Privacy Policy
Service operated by Scott Black (Scott Black Visual Effects & Motion Graphics)
Contact Form - https://www.scottblack.me/contact
Cookie Policy - https://www.scottblack.me/cookie-policy
Latest Revision: 2024/11/12
This Privacy Policy ('Privacy Policy', 'Privacy Notice', 'Policy' or 'Notice) for Scott Black Visual Effects & Motion Graphics ('we', 'us', 'Operator', 'the Operator' or 'our') describes how and why we might access, collect, store, use, and/or share ('process') your personal information when you use our services ('Services'), including when you:
• Visit our website at http://www.scottblack.me, or any website or document of ours that links to this Privacy Notice
• Engage with us in other related ways, including any sales, marketing, or events
This page is used to inform website visitors and contactees of this entity regarding its policies regarding the collection, use, and disclosure of Personal Information in relation to the Service, including the use of this website and as a recipient of contact from the Operator.
Questions or concerns? Reading this Privacy Notice will help you understand your privacy rights and choices. We are responsible for making decisions about how your personal information is processed. If you do not agree with our policies and practices, please do not use our Services and./or indicate to us via the methods outlined below. If you still have any questions or concerns, please contact us by replying to any email address associated with contact or documents by the Operator, or use the contact form on the Website
1. SUMMARY OF KEY POINTS
This summary provides key points from our Privacy Notice.
What personal information do we process?
When you visit, use, or navigate our Services, we may process personal information depending on how you interact with us and the Services, the choices you make, and the products and features you use. Learn more about personal information you disclose to us.
Do we process any sensitive personal information? Some of the information may be considered 'special' or 'sensitive' in certain jurisdictions, for example your racial or ethnic origins, sexual orientation, and religious beliefs. We do not process sensitive personal information.
How do we collect your contact information?
Your contact information is sourced from your website, or when you directly communicate with the Operator.
How do we process your information?
We process your information to provide, improve, and administer our Services, communicate with you for security and fraud prevention, comply with the law, and ensure we respect the communication preferences you shared with us. We process your information only when we have a valid legal reason to do so.
In what situations and with which types of parties do we share personal information? We may share information in specific situations and with specific categories of third parties (detailed below).
How do we keep your information safe?
We have adequate organisational and technical processes and procedures in place to protect your personal information. However, no electronic transmission over the internet or information storage technology can be guaranteed to be 100% secure, so we cannot promise or guarantee that hackers, cybercriminals, or other unauthorised third parties will not be able to defeat our security and improperly collect, access, steal, or modify your information. Learn more about how we keep your information safe.
What are your rights?
Depending on where you are located geographically, the applicable privacy law may mean you have certain rights regarding your personal information. Learn more about your privacy rights below.
How do you exercise your rights?
The easiest way to exercise your rights is by visiting https://www.scottblack.me/contact to contact us, or by replying to any point of communication established with us. We will consider and act upon any request in accordance with applicable data protection laws.
What information do we collect?
In short, we collect personal information that you provide to us and/or information that we source under legitimate interest. We collect personal information that you voluntarily provide to us when you express an interest in obtaining information about us or our products and Services, when you participate in activities on the Services, or otherwise when you contact us. We may also collect information you have listed publicly online on a legitimate interest basis.
The personal information that we collect depends on the context of your interactions with us and the Services, the choices you make, the products and features you use, and what information you have shared publicly. The information we collect may include the following:
• First name(s) if you explicitly express an interest in us or our services (and do not explicitly object to further contact). A full name may be collected if we explore the possibility of working together and/or work together.
• Phone number(s) if you explicitly express an interest in me or our services (and do not explicitly object to further contact) and have explicitly expressed an interest in speaking to us.
• Email Address(s).
• Physical locations of institutions.
• Contact preferences.
We do not process sensitive information (including racial or ethnic origin classifications, political opinions, religious or philosophical beliefs, trade union membership, genetic data, biometric data or identification, health data, criminal convictions or offences, or sexual behaviour, preferences or orientation).
All personal information that you provide to us must be true, complete, and accurate, and you must notify us of any changes to such personal information.
Google API
Our use of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements.
2. HOW DO WE PROCESS YOUR INFORMATION?
In Short, We process your information to provide, improve, and administer our Services, communicate with you for security and fraud prevention, and comply with the law. We may also process your information for other purposes with your consent.
We process your information for a variety of reasons, depending on how you interact with our Services, including:
• To request feedback. We may process your information when necessary to request feedback and to contact you about your use of our Services.
• To send you marketing and promotional communications. We may process the personal information you send to us for our marketing purposes, if this is in accordance with your marketing preferences. You can opt out of our marketing emails at any time. For more information, see 'what are your privacy rights' below.
• To deliver targeted advertising to you. We may process your information to develop and display personalised content and advertising tailored to your location, first name (if collected on the basis provided above) and your responses to our communications.
• To protect our Services. We may process your information as part of our efforts to keep our Services safe and secure, including fraud monitoring and prevention.
• To identify usage trends. We may process information about how you use our Services and responses to our communications (or lack thereof) to better understand how they are being used/interpreted so we can improve them.
• To determine the effectiveness of our marketing and promotional campaigns. We may process your information to better understand how to provide marketing and promotional campaigns that are most relevant to you.
• To save or protect an individual's vital interest. We may process your information when necessary to save or protect an individual's vital interest, such as to prevent harm.
• To respect unsubscribe and no-contact requests. Institution names and email addresses are used as verification points so as to not contact a given business/institution/entity in scenarios in which such communications have been objected to or are otherwise not permitted. Company/business/entity names and non-personally-identifying email addresses may be retained for longer periods for this purpose as per legitimate interests and to fulfil our obligations of respecting opt-out preferences.
3. WHAT LEGAL BASES DO WE RELY ON TO PROCESS YOUR INFORMATION?
In Short: We only process your personal information when we believe it is necessary and we have a valid legal reason (i.e. legal basis) to do so under applicable law, like with your consent, to comply with laws, to provide you with services to enter into or fulfil our contractual obligations, to protect your rights, or to fulfil our legitimate business interests.
The General Data Protection Regulation (GDPR) and UK GDPR require us to explain the valid legal bases we rely on in order to process your personal information. As such, we may rely on the following legal bases to process your personal information:
• Consent. We may process your information if you have given us permission (i.e. consent) to use your personal information for a specific purpose. You can withdraw your consent at any time.
• Legitimate Interests. We may process your information when we believe it is reasonably necessary to achieve our legitimate business interests, and those interests do not outweigh your interests and fundamental rights and freedoms. For example, we may process your personal information for some of the purposes described in order to:
• Send users and prospective users information about special offers and discounts on our products and services.
• Develop and display personalised and relevant advertising/marketing content for our users and prospective users.
• Analyse how our Services are used so we can improve them to engage and retain users.
• Support our marketing activities.
• Diagnose problems and/or prevent fraudulent activities.
• Understand how our users use our products and services so we can improve user experience.
• As a point of verification in internal systems as to accurately label your business/institution/entity as part of a mechanism to prevent further contact/marketing/outreach in scenarios in which such communications have been objected to or are otherwise not permitted.
• Legal Obligations. We may process your information where we believe it is necessary for compliance with our legal obligations, such as to cooperate with a law enforcement body or regulatory agency, exercise or defend our legal rights, or disclose your information as evidence in litigation in which we are involved.
• Vital Interests. We may process your information where we believe it is necessary to protect your vital interests or the vital interests of a third party, such as in situations involving potential threats to the safety of any person.
4. WHEN AND WITH WHOM DO WE SHARE YOUR PERSONAL INFORMATION?
In Short: We may share information in specific situations described in this section and/or with the following categories of third parties.
Vendors, Consultants, and Other Third-Party Service Providers
We may share your data with third-party vendors, service providers, contractors, or agents ('third parties') who perform services for us or on our behalf and require access to such information to do that work. We have contracts in place with our third parties, which are designed to help safeguard your personal information. This means that they cannot do anything with your personal information unless we have instructed them to do it. They will also not share your personal information with any organisation apart from us. They also commit to protect the data they may hold on our behalf and to only retain it for the period we instruct.
The categories of third parties we may share personal information with are as follows:
• Sales & Marketing Tools
As a data processor under the GDPR, we make use of the sub-processors listed below. In order to meet its obligations under Art. 28 of the GDPR, the following disclosure relates to the name and processing actions of these sub-processors.
1. ClearOut
Purpose: Sub-processor for email validation
Data Processing Agreement: CO Data Processing Agreement
Contact: us@clearout.io
2. SendGrid, Inc
Purpose: Sub-processor for email delivery and product communications
Data Processing Addendum: Twilio Data Protection Addendum
Contact: privacy@twilio.com
3. Google Cloud
Purpose: Sub-processor for handling unsubscription requests
Data Processing Addendum: Google Cloud Data Processing Addendum
Contact: Google Cloud DPO Contact
4. Adobe
Purpose: Sub-processor for content creation
Data Processing Agreement: Adobe Data Processing Agreement
Data Processing And Integrity: Adobe Data Processing And Integrity
Contact: DPO@Adobe.com
5. Dropbox
Purpose: Sub-processor for content delivery
Data Processing Agreement: Dropbox Data Processing Agreement
Contact: privacy@dropbox.com
6. Frame.io
Purpose: Sub-processor for content delivery
Data Processing Agreement: Adobe Data Processing Agreement
Contact: DPO@Adobe.com
7. Apple
Purpose: Sub-processor for hardware and software used towards the operation of the Services
Privacy Policy: Apple Privacy Policy
Customer Privacy Policy: Apple Customer Privacy Policy
Contact: dpo@apple.com
8. Squarespace
Purpose: Sub-processor for website hosting, use of cookies, and transmission of information via the Contact Form
Data Processing Agreement: Squarespace Data Processing Agreement
Contact: privacy@squarespace.com
Note: All the above sub-processors are committed to protecting your personal information in accordance with GDPR and other applicable data protection laws.
5. HOW LONG DO WE KEEP YOUR INFORMATION?
In Short: We keep your information for as long as necessary to fulfil the purposes outlined in this Privacy Notice unless otherwise required by law.
We will only keep your personal information for as long as it is necessary for the purposes set out in this Privacy Notice unless a longer retention period is required or permitted by law (such as tax, accounting, or other legal requirements). No purpose in this notice will require us to keep your personal information for longer than 5 years. If your involvement with the Operator and/or the Services only pertains to marketing, advertising or feedback, your personal information will not be kept by us for longer than 2 years.
To respect unsubscribe and no-contact requests, Institution names and non-personally-identifiable-email-addresses may be used as verification points so as to not contact a given business/institution/entity in scenarios in which such communications have been objected to or are otherwise not permitted. These data points are not classed as "personal" data as per GDPR Chapter 1 Art. 4 (1) 'Definitions' and can therefore be stored indefinitely for this purpose.
When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymise such information, or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible.
If you have provided explicit consent, we may retain your personal data beyond the standard retention periods outlined above. This extended retention is solely for the purposes you have consented to, such as ongoing projects, future collaborations, or other activities highlighted by the operator. You can withdraw your consent at any time by contacting us through the methods provided in this Privacy Policy, after which we will promptly delete or anonymise your data unless a longer retention period is required by law.
6. HOW DO WE KEEP YOUR INFORMATION SAFE?
In Short: We aim to protect your personal information through a system of organizational and technical security measures, especially when you provide identification documents for verification purposes.
We have implemented appropriate and reasonable technical and organizational security measures designed to protect the security of any personal information we process, including any identification documents you may provide. This includes:
Secure Transmission: When you send us identification documents, we ensure that the transmission is secure. We may use encrypted email services or secure file transfer protocols to prevent unauthorized access during transmission.
Restricted Access: Access to your identification documents is limited to authorized personnel who need to verify your identity. These individuals are bound by confidentiality obligations and trained in data protection practices.
Secure Storage: Your identification documents are stored in encrypted and secure environments. We use advanced security technologies to prevent unauthorized access, disclosure, alteration, or destruction of your personal information.
Limited Retention Period: We will retain your identification documents only for as long as necessary to verify your identity and to comply with legal obligations. After this period, we will securely destroy or anonymize your identification documents.
Regular Security Assessments: We periodically review our security procedures to ensure they are up-to-date and effective in protecting your personal information.
However, please note that no method of electronic transmission or storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security.
7. DO WE COLLECT INFORMATION FROM MINORS?
In Short: We do not knowingly collect data from or market to children under 13 years of age.
We do not knowingly collect, solicit data from, or market to children under 13 years of age, nor do we knowingly share such personal information. By using the Services, you represent that you are at least 13 or that you are the parent or guardian of such a minor and consent to such minor dependent's use of the Services. If we learn that personal information from users less than 13 years of age has been collected, we will take reasonable measures to promptly delete such data from our records. If you become aware of any data we may have collected from children under age 13 please contact us by using the contact details provided in the section 'HOW CAN YOU CONTACT US ABOUT THIS NOTICE?' below.
8. WHAT ARE YOUR PRIVACY RIGHTS?
In Short: In some regions, such as the European Economic Area (EEA), United Kingdom (UK), and Switzerland, you have rights that allow you greater access to and control over your personal information.
In some regions (like the EEA, UK, and Switzerland), you have certain rights under applicable data protection laws. These may include:
The right to request access and obtain a copy of your personal information.
The right to request rectification or erasure.
The right to restrict the processing of your personal information.
The right, if applicable, to data portability.
The right not to be subject to automated decision-making.
In certain circumstances, you may also have the right to object to the processing of your personal information. You can make such a request by contacting us using the contact details provided in the section 'HOW CAN YOU CONTACT US ABOUT THIS NOTICE?' below.
We will consider and act upon any request in accordance with applicable data protection laws. To protect your privacy and security, we may need to verify your identity before responding to such requests. This verification process may require you to provide additional information or documentation, such as a copy of your passport or other valid identification, to confirm your identity.
If you are located in the EEA or UK and you believe we are unlawfully processing your personal information, you also have the right to complain to your Member State data protection authority or the UK's Information Commissioner Office (ICO):
Withdrawing your consent: If we are relying on your consent to process your personal information, you have the right to withdraw your consent at any time. You can withdraw your consent at any time by contacting us by using the contact details provided in the section 'HOW CAN YOU CONTACT US ABOUT THIS NOTICE?' below.
However, please note that this will not affect the lawfulness of the processing before its withdrawal nor, will it affect the processing of your personal information conducted in reliance on lawful processing grounds other than consent.
Opting out of marketing and promotional communications: You can unsubscribe from our marketing and promotional communications at any time by clicking on the unsubscribe link in the emails that we send, clicking the unsubscribe (mail reply) link, which will automatically load a ‘reply’ template you can send the Operator to unsubscribe, or by using the contact form on the Website. You will then be removed from the marketing lists if the email response template, or the unsubscribe link, has not been altered or tampered with by the receiving party (altering these points of information may prevent us from identifying your unsubscribe request). However, we may still communicate with you — for example, to send you service-related messages that are necessary for the administration and use of your account, to respond to service requests, or for other non-marketing purposes.
If you have questions or comments about your privacy rights by using the contact details provided in the section 'HOW CAN YOU CONTACT US ABOUT THIS NOTICE?' below.
9. CONTROLS FOR DO-NOT-TRACK FEATURES
Most web browsers and some mobile operating systems and mobile applications include a Do-Not-Track ('DNT') feature or setting you can activate to signal your privacy preference not to have data about your online browsing activities monitored and collected. At this stage, no uniform technology standard for recognising and implementing DNT signals has been finalised. As such, we do not currently respond to DNT browser signals or any other mechanism that automatically communicates your choice not to be tracked online. If a standard for online tracking is adopted that we must follow in the future, we will update this Privacy Notice.
10. DO WE MAKE UPDATES TO THIS NOTICE?
In Short: Yes, we will update this notice as necessary to stay compliant with relevant laws.
We may update this Privacy Notice from time to time. The updated version will be indicated by an updated 'Revised' date at the top of this Privacy Notice. If we make significant changes to this Privacy Notice (e.g. substantial changes to data processing activities, such as introducing new data categories, altering the purposes of processing, or changing third-party data sharing practices), we may notify you either by prominently posting a notice of such changes or by directly sending you a notification. We encourage you to review this Privacy Notice frequently to be informed of how we are protecting your information.
11. HOW CAN YOU CONTACT US ABOUT THIS NOTICE?
If you have questions or comments about this notice, you may respond to any existing communications from the Operator or use the contact form on this Website:
https://www.scottblack.me/contact
12. HOW CAN YOU REVIEW, UPDATE, OR DELETE THE DATA WE COLLECT FROM YOU?
Based on the applicable laws of your country, you may have the right to request access to the personal information we collect from you, details about how we have processed it, correct inaccuracies, or delete your personal information. You may also have the right to withdraw your consent to our processing of your personal information.
To ensure information is protected, you may have to provide proof of identity depending on the information being requested to be acted upon.
These rights may be limited in some circumstances by applicable law. To request to review, update, or delete your personal information, please visit https://www.scottblack.me/contact