Privacy & Security
Nasty Gal complies with the U.S. - Swiss Safe Harbor framework as set forth by the U.S. Department of Commerce regarding the collection, use, and retention of personal data from Switzerland. Nasty Gal has certified that it adheres to the Safe Harbor Privacy Principles of notice, choice, onward transfer, security, data integrity, access, and enforcement. To learn more about the Safe Harbor program, and to view Nasty Gal’s certification, please visit http://www.export.gov/safeharbor/.
Nasty Gal participates in and has certified its compliance with the EU-U.S. Privacy Shield Framework. Nasty Gal is committed to subjecting all personal data received from European Union (EU) member countries, in reliance on the Privacy Shield Framework, to the Framework’s applicable Principles. To learn more about the Privacy Shield Framework, visit the U.S. Department of Commerce’s www.privacyshield.gov/list.
Nasty Gal is responsible for the processing of personal data it receives, under the Privacy Shield Framework, and subsequently transfers to a third party acting as an agent on its behalf. Nasty Gal complies with the Privacy Shield Principles for all onward transfers of personal data from the EU, including the onward transfer liability provisions.
With respect to personal data received or transferred pursuant to the Privacy Shield Framework, Nasty Gal is subject to the regulatory enforcement powers of the U.S. Federal Trade commission and/or the U.S. Department of Transportation. In certain situations, I Nasty Gal may be required to disclose personal data in response to lawful requests by public authorities, including to meet national security or law enforcement requirements.
If you have an unresolved privacy or data use concern that we have not addressed satisfactorily, please contact our U.S.-based third party dispute resolution provider (free of charge) at https://feedback-form.truste.com/watchdog/request.
Under certain conditions, more fully described on the www.privacyshield.gov/welcome, you may invoke binding arbitration when other dispute resolution procedures have been exhausted.
INFORMATION WE COLLECT FROM YOU
Information we, our service providers and other third-parties, collect from you will vary, depending on how you use the Services and information you may choose to provide to us (whether through email, phone, internet or otherwise).
When you use our Services, we automatically collect information on the type of device you use and operating system version.
If you create an account using your login from a third party service, like Facebook or Twitter, we will access and collect the information that your privacy settings on that third party service permits us to access so that we can create your account for you. We will also collect the contact information of your friends, if you choose to connect your contacts and address book information with your account, so that you can connect with your friends when you use our Services.
Automatic Collection of Information: Like many Web sites on the Internet, we automatically track certain information about you as you visit and use our Services to help us (i) better understand, improve and modify the Services, (ii) better understand how the Services are used and experienced, and (iii) better understand how we can enhance your or others overall experience on one or more of the Services, including providing advertising and other information that is relevant to you. This tracked or automatically gathered information may include, among other things, your computer’s IP address (Internet Protocol address), browser type, the URLs and pages on the Services you’ve visited, sections of or content on pages on the Services on which you click or in which you are interested, the number of times you visit each page on the Services, what downloads and/or search queries you have made, and how long you spent on particular sections of the Services and on the Services generally. This automatically gathered data includes information provided through the use of "cookies", local storage, e-tags, log files and "clear GIFs" (described in more detail below). We do not link this automatically collected data to other information we collect about you.
Information from Cookies: When you visit our Services, we may send a small file to your computer (a “cookie”) which is stored there so that we can recognize your computer as a unique machine the next time you visit the Services, and which also enables us to, among other things, to tailor the Services to your’s and other users’ needs. You are always free to decline any cookies we use if your Internet browser permits. However, please note that by declining cookies, certain functionalities of the Services will not be available to you, including that you will not be able to establish a shopping cart session or make a purchase online through the Services. Additionally, some of our third-party service providers working on our behalf may also utilize their own cookies.
Information from Clear GIFs: Also, we and our third-party service providers sometimes use "clear GIFs" in connection with cookies and other website functions and emails. Clear GIFs perform administrative functions (but without detracting from your online experience), including being used to perform statistical and administrative tasks such as measuring traffic on the Services and its Web pages, verifying advertising avenues and positioning images on the web, and allowing us to gauge the effectiveness of certain communications and email marketing campaigns by letting us know which marketing emails have been opened by you or other recipients. However, please note that clear GIFs do not collect Personal Information.
Information from e-tags and scripts: We and our third-party service providers use e-tags and scripts in analyzing trends, administering the Web site, tracking users’ movements around the site, and gathering demographic information about our user base as a whole. We may receive reports based on the use of these technologies by these companies on an individual and aggregated basis. Also, our third party partner may use technologies such as tags and scripts to gather information about your activities on this Web site and other sites in order to provide you advertising based upon your browsing activities and interests.
Use of local storage: We use local storage, such as HTML5, to store content information and preferences. Various browsers may offer their own management tools for removing HTML5. Additionally, third-parties with whom we partner to provide certain features on our Web site or to display advertising based upon your web browsing activity also use Flash cookies or HTML5 to collect and store information. Various browsers may offer their own management tools for removing HTML5. To manage Flash cookies, please click here.
HOW YOUR INFORMATION IS USED AND SHARED
The use and sharing of information about you depends on the context in which it is collected. Please see the categories below that relate to the features and functionality of the Services that you wish to utilize. If you do not want us to share your personal information with these companies, you may contact us at: Privacy@nastygal.com.
We may use other companies and individuals (1) to perform supporting functions for the various tools, functionality, information, products and services offered on or through our Services on our behalf, (2) to perform or support various tasks or initiatives instrumental to the business of, or related to operating or improving, the Services or (3) to assist us in testing, maintaining or improving the features, content or effectiveness of the Services or in performing research or development. These service providers (for example, credit card processing companies to bill you for goods purchased on the Services, email service providers to send out emails on our behalf, etc.) may be permitted to receive and use information collected from you or for internal purposes on an aggregated and/or anonymous basis (where you cannot be personally identified), but will not be authorized by us to use Personal Information for any other purpose other than in connection with performing the support functions for Nasty Gal or such other tasks, initiatives or assistance for Nasty Gal.
Some pages may have the look and feel of being on www.nastygal.com, however the information collected on these pages may not be covered under our privacy statement. All information collected on www.nastygal.com is owned and controlled by Nasty Gal privacy statement.
User-Initiated Communication: From time to time, portions of the Service(s) may enable you to send email and other types of messages to us and to participate in blogs, product reviews, and other discussion groups. All such emails, reviews, comments and messages, and all such postings to blogs and/or discussion groups, become our property once you submit them (please see our Terms for more details on this). Your Internet Protocol (IP) address may be included in any email that you send, whether to us or to third parties. Whenever you choose to initiate these kinds of communication with us, or anyone else, you may be contacted in return. Also, remember that our Services and blogs are open to the public, and, therefore, your postings can be seen by anyone and are therefore not protected by us or any other entity. Please use your own discretion when deciding whether and what to post and whom to contact. We reserve the right, in our sole discretion, to edit or delete postings from our Services, blogs, and discussion groups. This reservation of rights shall not under any circumstances obligate us to conduct such edits or deletions, nor shall it cause us to be liable for any such edits or deletions. To request removal of your personal information from our blog or community forum, please contact us at Unsubscribe@nastygal.com. In some cases, we may not be able to remove your personal information, in which case we will let you know if we are unable to do so and why.
Protection of rights: In certain situations, we may be required to disclose personal data in response to lawful requests by public authorities, including to meet national security or law enforcement requirements. We may release Personal Information or other information we collect from you if we believe that such action is appropriate to: (1) comply with legal requests and processes; (2) enforce the Terms for the applicable Services; (3) identify, contact or bring legal action against persons or entities who are or we believe have caused or might cause injury to us or a third party; (4) defend or respond to claims brought or threatened against Nasty Gal, its employees, directors, suppliers or service providers, users of the Services or others; or (5) otherwise protect or assert the rights, property, interests or personal safety of Nasty Gal, its employees, directors, suppliers or service providers, users of the Services or others. Any such release decisions may be made by us in our sole discretion.
Business or Asset transfers: We continue to develop our business and in doing so may choose to buy or sell our business or related assets. Personal Information and other information we collect from you is generally one of the assets acquired or transferred in such transactions.
Registration Information: The Personal Information you provide when you become a registered user of and create an account on one of the Services is used primarily to provide the information, features, products and/or services you purchase or request, to help us customize or enhance your or others’ online experience, and to increase the convenience of accessing new or existing tools, products and services on the Services. If applicable, this Personal Information may also be shared among the Services to make use of the Services more convenient by, for example, limiting the number of times you have to register with us. Your email address serves as a unique identifier in our record system, and together with your password, is designed to help us prevent unauthorized access to information you choose to store on the Services. The data you give us about your personal preferences and demographics (e.g., your age, ZIP code, or the like) may be used to help us offer tailored content, products, and services that we believe will be of interest to you. In addition, we may share this information, in aggregate or other protected forms (see the section entitled “Information We Collect From you: Personal Information,” above) or under confidentiality terms, with our current and/or future service providers so that either they or us can present and deliver products, functionality and services to you more effectively.
Promotions and Marketing: Unless you specify that you'd prefer not to hear from us, if you provide your email address to us (whether on the Services or on a third party Web site) for promotional or other purposes at the time of registration or otherwise, we may use this to contact you for promotional or other purposes. You may have these communications terminated and opt out at any time by clicking on the “Unsubscribe” link contained in any promotional email or contacting us at Unsubscribe@nastygal.com. If applicable, please be aware that opting out on one of our Services, does not opt you out from any of our other Services unless that option is specifically provided. Please note that despite unsubscribing from such communications, Nasty Gal may still contact you in relation to your order(s), purchase(s) or any issues relating any business you conduct with Nasty Gal. Please note that in certain instances, your name and/or email address may have been provided to us through our friend referral program. In this case, we may contact you via a one-time email. We store this information for the purpose of sending this one-time email and other internal purposes, including but not limited to tracking the success of our referral program. You may contact us at Privacy@nastygal.com to request that we remove your information from our database.
Forgot Your Password?: If you forget your password for any registered area of the Services, we have an automated password recovery system, which can be accessed by following these steps: (1) click on “My Account” in the upper right corner of the Services and choose “Log In / Create”; (2) click “I forgot my password” in the “Sign In” section; (3) enter the email address you used to register previously; (4) you will receive an email titled “Nasty Gal Password Assistance” at the email address you entered; (5) click on the link included in the email, which will bring up a secure web page which allows you to reset your password.
Social Media Features:
Our Services are general audience Web sites and are not directed at children under age 13. Nasty Gal nor the Services do not knowingly collect any personal information from children under age 13, and if you are under the age of 13 you should not register or provide information on our Services or to Nasty Gal. If you have knowledge that a child under the age of 13 has submitted Personal Information to us, please email Privacy@nastygal.com.
HOW CAN I ACCESS AND CHANGE MY PERSONAL INFORMATION?
To view, edit or delete the Personal Information that you submitted on the Services during registration, the purchase of a product or service, or otherwise, please follow these steps: (1) click “My Account” in the upper right corner of the Services and choose “Log In / Create”; (2) fill out the “Email” and “Password” fields in the “Sign In” section, then click “Sign In”; and (3) You will then be able to modify your account settings, including your email address and/or password related to this account, addresses and credit card information (if any).
Upon request Winshuttle will provide you with information about whether we hold, or process on behalf of a third party, any of your personal information. If you would like us to delete/remove your Account, or for us to no longer use or share Personal Information we may gather from you to market information to you, with our agents, affiliates or other service providers, please send a request to Privacy@nastygal.com. We will respond to your request within a reasonable timeframe.
However, archival or backup copies of Personal Information will not cease to exist and Nasty Gal shall not be liable for any problems in this editing process.
Please keep in mind that any change you request regarding Personal Information may adversely affect or otherwise change the availability, deliverability or quality for you of information, features, products or services in which you are interested or your experience on or relating to the Services.
We will retain and use your information as may be necessary to comply with our legal obligations, resolve disputes, and enforce our agreements.
HOW IS PERSONAL INFORMATION PROTECTED?
SPECIAL PROVISIONS APPLICABLE TO USERS OUTSIDE THE UNITED STATES
We strive to create a global community with consistent standards for everyone, but we also strive to respect local laws. If you are a user or non-user who interacts with Nasty Gal outside the United States, you consent to having your personal data transferred to and processed in the United States.
EFFECTIVE DATE AND MODIFICATIONS
Nasty Gal Inc.
523 W. 6th Street, Suite 330
Los Angeles, CA 90015