Updated May 23, 2018
QUICK GUIDE TO CONTENTS
1. WHAT THIS PRIVACY NOTICE COVERS?
2. WHAT PERSONAL INFORMATION DOES WEEBLY COLLECT?
3. HOW DOES WEEBLY USE YOUR PERSONAL INFORMATION?
4. WHO DOES WEEBLY SHARE YOUR PERSONAL INFORMATION WITH?
5. HOW LONG DOES WEEBLY KEEP YOUR PERSONAL INFORMATION FOR?
6. DOES WEEBLY TRANSFER YOUR PERSONAL INFORMATION OUTSIDE THE COUNTRY?
7. HOW DOES WEEBLY KEEP YOUR PERSONAL INFORMATION SAFE?
8. WHAT ARE YOUR PRIVACY RIGHTS?
9. THIRD PARTY FEATURES, SERVICES, LINKS AND APPS.
10. USERS FROM THE EUROPEAN ECONOMIC AREA (“EEA”) OR THE EU.
11. USERS FROM CALIFORNIA.
12. ADDITIONAL PRIVACY INFORMATION FOR U.S EDUCATIONAL INSTITUTIONS.
13. PRIVACY SHIELD CERTIFICATION.
14. CHANGES TO THIS PRIVACY NOTICE.
15. CONTACT US.
1. What This Privacy Notice Covers
The purpose of this Privacy Notice is to explain how Weebly, Inc., a Delaware corporation ("Weebly," "we," "us," or "our"), secures, shares, and uses personal information that it collects and receives from you through its website (www.weebly.com), website hosting and design services, communication tools, mobile applications, app marketplace, ecommerce tools, and other services (collectively, the “Service”). If you have any questions or concerns regarding this Privacy Notice or our practices, please see the “Contact Us” section below.
®Show more details
For Users Outside the European Union:
For users located outside of the European Union, by submitting any personal information through our website or otherwise through our Service, you agree to the terms of this Privacy Notice and you expressly consent to the collection, use, and disclosure of your personal information in accordance with this Privacy Notice.
For all users:
We may use information shared with us for any legal purpose, including to run and improve our Service and for marketing purposes, but in each case solely in accordance with applicable law, the scope of your consent to use such information (if applicable) and, where Weebly acts as a data processor for a data controller, solely on the basis of instructions from such data controller. For example, with respect to some parts of our Service, such as our e-commerce platform, our user is the data controller and Weebly is a data processor. As a data processor, Weebly does not have a direct relationship with the person whose personal information we collect and process at the direction of our user (i.e. the data controller). If you are a customer of one of these users and no longer want to be contacted by that user or want to access and change the personal information we collect and process as a data processor, please contact the user you interacted with directly.
2. What Personal Information Does Weebly Collect?
Weebly may collect personal information as further described below through: (a) Personal Information provided by you, (b) Automatically Collected Information, (c) Billing Information, (d) Cookies and Other Tracking Technologies, (e) Third Party Analytics Data, (f) Mobile App-Based Data and (g) Cross-App and Cross-Device Information. We do not collect or use “sensitive consumer information” and do not offer or sell to any third party any data based on sensitive consumer information.
®Show more details
(a) Personal Information provided by you. We collect personal information (e.g., name, email address, phone number, and other information that we can use to identify or contact you as an individual) when you:
- register an account with us;
- sign up or log in to our Service using services such as Facebook, Google+, or other Open ID provider.
- contact our customer support services;
- sign-up as, or are invited to be, a member of a Pro or Business account user’s site;
- enter our promotions, contests, or sweepstakes;
- post content on a Weebly website or blog;
- sign-up to be an App Developer; and
- post an App review in our App Marketplace
We use this personal information in order to provide you with our Service, to respond to billing inquiries, and keep you updated with news about Weebly, the Service, and our partners in accordance with your consent preferences as applicable.
(b) Automatically Collected User Information. When you access and use our Service, we automatically collect and store, in log files, your Internet Protocol (IP) address, browser type, internet service provider (ISP), referring/exit pages, operating system, date/time stamp, clickstream data, and other user information as part of our Service analytics (individually and collectively, “Automatically Collected Information”). We do not link this Automatically Collected Information to other information we collect about you and such Automatically Collected Information does not directly identify you as a person. However, where you are a resident of the European Union, this may still be deemed to be personal information.
(c) Billing Information. If you sign up for a Weebly Starter, Pro, or Business account, register a domain through us, or purchase another paid service, we require your billing information in order to process the transaction. Billing information includes your name, address, telephone number, credit card details, PayPal email address, and other information necessary to process the transaction. We will retain the last 4 digits of your credit card number, credit card type, name, address, and some other billing information, so that you may identify that card used in the future. Weebly does not store your full credit card number or CVV2; this information is discarded after your transaction has been processed.
First party cookies
Used to provide basic functionality of our Service, including for authentication and security purposes, configuration, and support.
Third party cookies
Used to enable certain analytics and tracking tools, as well as interest based advertising and chat functionality.
Used to enable certain analytics and tracking tools, interest based advertising, as well as for app configuration, monitoring tools, to pin user session to a specific server, and to prevent cross site request forgery.
Provides functionality of first party cookies and third party cookies across sessions.
You can control the use of certain cookies at the individual browser level or in your operating system preferences. If you opt-out of such cookies, you may still use our Service, but your ability to use some features or areas of our Service may be limited. You can find out more about your rights in relation to cookies and how to control them here: .
If you are located in Europe, for more information about targeted advertising or to opt out of having your browser information used for these purposes, please click here or change your cookie preferences on your browser or device settings. Please note this does not opt you out of being served ads. You will continue to receive generic ads, but these ads will not be targeted to you based on your web browsing experiences.
(e) Third Party Analytics Services. Some parts of our Service use third party analytic services to help us create a better user experience.
- Flurry. You can opt-out of Flurry’s mobile analytics service at . The opt-out is specific to Flurry activities and does not affect the activities of other ad networks or analytics providers we may use. When you opt-out, Flurry will stop tracking data for the device identified by the provided MAC address and/or device identifier going forward and Flurry analytics tracking will stop across all applications within the Flurry network.
- Google. You can opt-out of Google Analytics at https://tools.google.com/dlpage/gaoptout. For our mobile applications, you can opt-out using our “Privacy Opt-Out” settings within our applications.
- Localytics. For our mobile applications, you can opt-out using our “Privacy Opt-Out” settings within our applications.
(f) Do Not Track. Currently, we do not support Do Not Track or “DNT.” DNT is a preference you set in your web browser to tell visited websites you do not want to be tracked. You can enable or disable DNT through the preferences or settings of your web browser.
(g) Mobile App. When you download and use the Service through our mobile app, we automatically collect information on the type of device you use and operating system version (“Mobile App-Based Data”).
We use mobile analytics software to allow us to better understand the functionality of the Service on your device. This software may record information such as how often you use the application, the events that occur within the application, aggregated usage, content, performance data, and where the application was downloaded from.
We may also send you push notifications from time-to-time in order to update you about events or promotions. If you no longer wish to receive these types of communications, you may turn them off at the device level. To ensure that you receive proper notifications, we need to collect certain information about your device such as operating system and user identification information.
(h) Cross-App and Cross-Device Information. We, our customers, and/or our third party partners may collect information about your activity across multiple unaffiliated third-party mobile applications. This information may also be combined with a mobile identifier and or establish connections among related devices (such as mobile devices and desktop computers). We may share this information with our customers and/or our third party partners for any legal purpose, including to help them predict the types of ads that may be relevant to you or your end users and to display advertising accordingly. To opt out of such practices, please see the opt-out information described .
We, our customers, and/or our third party partners may use technology that establishes connections among related devices (such as mobile devices and desktop computers) This means that information about your use of websites or applications on one of your devices may be combined with information from your other devices.
We may also partner with third parties to provide such cross-device technology to our customers, and in doing so we may share anonymous identifiers with those third parties in order to make connections among related devices. To opt out of Weebly’s use of such technologies for each web browser and on each of your devices, please notify us by contacting us through our help center or the details in the contact us section below.
(i) Sensitive Consumer Information. Weebly does not collect or use “sensitive consumer information” and does not offer or sell to any third party any data based on sensitive consumer information. For purposes of this Privacy Notice, “Sensitive consumer information” includes social security numbers or other government-issued identifiers, insurance plan numbers, financial account numbers, and precise information about past, present, or potential future health or medical conditions or treatments, including genetic, biometric, genomic and family medical history nor does it include racial or ethnic origin information, information about sexual orientation, criminal records or trade union membership information. Weebly maintains internal policies and procedures designed to safeguard against the collection or use of such information.
3. How Does Weebly Use Your Personal Information?
As further described below, Weebly may use the information it collects from you for any lawful purpose, including, without limitation, for providing products and services, identification and authentication, Service operation, analytics and improvements, support, contact (e.g., sending notifications related to use of the Service), marketing and promotions, research, and anonymous reporting. We may combine Automatically Collected Information with other information we collect about you, in each case that does not directly identify you as a person (but as explained above, may still identify your device or indirectly identify you), to improve site functionality and the services we offer you, and for Service and both internal and external marketing analytics.
®Show more details
In particular, we engage in the following practices with respect to the information and uses described below:
To provide a requested service or carry out a contract with you.
Personal information you provide to us. We use this personal information in order to provide you with our Service, to respond to billing inquiries, and keep you updated with news about Weebly, the Service, and our partners.
User Site Membership/Registration. When you register, or are invited to register, as a member of a website operated by one of our Pro or Business account users, we store and use your information solely to provide administrative services in support of our member feature (such as account set-up and password reset). Please contact the site operator directly to have your registration information removed.
Auto Renewal. If your subscription is auto-renewing, our authorized payment processor will store your payment information on their secure payment gateway for as long as necessary to carry out the terms of your subscription.
Where we have your consent
Marketing Communications. To send you marketing communications from us or any of our partners where you have given your consent to this or it is otherwise lawful for us to do so. You can choose not to receive any of these marketing communications by following the unsubscribe instructions included in these emails (where applicable) or by unsubscribing here. You may also notify us by contacting us through our help center or the details in the contact us section below.
Testimonials. We display personal testimonials of satisfied customers on our site in addition to other endorsements. Where you agree to this, we may post your testimonial along with your name. If you wish to update or delete your testimonial, you can contact us at firstname.lastname@example.org.
Phone Calls and Messages.
For users outside the EU: By providing us your phone number, you are consenting to us or our partners contacting you via autodialed or prerecorded calls/messages and you understand that providing your number is not a condition of purchasing any Weebly product or service.
For all users: Weebly may contact you at any telephone number you have provided us, including phone numbers you have made publically available on your Weebly website(s) for:
· Account notifications;
· Account troubleshooting;
· Dispute resolution;
· Debt collection; or
· As necessary to service your account or enforce our Terms of Service and policies, applicable law, or any other agreement we may have with you.
We may also contact you using autodialed or prerecorded calls and messages for marketing purposes (e.g., offers and promotions) if you explicitly consent to such communications; your consent to receive such calls/messages is not a condition of purchasing any Weebly product or service.
We may collect other telephone numbers for you and may place manual, non-marketing calls to any of those numbers and autodialed non-marketing calls to any landline. Standard telephone minute and text charges may apply and may include overage fees if you have exceeded your plan limits.
If you do not wish to receive such communications, you may change your preference in your account settings (Edit Profile) or by sending us an email at any time via our help center.
Where we have a legitimate interest
IP addresses, browser and session information. IP addresses, browser and session information may be used to:
· Diagnose and prevent service or technology problems reported by our users or engineers that are associated with the IP addresses controlled by a specific web company or ISP.
· Estimate the total number of users from specific geographical regions using the Service.
· Help determine which users have access privileges to certain content, services, or resources that we offer.
· Monitor and prevent fraud and abuse.
Automatically collected user information. We use this personal information to analyze trends in the aggregate and administer the Service.
Cross-App and Cross-Device Information. We, our customers, and/or our third party partners use this in order to deliver advertising that may be more relevant to you, as well as for analytics and reporting purposes.
4. Who does Weebly share your personal information with?
Weebly does not share personal information we learn about you from your use of the Service with others except as described in this Privacy Notice and in connection with: (i) the completion of transactions; (ii) research, promotions, sweepstakes and contests; (iii) third party marketing; (iv) a merger or sale; (v) publicly accessible information; (vi) domain registrations; and (vii) other lawful disclosures.
®Show more details
Completion of Transactions. Weebly may share your personal information on a secured basis where it is necessary to complete a transaction; to operate, improve, or communicate to you about the Service; to detect fraud or compliance with export regulations; or to do something that you have asked us to do. We use other third parties such as payment processors to bill you for goods and services. These third parties are authorized to use your personal information only as necessary to provide these services to us and are prohibited from using your personal information for promotional purposes.
Research, Promotions, Sweepstakes and Contests. From time to time, Weebly or a partner may sponsor a research panel, promotion, sweepstake, or contest on Weebly. You may be asked to provide personal information including name, email address, or home address, or to answer questions in order to participate. This information will be used strictly for purposes of the research panel, promotion, sweepstake, or contest administration and fulfillment, as well as for internal business purposes.
Third Party Marketing. Weebly may share anonymized and/or aggregated information with third parties for their marketing, advertising, promotion, or other uses. In addition, from time to time we may share your personal information with third parties who want to promote goods and/or services that we think would be of interest to you. If you are located in the EU, we will only share your personal information for any marketing purposes where you have consented to this after being provided with information on the concerned third parties or where it is otherwise lawful to do so. If you want us to stop sharing your contact information with third parties, you may notify us through our help center, or the details in the contact us section below.
In the Event of Merger or Sale. As we continue to develop our business, we may also buy or sell all or part of our business. In such transactions, personal information you have shared with us is generally one of the business assets that will be transferred. The transferred personal information will remain subject to the promises made in this privacy notice or subsequent notices to which you have consented. If Weebly is involved in a merger, acquisition, or sale of all or a portion of its assets, you will be notified via email and/or a prominent notice on our site of any change in ownership or uses of your personal information, as well as any choices you may have regarding your personal information.
Publicly Accessible Information. If you post personal information online that is accessible to the public, like blogs, you may receive unsolicited messages from other parties in return. Any information you provide in these areas may be read, collected, and used by others who access them. To have your personal information removed from our blog or community forum, submit a request through our help center. In some cases, we may not be able to remove your personal information, in which case we will let you know if we are unable to do so and why.
Domain Registrations. Please note, standard domain registration shows your personal contact information in the public WHOIS database. You can shield your personal information from public view and help protect yourself against spam, fraud, identity theft, and more by purchasing Private Registration from us.
Lawful disclosure. Weebly may disclose personal information about you under the following circumstances:
· In response to lawful requests by public authorities, including but not limited to national security or law enforcement requests. We may also disclose your personal information as required by law, such as to respond to subpoenas, court orders, or similar legal processes, to establish or exercise our legal rights or, defend against legal claims, or if in our judgment in such circumstances disclosure is required or appropriate.
5. How long does Weebly retain your personal information?
As further described below, we will retain your information for as long as your account is active or as needed to provide you the Service, but in no event longer than permitted by applicable law.
®Show more details
Notwithstanding the foregoing:
· Weebly uses Automatically Collected Information and Mobile App-Based Data for no more than 13 months.
· We maintain stored data for a period of up to 24 months in order to comply with audits, court order or law enforcement inquiries and for the purpose of ensuring that our technology is functioning properly, and preventing fraud across our Service.
· After 24 months, all of the stored data is destroyed. Summarized data consisting of aggregated statistical data or other anonymous data may be kept indefinitely.
When determining the relevant retention periods, we will take into account factors including:
· our contractual obligations and rights in relation to the personal information involved;
· legal obligation(s) under applicable law to retain data for a certain period of time
· statute of limitations under applicable law(s)
· (potential) disputes, and
· guidelines issued by relevant data protection authorities.
Otherwise, we securely erase your information once this is no longer needed.
6. Does Weebly Transfer Your Personal Information Outside the Country?
Where required, we may transfer your personal information to our servers located outside the country in which you live (In particular, if you are an EU resident, your personal information is automatically transferred to us in the U.S). Laws of other countries on personal information can sometimes be different from those in your country of residence. We will only transfer data where it is lawful to do so. Where your personal information is transferred outside its country of origin, we ensure security measures and appropriate safeguards are put in place to protect your personal information and ensure that all transfers of your personal information comply with applicable data protection law, and are carried out in accordance with Weebly’s instructions. We are Privacy Shield certified for transfers from within the EEA or Switzerland to the U.S. More information on our Privacy Shield Certification can be found in the Privacy Shield Certification section 14 below. To find out more about how we safeguard your personal information (including obtaining a copy of such safeguards) in relation to transfers outside the EEA, please contact us through our help center or through the details provided in the Contact Us section below.
7.How Does Weebly Keep Your Personal Information Safe?
We take reasonable steps to put in place appropriate physical, electronic, and procedural safeguards to protect the integrity and security of personal information about you and to prevent unauthorized or unlawful processing of personal information and the accidental loss, destruction, or damage to personal information. These measures include internal reviews of our data collection, storage and processing practices and security measures (Strong password protection and in certain areas industry standard SSL-encryption to protect data transmissions), as well as physical security measures to guard against unauthorized access to systems where we store data.
However, data transmissions over the Internet and methods of electronic storage are not 100% secure. Consequently, we cannot guarantee or warrant the security of any information you transmit to us and you do so at your own risk.
If Weebly learns of a security systems breach we may attempt to notify you electronically so that you can take appropriate protective steps. We may post a notice on our applicable web sites if a security breach occurs. If this happens, you will need a web browser enabling you to view the applicable web sites. In these circumstances, we may also send an email to you at the email address you have provided to us. Depending on where you live, you may have a legal right to receive notice of a security breach in writing. To receive free written notice of a security breach (or to withdraw your consent from receiving electronic notice) submit a request through our help center.
8. What are your Privacy Rights?
Weebly as Data Controller. Upon request, we will provide you with information about whether we hold or process your personal information on behalf of third parties. You can access and edit your account information with Weebly at any time by logging into your account. You can also contact us via the help center, and we will respond as soon as possible, but at most within 30 days.
You can delete your applicable account by visiting the applicable account deletion page; however, some personal information, primarily your contact information, may remain in our records to the extent necessary to protect our legal interests or document compliance with regulatory requirements, in each case solely to the extent permitted by applicable law.
If your personal information changes, or if you no longer wish to use our Service, you may correct, update, or delete such information by making the change on your user account page, or by submitting a request through our help center.
Weebly as Data Processor. Weebly acknowledges you have the right to access and change the personal information we collect and process as a data processor. An individual who seeks to access or to correct, amend, or delete personal information should direct their request to the Weebly user who is the data controller, and not to Weebly directly. If the data controller requests Weebly remove personal information we will respond within a reasonable timeframe.
Users in the European Union only:
Under EU Regulation 2016/679 of the European Parliament and the Council; the General Data Protection Regulation (“GDPR”), you have a number of rights when it comes to your personal information. Further information and advice about your rights can be obtained from the data protection regulator in your country of residence within the EU. You can exercise any of these rights by contacting us through our help center or the details in the contact us section below:
The right to be informed. You have the right to be provided with clear, transparent and easily understandable information about how we use your information and your rights. This is why we’re providing you with the information in this Policy.
The right to rectification. You are entitled to have your information corrected if it is inaccurate or incomplete. You can request that we rectify any errors in personal information that we hold by writing us on the email address below.
The right to erasure. This is also known as ‘the right to be forgotten’ and, in simple terms, enables you to request the deletion or removal of your information where there is no compelling reason for us to keep using it. This is not a general right to erasure; there are exceptions.
The right to restrict processing. You have rights to ‘block’ or suppress further use of your information. When processing is restricted, we can still store your information, but may not use it further. We keep lists of people who have asked for further use of their information to be ‘blocked’ to make sure the restriction is respected in future.
The right to data portability. You have rights to obtain and reuse your personal data for your own purposes across different services. For example, if you decide to switch to a new provider, this enables you to move, copy or transfer your information easily between our IT systems and theirs safely and securely, without affecting its usability. This is not a general right however and there are exceptions.
The right to object to processing. You have the right to object to certain types of processing, including processing for direct marketing (i.e. receiving emails from us notifying you about other services we provide which we think may be of interest to you or being contacted with varying potential opportunities). You may change your preferences regarding email communications by visiting one of our preference centers listed below.
The right to lodge a complaint. You have the right to lodge a complaint about the way we handle or process your personal data with your national data protection regulator.
The right to withdraw consent. If you have given your consent to anything we do with your personal data (i.e we rely on consent as a legal basis for processing your personal information), you have the right to withdraw your consent at any time (although if you do so, it does not mean that anything we have done with your personal data with your consent up to that point is unlawful). You can withdraw your consent to the processing of your personal information at any time.
We usually act on requests and provide information free of charge, but may charge a reasonable fee to cover our administrative costs of providing the information for baseless or excessive/repeated requests, or further copies of the same information. Alternatively, we may be entitled to refuse to act on the request.
Please consider your request responsibly before submitting it. We will respond as soon as we can. Generally, this will be within one month from when we receive your request but, if the request is going to take longer to deal with, we’ll come back to you and let you know.
9. Third Party Features, Services, Links and Apps
®Show more details
Third Party Features, Services, and Apps may also support functions that require that you disclose certain personal information given your choice of participation. This information is collected in many different ways such as: forms, surveys, contests, forums, subscribing or unsubscribing to mailings and correcting or updating personal information and is only used for the purpose in which it was collected. Third Party Features, Services, and Apps may also collect sensitive information, such as financial information (credit card) to process purchases for products or services.
10. Users from the European Economic Area (“EEA”) or the EU
If you are based in a country in the EEA or EU and we hold personal information about you as a data controller, the controller of your personal information is Weebly, Inc., a Delaware corporation incorporated in Delaware whose principal place of business is located at 460 Bryant Street, Suite 100, San Francisco, CA 94107.
11. Users from California
Under California Civil Code sections 1798.83- 1798.84, California residents are entitled to ask us for a notice identifying the categories of personal information which we share with our affiliates and/or third parties for marketing purposes, and providing contact information for such affiliates and/or third parties. If you are a California resident and would like a copy of this notice, please submit a written request to the following address:
Legal - Privacy
460 Bryant St., #100
San Francisco, California 94107 USA
12. Additional Privacy Information for U.S. Educational Institutions
Please see our additional privacy disclosures for U.S. educational institutions here.
13. Privacy Shield Certification
Weebly participates in and has certified its compliance with the EU-U.S. Privacy Shield Framework and the Swiss-U.S. Privacy Shield Framework.
®Show more details
Weebly is committed to subjecting all personal data received from European Union (“EU”) member countries and Switzerland, respectively, in reliance on the Privacy Shield Frameworks, to the Framework’s applicable Principles. To learn more about the Privacy Shield Frameworks, and to view our certification, visit the U.S. Department of Commerce’s Privacy Shield List.
Weebly is responsible for the processing of personal data it receives, under the Privacy Shield Framework, and may subsequently transfer data to a third party acting as an agent on its behalf. Weebly complies with the Privacy Shield Principles for all onward transfers of personal data from the EU and Switzerland, including the onward transfer liability provisions.
With respect to personal data received or transferred pursuant to the Privacy Shield Frameworks, Weebly is subject to the regulatory enforcement powers of the U.S. Federal Trade Commission.
Under certain conditions, as more fully described on the Privacy Shield website, you may invoke binding arbitration when other dispute resolution procedures have been exhausted.
14. Changes to this Privacy Notice
Weebly reserves the right to revise, modify, or update this notice at any time. We will notify you about material changes in the way we treat personal information by sending a notice to the primary email address specified in your particular Weebly account or by placing a prominent notice on our site.
15. Contact Us
If you have a privacy concern regarding Weebly, or this notice, and if you cannot satisfactorily resolve it through the Service, you should complete a support request at http://help.weebly.com, or you can write to us by email at email@example.com or by mail at:
Legal - Privacy
460 Bryant St., #100
San Francisco, California 94107 USA
If you have an unresolved privacy or data use concern that we have not addressed satisfactorily, please contact our U.S.-based third-party dispute resolution provider (free of charge) here. Alternatively, you may contact your local data protection authority to raise any concerns or complaints (for example, EU data protection authorities in the EU whose contact details are available here).
May 23, 2018: Changes were made to this notice in accordance with the General Data Protection Regulation.
November 06, 2017: Changes were made to update this notice in accordance with Swiss-US Privacy Shield and to add additional disclosures for (i) Weebly data processing, (ii) our U.S. education users, (iii) information we collect in Section 2, and (iv) how we use your information in Section 3 (marketing communications and Referral Program changes).
September 2016: Changes were made to update this policy in accordance with Privacy Shield. Additional disclosures and explanations have also been provided in Sections 1, 2, 3, 8, and 11.