Privacy Policy
Last Updated: January 2024
Your Privacy Matters to Us: At Goserta, we respect your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, share, and safeguard your data when you visit our website or interact with our services.
1. Information We Collect
Information You Provide Directly
We collect information that you voluntarily provide to us through our website:
- Contact Information: Name, email address, and any message content when you use our contact forms or subscribe to our newsletter
- Communication Records: Records of your correspondence with us, including emails and form submissions
- Feedback and Reviews: Any product reviews, comments, or feedback you choose to share with us
Information Collected Automatically
When you visit Goserta, we automatically collect certain information about your device and browsing behavior:
- Device Information: IP address, browser type, operating system, device identifiers, and mobile network information
- Usage Data: Pages visited, time spent on pages, click patterns, referring URLs, and navigation paths through our website
- Location Data: General geographic location based on your IP address (city and state level)
- Performance Data: Website load times, error messages, and technical performance metrics
Information from Third Parties
We may receive information about you from third-party services we use:
- Amazon Associates: Information about products you view or purchase through our affiliate links, including product preferences and browsing behavior on Amazon
- Analytics Providers: Aggregated demographic and interest data from services like Google Analytics
- Advertising Networks: Cookie data and advertising identifiers from platforms that help us understand ad performance
2. How We Use Your Information
We use the information we collect for the following purposes:
Website Operations and Improvement
- Operate, maintain, and improve our website functionality and user experience
- Troubleshoot technical issues and optimize website performance
- Analyze user behavior to enhance our content and product recommendations
- Develop new features and services based on user needs
Communication and Support
- Respond to your inquiries, comments, and support requests
- Send you newsletters and updates about Serta office chairs (if you’ve subscribed)
- Provide information about products, promotions, and special offers
- Follow up on your interactions with our website
Analytics and Research
- Understand how visitors use our website and which content is most valuable
- Measure the effectiveness of our marketing campaigns and affiliate relationships
- Conduct market research to better serve our audience’s needs
- Create aggregated, anonymized statistics about website usage
Marketing and Personalization
- Personalize your experience with relevant product recommendations
- Deliver targeted advertising about Serta office chairs through third-party platforms
- Retarget ads to users who have shown interest in specific products
- Measure the return on our marketing investments
Legal Compliance and Security
- Comply with applicable laws, regulations, and legal processes
- Protect against fraudulent, unauthorized, or illegal activity
- Enforce our Terms and Conditions and other policies
- Protect the rights, property, and safety of Goserta, our users, and the public
3. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to collect information and improve your experience on Goserta. Here’s what you need to know:
Types of Cookies We Use
Essential Cookies: These cookies are necessary for our website to function properly. They enable core features like page navigation, secure access, and form submissions. You cannot opt out of these cookies.
Analytics Cookies: We use Google Analytics and similar services to understand how visitors interact with our website. These cookies help us:
- Track which pages are most popular and how users navigate our site
- Measure website performance and identify technical issues
- Understand demographic information about our audience (age, location, interests)
- Improve our content strategy based on user engagement patterns
Advertising Cookies: As participants in the Amazon Associates Program, we use cookies to:
- Track when users click on our affiliate links to Amazon
- Attribute purchases made through our referrals for commission purposes
- Understand which products and content generate the most interest
- Deliver personalized product recommendations based on browsing history
Managing Your Cookie Preferences
You have control over how cookies are used on your device:
- Browser Settings: Most browsers allow you to block or delete cookies through their privacy settings. Consult your browser’s help section for instructions.
- Opt-Out Tools: You can opt out of interest-based advertising through the Digital Advertising Alliance’s opt-out portal at www.aboutads.info/choices
- Google Analytics: Install the Google Analytics Opt-out Browser Add-on at https://tools.google.com/dlpage/gaoptout
Note: Disabling cookies may limit certain features of our website. Essential cookies cannot be disabled without affecting website functionality.
4. How We Share Your Information
We do not sell your personal information. However, we may share your information in the following circumstances:
Service Providers
We work with trusted third-party service providers who assist us in operating our website and business:
- Web Hosting Services: Companies that host our website infrastructure and databases
- Email Service Providers: Platforms that help us send newsletters and respond to inquiries
- Analytics Platforms: Services like Google Analytics that help us understand website usage
- Content Delivery Networks: Services that help deliver our content quickly and securely
These service providers are contractually obligated to protect your information and only use it for the purposes we specify.
Affiliate Partners
Amazon Associates Program: As an Amazon Associate, we earn commissions from qualifying purchases. When you click our affiliate links:
- Amazon receives information about your click and any subsequent purchases
- Amazon’s privacy policy governs how they handle your information on their platform
- We receive aggregated reports about clicks and purchases but not your personal identifying information
- Amazon may use cookies to track your activity for attribution purposes
Legal Requirements
We may disclose your information when required by law or to protect our rights:
- In response to valid legal processes (subpoenas, court orders, government requests)
- To comply with applicable laws and regulations
- To protect the rights, property, or safety of Goserta, our users, or others
- To detect, prevent, or address fraud, security, or technical issues
- To enforce our Terms and Conditions or investigate potential violations
Business Transfers
If Goserta is involved in a merger, acquisition, asset sale, or bankruptcy, your information may be transferred to the successor organization. We will notify you of any such change via email or a prominent notice on our website.
5. Your Privacy Rights
Depending on your location, you have specific rights regarding your personal information. We honor these rights for all our users, regardless of location.
Rights Available to All Users
- Access: Request a copy of the personal information we hold about you
- Correction: Request that we correct inaccurate or incomplete information
- Deletion: Request that we delete your personal information (subject to legal exceptions)
- Opt-Out: Unsubscribe from marketing emails or opt out of certain data collection
- Restriction: Request that we limit how we process your information
Additional Rights for EU/UK Users (GDPR)
If you are located in the European Union or United Kingdom, you have additional rights:
- Right to Access: Obtain confirmation of whether we process your data and receive a copy of your personal information
- Right to Rectification: Request correction of inaccurate personal data
- Right to Erasure: Request deletion of your personal data under certain circumstances
- Right to Restrict Processing: Request that we limit processing of your personal data
- Right to Data Portability: Receive your personal data in a structured, commonly used format
- Right to Object: Object to processing of your personal data for certain purposes, including direct marketing
- Right to Withdraw Consent: Withdraw consent at any time where we rely on consent for processing
- Right to Lodge a Complaint: File a complaint with your local data protection authority
California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have the following rights:
- Right to Know: Request disclosure of the categories and specific pieces of personal information we collect, use, disclose, and sell
- Right to Know About Sales/Sharing: Know whether we sell or share your personal information and to whom
- Right to Opt-Out: Opt out of the sale or sharing of your personal information
- Right to Delete: Request deletion of personal information we collected from you
- Right to Correct: Request correction of inaccurate personal information
- Right to Limit Sensitive Personal Information: Limit our use and disclosure of sensitive personal information
- Right to Non-Discrimination: Exercise your privacy rights without discriminatory treatment
Note: We do not sell personal information in the traditional sense. However, our use of advertising cookies may constitute “sharing” under California law. You can opt out through the cookie management tools described in Section 3.
Virginia Privacy Rights (VCDPA)
Virginia residents have rights similar to California residents, including:
- Right to access personal data
- Right to correct inaccuracies in personal data
- Right to delete personal data
- Right to obtain a copy of personal data
- Right to opt out of targeted advertising, sale of personal data, and profiling
Colorado Privacy Rights (CPA)
Colorado residents have the right to:
- Access their personal data
- Correct inaccuracies in their personal data
- Delete their personal data
- Obtain a portable copy of their personal data
- Opt out of targeted advertising, sale of personal data, and certain profiling activities
Connecticut Privacy Rights (CTDPA)
Connecticut residents have similar rights to Colorado and Virginia residents, including rights to access, correct, delete, and obtain copies of personal data, as well as opt out of certain processing activities.
Utah Privacy Rights (UCPA)
Utah residents have the right to:
- Access their personal data
- Delete their personal data
- Obtain a portable copy of their personal data
- Opt out of targeted advertising and sale of personal data
How to Exercise Your Rights
To exercise any of these privacy rights, you may:
- Email us at privacy@goserta.com with your request
- Use our contact form at https://goserta.com/contact/
- Send written correspondence to our mailing address listed at the end of this policy
When you submit a request, we will:
- Verify your identity to protect your privacy and security
- Respond to your request within 30-45 days (depending on applicable law)
- Provide a clear explanation if we cannot fulfill your request
- Not discriminate against you for exercising your privacy rights
6. Data Security
We take the security of your personal information seriously and implement appropriate technical and organizational measures to protect it:
Security Measures
- Encryption: We use SSL/TLS encryption to protect data transmitted between your browser and our servers
- Secure Hosting: Our website is hosted on secure servers with regular security updates and monitoring
- Access Controls: We limit access to personal information to authorized personnel who need it to perform their job functions
- Regular Audits: We conduct regular security assessments to identify and address vulnerabilities
- Data Minimization: We only collect and retain information that is necessary for our stated purposes
Important Security Limitations
While we strive to protect your information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security of your information. You acknowledge that:
- You provide information at your own risk
- We are not responsible for circumvention of privacy settings or security measures
- You should use strong passwords and keep your account credentials confidential
- You should be cautious about sharing personal information online
7. Children’s Privacy
Goserta is not directed to children under the age of 13, and we do not knowingly collect personal information from children under 13. Our website focuses on office furniture for adults and professional workspaces.
If we learn that we have collected personal information from a child under 13 without parental consent, we will delete that information as quickly as possible. If you believe we have collected information from a child under 13, please contact us immediately at privacy@goserta.com.
COPPA Compliance
We comply with the Children’s Online Privacy Protection Act (COPPA). We:
- Do not knowingly collect, use, or disclose personal information from children under 13
- Do not condition a child’s participation in activities on disclosure of more information than is reasonably necessary
- Will delete any information we discover was collected from children under 13
8. Third-Party Links and Services
Our website contains links to third-party websites and services, including Amazon.com and other retailers where Serta office chairs are sold.
Amazon.com
When you click our affiliate links to Amazon:
- You are redirected to Amazon.com, which is operated independently by Amazon
- Amazon’s Privacy Notice governs their collection and use of your information
- We recommend reviewing Amazon’s privacy practices at https://www.amazon.com/privacy
- Any purchases you make are transactions between you and Amazon, not Goserta
Other Third-Party Links
We may also link to:
- Serta’s official website and manufacturer resources
- Retailer websites where Serta products are sold
- Product review platforms and consumer research sites
- Social media platforms where we maintain a presence
We are not responsible for:
- The privacy practices of these third-party websites
- Content, accuracy, or policies of external sites
- How these sites collect, use, or share your information
- Products or services offered by third parties
We encourage you to read the privacy policies of any third-party sites you visit.
9. Data Retention
We retain your personal information only as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.
Retention Criteria
We determine retention periods based on:
- Purpose of Collection: Information is kept as long as needed for its original purpose
- User Account Status: Information associated with active accounts is retained; deleted accounts are purged within 90 days
- Legal Requirements: Some data must be retained to comply with tax, accounting, or legal obligations
- Legitimate Business Interests: Information needed for fraud prevention, security, or dispute resolution
- Consent Duration: Marketing communications data is retained until you withdraw consent
Specific Retention Periods
- Contact Form Submissions: Retained for 2 years or until you request deletion
- Email Communications: Retained for 2 years or until you request deletion
- Newsletter Subscriptions: Retained until you unsubscribe, then deleted within 30 days
- Analytics Data: Aggregated data retained indefinitely; individual data retained for 26 months (Google Analytics default)
- Cookie Data: Retained per cookie settings (typically 30 days to 2 years)
- Legal Records: Retained as required by applicable law (typically 7 years for financial records)
Data Deletion
When retention periods expire or upon your request, we:
- Securely delete or anonymize your personal information
- Remove personally identifiable details from backup systems
- Ensure third-party processors also delete your data
- May retain anonymized, aggregated data that cannot identify you
10. International Data Transfers
Goserta operates in the United States, and your information may be transferred to, stored, and processed in the United States or other countries where our service providers operate.
Data Transfer Safeguards
When we transfer personal information internationally, we ensure adequate protections are in place:
- Standard Contractual Clauses: We use European Commission-approved contractual terms with service providers
- Adequacy Decisions: We rely on adequacy decisions recognized by the EU or other jurisdictions when available
- Service Provider Agreements: Our contracts require third parties to provide equivalent privacy protections
- Data Security: All transfers use encryption and secure transmission protocols
Your Rights Regarding International Transfers
If you are located outside the United States:
- You may request information about the safeguards we use for international transfers
- You may object to transfers if you believe adequate protections are not in place
- You retain all privacy rights afforded by your local jurisdiction
11. Email Communications
What You May Receive
If you subscribe to our newsletter or contact us, you may receive:
- Newsletter Updates: Information about new Serta office chair models, features, and reviews
- Product Recommendations: Suggestions based on your interests and browsing behavior
- Special Offers: Notifications about Amazon promotions, sales, and discounts on Serta products
- Response Communications: Replies to your inquiries submitted through our contact form
- Service Announcements: Important updates about our website, policies, or services
How to Unsubscribe
You can opt out of marketing emails at any time:
- Click the “unsubscribe” link at the bottom of any marketing email
- Email us at privacy@goserta.com with “Unsubscribe” in the subject line
- Use our contact form to request removal from our mailing list
Note: Even if you unsubscribe from marketing emails, we may still send you:
- Transactional emails (responses to your inquiries)
- Important service announcements or policy updates
- Legal notices required by law
12. Do Not Track Signals
Some web browsers have “Do Not Track” (DNT) features that signal to websites that you do not want your online activities tracked. Currently, there is no universally accepted standard for how to respond to DNT signals.
Our Approach:
- We do not currently respond to DNT browser signals
- We continue to collect information as described in this Privacy Policy regardless of DNT settings
- You can still manage cookies and tracking through your browser settings and opt-out tools described in Section 3
- We will update this policy if we adopt a DNT standard in the future
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or business operations.
How We Notify You of Changes
When we make material changes to this policy, we will:
- Update the “Last Updated” date at the top of this page
- Post a prominent notice on our homepage for 30 days
- Send an email notification to newsletter subscribers (for significant changes)
- Provide a summary of key changes in the notification
Your Acceptance of Changes
By continuing to use Goserta after we post changes to this Privacy Policy, you accept the updated terms. If you do not agree with the changes:
- You may request deletion of your personal information
- You may stop using our website
- You may contact us with concerns about the changes
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
Contact Us About Privacy
If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
Email:
privacy@goserta.com
Mailing Address:
Goserta
2847 Commerce Drive
Suite 310
Austin, TX 78744
United States
Privacy Rights Requests:
To exercise your privacy rights (access, deletion, correction, opt-out), please email privacy@goserta.com or use our contact form at https://goserta.com/contact/
Response Time:
We will respond to all privacy inquiries and rights requests within 30-45 days, as required by applicable law.
EU/UK Data Protection Officer:
For GDPR-related inquiries from EU or UK residents, please contact our Data Protection Officer at dpo@goserta.com
