1. Controller
The controller responsible for the processing of personal data through this website is:
ever-growing LLC
30 N Gould St, STE R
Sheridan, WY 82801
United States of America
Email: info@reviewsales.io
Phone: +49 176 42093923
In this Privacy Policy, “we”, “us” and “our” refer to ever-growing LLC.
2. Scope of this Privacy Policy
This Privacy Policy explains how we collect, use, store and otherwise process personal data when you visit ReviewSales.io, create or use a user account, communicate with us by email or otherwise interact with this website.
Personal data means any information relating to an identified or identifiable natural person. Depending on your location, the processing described in this Privacy Policy may be governed by the General Data Protection Regulation (“GDPR”) and other applicable privacy laws.
3. Website Hosting and Server Log Files
This website is hosted by:
ALL-INKL.COM – Neue Medien Münnich
Owner: René Münnich
Hauptstraße 68
02742 Friedersdorf
Germany
The hosting provider operates its servers in Germany.
When you access this website, the web server may automatically collect and store technical information in server log files. This information may include:
- Your IP address
- Date and time of access
- The page or file requested
- The referring website or URL
- Browser type and browser version
- Operating system
- Device information
- HTTP status code
- Amount of data transferred
This information is processed to deliver the website, maintain technical stability, detect errors, prevent misuse and protect the website against attacks.
Where the GDPR applies, the legal basis is Article 6(1)(f) GDPR. Our legitimate interests are the secure, reliable and efficient operation of the website.
Server log data is retained only for as long as reasonably necessary for website operation, security and troubleshooting. Data may be retained for a longer period where this is necessary to investigate a security incident, establish or defend legal claims or comply with a legal obligation.
4. User Registration and User Accounts
Users may be able to create an account on ReviewSales.io. When you register or use an account, we may process the following information:
- Username
- Email address
- Password in encrypted or hashed form
- First name and last name, where provided
- Profile information voluntarily entered by you
- User role and account permissions
- Registration date and account status
- Login dates, login attempts and associated IP addresses
- Technical and security information relating to account use
We process this information to create and manage your account, authenticate you, provide account functions, communicate important account information and prevent unauthorized access or misuse.
Where the GDPR applies, processing necessary to provide your account is based on Article 6(1)(b) GDPR. Processing for account and website security is based on Article 6(1)(f) GDPR. Processing required by law is based on Article 6(1)(c) GDPR.
Account data is generally stored for as long as your account remains active. If your account is deleted, the associated personal data will be deleted or anonymized unless continued storage is required by law, necessary to resolve a dispute or required to establish, exercise or defend legal claims.
You are responsible for keeping your login credentials confidential and should inform us promptly if you believe that your account has been accessed without authorization.
5. Account and System Emails
We may send transactional or administrative emails relating to your account. These may include registration confirmations, password-reset messages, security alerts and other information necessary to operate your account.
Email delivery is managed through WordPress and the WP Mail SMTP plugin. Depending on the email configuration, the following information may be processed by our hosting provider or configured email service provider:
- Your email address
- Your username or name, where applicable
- The subject and content of the message
- Date and time of delivery
- Delivery status and technical information
The WP Mail Logging plugin may record outgoing emails for troubleshooting, security and delivery verification. Such logs may include the recipient, subject, date, delivery status and, depending on the configuration, the content of the email.
Where the GDPR applies, processing of account-related emails is based on Article 6(1)(b) GDPR. Technical logging and troubleshooting are based on Article 6(1)(f) GDPR. Our legitimate interest is ensuring reliable and secure email delivery.
Email logs are retained only for as long as necessary for troubleshooting, security and administration, unless longer retention is required by law or for the establishment, exercise or defence of legal claims.
6. Website Security
We use security tools to protect this website against unauthorized access, malicious requests, malware, brute-force attacks and other security threats. These tools may process IP addresses, requested URLs, HTTP request information, login attempts, usernames, email addresses and other technical security information.
Where the GDPR applies, this processing is based on Article 6(1)(f) GDPR. Our legitimate interests are protecting our website, systems, users and business operations.
6.1 Wordfence Security
We use the Wordfence Security plugin provided by:
Defiant, Inc.
800 5th Avenue, Suite 4100
Seattle, WA 98104
United States of America
Wordfence provides firewall, login-security, malware-scanning and attack detection functions. Depending on the configuration and the security event, Wordfence may process or receive:
- IP and proxy IP addresses
- Requested URLs
- HTTP headers and request information
- Login attempts
- Usernames and email addresses
- Information about malicious or suspicious files
- Security and audit-log information
Some data may be transmitted to and processed by Defiant, Inc. or its service providers in the United States. Where required by applicable law, such transfers are protected by appropriate safeguards, such as the European Commission’s Standard Contractual Clauses.
Further information is available in Wordfence’s privacy documentation: Wordfence Privacy Policy .
6.2 Local Security and Administration Logs
Additional WordPress security and administration tools may record login attempts, security events, changes made by administrators, system errors and other technical events. These records are used exclusively for website maintenance, troubleshooting, access control and security.
7. Cookies and Similar Technologies
This website uses cookies and similar technologies that are necessary for the operation, security and functionality of the website.
Cookies are small text files stored on your device by your browser. Some cookies remain only for the duration of your browser session, while others may remain on your device for a defined period.
7.1 Essential WordPress and Login Cookies
WordPress may set technically necessary cookies to:
- Determine whether your browser accepts cookies
- Authenticate registered and logged-in users
- Maintain a secure login session
- Store user-interface and account preferences
- Protect forms and accounts against unauthorized access
Login and authentication cookies are generally set only when you register, log in or use protected account functions.
7.2 Security Cookies
Wordfence and other security components may set cookies that are necessary to recognize logged-in users, enforce security rules, prevent unauthorized access and protect the website against attacks.
7.3 Functional Popup Preferences
If the website displays a notice or popup, a functional cookie may be used to remember that the notice has been viewed, closed or acknowledged. This prevents the same notice from being displayed unnecessarily on every page view.
7.4 No Analytics or Advertising Cookies
We currently do not use visitor analytics, advertising tracking or affiliate-tracking services on this website. We also do not currently use cookies for personalized advertising or cross-site profiling.
Where access to information on your device or the storage of information is strictly necessary to provide a function requested by you, the relevant technology may be used without consent as permitted by applicable law. If we introduce non-essential cookies or tracking technologies in the future, we will obtain consent where required before activating them.
You can delete or block cookies through your browser settings. Blocking technically necessary cookies may prevent login, account and security functions from working correctly.
8. No Analytics, Advertising or Embedded Third-Party Media
We currently do not use:
- Website analytics services
- Advertising or remarketing services
- Affiliate-tracking technologies
- Embedded YouTube videos
- Embedded Google Maps
- Embedded social-media feeds or social-media plugins
If such services are introduced in the future, this Privacy Policy and any required consent mechanism will be updated before or when the services are activated.
9. Contact by Email
If you contact us directly by email, we process the information contained in your message, your email address and any additional information you voluntarily provide.
We use this information to respond to your request and manage further communication.
Where the communication concerns an existing or proposed contractual relationship, the legal basis under the GDPR is Article 6(1)(b) GDPR. In other cases, processing is based on Article 6(1)(f) GDPR. Our legitimate interest is responding to legitimate inquiries and maintaining business communications.
Email correspondence is retained for as long as necessary to deal with the matter. It may be retained for longer where required by law or where necessary to establish, exercise or defend legal claims.
10. Recipients and Service Providers
Personal data may be disclosed to the following categories of recipients where necessary:
- Hosting and server providers
- Email and technical communication providers
- Security, firewall and malware-detection providers
- Authorized employees, administrators and contractors
- IT maintenance and technical support providers
- Legal, tax or professional advisers
- Public authorities, courts or law-enforcement bodies where legally required
Service providers that process personal data on our behalf are contractually required to process the data only in accordance with our instructions and applicable data-protection requirements.
11. International Data Transfers
ever-growing LLC is established in the United States. The website is hosted on servers in Germany. Personal data may nevertheless be accessed or processed from the United States in connection with the administration and operation of the website.
Certain technology or security providers, including Wordfence, may also process information in the United States or other countries outside the European Economic Area.
Where the GDPR applies and a transfer is subject to Chapter V GDPR, we use an appropriate legal transfer mechanism. This may include an adequacy decision, the European Commission’s Standard Contractual Clauses or another lawful safeguard.
12. Data Retention
We retain personal data only for as long as necessary for the purposes for which it was collected, including website operation, account management, security, communication and compliance with legal obligations.
When determining the appropriate retention period, we consider:
- The type and sensitivity of the data
- The purpose for which the data was collected
- Whether the purpose can be achieved by other means
- Security and fraud-prevention requirements
- Applicable statutory retention periods
- The need to establish, exercise or defend legal claims
Once personal data is no longer required, it will be deleted or anonymized, unless further retention is permitted or required by law.
13. Your Data Protection Rights
Where the GDPR applies, you may have the following rights, subject to the applicable legal requirements and exceptions:
- Right of access: You may request information about whether and how we process your personal data and obtain a copy of that data.
- Right to rectification: You may request correction of inaccurate or incomplete personal data.
- Right to erasure: You may request deletion of your personal data where the legal requirements are met.
- Right to restriction: You may request that processing of your personal data be restricted.
- Right to data portability: You may receive certain personal data in a structured, commonly used and machine-readable format and request its transmission to another controller where legally applicable.
- Right to object: You may object to processing based on our legitimate interests for reasons arising from your particular situation.
- Right to withdraw consent: Where processing is based on consent, you may withdraw your consent at any time. Withdrawal does not affect the lawfulness of processing carried out before withdrawal.
- Right to lodge a complaint: You may lodge a complaint with a competent data-protection supervisory authority, particularly in the country of your habitual residence, place of work or the place of the alleged infringement.
To exercise your rights, contact: info@reviewsales.io.
We may request information necessary to verify your identity before processing a privacy request.
14. Objection to Processing Based on Legitimate Interests
Where we process your personal data on the basis of Article 6(1)(f) GDPR, you have the right to object to the processing at any time for reasons arising from your particular situation.
If you object, we will stop processing the relevant personal data unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights and freedoms, or the processing is necessary for the establishment, exercise or defence of legal claims.
15. Automated Decision-Making
We do not currently use personal data collected through this website to make decisions based solely on automated processing that produce legal effects or similarly significantly affect you.
16. Data Security
We use appropriate technical and organizational measures designed to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorized disclosure or unauthorized access.
These measures may include encrypted connections, access restrictions, password protection, security monitoring, software updates, backups and firewall protection.
No method of transmission or storage is completely secure. We therefore cannot guarantee absolute security.
17. Links to Third-Party Websites
This website may contain links to websites operated by third parties. We do not control the privacy practices or content of external websites. When you follow an external link, the privacy policy of the respective website applies.
18. Changes to this Privacy Policy
We may update this Privacy Policy where necessary to reflect changes to the website, our services, legal requirements or the technologies we use.
The current version is published on this page. The date shown at the top indicates when the Privacy Policy was last updated.
