Privacy Policy & GDPR - Drawing Tutorials Online, Inc.

Overview

Drawing Tutorials Online, Inc. is strongly committed to safeguarding consumer privacy. We operate under the following set of strict privacy principles:

1. The only information we obtain about our members is information needed to process transactions whenever a purchase is made.
2. That information is never sold, swapped or traded for any commercial purpose.
3. That information would only be disclosed if required to do so by a court-ordered authority.

Please click on the sections below to read, understand and exercise your data rights.

GDPR Granular Consent: 3 Data Catergories

Drawing Tutorials Online, Inc. has three categories of interaction required to provide our services:

  1. Visitor
  2. Email Subscriber
  3. Member

This section is provided to help you understand your rights and make an informed decision about the consent needed to collect, store and process data at each level.

Visitor

Visitors are people who have navigated to our site.

The only consent required from Visitors is consent for our cookies.

Our cookies enable us to manage your visit and remember preferences made – eg: to remember whether a visitor consented to cookies and so disable the pop-up notice.

We use Google Analytics to tell us which pages are more popular and we use that to guide our content.

Visitors can contact us using the Contact Form provided on our contact page. Visitors can also choose to receive ongoing email communication pertaining to learning how to draw when opting into a webform.

When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.

An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.

Visitor comments may be checked through an automated spam detection service.

Opting in to receive ongoing email communications will escalate the Visitor to “Email Subscriber” status.

 

Email Subscriber

Email Subscribers are Visitors who have taken an extra consent step.

Opting into a webform in order to receive information on a regular basis pertaining to learning how to draw.  The contact name and email address is copied to our email service provider, Infusionsoft. The email service provider will send a confirmation message for permission to follow-up with the Email Subscriber

Visitors utilizing our contact us form consent to us responding to that message. When a Visitor uses our contact us form they are not opting in to receive ongoing email communication. When utilizing our contact us form Visitors give consent to the message being sent to us using secure transmission. Visitors consent to us responding to that message.

We do not sell, swap or trade email addresses. Email communication is used to help Email Subscribers progress their interest pertaining to learning how to draw via the information provided by Drawing Tutorials Online, Inc.

Each message sent via our email service provider includes an unsubscribe link.

Member

Members are Email Subscribers or Visitors who have taken an extra consent step. Completing a subscription form to purchase a Drawing Tutorials Online, Inc. subscription.

The subscription form requires consent from the Member to provide address and payment information
. This data is used to verify the subscription and process the transactions. 
The data is transmitted over secure channels to the card processing Gateway (Authorize.net & PayPal).

We never know a Members full card data – it is encrypted and sent directly to (Authorize.net or PayPal). 
The expiry date and last four numbers are stored to allow Members to check their accounts – as per credit card rules (PCIDSS).
 Members can access their records at any time by clicking on the My Account link within the member area. Members can cancel their subscription at any time and the service will be terminated accordingly.

Transactional data is retained for accounting and legal requirements.

Upon cancellation Members are asked to fill out a one question survey via SurveyMonkey.com

Right of Access – Members can verify their information at any time using the My Account link in the Members Area header.

When members leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.

An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.

If you are a member who upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Members of this website can download and extract any location data from images on the website.

 

GDPR – General Data Protection Regulations

The EU General Data Protection Regulation (GDPR) replaces the Data Protection Directive 95/46/EC and was designed to harmonize data privacy laws across Europe, to protect and empower all EU citizens data privacy and to reshape the way organizations across the region approach data privacy.

Drawing Tutorials Online Privacy Policy already complies with GDPR standards 
for clarification.

Lawful Basis for Processing:

(a) Consent: Each member must give clear consent for us to process their personal data in order to subscribe to ongoing emails or purchase products and services from Drawing Tutorials Online, Inc.

(b) Contract: As an eCommerce, site the processing of personal data is necessary for contractual delivery of products and services.

(c) Legal obligation: The processing of data is necessary for Drawing Tutorials Online, Inc. to comply with the law.

How We Use Your Data:

Personally identifiable data is requested to process Member subscriptions and other payments. This is encrypted and held, securely by our authorized payment gateway (Authorize.net & PayPal). We do NOT hold credit card information.

Personally identifiable data sent to us via forms on our site is always secured using the latest encryption. Personally identifiable data is stored on Infusionsoft’s database and is used to allow us to identify, service and support our Email Subscribers and Members
.

Personally identifiable data is retained to meet legislative and tax reporting and investigation requirements.

Members can instantly and at any time access and manage their personally identifiable record by navigating to ‘My Account’ link on the header within the member area.

Email Subscribers have the right to withdraw permission which they can do by clicking on the unsubscribe link within our ongoing communications.

Subscribers have the right to be forgotten which they request by email using the Contact Us page,
(Data will be deleted as permitted by legislative requirements).

Members can cancel their paid subscription by utilizing the ‘My Account’ link in the member area header.

If you have a membership, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.

How long we retain your data

If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.
For visitors our members that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.