Privacy Policy and GDPR Compliance

Here at Hi-Fu, we take your privacy seriously and will only use your personal information to administer your account.

Forms

When you submit a support question or general enquiry, we collect your first name, last name and your email address so that we can correspond with you.

Your data will only be stored on this website’s database. We do not keep any other copies. Our web host is GDPR certified and compliant, and the info is secure.

Comments

When you leave comments on the website, HIFU collect the data shown in the comments form—the visitor’s IP address and browser user agent string.

An anonymised string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public alongside your comment.

Media

If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.

Cookies

If you leave a comment on our site, you may opt in to save your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.

If you have an account and you log in to this site, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.

When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.

Suppose you edit or publish an article, an additional cookie will be saved in your browser. This cookie includes no personal data and indicates the post ID of the article you just edited. It expires after 1 day.

Embedded content from other websites

Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the same way as if the visitor had visited the other website.

Google Analytics

We use Google Analytics to track visitors on this site.

Google Analytics uses cookies to collect this data.

To be compliant with the new regulatory changes regarding GDPR, Google has included a data processing amendment.

The data we collect will be processed anonymously, and the “Data sharing” element has been turned off.

We don’t use other Google services in combination with Google Analytics cookies.

Freedom of Information request

Below, we show you all of the data stored on our website. Select the data you wish the site owner to anonymise so it cannot be linked to your email address any longer. It is the site’s owner’s responsibility to act upon your request. When your data is anonymised, you will receive an email confirmation.

Requests Table & Rights of Data Subject

Right to Erasure Requests.

The Data Subject (you) can submit a request to be removed from the website.

When a request is made, the Subject will receive an email confirmation. It will confirm the deletion request.

After email confirmation, the user’s request is added to the requests table for review by Admins.

If the Subject has content published on the website for any post types or comments.

If they do not have any content, they will receive a confirmation of erasure request and be provided with a six-digit Token for safekeeping after erasure in case of data recovery needed.

The requests table allows the Administrator to reassign any content to another user or delete it.

In the event of comments, the Subject’s content would be made anonymous.

Admin can also manually add users to the erasure requests table with a manual email search.

Right to Access Data Request & User Data Portability

The Data Subject can place a request to download their data.

After requesting their data, the user will receive a double opt-in confirmation email, then the plugin will generate an XML or JSON file, which will be emailed to them for download with an expiration time of 48 hours.

Right to Rectify & Complaint Requests

The Data Subject can request rectification of their data.

After making their request, the user will receive a double-opt-in confirmation email and then be added to the table for the admin to handle the request.

Email Marketing

We use email marketing to keep you up to date, as well as newsletters.

Each of our mailshots is fully GDPR Compliant and will contain an opt-out notification if you no longer want to receive them.

For email marketing, we store the absolute minimum: your name and email address.