PRIVACY POLICY

 

Effective date: April 6, 2025

This Privacy Policy is issued by Erin Kendal (“we”, “our”, “us”), acting as the Data Controller of your personal information. We provide online courses, memberships, and related services through erinkendal.com and erin-kendal.mykajabi.com (“Site”).

This Policy describes how we collect, use, and share your personal information in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.


Data Controller

The Data Controller responsible for your personal information is:

Erin Kendal
Email: [email protected] 


Information We Collect

We may collect the following personal data when you visit our Site or use our services:

Name, business name, email address, telephone number, billing address.

Payment details (note: card details are processed securely by Stripe and are not stored by us).

Technical data such as IP address, browser type, and geographic location.

Account information such as login details, membership activity, survey responses, and support queries.

Marketing information such as email preferences, testimonials, or social media handles you choose to provide.

We do not knowingly collect personal data from individuals under 18. If we learn that we have collected personal data from a child, we will delete it promptly.


Legal Bases for Processing

We process your personal data on the following legal bases:

Contract: to provide you with access to our Membership and services.

Consent: when you opt in to receive marketing communications or accept cookies.

Legal obligation: to comply with tax and accounting laws (e.g. retaining invoices).

Legitimate interest: to maintain Site security, improve services, and prevent fraud.


How We Use Your Information

We use your information to:

Deliver services, process payments, and provide account access.

Communicate with you about Membership updates, support, and resources.

Send newsletters, updates, free resources, promotional content, and other marketing communications if you have opted in to receive them.

Use Flodesk, our email marketing platform, to collect subscriber information through signup forms, deliver email marketing communications, and manage subscriber preferences and unsubscribe requests.

Improve our Site, content, and services through analytics and feedback.

Meet our legal and accounting obligations.


Email Marketing

If you sign up to receive marketing emails, newsletters, updates, or free resources, we will process your name and email address to send you those communications.

We use Flodesk to collect and manage email subscriptions and to send marketing emails on our behalf.

Where required by law, we only send marketing emails where you have given your consent. You can withdraw your consent at any time by clicking the unsubscribe link in any marketing email or by contacting us at [email protected].

Providing your email address for marketing purposes is voluntary, but we need it in order to send you the emails you have requested.


International Data Transfers

Some of our service providers, including Stripe, Kajabi, and Flodesk, may store or process personal data outside the UK or EEA, including in the United States.

Where personal data is transferred internationally, we rely on appropriate lawful safeguards, such as Standard Contractual Clauses or other approved transfer mechanisms, where required under applicable data protection law.


Data Retention

Financial records (such as invoices and billing information) are retained for up to 10 years, in line with applicable tax law.

Membership account data is retained while you are a member and archived for up to 2 years after cancellation, unless deletion is requested.

Marketing data is retained until you unsubscribe or request deletion.

Cookies and analytics data are retained according to the policies of the third-party services used.


Your Rights

You have the right to:

Access the personal data we hold about you.

Rectify inaccurate or incomplete information.

Request erasure of your personal data (“right to be forgotten”), except where we must retain it for legal reasons (e.g. tax records).

Restrict or object to processing of your data.

Request portability of your data in a commonly used format.

Withdraw consent at any time, where processing is based on consent (e.g. marketing).

Lodge a complaint with your local Data Protection Authority if you believe your rights are not being respected.

If you are in the EU, you can also lodge a complaint with your local Data Protection Authority.

To exercise your rights, contact us at [email protected] 


Cookies and Tracking Technologies

Our Site uses cookies and similar technologies to:

Some cookies are “necessary” and always active because they are required for the Site to function. Non-essential cookies (such as analytics and advertising/marketing cookies, including affiliate tracking where applicable) will only be used if you give consent, where required.

You can withdraw consent or adjust cookie settings at any time via our cookie banner or cookie settings on this site.

Affiliate networks (such as CJ Affiliate) may use cookies and similar technologies to attribute a referral from my site to a purchase on a third-party site. You can read CJ’s privacy notice here: https://www.cj.com/legal/privacy-policy-services

 

Affiliate Links and Affiliate Tracking
 

Some pages on this site may contain affiliate links. If you click an affiliate link and make a purchase, I may earn a commission at no additional cost to you.

Affiliate links may use cookies or similar technologies to track referrals, attribute purchases, and prevent fraud. This tracking may involve online identifiers such as cookie IDs, IP address, device/browser information, timestamps, referring page URLs, and purchase/order information.

I participate in affiliate programs including CJ Affiliate (Commission Junction) and the Amazon Associates Program, and I may work with other affiliate networks or retailers from time to time. CJ’s Services Privacy Notice is available here: https://www.cj.com/legal/privacy-policy-services

 

Amazon Associates Disclosure

As an Amazon Associate I earn from qualifying purchases.


Sharing Your Information

We only share personal data with trusted service providers who help us operate our business, including:

These providers are contractually required to protect your data and may only process it in line with our instructions. We do not sell or rent your personal data. We may disclose information if required by law, to comply with legal proceedings, or to protect our rights and the safety of others.


Security

We take appropriate technical and organisational measures to protect your data. Payment details are encrypted and securely processed by Stripe.

In the event of a data breach that compromises your personal data, we will notify you promptly in line with GDPR and applicable law.

While we do our best to protect your personal data, no system is completely secure and we cannot guarantee absolute security.


Business Transfers

If there is a change of control in our business (whether by merger, sale, transfer of assets, or otherwise), customer information, which may include your personal data, could be transferred to a purchaser under a confidentiality agreement.


Links to Other Websites

Our Site may contain links to other websites. These are provided for your convenience only. Links to third-party websites do not constitute endorsement or approval. We are not responsible for the privacy practices of other websites and encourage you to read their privacy policies.


Changes to This Policy

We may update this Privacy Policy from time to time. Updates will take effect immediately upon posting to our Site. Please check this page periodically to stay informed.


Contact Us

If you have questions or concerns about this Privacy Policy or how we handle your personal information, please contact us at:

Email: [email protected]

Website: erinkendal.com

We aim to respond within 30 days, or sooner where required by law.