PRIVACY POLICY
Effective Date: May 5, 2026 Last Updated: May 5, 2026
Who This Is
This Privacy Policy applies to heidialbritton.com (the "Site"), operated by Heidi Albritton through revelYOUtion, LLC ("I," "me," or "my"). I take your privacy seriously. This policy explains what personal information I collect, why I collect it, how I use it, and what rights you have over it — no matter where in the world you're reading this.
If you have questions at any time, you can reach me at [FILL IN: your privacy contact email — recommend privacy@heidialbritton.com or your standard contact email]
What Information I Collect
Information you give me directly. When you fill out a contact form, subscribe to my newsletter, or make a purchase, I may collect your first name, last name, and email address. In future purchase flows, I may also collect billing address, shipping address, and payment method information. I do not store full payment card numbers — payments are processed by a third-party payment processor (see below).
Information collected automatically. When you visit the Site, certain technical information is collected automatically through cookies and similar technologies. This may include your IP address, browser type, device type, pages visited, time spent on pages, and referring URL. This information is used to understand how visitors interact with the Site and to improve its performance and content.
Information from third-party tools. The Site is built on Squarespace, which has its own data collection and processing practices. If you subscribe to my newsletter, your name and email will be stored in my email marketing platform ([FILL IN: e.g., Mailchimp / ConvertKit / Squarespace Email Campaigns]). I may also use Google Analytics or similar tools to analyze site traffic.
Why I Collect It — And My Legal Basis
I only process your personal data where I have a lawful reason to do so. Here is what that looks like in plain terms:
Your consent. When you subscribe to my newsletter or opt in to marketing communications, I process your name and email address based on your consent. You can withdraw that consent at any time by clicking "unsubscribe" in any email I send or by contacting me directly.
Legitimate interests. When you fill out a contact form to inquire about speaking, consulting, or advisory work, I process your information to respond to your inquiry. This is in both of our legitimate interests — you reached out, and I'm responding. I don't use contact form submissions for marketing unless you've separately opted in.
Performance of a contract. If you purchase a product or service from me, I process your information to fulfill that transaction, deliver what you bought, and handle any service-related communications.
Legal obligations. I may be required to retain certain records for tax, accounting, or legal compliance purposes.
How Long I Keep Your Data
I keep your information only as long as necessary for the purpose it was collected.
Newsletter subscriber data is retained for as long as you remain subscribed. If you unsubscribe, your data will be removed from active marketing lists within 30 days, though I may retain a suppression record (your email only) to honor your opt-out preference.
Contact form submissions are retained for up to two years, in case we enter into a working relationship and the context of your original inquiry is relevant.
If you make a purchase, transaction records are retained for seven years for legal and accounting compliance.
Website analytics data is retained per the terms of the analytics platform in use (typically 26 months for Google Analytics, with anonymization settings applied).
Who I Share Your Information With
I do not sell your personal information. I do not rent it, trade it, or share it with advertisers. Period.
I work with a small number of trusted third-party service providers who help me operate the Site and communicate with you. These include:
Squarespace, Inc. — website hosting, form processing, and e-commerce infrastructure. Squarespace is headquartered in the United States and processes data under its own privacy policy and applicable data transfer mechanisms. Learn more at squarespace.com/privacy.
Squarespace & Mailchimp — newsletter delivery and subscriber management. [FILL IN: Add their location, e.g., "Mailchimp is operated by Intuit and headquartered in the United States."] Review their privacy policy at [FILL IN: link].
Google Analytics — anonymous website traffic analysis. Google is headquartered in the United States. I use IP anonymization. Learn more at policies.google.com/privacy.
Stripe and Square (for future purchases) — payment processing. I do not receive or store your full card number. Review their privacy policy at [FILL IN: link].
I may also disclose your information if required to do so by law, court order, or government authority, or to protect the rights, property, or safety of myself or others.
International Data Transfers
The Site is operated from the United States. If you are visiting from the European Union, United Kingdom, Canada, or another region with data protection laws that differ from U.S. law, please be aware that your information may be transferred to and processed in the United States.
Where required by law (including GDPR), I rely on appropriate safeguards for international transfers, including Standard Contractual Clauses approved by the European Commission, and equivalent mechanisms for UK data transfers. My third-party service providers are selected in part for their compliance with applicable international data transfer requirements.
Your Privacy Rights
Regardless of where you live, you can contact me at any time to ask about the personal information I hold about you. Below are the specific rights that apply based on your location.
If You Are in the European Union or United Kingdom (GDPR)
You have the right to access the personal data I hold about you and receive a copy of it. You have the right to correct inaccurate or incomplete data. You have the right to request deletion of your personal data, subject to certain legal exceptions. You have the right to restrict or object to certain types of processing. You have the right to receive your data in a portable, machine-readable format. Where processing is based on consent, you have the right to withdraw that consent at any time without affecting the lawfulness of processing before withdrawal.
You also have the right to lodge a complaint with your local data protection supervisory authority. In the EU, this is the authority in your member state. In the UK, this is the Information Commissioner's Office (ICO) at ico.org.uk.
To exercise any of these rights, contact me at [FILL IN: privacy@heidialbritton.com]. I will respond within 30 days (or within one month as required by GDPR).
If You Are in California (CCPA / CPRA)
You have the right to know what personal information I have collected about you in the past 12 months, including the categories of data, sources, purposes, and any third parties it has been shared with. You have the right to request deletion of your personal information. You have the right to correct inaccurate personal information. You have the right to opt out of the sale or sharing of your personal information — though I want to be clear: I do not sell or share your personal information with third parties for their marketing purposes. You have the right to non-discrimination for exercising your privacy rights.
To submit a request, email me at [FILL IN: privacy@heidialbritton.com] with the subject line "California Privacy Request." I will respond within 45 days.
If You Are in Canada (PIPEDA / CASL)
You have the right to access your personal information and to withdraw consent for its use at any time, subject to legal or contractual restrictions. Commercial email messages I send will always include a working unsubscribe mechanism and my mailing address. To opt out of commercial emails, click "unsubscribe" in any email or contact me directly.
Cookies and Tracking Technologies
The Site uses cookies — small data files placed on your device — and similar tracking technologies. These fall into a few categories.
Strictly necessary cookies are required for the Site to function and cannot be switched off. They do not collect information that could be used for marketing.
Analytics cookies help me understand how visitors interact with the Site so I can improve it. These may be set by Squarespace or Google Analytics. Where required by law, I will request your consent before placing these cookies.
"A cookie consent banner appears on your first visit, allowing you to accept or decline non-essential cookies."]
You can control cookies through your browser settings. Note that disabling certain cookies may affect how the Site functions.
Children's Privacy
This Site is not directed to children under the age of 16. I do not knowingly collect personal information from anyone under 16. If you believe a child has provided me with personal information without parental consent, please contact me and I will delete it promptly.
Changes to This Policy
I may update this Privacy Policy from time to time. When I do, I will update the "Last Updated" date at the top of this page. Significant changes will be communicated to newsletter subscribers via email. Continued use of the Site after changes are posted constitutes your acceptance of the updated policy.
Contact
For any privacy-related questions, requests, or concerns, please contact:
Heidi Albritton | revelYOUtion, LLC 237 Spanish Oak Trl, Longwood, FL 32779 [FILL IN: privacy@heidialbritton.com]