Privacy Policy

1. Introduction

At Semangat Kayu (semangatkayu.com), we are firmly committed to safeguarding the privacy and personal data of our users, customers, and website visitors. We recognize the importance of your privacy and uphold the principles of transparency, accountability, and data minimization in all our data handling practices. This Privacy Policy outlines how we collect, use, disclose, and protect your personal information in compliance with applicable data protection laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

2. Scope of the Policy and Data Controller

This Privacy Policy applies to all visitors and users of semangatkayu.com and governs our practices regarding the collection and processing of personal data through our website and related services.

The data controller responsible for your personal data is:
Semangat Kayu
Email: [email protected]

As the data controller, we determine the purposes and means of processing your information and ensure your rights are respected in accordance with relevant legal frameworks.

3. Categories of Data We Process

We process various categories of personal data depending on your interactions with our site and services:

a. Usage Data
Includes information about how you use our website and digital services, such as IP address, browser type and version, pages visited, time spent on pages, referring URL, and general navigation paths.

b. Account Data
Includes identifying details you provide when registering an account or making a purchase, such as full name, email address, postal and billing addresses, and phone number.

c. Profile Data
Encompasses your preferences, purchase history, viewed products, and behavioral patterns collected through analytical tools and platform usage.

d. Communication Data
Includes records of your correspondence with us, including support requests, email communications, chat interactions, and any messages sent via contact forms.

e. Technical Data
Covers device type, operating system, screen resolution, platform identifiers, and other system configuration details that may impact your browsing experience.

f. Transaction Data
Includes details of purchases made on semangatkayu.com, such as payment information, transaction identifiers, billing and shipping addresses, and delivery confirmation data.

g. Preference Data
Consists of your consent preferences for marketing communications, language settings, product interests, and user selections regarding how you wish to be contacted.

4. Legal Bases for Processing

We process your personal data on the following legal grounds:

– Contractual Necessity: To fulfill our obligations under a contract (e.g., processing orders or providing customer support).
– Legitimate Interest: To improve and optimize our services, prevent fraud, and maintain site security, provided such interests are not overridden by your rights.
– Consent: For sending marketing materials or using cookies where required. You have the right to withdraw consent at any time.
– Legal Obligation: To comply with statutory obligations, such as maintaining financial records or cooperating with law enforcement when required.

5. Your Rights

Subject to applicable law, you have the following rights concerning your personal data:

– Right of Access: You have the right to request information about the personal data we hold about you and access a copy of such data.
– Right to Rectification: You may request correction of inaccurate or incomplete data.
– Right to Erasure: You may request deletion of your personal data in specific circumstances, subject to legal limitations (also known as the “Right to Be Forgotten”).
– Right to Restriction: You may request the restriction of processing under certain legal justifications.
– Right to Data Portability: You may obtain a copy of your data in a structured, commonly-used machine-readable format and, where feasible, request its transfer to another controller.

To exercise these rights, please contact us at [email protected]. We reserve the right to validate requests and respond within the timeframes required under applicable law.

6. Security Measures

We implement stringent technical and organizational measures to protect personal data, including but not limited to:

– Data encryption in transit and at rest
– Strict access controls based on roles and need-to-know
– Regular system audits and vulnerability scans
– Secure data backups and disaster recovery protocols
– Internal privacy and data security training for staff

These measures are designed to protect your data from unauthorized access, loss, misuse, alteration, or disclosure.

7. International Transfers

Where data is transferred outside the European Economic Area (EEA) or the jurisdiction where you reside, we ensure appropriate safeguards are implemented. These may include:

– Standard Contractual Clauses approved by the European Commission or relevant supervisory authorities
– Compliance with Privacy Shield principles where applicable
– Binding corporate rules or equivalent mechanisms that ensure adequate data protection

We strive to ensure your data benefits from the same level of protection regardless of geographic location.

8. Data Retention

Your personal data is retained only for as long as necessary to fulfill the purposes for which it was collected, including satisfying legal, accounting, or reporting obligations. Specific retention periods include:

– Usage and Technical Data: Retained for no longer than 12 months
– Account, Profile, and Transaction Data: Retained for 7 years post last interaction to comply with legal and tax obligations
– Communication Data: Retained up to 2 years from last correspondence
– Preference Data: Retained until marketing consent is withdrawn or the account is deleted

Upon expiration of these retention periods, personal data is securely deleted or anonymized unless legal obligations require otherwise.

9. Cookie Policy

Semangatkayu.com utilizes cookies and similar technologies to enhance your experience and collect analytics data. Our cookies are categorized as follows:

– Essential Cookies: Necessary for basic site functions, including core security and user session management
– Functional Cookies: Improve usability, remembering your preferences and language settings
– Analytics Cookies: Collect anonymous usage statistics to optimize website performance and content
– Performance Cookies: Monitor site performance to enhance speed and responsiveness

10. Cookie Management and Compliance

You can manage your cookie preferences through our website’s cookie consent banner upon your first visit and can update your preferences at any time via your browser settings or re-accessing the banner controls.

In compliance with GDPR and CCPA:

– No non-essential cookies are placed without explicit consent
– Users may opt-out of data selling options (as defined under CCPA)
– Do Not Track (DNT) headers are respected where supported
– Cookies used for profiling are disclosed and subject to opt-in only

11. Children’s Privacy

Our site and services are not directed toward individuals under the age of 13. We do not knowingly collect or solicit personal data from children under 13. If we become aware that personal data has been collected from a child without verified parental consent, we will promptly delete it. If you believe we may have collected data from a child, please contact us at [email protected].

12. Policy Updates

We reserve the right to update or revise this Privacy Policy at our sole discretion. Any significant changes impacting your rights or the way we process data will be communicated through the website or via email to registered users. Continued use of semangatkayu.com after updates constitutes your acceptance of the updated policy.

13. Contact

If you have any questions, concerns, or requests related to this Privacy Policy, or your personal data, please contact us at:

[email protected]

We are committed to resolving privacy-related complaints in a timely and transparent manner, in accordance with applicable data protection laws.

This Privacy Policy is designed to ensure full compliance with GDPR, CCPA, and other relevant privacy legislation. If you have any concerns regarding your data or privacy rights, please contact us directly at the address above.