Table of Contents
- 1. Introduction
- 2. Information We Collect
- 3. How We Use Your Information
- 4. Legal Basis for Processing
- 5. Sharing & Disclosure
- 6. Third-Party Services
- 7. Data Security
- 8. Data Retention
- 9. Your Rights Under CCPA
- 10. Your Rights Under GDPR
- 11. Children's Privacy
- 12. International Data Transfers
- 13. Cookie Policy
- 14. Do Not Track Signals
- 15. Changes to This Policy
- 16. Contact Information
Introduction
Welcome to the Privacy Policy of JZABEHL'S MINT LLC ("JZABEHL'S MINT LLC," "we," "us," or "our"). JZABEHL'S MINT LLC is a limited liability company registered in the State of California, United States, with Employer Identification Number (EIN) 85-1183753. Our principal office is located at 14803 milfoil ave Orlando, FL 32827.
Founded in 2013 by Hiroshi Tanaka, JZABEHL'S MINT specializes in custom iOS and Android mobile application development. We are committed to protecting your privacy and ensuring the security of any personal information you provide to us through our website, mobile applications, and related services (collectively referred to as the "Services").
This Privacy Policy explains in detail what information we collect, how we collect it, the purposes for which we use it, the circumstances under which we may share it, and the choices you have regarding your personal information. We encourage you to read this policy carefully to understand our practices.
By accessing or using our Services, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with any part of this policy, please discontinue use of our Services immediately. This policy should be read in conjunction with our Terms of Service.
This Privacy Policy applies to all visitors, users, and others who access or use our website at [email protected], our client portals, any mobile applications we develop internally, and any other digital platforms we operate. It does not apply to applications we develop on behalf of our clients, which are governed by those clients' respective privacy policies.
Information We Collect
We collect information to provide and improve our Services, communicate with you, and comply with applicable legal obligations. The information we collect falls into the following categories:
2.1 Personal Information You Provide Directly
When you interact with our Services, you may voluntarily provide us with personal information. This includes, but is not limited to:
- Identity Information: Full name, job title, company name, and professional affiliations that you provide when requesting a consultation, submitting a contact form, or entering into a service agreement with us.
- Contact Information: Email address, phone number, mailing address, and any preferred method of communication you specify when reaching out to us.
- Account Credentials: Username and password if you create an account on our client portal or project management tools.
- Financial and Billing Information: Billing address, payment method details, and transaction records when you purchase our Services. Please note that credit card numbers and sensitive payment data are processed by our PCI-DSS-compliant third-party payment processors and are never stored on our servers.
- Project-Related Information: Technical specifications, business requirements, design assets, intellectual property, wireframes, app store credentials, and other materials you provide during the course of a development project.
- Communication Records: Emails, chat messages, phone call summaries, meeting notes, and any other correspondence you have with our team.
- Feedback and Survey Responses: Testimonials, reviews, ratings, and responses to surveys or questionnaires you voluntarily complete.
2.2 Information Collected Automatically
When you access our website or use our Services, certain information is collected automatically through technological means. This includes:
- Device Information: Device type, operating system and version, browser type and version, screen resolution, device identifiers (such as IDFA or Android Advertising ID), and hardware model.
- Log Data: IP address, access times and dates, pages viewed, time spent on each page, referring URL, clickstream data, and the features you use on our site.
- Location Data: Approximate geographic location based on your IP address. We do not collect precise GPS-based location data through our website.
- Performance Data: Page load times, error logs, crash reports, and diagnostic information to help us maintain and improve the performance of our Services.
- Network Information: Internet service provider (ISP), connection type (Wi-Fi, cellular), and network speed, which help us optimize content delivery.
2.3 Cookies and Tracking Technologies
Our website employs cookies and similar tracking technologies to enhance your experience, analyze usage patterns, and deliver relevant content. These technologies include:
- Cookies: Small text files placed on your device that store preferences and session information. We use both session cookies (which expire when you close your browser) and persistent cookies (which remain on your device until they expire or you delete them).
- Web Beacons (Pixel Tags): Tiny transparent images embedded in web pages or emails that allow us to track whether content has been viewed or an email has been opened.
- Local Storage: HTML5 local storage and similar technologies that allow us to store data locally on your device for performance optimization.
- Analytics Tools: We use third-party analytics services, including Google Analytics, to collect and analyze usage data. These services may use their own cookies and tracking technologies to gather information about your activity on our site.
For more detailed information about our use of cookies, including the specific cookies we use and how to manage them, please see Section 13: Cookie Policy.
2.4 Information from Third Parties
We may receive information about you from third-party sources, including:
- Business Partners: Companies with whom we have referral or partnership agreements may share contact information with your consent.
- Social Media Platforms: If you interact with us on social media platforms (such as LinkedIn, Twitter, or Facebook), we may receive profile information that you have made publicly available.
- Public Databases: We may supplement the information we collect with data from publicly available sources, such as business registries and professional directories, to verify business relationships.
- Service Providers: Third-party vendors who assist with marketing, analytics, or fraud prevention may share relevant data with us in the course of providing their services.
How We Use Your Information
JZABEHL'S MINT LLC uses the information we collect for a variety of business and operational purposes. We are committed to using your data only in ways that are lawful, fair, and transparent. Specifically, we use your information for the following purposes:
3.1 Providing and Managing Our Services
- To deliver custom iOS and Android mobile application development services as agreed upon in our service contracts.
- To create and manage your client account and project workspace.
- To process payments, generate invoices, and manage billing and accounting records.
- To communicate with you regarding project milestones, deliverables, approvals, and status updates.
- To provide technical support, troubleshoot issues, and respond to your requests or inquiries.
3.2 Improving and Optimizing Our Services
- To analyze how users interact with our website and identify areas for improvement.
- To conduct internal research and development to enhance our development processes and methodologies.
- To perform A/B testing and usability studies to improve user experience on our platforms.
- To monitor and analyze trends, usage, and activities in connection with our Services.
3.3 Marketing and Communications
- To send you information about our Services, industry insights, company news, and promotional offers that may be of interest to you, where permitted by law.
- To personalize the content and advertisements we show you based on your interests and interactions with our Services.
- To invite you to participate in events, webinars, surveys, or other promotional activities.
- To manage and administer referral programs and promotional campaigns.
You can opt out of marketing communications at any time by clicking the "unsubscribe" link in any marketing email, or by contacting us at [email protected].
3.4 Legal and Compliance Purposes
- To comply with applicable laws, regulations, legal processes, or governmental requests.
- To enforce our Terms of Service and other agreements.
- To protect the rights, property, and safety of JZABEHL'S MINT LLC, our clients, and the public.
- To detect, prevent, or address fraud, security breaches, or technical issues.
- To respond to lawful requests from public authorities, including to meet national security or law enforcement requirements.
3.5 Business Operations
- To facilitate business transactions, including mergers, acquisitions, or asset sales.
- To maintain internal records and administrative functions.
- To conduct audits and ensure compliance with internal policies.
Legal Basis for Processing
We process your personal information only when we have a lawful basis to do so. Depending on the specific context in which we collect and use your data, we rely on one or more of the following legal bases:
- Contractual Necessity: Processing is necessary for the performance of a contract to which you are a party, or in order to take steps at your request prior to entering into a contract. For example, we need to process your contact and project information to deliver the mobile application development services you have engaged us for.
- Legitimate Interests: Processing is necessary for our legitimate business interests, provided those interests are not overridden by your rights and freedoms. Our legitimate interests include operating and improving our Services, marketing our business, maintaining the security of our systems, and conducting analytics. We carefully balance our interests against your rights before relying on this basis.
- Consent: In certain cases, we may ask for your explicit consent to process your personal information for specific purposes, such as sending you marketing communications or placing non-essential cookies on your device. Where we rely on consent, you have the right to withdraw that consent at any time without affecting the lawfulness of processing carried out before the withdrawal.
- Legal Obligation: Processing is necessary for compliance with a legal obligation to which we are subject, such as tax reporting requirements, responding to court orders, or fulfilling regulatory obligations under California or federal law.
- Vital Interests: In rare circumstances, processing may be necessary to protect the vital interests of you or another natural person.
If you have questions about the specific legal basis on which we rely to process your personal information, please contact us using the details provided in Section 16.
Third-Party Services
Our Services may contain links to or integrations with third-party websites, applications, and services that are not owned or controlled by JZABEHL'S MINT LLC. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any personal information.
The following categories of third-party services may receive information about you through our Services:
6.1 Analytics Providers
We use analytics services, including Google Analytics, to understand how visitors use our website. These services collect information such as how often you visit our site, what pages you view, and what other sites you visited before coming to ours. Google Analytics uses cookies to collect this data. You can learn more about how Google uses your data at Google's Privacy Policy and opt out of Google Analytics by installing the Google Analytics Opt-Out Browser Add-on.
6.2 Payment Processors
We use PCI-DSS-compliant third-party payment processors to handle financial transactions. Your payment information is transmitted directly to these processors using industry-standard encryption and is never stored on JZABEHL'S MINT LLC's servers.
6.3 Cloud Infrastructure and Hosting
Our website and client portals are hosted on reputable cloud infrastructure providers that maintain robust physical, network, and procedural safeguards in compliance with industry standards including SOC 2 Type II certification.
6.4 Communication Tools
We may use third-party tools for email marketing, live chat, video conferencing, and project collaboration. These providers process your data in accordance with their own privacy policies and our data processing agreements with them.
6.5 Advertising Partners
We may use third-party advertising services, such as Google Ads and social media advertising platforms, to deliver targeted advertisements to you. These services may use cookies and similar technologies to collect information about your online activities over time and across different websites to provide you with relevant advertising.
Data Security
JZABEHL'S MINT LLC takes the security of your personal information very seriously. We implement a comprehensive set of administrative, technical, and physical safeguards designed to protect your data from unauthorized access, alteration, disclosure, or destruction.
7.1 Technical Safeguards
- Encryption: All data transmitted between your browser and our servers is encrypted using Transport Layer Security (TLS) 1.2 or higher. Sensitive data stored at rest is encrypted using AES-256 encryption.
- Access Controls: We implement strict role-based access controls ensuring that only authorized personnel with a legitimate business need can access personal information.
- Firewalls and Intrusion Detection: Our infrastructure is protected by enterprise-grade firewalls, intrusion detection systems (IDS), and intrusion prevention systems (IPS) that are continuously monitored.
- Vulnerability Management: We conduct regular vulnerability assessments and penetration testing of our systems to identify and remediate potential security weaknesses.
- Secure Development Practices: Our development team follows secure coding standards (OWASP guidelines) and conducts code reviews with security as a core consideration.
7.2 Administrative Safeguards
- Employee Training: All employees and contractors receive regular training on data protection, privacy best practices, and security awareness.
- Background Checks: Employees with access to personal data undergo background verification prior to employment.
- Confidentiality Agreements: All team members are required to sign confidentiality and non-disclosure agreements.
- Incident Response Plan: We maintain a detailed data breach incident response plan that outlines procedures for identifying, containing, investigating, and notifying affected individuals in the event of a security breach.
7.3 Physical Safeguards
- Our offices are secured with access controls, surveillance systems, and visitor management procedures.
- Physical servers and network equipment are housed in secure, climate-controlled facilities with redundant power and connectivity.
Important: While we strive to protect your personal information with industry-leading security measures, no method of transmission over the Internet or method of electronic storage is 100% secure. We cannot guarantee absolute security. If you have reason to believe that your interaction with us is no longer secure, please contact us immediately at [email protected].
Data Retention
We retain your personal information only for as long as is necessary to fulfill the purposes for which it was collected, including to satisfy legal, accounting, or reporting requirements. The specific retention period depends on the nature of the data and the context in which it was collected.
8.1 Retention Periods
- Client Project Data: We retain project-related files, communications, and deliverables for a period of five (5) years after the completion or termination of a project, unless a longer retention period is required by law or contractual obligation.
- Financial Records: Invoices, payment records, and tax-related documents are retained for a minimum of seven (7) years in compliance with federal and California state tax regulations.
- Marketing Data: If you have subscribed to our marketing communications, we retain your contact information until you unsubscribe or request deletion, plus an additional period as required to honor suppression lists.
- Website Analytics Data: Aggregated analytics data is retained for up to thirty-six (36) months. Individual-level analytics data, including IP addresses, is retained for up to fourteen (14) months.
- Communication Records: Emails and support correspondence are retained for three (3) years unless a longer period is necessary for legal or compliance purposes.
- Account Information: Active account data is maintained throughout the duration of the business relationship. Upon account closure or inactivity exceeding twenty-four (24) months, we will delete or anonymize the data, subject to any overriding legal retention obligations.
8.2 Deletion and Anonymization
When personal information is no longer needed for its original purpose and there is no legal requirement to retain it, we will securely delete or anonymize the data. Anonymized data, which can no longer be associated with an identifiable individual, may be retained indefinitely for analytical and statistical purposes.
If you request deletion of your personal information, we will process your request in accordance with applicable law and our data retention obligations. Please refer to Section 9 and Section 10 for details on exercising your data rights.
Your Rights Under the California Consumer Privacy Act (CCPA)
As a California-based company, JZABEHL'S MINT LLC is committed to compliance with the California Consumer Privacy Act of 2018 (CCPA) as amended by the California Privacy Rights Act (CPRA). If you are a California resident, you have specific rights regarding your personal information under these laws.
9.1 Right to Know
You have the right to request that we disclose the following information covering the twelve (12) months preceding your request:
- The categories of personal information we have collected about you.
- The categories of sources from which the personal information was collected.
- The business or commercial purpose for collecting or selling personal information.
- The categories of third parties with whom we share personal information.
- The specific pieces of personal information we have collected about you.
9.2 Right to Delete
You have the right to request that we delete any personal information we have collected from you, subject to certain exceptions. We may deny your deletion request if retaining the information is necessary for us or our service providers to:
- Complete the transaction for which the personal information was collected or provide a service you requested.
- Detect security incidents, protect against malicious or fraudulent activity, or prosecute those responsible.
- Debug to identify and repair errors that impair existing functionality.
- Comply with a legal obligation, including tax and accounting requirements.
- Make other internal and lawful uses of the information that are compatible with the context in which you provided it.
9.3 Right to Correct
You have the right to request that we correct any inaccurate personal information we maintain about you, taking into account the nature of the personal information and the purposes of the processing.
9.4 Right to Opt-Out of Sale or Sharing
You have the right to direct us not to sell or share your personal information. JZABEHL'S MINT LLC does not sell your personal information and has not sold personal information in the preceding twelve (12) months. We do not share your personal information for cross-context behavioral advertising purposes.
9.5 Right to Limit Use of Sensitive Personal Information
If we collect sensitive personal information (such as Social Security numbers, financial account information, or precise geolocation), you have the right to limit our use and disclosure of that information to what is necessary to perform the Services.
9.6 Right to Non-Discrimination
We will not discriminate against you for exercising any of your CCPA rights. We will not:
- Deny you goods or services.
- Charge you different prices or rates for goods or services.
- Provide you a different level or quality of goods or services.
- Suggest that you may receive a different price or rate for goods or services, or a different level or quality of goods or services.
9.7 How to Exercise Your Rights
To exercise any of the rights described above, you may submit a verifiable consumer request to us by:
- Emailing us at [email protected] with the subject line "CCPA Request."
- Calling us at +1 305 856 2211.
- Writing to us at: JZABEHL'S MINT, 14803 milfoil ave Orlando, FL 32827.
We will verify your identity before processing your request. You may also designate an authorized agent to make a request on your behalf. We will respond to verifiable consumer requests within forty-five (45) calendar days of receipt. If we require more time (up to an additional forty-five days), we will inform you of the reason and extension period in writing.
California "Shine the Light" Law: Under California Civil Code Section 1798.83, California residents who have an established business relationship with us may request information regarding the disclosure of their personal information to third parties for direct marketing purposes. JZABEHL'S MINT LLC does not disclose personal information to third parties for their direct marketing purposes.
Your Rights Under the General Data Protection Regulation (GDPR)
If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, you have specific rights under the General Data Protection Regulation (GDPR) and related data protection laws. JZABEHL'S MINT LLC acts as the data controller for the personal information we collect and process.
10.1 Your GDPR Rights
Under the GDPR, you have the following rights:
- Right of Access (Article 15): You have the right to obtain confirmation as to whether your personal data is being processed and, if so, to access that data along with information about the purposes of processing, categories of data, recipients, and retention periods.
- Right to Rectification (Article 16): You have the right to request correction of inaccurate personal data and the completion of incomplete personal data.
- Right to Erasure (Article 17): Also known as the "right to be forgotten," you can request the deletion of your personal data under certain conditions, such as when it is no longer necessary for the purpose it was collected.
- Right to Restriction of Processing (Article 18): You can request that we restrict the processing of your personal data under certain circumstances, such as when you contest the accuracy of the data.
- Right to Data Portability (Article 20): You have the right to receive the personal data you have provided to us in a structured, commonly used, and machine-readable format, and to transmit that data to another controller.
- Right to Object (Article 21): You have the right to object to the processing of your personal data based on our legitimate interests or for direct marketing purposes.
- Right Not to Be Subject to Automated Decision-Making (Article 22): You have the right not to be subject to decisions based solely on automated processing, including profiling, that produce legal effects or similarly significantly affect you.
10.2 Exercising Your GDPR Rights
To exercise any of these rights, please contact our data protection team at [email protected]. We will respond to your request within one (1) month of receipt. In certain complex cases, this period may be extended by an additional two (2) months, in which case we will inform you of the extension and the reasons for the delay within the initial one-month period.
If you believe that our processing of your personal data violates your rights under the GDPR, you have the right to lodge a complaint with a supervisory authority in the EU member state of your habitual residence, place of work, or place of the alleged infringement.
Children's Privacy
JZABEHL'S MINT LLC's Services are not directed to individuals under the age of sixteen (16). We do not knowingly collect, solicit, or maintain personal information from children under 16 years of age. If you are a parent or guardian and believe that your child has provided us with personal information without your consent, please contact us immediately at [email protected].
If we become aware that we have collected personal information from a child under 16 without verification of parental consent, we will take immediate steps to delete that information from our servers. In accordance with the Children's Online Privacy Protection Act (COPPA), we will also notify the parent or guardian as appropriate.
If you are between the ages of 16 and 18, you may use our Services only with the involvement and consent of a parent or legal guardian. We encourage parents and guardians to actively monitor their children's online activities and to help enforce this policy.
International Data Transfers
JZABEHL'S MINT LLC is headquartered in San Francisco, California, United States. If you access our Services from outside the United States, please be aware that your personal information may be transferred to, stored, and processed in the United States and other countries where our servers, service providers, or partners operate.
The data protection laws of the United States and other countries may differ from those of your country of residence. By using our Services, you acknowledge and consent to the transfer of your information to the United States and other jurisdictions as described in this Privacy Policy.
12.1 Safeguards for International Transfers
When we transfer personal data internationally, we implement appropriate safeguards to ensure that your data receives an adequate level of protection, including:
- Standard Contractual Clauses (SCCs): We enter into European Commission-approved Standard Contractual Clauses with our service providers and partners to ensure adequate protection for data transferred outside the EEA.
- Data Processing Agreements: We maintain comprehensive data processing agreements with all third-party service providers that process personal data on our behalf, requiring them to implement appropriate technical and organizational measures.
- Adequacy Assessments: We conduct transfer impact assessments to evaluate the data protection framework of the recipient country and implement supplementary measures where necessary.
- EU-U.S. Data Privacy Framework: Where applicable, we rely on relevant data privacy frameworks and certifications for lawful data transfers.
For more information about the specific safeguards we use for international data transfers, please contact us at [email protected].
Do Not Track Signals
Some web browsers have a "Do Not Track" (DNT) feature that sends a signal to the websites you visit, indicating that you do not want to be tracked. There is currently no universally accepted standard for how companies should respond to DNT signals, and there is no consistent industry understanding of what constitutes a valid DNT signal.
At this time, JZABEHL'S MINT LLC does not respond to DNT signals from web browsers. However, we respect your privacy preferences and provide you with the ability to manage cookies and tracking technologies as described in Section 13 above. Additionally, California residents may exercise their rights under the CCPA as described in Section 9.
We will continue to monitor developments in DNT technology and update our practices if and when a universally recognized standard is established. If we make changes to our approach regarding DNT signals, we will update this Privacy Policy accordingly.
For information about opting out of third-party tracking for advertising purposes, you may visit:
- The Digital Advertising Alliance (DAA) at https://optout.aboutads.info/
- The Network Advertising Initiative (NAI) at https://optout.networkadvertising.org/
- For European users, the European Interactive Digital Advertising Alliance (EDAA) at https://youronlinechoices.eu/
Changes to This Privacy Policy
JZABEHL'S MINT LLC reserves the right to update or modify this Privacy Policy at any time to reflect changes in our practices, technologies, legal requirements, or other factors. We encourage you to review this page periodically to stay informed about how we are protecting your information.
15.1 Notification of Changes
When we make material changes to this Privacy Policy, we will take reasonable steps to notify you, including:
- Posting the updated Privacy Policy on our website with a revised "Last Updated" date at the top of the page.
- Sending you an email notification to the email address associated with your account (if applicable).
- Displaying a prominent notice or banner on our website for a reasonable period following any significant changes.
15.2 Review and Acceptance
Your continued use of our Services after the effective date of the revised Privacy Policy constitutes your acceptance of the updated terms. If you do not agree with the revised policy, you should discontinue your use of our Services and contact us to request deletion of your personal information.
We recommend that you bookmark this page and check it regularly. The "Last Updated" date at the top of this policy indicates when it was most recently revised. If you have any questions about changes to this policy, please do not hesitate to contact us.
15.3 Version History
We maintain a record of previous versions of this Privacy Policy. If you would like to review a prior version, please contact us at [email protected] and we will provide you with the relevant document upon request.
Contact Information
If you have any questions, concerns, or complaints about this Privacy Policy, our data practices, or the way in which we handle your personal information, we encourage you to contact us. We are committed to resolving any issues promptly and transparently.
For CCPA-specific requests, please email us with the subject line "CCPA Request" or call us at +1 305 856 2211. For GDPR-specific inquiries, please email us with the subject line "GDPR Request."
We aim to respond to all privacy-related inquiries within five (5) business days. For formal data subject access requests, we will respond within the timeframes mandated by applicable law (45 days for CCPA; 30 days for GDPR).
Dispute Resolution: If you are not satisfied with our response to your privacy concern, you may have the right to make a complaint to the relevant data protection authority in your jurisdiction. California residents may also contact the California Attorney General's Office. EU residents may contact their local supervisory authority.