Protection Act)
We do not specifically market to children under 13.
Fair Information Practices
In order to be in line with Fair Information Practices we will take the following responsive action, should a data breach occur:
- We will notify the users via email within 7 business days.
- We will notify the users via in site notification within 7 business days.
We agree to the individual redress principle, which requires that individuals have a right to pursue legally enforceable rights against data collectors and processors who fail to adhere to the law. This principle requires not only that individuals have enforceable rights against data users, but also that individuals have recourse to courts or a government agency to investigate and/or prosecute non-compliance by data processors.
REACH GDPR Privacy Notice
If you are located in the European Union (“EU”), United Kingdom, Lichtenstein, Norway, or Iceland, you may have additional rights under the EU General Data Protection Regulation (the “GDPR”) with respect to your Personal Data, as outlined below.
For this GDPR Privacy Notice, we use the terms “Personal Data” and “processing” as they are defined in the GDPR, but “Personal Data” generally means information that can be used to individually identify a person, and “processing” generally covers actions that can be performed in connection with data, such as collection, use, storage and disclosure. REACH, Inc. (“REACH”) will be the controller of your Personal Data processed in connection with the Services, except that we may also process Personal Data of our customers’ end users or employees in connection with our provision of services to such customers, in which case we are the processor of Personal Data and the customer is the controller. For more information about your data rights and processing activities where we are the controller, please contact us at email@example.com. For more information about your data rights and processing activities where we are the processor, please contact the controller party in the first instance.
How we process personal data:
We will only process your Personal Data if we have a lawful basis for doing so. Lawful bases for processing include consent, contractual necessity and our “legitimate interests” or the legitimate interest of others, as further described below. In some cases, we process Personal Data based on the consent you expressly grant to us at the time we collect such Personal Data. When we process Personal Data based on your consent, it will be expressly indicated to you at the point and time of collection. From time to time, we may also need to process Personal Data to comply with a legal obligation, if it is necessary to protect the vital interests of you or other data subjects, or if it is necessary for a task carried out in the public interest.
What personal data do we collect from you and how do we use your personal data?
We collect Personal Data about you when you provide such Personal Data directly to us, when third parties such as our business partners or service providers provide us with Personal Data about you, or when Personal Data about you is automatically collected in connection with your use of our Services.
Information we collect directly from you:
We receive certain Personal Data directly from you when you provide us with such Personal Data, including without limitation the following:
- First Name
- Last Name
- Email address
- Mailing address
- Telephone number
- Job Title
We collect and process these categories of Personal Data as a matter of contractual necessity so that we can provide the Services to you in accordance with our Terms of Service. For example, we cannot open an account for you if you do not provide us with your first and last name. When we process Personal Data due to contractual necessity, failure to provide such Personal Data will result in your inability to use some or all portions of the Services that require such Personal Data.
We may also collect user content from you when you provide it to us. For example, the Services allow you to provide us with comments, posts, and user writing samples that you submit, and you may choose to provide Personal Data (such as your name) in such content. By sharing this user content in a public forum, you are choosing to disclose any Personal Data included in such content, and we do not have control over your decision. We process user content, including any Personal Data included in any such user content, on the basis of our legitimate business interest in providing you with the Services.
We also use the Personal Data we collect directly from you to operate, improve, understand, and personalize our Services based on our legitimate business interest in operating our Services in a way that benefits us and our users. For example, we use the Personal Data to:
- Create and manage user profiles
- Communicate with you about the Services
- Contact you about Service announcements, updates or offers
- Provide support and assistance for the Services
- Personalize website content and communications based on your preferences
- Meet contract or legal obligations
- Respond to user inquiries
- Fulfill user requests
- Comply with our legal or contractual obligations
- Resolve disputes
- Protect against or deter fraudulent, illegal or harmful actions
- Enforce our Terms of Service
Information we receive from third party sources:
Some third parties provide us with Personal Data about you, such as the following:
- Account information for third party services:
- If you interact with a third party service when using our Services, such as if you use a third party service to log-in to our Services (e.g., Facebook Connect), or if you share content from our Services through such third party service, the applicable third party service will send us certain Personal Data (specifically your first name, ID, token and profile picture URL) if the third party service and your account settings allow such sharing. Specifically, this Personal Data permits us to create and manage user profiles and sync your progress when you connect to Facebook through the Services. The Personal Data we receive will depend on the policies and your account settings with the applicable third party service. We process this Personal Data based on our legitimate business interest of personalizing and optimizing the Services to improve user experience.
- Information from our advertising partners:
- We receive information about you from some of our service providers (e.g., LinkedIn) who assist us with marketing or promotional services related to how you interact with our websites, applications, products, services, advertisements or communications. We process this Personal Data based on our legitimate business interest in providing direct marketing about our products and services.
Information we automatically collect when you use our Services:
Some Personal Data is automatically collected when you use our Services, such as the following:
- IP address
- Device identifiers
- Web browser information
- Page view statistics
- Browsing history
- Usage information
- Cookies and other tracking technologies (e.g. web beacons, pixel tags, SDKs, etc.)
- Location information (e.g. IP address, zip code)
- Log data (e.g. access times, hardware and software information)
We process this Personal Data based on the following legitimate business interests:
- Network security
- Personalization of web content
- Evaluation of quality of writing to consider engagement
- Web analytics
- Provision of rewards
- Administrative matters
In collecting the Personal Data, we sometimes use “cookies” and other tracking technologies (e.g., web beacons and pixel tags). Cookies allow us to recognize your browser or device and “remember” your browser during subsequent visits for purposes of functionality, preferences, and website performance, and they also tell us how and when pages and features in our Services are visited and by how many people. The Services use the following cookies:
- Essential Cookies. Essential cookies are required for providing you features or services that you have requested. For example, certain cookies enable you to log into secure areas of our Site. Disabling these cookies may make certain features and services unavailable.
- Functionality Cookies. Functional cookies are used to record your choices and settings regarding our Services, maintain your preferences over time, and recognize you when you return to our Services. These cookies help us to personalize our content for you, greet you by name and remember your preferences (for example, your choice of language or region).
- Performance/Analytical Cookies. Performance/analytical cookies allow us to understand how visitors use our Site and Services such as by collecting information about the number of visitors to the Site, what pages visitors view on our Site, and how long visitors are viewing pages on the Site. Performance/analytical cookies also help us measure the performance of our advertising campaigns in order to help us improve our campaigns and the Services’ content for those who engage with our advertising.
- Retargeting/Advertising Cookies. Retargeting/advertising cookies collect data about your online activity and identify your interests so that we can provide advertising that we believe is relevant to you.
Most browsers automatically accept cookies but have an option for blocking or deleting cookies, which will prevent your browser from accepting new cookies, as well as (depending on the sophistication of your browser software) allow you to decide on acceptance of each new cookie in a variety of ways. You can usually access these options through the “Settings” or similar menu in your browser. For more information about cookies, including how to see what cookies have been set and how to manage and delete cookies, visit www.aboutcookies.org or www.allaboutcookies.org. Please note that if you block or delete cookies, some portions of the Services may not work properly. In some cases, cookies may enable us to aggregate certain information with other Personal Data we collect and hold about you.
Other uses of Personal Data: In addition to the uses set forth above, we may also process the Personal Data we collect on the basis of the following legitimate business interests:
- Operation and improvement of our business, products, and services
- Marketing of our products and services
- Provision of customer support
- Protection from fraud or security threats
- Compliance with legal obligations
- Completion of corporate transactions
How and with whom do we share your data?
- Analytics service providers
- Staff augmentation and contract personnel
- Hosting service providers
We also share Personal Data when necessary to complete a transaction initiated or authorized by you or provide you with a product or service you have requested. In addition to those set forth above, these parties also include:
- Other users (where you post information publicly or as otherwise necessary to affect a transaction initiated or authorized by you through the Services)
- Social media services (if you interact with them through your use of the Services)
- Third party business partners who you access through the Services
- Other parties authorized by you
We also share Personal Data when we believe it is necessary to:
- Comply with applicable law or respond to valid legal process, including from law enforcement or other government agencies
- Protect us, our business or our users, for example to enforce our terms of service, prevent spam or other unwanted communications and investigate or protect against fraud
- Maintain the security of our products and services
We also share Personal Data with third parties when you give us consent to do so.
Furthermore, if we choose to buy or sell assets, user information is typically one of the transferred business assets. Moreover, if we, or substantially all of our assets, were acquired, or if we go out of business or enter bankruptcy, user information would be one of the assets that is transferred or acquired by a third party, and we would share Personal Data with the party that is acquiring our assets based on our legitimate business interest of being able to provide you with continued services. You acknowledge that such transfers may occur, and that any acquirer of us or our assets may continue to use your Personal Information as set forth in this policy.
How Long Do We Retain Your Personal Data?
We retain Personal Data about you for as long as you have an open account with us or as otherwise necessary to provide the Services to you and improve the Services for all users generally. In some cases we retain Personal Data for longer, if doing so is necessary to comply with our legal obligations, resolve disputes or collect fees owed, or is otherwise permitted or required by applicable law, rule or regulation. Afterwards, we retain some information in a depersonalized or aggregated form but not in a way that would identify you personally.
What Security Measures Do We Use?
We seek to protect Personal Data using appropriate technical and organizational measures based on the type of Personal Data and applicable processing activity.
Personal Data of Children:
We do not knowingly collect or solicit Personal Data from anyone in the EU, United Kingdom, Lichtenstein, Norway, or Iceland under the age of 16. If you are under 16, please do not attempt to register for the Services or send any Personal Data about yourself to us. If we learn that we have collected Personal Data from a child under age 16, we will delete that information as quickly as possible. If you believe that a child under 16 may have provided us Personal Data, please contact us at firstname.lastname@example.org.
What Rights Do You Have Regarding Your Personal Data?
You have certain rights with respect to your Personal Data, including those set forth below. For more information about these rights, or to submit a request, please email email@example.com. Please note that in some circumstances, we may not be able to fully comply with your request, such as if it is frivolous or extremely impractical, if it jeopardizes the rights of others, or if it is not required by law, but in those circumstances, we will still respond to notify you of such a decision. In some cases, we may also need to you to provide us with additional information, which may include Personal Data, if necessary, to verify your identity and the nature of your request.
- Access: You can request more information about the Personal Data we hold about you and request a copy of such Personal Data. You can also access certain of your Personal Data by emailing us at firstname.lastname@example.org.
- Rectification: If you believe that any Personal Data we are holding about you is incorrect or incomplete, you can request that we correct or supplement Personal Data by emailing us at email@example.com.
- Erasure: You can request that we erase some or all of your Personal Data from our systems.
- Withdrawal of Consent: If we are processing your Personal Data based on your consent (as indicated at the time of collection of such data), you have the right to withdraw your consent at any time. Please note, however, that if you exercise this right, you may have to then provide express consent on a case-by-case basis for the use or disclosure of certain of your Personal Data, if such use or disclosure is necessary to enable you to utilize some or all of our Services.
- Portability: You can ask for a copy of your Personal Data in a machine-readable format. You can also request that we transmit the data to another controller where technically feasible.
- Objection: You can contact us to let us know that you object to the further use or disclosure of your Personal Data for certain purposes, such as for direct marketing purposes.
- Restriction of Processing: You can ask us to restrict further processing of your Personal Data.
- Right to File Complaint: You have the right to lodge a complaint about our practices with respect to your Personal Data with the supervisory authority of your country or EU Member State.
What if You Have Questions Regarding your Personal Data?
If you have any questions about this GDPR Privacy Notice or our data practices generally, please contact us using the following information:
REACH Media Network
6440 Flying Cloud Dr. #225
Eden Prairie, MN 55344
Attn: VP of Operations
All issues and questions concerning the construction, validity, enforcement and interpretation of this Agreement and the exhibits and schedules hereto shall be governed by, and construed in accordance with, the laws of the State of Minnesota, without giving effect to any choice of law or conflict of law rules or provisions (whether of the State of Minnesota or any other jurisdiction) that would cause the application of the laws of any jurisdiction other than the State of Minnesota. Any claims or legal actions by one party against the other arising out of this Agreement will be commenced or maintained in any state or federal court located within Hennepin County, Minnesota, and the parties hereby irrevocably consent and submit to the jurisdiction and venue of such court.