

| Rebecca Herold & Associates, LLC Privacy Policy Updated January 30, 2013 |
| Privacy Policy Overview |
|
|
Questions?
If you have any questions or concerns about our privacy policy or practices, please contact:
Rebecca Herold, CIPP, CISSP, CISA, CISM, FLMI
Rebecca Herold & Associates, LLC
1408 Quail Ridge Avenue
Van Meter, Iowa 50261
(515) 996-2199
rebeccaherold@rebeccaherold.com
Data Collection
Table 2 summarizes the information we collect from this site and why we collect it.
Web Site Information
Rebecca Herold & Associates, LLC recognizes the importance of keeping the information we collect about you confidential. We always take great care to
protect what you entrust to us. Rebecca Herold & Associates, LLC is committed to protecting the privacy of visitors to our website.
We do not automatically collect personal information about our web site visitors. We may record the Internet protocol (IP) address of the computer you are using,
the browser software used, the operating systems used, and the websites from which our visitors link directly to our site. We
aggregate and use this information to determine how many visitors we have to different pages on our web site, to detect and correct systems problems,
and to improve the usability of our web site. This information is not connected to individual names or personal identities.
Sites Covered by this Policy
This Privacy Policy applies to all Rebecca Herold & Associates, LLC-owned web sites and domains, and our wholly owned subsidiaries.
Links to Other Sites
Our web site contains links to other sites, and other sites may link to the Rebecca Herold & Associates, LLC site. Web sites linking to and from this site
may have different privacy practices from the ones described here. The privacy policies of Rebecca Herold & Associates, LLC apply only to our website. Please
read the privacy statements of other web sites you visit for information regarding specific privacy practices.
Web Bugs
The pages on our Website may contain electronic images known as “Web bugs,” also commonly called “Web beacons, ” “single-pixel gifs” and
“clear gifs.” These web bugs allow us to count the number of visitors who have visited those pages. We may use Web bugs to learn more about the
ways visitors use our Website, so that we can continually improve it.
We may also include Web bugs in promotional or ecommerce delivery email messages in order to determine whether messages have been opened and
acted upon. Some of these Web bugs may be used to place a persistent cookie on your computer so that we can determine the effectiveness of our
marketing efforts or email communications. We may link information obtained using Web bugs to other information that identifies you personally.
Some of the Web bugs on our Website may have been placed by third-party service providers to help determine the effectiveness of our advertising
campaigns or email communications. These Web bugs may be used by these service providers to place a persistent cookie on your computer. Doing
this allows the service provider to recognize your computer each time you visit certain pages and compile information in relation to those page views. Our
service providers may link information obtained using Web bugs to other information that identifies you personally. We confirm that our service providers,
however, will keep your personal information confidential and use it only to perform services on our behalf.
Email List Privacy
We use email lists that we have assembled from people who have indicated they want additional information about our services. Additionally, we use
email lists that are comprised of people who have made purchases from Rebecca Herold & Associates, LLC, and who have requested additional
information about services similar to those Rebecca Herold & Associates, LLC provides.
Log Files
We may also collect log files that record Website activity, including how many "hits" a particular Web page is getting. These entries are generated
anonymously, and enable us to assess overall site activity, track interest in advertised sales, and troubleshoot technical concerns. We also use the log
file entries for our internal marketing and demographic studies, so that we can constantly improve the services we provide you. Log files are used
internally only, and are not associated with any particular user, computer, or browser.
Spyware
Our Website does not use spyware. The term “spyware” refers to a software program that, when installed on your computer, changes settings, displays
advertising, or tracks your Internet behavior and reports information back to a central database. Spyware is usually installed on your computer without your
knowledge and can be very difficult to remove.
Third Party Access
We use PayPal to process the payments made on our site. We provide do not provide any information directly to PayPal. You, as a customer,
will provide PayPal directly with your purchase information, such as credit card number; we will not maintain or collect any credit card information
directly through out the site. We may provide PayPal with the names and email addresses of our ecommerce customers to facilitate distribution,
but we do not give them access to any other personal information.
While we take steps to protect the confidentiality, privacy and security of personal information communicated to PayPal, their activities are not
subject to the exclusive control of Rebecca Herold & Associates, LLC and they are not subject to this privacy policy. Please see the PayPal
privacy policy, (http://www.paypal.com/us/cgi-bin/webscr?cmd=p/gen/ua/policy_privacy-outside) to learn more about how they protect personal
information.
With the above exception, Rebecca Herold & Associates, LLC does not sell, rent or share our email lists with any other third parties. We do not link
our email lists to any other databases. We do not store emails or individual information on our web server. All personally identifiable information is
stored on servers behind our firewall.
Personal Contacts
Rebecca Herold & Associates, LLC personnel frequently give presentations at conferences and seminars; write books, articles and newsletters; and
participate in similar types of group and individual communications. We often receive business cards as well as requests for additional information
or help with risk related issues. When we receive requests for information or help in person, from our web site from information volunteered by our
web site visitors, or from conferences from people indicating they want more information about our type of services, we will place these individuals on
our contact list.
Your Opt-In and Opt-Out Decisions
If you would like to receive information regarding our services, publications, products or privacy practices, please fill out our information request form on
the Contact Me page. If you are currently on our email list and wish to be removed, please send an email to Rebeccaherold@rebeccaherold.com
Access to Your Personal Information
We make every effort to keep our records accurate. We will make appropriate changes when you notify us. If you want to view, update or delete the
information we have about you in our database, please fill out our information request form on the Contact Me page. We will follow procedures to
verify your identity before providing this information to further protect your privacy.
Communicating Via Email and Web Page
The fields used to make ecommerce purchases are encrypted. If you are using an Internet Explorer browser, you can see which communication pages
are encrypted by looking in the lower right hand corner of the bottom toolbar. A closed padlock icon indicates the page is encrypted. An open padlock
indicates that the page is not encrypted.
Important note: The information sent using the request form on the Contact Me page is sent in clear text and is not encrypted. Do not send confidential
information through these communication fields. Contact Rebecca Herold & Associates, LLC directly by calling 515-996-2199 to communicate any
confidential information, or send an encrypted email using a PGP key that you have shared with our personnel.
Children
Rebecca Herold & Associates, LLC does not market information to children, and we do not provide services for children. The Rebecca Herold &
Associates, LLC website is not directed to children under age 18, and we do not knowingly collect personal information from children under age 18.
The forms on our Site are capable, however, of collecting online information from children under the age of 13 who furnish it without prior parental
consent. Upon discovery that any such information has been supplied by children under the age of 13, we will disregard and delete that information.
We urge parents to instruct their children to never give out their real names, addresses, or phone numbers without their permission when online.
Web Site Security
We use multiple security features and procedures to protect the information you send us from our website.
1. Encryption
Please be aware that the information you send to us in the Contact Me information request form and in an email message will not be encrypted.
Do not send any confidential information within clear text forms or email messages. If you want to give us confidential information, please call us
at the number given at the bottom of this page, or use your PGP key to encrypt the information.
We use strong encryption based upon current industry standards to protect the PII submitted to us on the product purchase pages of this sit.
2. Personal Information storage policy
We do not store any personal information on our Internet web server.
The information we collect is stored on our secured computer systems that are not directly accessible by Internet users..
3. Accountability
Information security personnel ensure the security of the information we process and store.
4. Policies and Procedures
Rebecca Herold & Associates, LLC has policies and procedures to limit access to your information to only those who have a business need to view it.
Privacy Policy Changes
We may occasionally make changes to our privacy policy to reflect changes in legal and regulatory requirements, or as necessary as we upgrade or
modify our technology, applications and service offerings. We recommend you visit our site to review our privacy policies occasionally.
Or, if you prefer, we will be glad to send you an email whenever the policy is updated. Please fill out our Contact Me request form if you would like to be
notified via email.
Compelled Disclosure
There may be times when we are required by law to disclose the information that you have submitted. Unless we are legally prohibited to do so, we will
do our best to provide you with notice that a request for your information has been made to give you an opportunity to object to the disclosure. If you do
not challenge the disclosure request, we may be legally required to turn over your information.
Effective Dates
The effective date of this website policy is September 27, 2008.
Effective Locations
This policy applies to all our worldwide customers.
|