Who we are
Our website address is: https://thecolorleaf.com.
Comments
When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.
An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
Media
If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.
Cookies
If you leave a comment on our site you may opt-in to saving your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.
If you visit our login page, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.
When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.
If you edit or publish an article, an additional cookie will be saved in your browser. This cookie includes no personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.
Embedded content from other websites
Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.
These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.
Who we share your data with
If you request a password reset, your IP address will be included in the reset email.
How long we retain your data
If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.
For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.
What rights you have over your data
If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.
Where your data is sent
Visitor comments may be checked through an automated spam detection service.
Order and Payment Information
When you make a purchase on our website, we collect personal information such as your name, billing and shipping addresses, email address, phone number, and payment details. This information is used solely for the purpose of processing and fulfilling your order.
We do not store full credit card numbers or CVV codes on our servers. All payment transactions are securely processed through third-party payment gateways (such as PayPal, Stripe, or others), which comply with the highest security standards (e.g., PCI-DSS).
Shipping and Fulfillment
To fulfill your order, we may share your name, address, and contact information with our logistics and shipping partners (e.g., Canada Post, ChitChats, or other delivery services). These partners are only permitted to use this information for delivery purposes and are contractually bound to protect your data.
Analytics and Tracking Technologies
We use tracking technologies such as cookies, pixels, and tags to improve our website and marketing efforts. This includes tools like:
-
Google Analytics – to analyze website traffic and user behavior
-
Meta (Facebook) Pixel – to optimize advertising campaigns
-
Other third-party tools – that help us understand how users interact with our site
These tools may collect data such as your IP address, browser type, device type, referring/exit pages, and browsing behavior. You can opt out of certain tracking technologies via your browser settings or by visiting Google’s opt-out page.
Third-Party Service Providers
We may engage trusted third-party service providers to assist with business operations including:
-
Payment processing
-
Order fulfillment
-
Email marketing
-
Website analytics
-
Customer support platforms
These providers may have limited access to your personal data solely to perform their contracted services. They are required to keep your data secure and confidential.
Marketing Communications
If you opt-in to receive marketing emails, we may send you updates about our products, promotions, and company news. You can unsubscribe at any time by clicking the “unsubscribe” link in our emails or by contacting us directly.
We use email marketing platforms (e.g., Mailchimp, Klaviyo) that may collect behavioral data, such as open and click rates, to help us improve communication.
Data Retention for Transactions
We retain personal information related to orders and payments for as long as necessary to fulfill legal, accounting, and regulatory obligations. This includes tax reporting, fraud prevention, and warranty management.
Data Security
We implement industry-standard technical and organizational measures to protect your personal data from unauthorized access, loss, misuse, or disclosure. This includes SSL encryption, secure servers, and role-based access controls.
While we take reasonable steps to safeguard your information, no method of transmission over the internet is 100% secure.
International Data Transfers
If you are accessing our website from outside of Canada, please be aware that your information may be transferred to, stored, or processed in Canada or other countries where our service providers are located. By using our website, you consent to such transfers in accordance with this privacy policy.