Effective May 22, 2018
The General Data Protection Regulation, or GDPR, is a European privacy law set to go into effect on May 25, 2018. The GDPR regulates how individuals and organizations may collect, use, and retain personal data, which affects Squarespace and sites run on Squarespace’s platform.
Who is affected by GDPR?
GDPR affects both organizations based in the EU and organizations involved in processing EU citizens' personal data. Since people in the EU can visit sites hosted by Squarespace, this means Squarespace and its customers are both subject to the GDPR.
What is considered personal data?
Under the GDPR, personal data is any information about a specific person. This broad definition includes not only traditional personal data—e.g., dates of birth, names, physical addresses, email addresses—but location data, biometric data, financial information, and much more.
Does SquareSpace need to store data in the EU?
As with existing law, the GDPR requires that certain safeguards be put in place when transferring personal data outside the EU. We have self-certified to the EU-US and Swiss-US Privacy Shield, which allows us to lawfully transfer EU and Swiss personal data to our US-based data-centers. You can read more about Squarespace’s Privacy Shield certifications here.
For specific information related to SquareSpace, you may link to their terms of service policy https://www.squarespace.com/terms-of-service and
What has BGEI-educational.com done to ensure compliance with the GDPR?
- Published our Data Processing Addendum, or DPA, to address how we process data.
- Made changes to give users more control over data collection with clear opt-out options.
While visiting BGEI-educational.com, we will not collect any personal information about you unless you choose to provide that information to us. If you choose to provide this information, it will be used for the express purpose for which it was intended, such as responding to your request for information or joining a web discussion forum. We remind you that if you visit a link outside of BGEI-educational.com you are subject to the privacy policies of that site. As always, you can contact us to request that we remove your data from our system.
Information Collected and Stored Automatically
For each page that you visit, we collect and store only the following technical information:
- Date and time of access
- URL address of the BGEI-educational.com webpage visited
- Internet domain and IP address from which our website was accessed
- Type of browser and operating system used to access our site (if provided by the browser)
- URL address of the referring page (if provided by the browser)
This information is only used to help us make the site more useful for you. With this data we learn about the number of visitors to our site and the types of technology our visitors use. We never track or record information about individuals and their visits and we do not share this data with anyone outside BGEI unless necessary for law enforcement purposes.
BGEI-educational.com automatically collects some technical information from you when you visit the site in order to give you the best possible experience. BGEI-educational.com uses web measurement technology (SquareSpace Analytics) to automatically track how visitors interact with BGEI-educational.com including where they came from, what they did on the site and whether they completed any pre-determined tasks while on the site. This type of aggregate data is used to help BGEI improve our user interface and diversify our content offerings to meet the needs of our customers, track operational problems, prevent fraud and improve the effectiveness, security and integrity of the site. This information does not identify you personally and data is only retained in accordance with GDPR compliant SquareSpace data retention policy.
Squarespace places cookies on visitors’ browsers to help our site run effectively, provide the best experience for our visitors, and help us learn more about traffic to our site.
BGEI may utilize third party services to enhance its distribution of data and information (e.g., videos) through links from the BGEI-educational.com web site. A persistent cookie may be set by such a third-party provider when you click on the provider's link in order to access BGEI data (e.g., play a video). If you decide to disable or remove cookies from your browser, you will continue to have access to all information and resources on BGEI-educational.com.
Information Collected from Interactive Forms and Surveys
BGEI-educational.com provides interactive forms that let you voluntarily submit personal information (such as your e-mail address, name, or organization). This occurs when you register to receive e-mail updates and newsletters and sending questions and comments to the BGEI-educational.com team. In these cases, all submitted information is used only for the express purposes for which it is provided and is not made available to any third party.
BGEI-educational.com only shares information you voluntarily provide with other government agencies if required by law. BGEI-educational.com never collects information or creates individual profiles for commercial marketing. Any personal information you provide will be protected to the extent permissible under the Freedom of Information Act and Privacy Act.
Electronically submitted information is maintained and destroyed according to the principles of the Federal Records Act and the regulations and records schedules of the National Archives and Records Administration and in some cases may be covered by the Privacy Act and subject to the Freedom of Information Act. A discussion of your rights under these laws can be found on the Freedom of Information Act home page.
BGEI may also use online survey instruments to obtain feedback on your experience with BGEI-educational.com. The survey initiation pops up for a random sample of visitors, is voluntary and does not collect personal information. If you decline the survey you will still have access to the same information and resources of BGEI-educational.com as those who do take the survey. The survey reports are available only to BGEI-educational.com managers and other staff who require this information to perform their duties.
The GDPR not only affects how our site processes personal data, but also how other services process data on our behalf. BGEI-educational.com integrates with third-party services and methods for integrating additional services, including:
- Connected accounts (Xero)
- Payment processors (PayPal)
- Embed Blocks (Google Translate)
- Form Block storage (Email, MailChimp, SurveyMonkey)
- Google Analytics
- Social Blocks (Facebook, LinkedIn, Twitter, WhatsApp, Instagram)
Typically, third-party services accept data from, or embed content into, your site, with Squarespace acting as a pass-through for the data or displaying the content. These services may have their own terms of service, privacy policies, and other practices which are different from ours.
- For specific information related to Xero, you may link to their terms or service policy: https://www.xero.com/us/campaigns/xero-and-gdpr
- For specific information related to PayPal, you may link to their terms or service policy: https://www.paypal.com/us/webapps/mpp/ua/privacy-full
- For specific information related to Google, you may link to their terms or service policy: https://cloud.google.com/security/gdpr
- For specific information related to MailChimp, you may link to their terms or service policy: https://kb.mailchimp.com/accounts/management/about-mailchimp-the-eu-swiss-privacy-shield-and-the-gdpr
- For specific information related to SurveyMonkey, you may link to their terms or service policy: https://www.surveymonkey.com/curiosity/surveymonkey-committed-to-gdpr-compliance
- For specific information related to YouTube, you may link to their terms or service policy: https://marketingland.com/youtube-to-stop-supporting-third-party-ad-serving-in-eu-in-may-citing-gdpr
- For specific information related to Facebook, you may link to their terms or service policy: https://www.facebook.com/business/gdpr
- For specific information related to LinkedIn, you may link to their terms or service policy: https://www.linkedin.com/help/linkedin/answer/87080/linkedin-marketing-solutions-and-the-general-data-protection-regulation-gdpr
- For specific information related to Twitter, you may link to their terms or service policy: https://gdpr.twitter.com/en.html
- For specific information related to WhatsApp and Instagram, you may link to their terms or service policy: https://www.siliconrepublic.com/enterprise/whatsapp-instagram-gdpr
Because we care about the safety and privacy of children online, we comply with the Children's Online Privacy Protection Act of 1998 (COPPA). COPPA and its accompanying regulations protect the privacy of children using the Internet. BGEI-educational.com does not knowingly contact or collect personal information from children under 13. BGEI-educational.com is not intended to solicit information of any kind from children under 13.
It is possible that by fraud or deception we may receive information pertaining to children under 13. If we are notified of this, as soon as we verify the information, we will immediately obtain parental consent or otherwise delete the information from our servers. If you want to notify us of our receipt of information by children under 13, please do so by sending an e-mail to firstname.lastname@example.org.
Site Security & Your Protection
While no service is completely secure, SquareSpace utilizes a security team dedicated to keeping your information safe. They employ security measures such as using firewalls to protect against intruders, building redundancies throughout our network (so that if one server goes down, another can cover for it) and testing for and protecting against network vulnerabilities. Payment information is transmitted using HTTPS encryption, and we maintain a PCI DSS certification. For site security purposes and to ensure that this service remains available to all users, SquareSpace employs commercial software programs to monitor network traffic to identify unauthorized attempts to upload or change information, or otherwise cause damage.
Except for authorized law enforcement investigations, no attempts are made to identify individual users and their usage habits. Raw data logs are used for no other purposes and are scheduled for regular destruction in accordance with National Archives and Records Administration General Schedule 20.
Unauthorized attempts to upload information or change information on this service are strictly prohibited and may be punishable under the Computer Fraud and Abuse Act of 1986Download Adobe Reader to read this link content and the National Information Infrastructure Protection Act.
Social Media and Third Party Websites
The BGEI uses some social media tools and websites to interact with its customers and resource partners. Social media websites are used to publicize BGEI programs and services and engage with members of the public. The BGEI does not use third party websites to solicit and collect personal information from individuals. Any personal information collected by a third party website will not be transmitted to BGEI unless required for law enforcement purposes or as otherwise permitted by law. BGEI’s privacy and other web policies do not apply to these third party sites and we encourage you to read the policies of the third party site when deciding whether to use it. The official BGEI “social media” sites are listed below.