Privacy Policy
Website and Company Information
In this section, you should provide the URL of your website, the name of the company, organization, or individual behind it, and precise contact details.
The amount of information required depends on local or national business regulations. You may need to display a physical or registered address, a business registration number, or other official details.
What Personal Data We Collect and Why We Collect It
This section should list the personal data collected from users and visitors. This may include:
- Personal data (e.g., name, email address, personal account preferences).
- Transaction data (e.g., purchase details).
- Technical data (e.g., cookie information).
You should also mention any collection or retention of sensitive personal data, such as health-related information.
Additionally, you should specify why you collect this data—whether based on legal grounds or user consent.
Personal data is not only created through user interactions with your website but can also be generated from technical processes such as contact forms, comments, cookies, analytics, and third-party integrations.
By default, WordPress does not collect any personal data about visitors. It only collects data displayed in the user profile of registered users. However, plugins may collect personal data, which should be disclosed here.
Comments
In this subsection, specify what information is collected through comments. We have previously mentioned the default data collected by WordPress.
Media
In this subsection, describe what information might be exposed by users who can upload media files. Typically, all uploaded files are publicly accessible.
Contact Forms
By default, WordPress does not include a contact form. If you use a contact form plugin, describe what personal data is captured when someone submits a message through a contact form and how long you retain that data.
For example, you may state that contact form submissions are kept for a specific period for customer service purposes but are not used for marketing purposes.
Cookies
In this subsection, list the cookies used by your website, including those set by plugins, social media platforms, and analytics services. Default WordPress cookies have been provided as a reference.
Analytics
In this subsection, specify the analytics package you use, how users can opt out of tracking, and provide a link to your analytics provider’s privacy policy if available.
By default, WordPress does not collect analytics data. However, many web hosting services collect anonymous analytics data. If you have installed a WordPress plugin that provides analytics, include relevant details here.
Who We Share Your Data With
List all third-party providers with whom you share site data, such as partners, cloud services, payment processors, and third-party service providers. Explain what data is shared and why, and provide links to their privacy policies where possible.
By default, WordPress does not share personal data with anyone.
How Long We Retain Your Data
In this section, explain how long you retain personal data collected or processed by the website.
For example, you may state:
- Contact form entries are retained for six months.
- Analytics records are kept for one year.
- Customer purchase records are stored for ten years.
What Rights You Have Over Your Data
In this section, explain the rights users have regarding their data and how they can exercise these rights.
Where Your Data Is Sent
List all instances where your site transfers data outside the European Union and describe how this data is protected according to European data protection standards.
This may include web hosting, cloud storage, or third-party services.
The European data protection laws require data about EU residents transferred outside the EU to be protected under the same standards as if it remained within Europe. Describe how these standards are maintained, either by yourself or third-party providers, through agreements such as Privacy Shield, standard contractual clauses, or binding corporate rules.
Contact Information
Provide a contact method for privacy-related concerns. If a Data Protection Officer (DPO) is required, list their name and full contact details here.
Additional Information
How We Protect Your Data
Explain the measures taken to protect users’ data. This may include:
- Technical measures (e.g., encryption).
- Security measures (e.g., two-factor authentication).
- Administrative measures (e.g., employee training on data protection).
If you have conducted a Privacy Impact Assessment, mention it here.
What Data Breach Procedures We Have in Place
Describe the procedures for handling actual or potential data breaches, including internal reporting systems, contact mechanisms, or bug bounty programs.
What Third Parties We Receive Data From
If your website receives user data from third parties, including advertisers, include this information in your privacy policy under the section dealing with third-party data.
What Automated Decision-Making and/or Profiling We Do With User Data
If your website provides services that involve automated decision-making—such as credit applications or advertising profiling—note that this is happening and explain:
- How the information is used.
- What decisions are made based on the aggregated data.
- What rights users have over decisions made without human intervention.
Industry Regulatory Disclosure Requirements
If you are part of a regulated industry or subject to additional privacy laws, disclose the relevant information here.