Privacy Policy
At O’Rourke for Congress, accessible via orourkeforcongress.com, we are fully committed to safeguarding your personal data and upholding your right to privacy. This Privacy Policy explains how we collect, use, disclose, and protect your information, in accordance with the requirements set forth under the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable data protection laws. We maintain a privacy-first approach and adhere to the highest standards when handling your personal data.
1. Scope of This Privacy Policy and Data Controller
This Privacy Policy applies to all visitors, users, and others who access or use orourkeforcongress.com (“the Website”). The data controller responsible for your personal data is O’Rourke for Congress. If you have any questions about this policy or how your data is processed, you may contact us at [email protected].
2. Categories of Data Processed
We may collect and process the following categories of personal data when you interact with the Website:
a) Usage Data
This includes information automatically collected about your interactions with the Website such as your IP address, browser type and version, time zone setting, referring and exit pages, pages visited, and session duration.
b) Account Data
When you sign up for updates or contribute to the campaign, we may collect your name, mailing address, email address, and phone number.
c) Profile Data
Profile-related information may include your activity on our Website, donation history, campaign engagement, interests, and preferences.
d) Communication Data
We collect details of your communications with us, including contact forms you submit, email correspondence, support tickets, and feedback provided to our team.
e) Technical Data
Technical specifications of your devices such as device model, operating system, browser configurations, hardware identifiers, and other diagnostic data may be gathered when accessing orourkeforcongress.com.
f) Transaction Data
This includes records related to your contributions or purchases made through the Website, such as payment processing information (e.g., partial credit card information via trusted third-party processors), transaction history, and shipment addresses.
g) Preference Data
We may also process preferences regarding marketing communications, event participation, or other interests you elect to share with us.
3. Legal Bases for Processing Personal Data (GDPR Compliance)
We collect and process personal data only where we have a lawful basis to do so, including:
– Performance of a contract: When personal data is necessary for fulfilling services, such as processing donations or delivering requested content.
– Legal obligation: Where required by law, campaign finance regulations, or regulatory obligations.
– Legitimate interest: For marketing to current supporters, enhancing campaign outreach, or ensuring Website security, provided such interest is not overridden by your fundamental rights.
– Consent: Where you have explicitly granted permission, such as subscribing to email updates or consenting to non-essential cookies.
4. Your Rights
Depending on your jurisdiction and applicable law, you may have the following rights over your data:
– Right of Access: Obtain a copy of your personal data.
– Right to Rectification: Correct inaccurate or incomplete data.
– Right to Erasure: Request deletion of your data, where lawful.
– Right to Restrict Processing: Temporarily limit how we use your data.
– Right to Data Portability: Receive your data in a structured, commonly used format and/or have it transferred to another controller.
– Right to Object: Withdraw consent at any time or object to processing based on legitimate interests or direct marketing.
To exercise any of these rights, please email us at [email protected].
5. Security Measures
We implement robust technical and organizational safeguards to protect your data, including:
– Encryption of data in transit and at rest
– Role-based access control to limit internal data exposure
– Periodic security audits and infrastructure assessments
– Secure backups to prevent data loss
– Staff training in data privacy and incident response procedures
6. International Data Transfers
Your personal data may be transferred or accessed by service providers operating outside of your jurisdiction. In such cases, we ensure appropriate safeguards are in place, including the use of European Commission-approved Standard Contractual Clauses or adherence to other lawful transfer mechanisms compliant with GDPR and similar regulations.
7. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including:
– Account and Profile Data: While you maintain a relationship with the campaign or as required for reporting obligations.
– Transaction Data: Retained to comply with financial and electoral laws.
– Communication Data: Kept for administrative purposes for up to 24 months unless extended by legal or regulatory necessity.
– Preference and Marketing Data: Maintained until the individual opts out or withdraws consent.
After such timeframes, data is securely deleted or anonymized.
8. Cookie Policy
We utilize cookies and similar technologies to enhance your experience on orourkeforcongress.com. Cookies are categorized as follows:
– Essential Cookies: Necessary for basic website functionality
– Functional Cookies: Enhance site customization and remember settings
– Analytics Cookies: Collect data on site usage and user behavior
– Performance Cookies: Assist with performance tuning and tracking response times
9. Cookie Management and Consent
As required by GDPR and CCPA, users are provided with the ability to manage cookie consent preferences at any time through the cookie banner and settings available on our Website. Non-essential cookies are only activated based on your explicit consent. You may also configure your browser settings to disable or remove cookies manually.
10. Children’s Data
We do not knowingly collect or solicit personal data from children under the age of 13. If we discover that such data has inadvertently been collected, it will be promptly deleted. Parents or legal guardians who believe their child has submitted personal data are encouraged to contact us at [email protected].
11. Policy Updates
This Privacy Policy may be revised as needed to reflect changes in regulatory requirements, technology, or campaign activities. If material changes are made, we will notify users via the Website or other direct communication, where appropriate. Continued use of our services constitutes acceptance of the updated policy.
12. Contact Us
If you have any concerns about this Privacy Policy or how your personal information is handled, please contact:
Email: [email protected]
Website: orourkeforcongress.com
13. Compliance Statement
O’Rourke for Congress respects your privacy rights and is committed to full compliance with GDPR, CCPA, and all applicable privacy regulations. For any concerns related to data protection, you are encouraged to contact us directly at [email protected].