Last Revised: April 8th, 2019
4.1 Through your interaction with and use of the Channels, Dino may collect Personal Information, which is information that identifies an individual or relates to an identifiable individual. Personal Information may include, but is not limited to, the name, physical address, telephone number, e-mail address, or company affiliation and associated interests of you or another person.
4.2 In addition to Personal Information, Dino may also generate or collect other information through your interaction with, and use of, the Channels and non-Dino websites, which does not reveal your specific identity or otherwise does not directly relate to a specific individual (“Non-Identifying Information”). Non-Identifying Information may include, but is not limited to, browser and device information, data collected through automated electronic interactions, application usage data, demographic information, geographic or geo-location information, and statistical, aggregated and de-identified information. Non-Identifying Information may also include statistical and aggregated information that does not directly identify a specific person but may be derived from Personal Information. For example, we may aggregate your Personal Information with personal information of others to calculate the percentage of users in a particular zip code.
4.3 In some instances, we may combine Non-Identifying Information with Personal Information, such as combining a precise geographical location with your name. If we combine Non-Identifying Information with Personal Information, we will treat the combined information as Personal Information.
5.1 Use of Personal Information
Dino uses and shares the Personal Information we collect (unless otherwise restricted by applicable law), to perform the following activities:
(b) Our Service Providers. We may also share Personal Information with third parties who provide services to Dino, such as credit card processing services, order fulfillment, analytics, event/campaign management, web site management, information technology and related infrastructure provision, customer service, e-mail delivery, auditing, and other similar services. When we share Personal Information with third party service providers, we require that they use your Personal Information only for the purpose of providing services to us and subject to terms consistent with this Policy.
(c) Marketing, Advertising and Alerts. We may use your Personal Information to notify you about new product releases, alerts, updates, prices, terms, special offers, associated campaigns and service developments, and to advertise our products and services to you in accordance with this Policy.
(d) Online Communities. Some Channels may permit you to: participate in interactive discussions; create a personal profile (“Profile”); post comments, opportunities or other content; communicate directly with another user; or otherwise engage in networking activities. Some of these services may be moderated and all may be accessed for technical reasons. We do not control the content that users post to these forums or social networks. You should carefully consider whether you wish to submit Personal Information to these forums or social networks and whether you wish to make your Profile available to other users, and you should tailor any content you submit appropriately. You should also review any additional terms and conditions that may govern your use of these Channels.
(f) Your Testimonials. We may post testimonials on our Channels that may contain Personal Information. Prior to posting a testimonial, we will obtain your consent to use your name and testimonial.
(g) Quality. We may use your Personal Information to evaluate and improve our products, services, marketing, and customer relationships. We may also use your Personal Information to help create and personalize content on our Channels, facilitate your use of the Channels (for example, to facilitate navigation and the login process, avoid duplicate data entry, enhance security, keep track of shopping cart additions and preserve order information between sessions), improve quality, track marketing campaign responsiveness (including online advertising and e-mail marketing), and evaluate page response rates.
(h) Referral/“Tell a Friend”. If you elect to use our referral service to inform a friend about our products or services, we may ask you for the friend’s contact information. Dino will then send your friend a one-time contact related to your referral request. Dino uses the Personal Information you provide in this situation solely for the purpose of sending the one-time contact and tracking the success of our referral program. Your friend may contact Dino through our inquiry form to be removed from the referral program.
(i) Protection of our Employees, Sites, Facilities, and Operations. Dino may disclose your Personal Information as we deem necessary or appropriate to protect the health and safety of our employees and visitors, our physical and online operations, our property, rights, and privacy, and/or that of our affiliates, you or others. If you visit our offices, you may be photographed or videotaped as part of maintaining the security of our facilities. Facility security photography will be treated as sensitive information and will only be used for security and investigation purposes.
(j) Legal Requirements and Corporate Transactions. Dino may disclose your Personal Information as we believe to be necessary or appropriate: (i) under applicable law, including laws outside your country of residence; (ii) to comply with legal process, including legal warrants and seizure orders issued by courts or law enforcement officials; (iii) to respond to requests from public and government authorities, including public and government authorities outside your country of residence; (iv) to enforce our terms and conditions; and (v) to allow us to pursue available remedies or limit the damages that we may sustain. Additionally, in the event of a reorganization, merger, sale, joint venture, assignment, transfer or other disposition of all or any portion of our business, assets or stock (including in connection with any bankruptcy or similar proceedings), we may transfer the Personal Information we have collected to the relevant third party.
5.2 Use of Non-Identifying Information
(a) We may use, disclose, lease, out-license, sell, transfer, distribute, disclose and commercialize the Non-Identifying Information we generate and collect for any purpose, except where applicable law requires otherwise. If we are required to treat Non-Identifying Information as Personal Information under applicable law, then we will only use it in the same way that we are permitted to use and disclose Personal Information.
(b) Dino may use some third parties to administer a limited set of Dino advertisements on third party electronic channels. No Personal Information will be provided to the advertisers as part of this process, but aggregate Profile information and Non-Identifying Information may be used in the selection of advertising to make sure that it has relevance to the user.
(c) Dino may also use advertising technologies and participate in advertising technology networks that collect Non-Identifying Information from Dino and non-Dino websites, as well as from other sources, to show you Dino-related advertisements on Dino’s own and third-party websites.
6.1 Collection Methods
Dino and its third party service providers may collect both Personal Information and Non-Identifying Information from a variety of sources that generally fall into the following categories:
(a) Direct Interactions. This category is based on your use of and interaction with us through the Channels and other activities such as account creation, submission of registrations and forms, or sales inquiries and transactions.
(b) Publicly Available Data / Data from Third Parties. This category is based on automated interactions on non-Dino websites, or other data you may have made publicly available, such as social media posts, or data provided by third party sources, such as third party marketing opt-in lists, or data aggregators.
(c) Automated Interactions. This category is based on the use of technologies such as electronic communication protocols, cookies, embedded URLs or pixels, or widgets, buttons and tools.
6.2 Automated Collection Methods
Although Dino’s use of automated interactions may change over time as technology evolves, the following descriptions are designed to provide you with additional detail about Dino’s current approach to information collected from automated interactions.
(a) Electronic Communications Protocols. As is true when you visit most websites and apps, Dino may automatically receive information from you as part of the communication connection itself, which often consists of network routing information (where you came from), equipment information (browser type), your IP address (which may identify your general geographic location or company), and date and time.
(b) Tracking. Using log files or other means, Dino may also automatically receive and record information about your interaction with the Channels, such as clickstream information (when each Dino webpage was visited and how much time was spent on the page), general geo-location data, IP address, browser type, referring/exit pages, and date/time stamps.
(c) Cookies. Dino’s server may query your browser to see if there are “cookies” previously set by our electronic Channels. A cookie is a small piece of information sent by a web server to store on a web browser so it can later be read back from that browser. Cookies may collect information, including a unique identifier, user preferences, Profile information, membership information, and general usage and volume statistical information. Cookies may also be used to collect individualized website use data, provide electronic Channel personalization, or conduct and measure the effectiveness of advertising in accordance with this Policy. Some cookies may remain on users’ computers after they leave the website. While some cookies are set to expire after a predetermined period following your last visit to the website, other cookies may not expire because of their nature, such as cookies that remember opt-out preferences. We may engage third party service providers to track and analyze both individualized usage and volume statistical information from interactions with electronic Channels. These service providers may set cookies on our behalf. We also may use other third party cookies to provide advertising and personalization services in accordance with this Policy, and to track the performance of our advertisements on their websites and our e-mails.
(d) Embedded URLs. We may use a tracking technique that employs embedded URLs to allow use of the electronic Channels without cookies. Embedded URLs allow limited information to follow you as you navigate the electronic Channels, but are not associated with Personal Information and are not used beyond the session.
(e) Embedded Pixels and Similar Technologies. On the electronic Channels, Dino and its service providers may use embedded pixel technologies for the purposes of identifying unique user visits (as opposed to aggregate hits), and for advertising purposes. In addition, embedded pixels or other technologies may be used in e-mails and our online display advertising to provide information on when the e-mail or ad was opened to track marketing campaign responsiveness; information collected using these technologies may be associated with the recipient’s e-mail address.
(g) Your Physical Location. We may collect the physical location of your device and use it to provide you with personalized location-based services or content. For example, we may use global positioning systems (GPS), geo-filtering and other technologies to track your location for purposes related to providing you with information, content, products or services that are relevant to your particular location. In some instances, you may be permitted to allow or deny such use of your device’s location, but if you choose to deny such use, we may not be able to provide you with the applicable personalized services or content.
7.1 Registration and Preferences
Dino may allow you to establish a registration Profile or user account Profile for your transactions and communication management associated with the Channels. You may use the Profile to customize and control your preferences for receiving electronic information, including any feature that we might implement for opting into (or out of) communities, newsletters and general interest areas. You may return to the registration Profile to change your elections or modify your Profile by logging into your user account. Please login as usual and follow the prompts to update your Profile.
(a) Our Opt-Out Features. We may enable you to opt-out of, decline or disable certain information collection features. For example, we may enable you to select a setting to:
(i) opt out of marketing communications or e-mail marketing by modifying your online Profile or using our general unsubscribe automated link;
(ii) opt out of personalized (non-anonymized) website analytics;
(iii) opt out of targeted advertisements that are tailored to your perceived interests using retargeting and behavioral advertising technologies; and
(iv) opt out of cookies that are not required to enable core website functionality
(b) Your Browser’s Opt-Out Features. Your browser may enable you to disable cookies, block advertisements or disable other website functions. You can generally disable the cookie feature on your browser without affecting your ability to use our website, except in some cases where cookies are used as an essential security feature necessary for transaction completion. You should keep in mind that: (i) cookies are important to the proper functioning of a website, and disabling them may degrade your experience and interfere with website features and customizations; and (ii) your election to block advertisements and disable other website features may degrade or disable the function of our website for you.
(c) Unavailability of Opt-out. Some non-marketing communications may not be subject to opt-out, such as communications related to product access or download, sales transactions, software updates and other support related information, patches and fixes, conferences or events for which you have registered, disclosures to comply with legal requirements, and (where permitted by law) quality assurance surveys. Some additional communications with partners may also not be subject to opt out, including product alerts, updates, contractual marketing and sales materials, and other notices related to partner status.
Under California Civil Code Section 1798.83 (also known as Information-Sharing Disclosure, Shine the Light), if you are a California resident and your business relationship with Dino is primarily for personal, family, or household purposes, you may request certain data regarding Dino’s disclosure, if any, of Personal Information to third parties for the third-parties’ direct marketing purposes. To make such a request, please please contact us in accordance with Section 10 below. You may make such a request up to once per calendar year. In accordance with California Civil Code Section 1798.83, we will provide you, by e-mail, a list of the categories of Personal Information disclosed to third parties for their direct marketing purposes during the immediately preceding calendar year, along with the third parties’ names and addresses and any other information required by California Civil Code Section 1798.83.
If you are a resident or citizen of a member-country of the European Union, the General Data Protection Regulation ((EU) 2016/679)) (“GDPR”) may provide you with certain rights beyond the rights stated in this Policy. In accordance with the GDPR, we may process your Personal Information without your consent under several cases, including, but not limited to, cases in which it is necessary for us to: (a) process your Personal Information to perform the Additional Agreements, including the sale of products or services to you; or (b) process your Personal Information for purposes of our legitimate interests. If we desire to process your Personal Information for cases that require your prior consent under the GDPR, we will request your consent.
10.1 You may contact us regarding this Policy through our Contact page or by writing or emailing us at the following address:
Dinosaur Restaurants, LLC
234 W. Genesee Street
Syracuse, New York 13202
Email Address: firstname.lastname@example.org
10.2 In your correspondence, you may: (a) request a copy of the Personal Information we have received from you; (b) request to review, correct, update, suppress, or otherwise modify such Personal Information; (c) object to the use or processing of such Personal Information, addressing any privacy concerns; (d) request that we remove your Personal Information from our online communities; (e) request that we update or delete testimonials that you approved in the past; (f) request that we disable a cookie feature or other tracking feature; or (g) request that we opt you out of a specified service or feature. In your request, please make clear what Personal Information you would like to have changed or whether you would like to have your Personal Information suppressed from our database.
10.3 You may have the ability to update your Profile and related Personal Information by logging in to your user account and following the prompts to update your Profile.
10.4 While the majority of questions and issues related to this Policy can be handled quickly, complex requests may take more research and time. In such cases, issues will be addressed, or we will use our best efforts to contact you regarding the nature of the problem and appropriate next steps, within thirty (30) days. If we are unable to grant your request, we will let you know.
11.1 We may retain your Personal Information for a period that begins when you first use any Channel and ends upon the later of: (a) the deactivation of your user account; (b) the completion of our obligation to provide you with products or services; (c) the end of the purposes outlined in this Policy; (d) the end of our need to use your Personal Information to comply with our legal obligations, resolve disputes or enforce our agreements; (e) the termination of our right to use your Personal Information pursuant to any agreements in place between you and us; and (f) the end of the period during which we are required or authorized to retain your Personal Information in accordance with applicable law (“Retention Period”).
11.2 At the end of the Retention period, we will destroy, erase, delete, encrypt or disable access to your Personal Information in a manner designed to ensure that it cannot be reconstructed or read.
12.1 The security of your Personal Information is very important to us. We use physical, electronic, and administrative safeguards that are designed to protect your Personal Information from loss, misuse and unauthorized access, disclosure, alteration and destruction.
12.2 In addition, Dino uses standard security protocols and mechanisms to exchange the transmission of sensitive data, such as credit card details. When you enter sensitive Personal Information such as your credit card number on our website, we encrypt it using transport layer security (TLS) and/or secure socket layer (SSL) technologies or other industry-standard security measures.
12.3 In the event that your Personal Information is acquired, or is reasonably believed to have been acquired, by an unauthorized person and applicable law requires notification, Dino will attempt to notify you by e-mail or U.S. mail. Dino will attempt to give you notice promptly, consistent with the reasonable needs of law enforcement or Dino to determine the scope of the breach and to investigate and restore the integrity of the data system. If your e-mail address in your user account is inoperable and we do not have you current street address, we will be unable to provide you with written notice of any such breach.
Dino might offer its products and services on a worldwide basis and might rely upon the services or facilities of affiliates located in the United States and other countries. Pease note that your Personal Information may be transferred, accessed and stored globally as necessary for the uses stated above in accordance with this Policy. You hereby consent to the transfer of information to countries outside of your country of residence, which may have different data protection rules than those of your country.
We may update this Policy from time to time. The date provided at the beginning of this Policy is the latest revision date of this Policy. To request a prior version of this Policy, please contact us in accordance with Section 10 above.