Privacy Policy
Last updated:
-
Introduction
We respect your privacy and are committed to protecting the personal information you share with us. This policy explains how we collect, use, disclose and safeguard your information when you visit our website (the “Website”). By clicking “Accept” on our cookie banner or continuing to browse, you agree to the practices described in this Privacy Policy.
-
Credits
This document is based on a template by SEQ Legal (seqlegal.com) and has been customised by vpnMentor (vpnmentor.com) and our legal advisers to reflect our specific practices.
-
Personal information we collect
We collect and process the following categories of data:
- Device and log data – IP address, general location, browser type/version, operating system, referral source, pages viewed, timestamps and navigation paths.
- Account data – information you provide when you register or build a profile (e.g., name, photo, gender, birth date, interests, education and employment details).
- Communication data – email address and preferences when you subscribe to newsletters or request notifications.
- Usage data – how, when and how often you use the Website and its features.
- Transaction data – contact details, delivery address and payment information relating to purchases or services.
- User‑generated content – information you intentionally publish on the Website.
- Any other information you choose to send us.
-
How we use your information
We process personal information only as necessary for the purposes below and in accordance with one or more lawful bases under the Israel Protection of Privacy Law 5741‑1981 (the “PPL”), the EU/UK GDPR, and other applicable regulations:
Purpose Typical data Lawful basis* Operate, maintain and secure the Website Device, log and usage data Legitimate interest (site functionality & security) Fulfil purchases or service requests Contact & transaction data Contract performance Personalise your experience Usage and account data Legitimate interest / Consent Send requested notifications or newsletters Communication data Consent Direct marketing (e‑mails, ads) Contact, usage and cookie data Consent (opt‑in) Analytics and service improvement Device, usage and cookie data Legitimate interest Legal compliance and fraud prevention Any relevant data Legal obligation / Legitimate interest *Where consent is the lawful basis, you may withdraw it at any time using the methods described in Section J.
We never sell your personal information to third parties.
-
Disclosure to third parties
- Intragroup transfers. We may share your data with our parent, subsidiary, or affiliated companies for internal business operations such as IT support, analytics, and consolidated reporting.
- Service providers ("processors"). We engage vetted suppliers to provide services on our behalf, including cloud hosting & infrastructure (servers, CDNs); payment processors (PCI‑DSS‑compliant). We do not store credit card details on our servers; all payment processing is handled exclusively by secure, PCI‑DSS‑compliant third‑party providers. We also use email & CRM platforms; analytics, advertising & heat‑mapping tools such as Google Analytics, Google Ads, Meta (Facebook) Pixel, LinkedIn Insight Tag, TikTok Pixel, Hotjar, and similar technologies. Processors may access personal information only to perform their contractual duties and must not use it for their own purposes.
- Business transfers. If we enter into a merger, acquisition, bankruptcy, or asset sale, your information may be transferred as part of that transaction. We will give prior notice and ensure the recipient continues to protect your information at least to the same standard.
- Legal obligations & rights protection. We may disclose information when required by law or to protect rights, prevent fraud, or ensure safety.
- With your consent. We will share your information for any other purpose only with your explicit consent.
We do not sell personal information to third parties.
-
International data transfers
We store and process information in Israel and other countries where our trusted suppliers operate. Some jurisdictions (e.g., the United States) may have different privacy standards. In such cases we ensure adequate safeguards, such as contractually binding Data Processing Agreements incorporating Standard Contractual Clauses (SCCs) or equivalent mechanisms recognised by the PPL and GDPR.
In accordance with the Israeli Privacy Protection Regulations (Data Security), 2017, we inform you that certain trusted suppliers (including cloud hosting providers, payment processors, analytics and marketing partners such as Google, Meta, LinkedIn, TikTok, and Hotjar) may receive and process personal information outside Israel for the purposes described in this Privacy Policy. Transfers are conducted via encrypted channels and subject to contractual obligations to protect your information.
-
Data retention
Data category Typical retention period Contact‑form submissions 24 months Newsletter subscription data Until you unsubscribe or 24 months of inactivity Order and invoice records 7 years (legal & tax obligations) Analytics events 26 months (Google Analytics default) User‑generated content While published or until you delete it We may keep data longer if required to comply with legal obligations, resolve disputes or enforce agreements.
-
Security
- Encrypted transfer (HTTPS) and encrypted payment transactions (TLS/SSL)
- Firewall‑ and password‑protected servers located in ISO 27001‑certified facilities
- Role‑based access controls and employee confidentiality agreements
- Regular security audits and vulnerability assessments
No internet transmission is completely secure; you share information at your own risk.
-
Your rights (Israel & international)
Under the Israeli PPL (§13) and, where applicable, the GDPR, you can request to access, correct, erase, restrict or object to processing. To exercise these rights, email main.office@yaakovladder.com. We will respond within 30 days (PPL) / one month (GDPR). If you believe your rights are infringed, you may lodge a complaint with the Israeli Privacy Protection Authority or your local supervisory authority.
-
Marketing communications
We send marketing emails only if you have expressly opted in (e.g., ticking a box or confirming a double‑opt‑in link). You can unsubscribe at any time by clicking the “Unsubscribe” link in any marketing email or by emailing main.office@yaakovladder.com with the subject “Unsubscribe”. Transactional messages (order confirmations, service notices) are mandatory and independent of marketing preferences. We comply with Israel’s Anti-Spam Law (Section 30א); each message includes clear sender details and an easy refusal mechanism.
-
Cookies & similar technologies
We use both session and persistent cookies plus similar tracking technologies (pixels, tags, local storage) to provide essential site functions, analyse performance, personalise content, and deliver/measure advertising. Non‑essential cookies are set only after you give consent via our cookie banner. You can change your preferences at any time via Cookie Settings.
Cookies and trackers we use (examples) Category Provider / Cookie Purpose Expiry Essential PHPSESSID Maintain secure sessions, cart functions Session / 2 days Analytics Google Analytics (_ga, _gid, _gat), Hotjar (_hjSessionUser_*, _hjFirstSeen) Understand how visitors use the site 1 day – 26 months Advertising & social Meta Pixel (_fbp), LinkedIn Insight Tag (_li_fat_id), Google Ads (_gcl_au), TikTok Pixel (_ttp, _tt_enable_cookie) Measure ad performance, build remarketing audiences 90 days – 13 months Most browsers let you block or delete cookies. Blocking some cookies may impact functionality.
-
Children
The Website is not directed to children under 18. We do not knowingly collect personal data from minors. If you believe a minor has provided us with personal information, please contact us and we will delete it in accordance with the Israeli Protection of Privacy Law, 1981.
-
Third‑party links
The Website may contain links to external sites. We are not responsible for their privacy practices. We encourage you to read the privacy policies of every site you visit.
-
Changes to this policy
We may update this Privacy Policy from time to time. The “Last updated” date at the top indicates the latest revision. Significant changes will be notified on the Website or via email.
-
Contact usFor any questions about this Privacy Policy or your personal data, please email main.office@yaakovladder.com or write to:
Privacy Officer
מרכז לאמנות ע״ש יעקב עוזרי
ישראל