Privacy Policy
1. Introduction
Welcome to TelescopeBuff ("we," "our," or "us"). We are committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, share, and protect information when you visit our website at telescopebuff.com (the "Service").
This Privacy Policy complies with the General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and other applicable privacy laws. By using our Service, you acknowledge that you have read and understood this Privacy Policy.
2. Information We Collect
Information You Provide Directly
- Contact information when you reach out to us
- Newsletter subscription email addresses (when this feature is implemented)
- Comments or feedback you submit (when this feature is implemented)
Information Collected Automatically
- Device information (browser type, operating system, device identifiers)
- Usage data (pages visited, time spent, click patterns, reading progress)
- Technical data (IP address, referrer information, timestamps)
- Cookies and similar tracking technologies (detailed in Section 4)
3. How We Use Your Information
We use collected information for the following purposes, based on legitimate interests and your consent where required:
- Website functionality: To provide and maintain our telescope review service
- Content improvement: To understand which articles and reviews are most helpful
- Analytics: To analyze website performance and user engagement (with your consent)
- Technical operations: To troubleshoot issues and ensure website security
- Legal compliance: To comply with applicable laws and regulations
- Affiliate partnerships: To track referrals for telescope product recommendations (disclosed per FTC requirements)
5. Google Analytics
We use Google Analytics 4 (GA4) with Google Tag ID: G-QK317H0LLT
to analyze website usage and improve our content.
Data Processing by Google Analytics
- IP addresses (anonymized automatically by GA4)
- Cookie identifiers and device identifiers
- Page views, session duration, and bounce rates
- Geographic location (country/region level only)
- Referral sources and internal navigation patterns
GDPR Compliance Measures
- Google Analytics only loads after explicit user consent
- Data retention period set to 14 months (Google's minimum)
- Advertising features and remarketing are disabled
- Data sharing with other Google services is limited
You can opt out of Google Analytics by visiting Google's opt-out page or by declining analytics cookies through our consent banner.
6. Affiliate Relationships and Compensation
How Affiliate Relationships Work
- We receive commissions when readers purchase telescopes through our affiliate links
- Affiliate cookies track referrals for 24-90 days depending on the merchant
- We may receive free products for testing, which will be clearly disclosed in reviews
- Compensation does not influence our honest review opinions or ratings
Current Affiliate Partners
- Amazon Associates Program
- Telescope and astronomy equipment retailers
- Optical equipment manufacturers (as partnerships develop)
Our editorial independence is maintained despite these business relationships. We test products thoroughly and provide honest assessments based on our astronomy expertise and testing methodology.
7. Information Sharing and Disclosure
We do not sell, rent, or trade personal information. We may share information only in these limited circumstances:
Third-Party Service Providers
- Google Analytics: Website performance and usage analytics
- Hosting providers: Website infrastructure and content delivery
- Email services: Newsletter delivery (when implemented)
Legal Requirements
We may disclose information when required by law, regulation, legal process, or governmental request, or to protect our rights, property, or safety.
Business Transfers
In the event of a merger, acquisition, or sale of assets, user information may be transferred as part of the business assets. We will provide notice before personal information is transferred and subject to a different privacy policy.
8. Data Retention
We retain personal information only as long as necessary for the purposes outlined in this policy:
- Analytics data: Automatically deleted after 14 months (Google Analytics retention period)
- Cookie consent records: Stored locally until you clear browser data
- Contact information: Retained for 3 years after last contact for customer service purposes
- Website logs: Retained for 12 months for security and troubleshooting
You can request earlier deletion of your personal data by contacting us using the information in Section 14.
9. Your Privacy Rights
Depending on your location, you have the following rights regarding your personal data:
GDPR Rights (EU/UK Residents)
- Access: Request copies of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion of your personal data ("right to be forgotten")
- Portability: Receive your data in a structured, machine-readable format
- Restrict processing: Limit how we use your data
- Object: Opt out of data processing for direct marketing or legitimate interests
- Withdraw consent: Remove consent for analytics cookies at any time
CCPA Rights (California Residents)
- Know: Request information about personal data collection and use
- Delete: Request deletion of personal data
- Opt-out: Opt out of the "sale" of personal data (we do not sell data)
- Non-discrimination: Equal service regardless of exercising privacy rights
How to Exercise Your Rights
To exercise any of these rights, contact us at the information provided in Section 14. We will respond to your request within 30 days (GDPR) or 45 days (CCPA) as required by law.
10. International Data Transfers
TelescopeBuff operates globally, and your information may be transferred to and processed in countries other than your own, including the United States.
Safeguards for EU/UK Data
- Google Analytics processes EU data through Google's GDPR compliance framework
- Data transfers rely on adequacy decisions, Standard Contractual Clauses, or other approved mechanisms
- We ensure third parties provide appropriate safeguards for international transfers
11. Data Security
We implement appropriate technical and organizational security measures to protect your personal information:
- Encryption: HTTPS encryption for all data transmission
- Access controls: Limited access to personal data on a need-to-know basis
- Monitoring: Regular security monitoring and vulnerability assessments
- Incident response: Procedures for responding to data breaches within 72 hours (GDPR requirement)
- Vendor security: Due diligence on third-party security practices
While we strive to protect your information, no method of internet transmission or electronic storage is 100% secure. We encourage you to use strong passwords and keep your devices secure.
12. Children's Privacy
TelescopeBuff is intended for general audiences and does not knowingly collect personal information from children under 13 years of age (or 16 in the EU). If we discover that we have collected information from a child without parental consent, we will promptly delete such information.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately using the information in Section 14.
13. Policy Updates
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:
- Update the "Last Updated" date at the top of this policy
- Provide notice through our website or other appropriate communication methods
- For significant changes, seek renewed consent where required by law
- Maintain previous versions for reference upon request
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
14. Contact Us
If you have questions about this Privacy Policy, want to exercise your privacy rights, or need to report a privacy concern, please contact us:
Privacy Contact Information
Email: contact@telescopebuff.com
Subject Line: Privacy Policy Inquiry - [Your Specific Request]
Response Time: We will respond within 30 days for GDPR requests, 45 days for CCPA requests
Regulatory Complaints
EU/UK residents have the right to file complaints with their data protection authority. You can find your local authority at the European Data Protection Board.
California residents can contact the California Attorney General's Office at oag.ca.gov/privacy/ccpa.