|
Demandware Privacy Policy Last Updated March 21, 2011 The following policy describes the privacy practices for Demandware, Inc. ("Demandware"). |
![]() |
![]() |
Demandware respects the privacy of our customers, partners, employees, Web site visitors, and job applicants. We believe it is important for you to understand the type of information we collect about you and how that information is used. We recognize the need for appropriate safeguards and management of personal information you provide to us ("Personal Information"). This Privacy Policy sets forth the privacy principles Demandware follows with respect to your Personal Information.
Demandware has been awarded TRUSTe's Privacy Seal signifying that this privacy policy and practices have been reviewed by TRUSTe for compliance with TRUSTe's program requirements including transparency, accountability and choice regarding the collection and use of your personal information. TRUSTe's mission, as an independent third party, is to accelerate online trust among consumers and organizations globally through its leading privacy trustmark and innovative trust solutions. This privacy statement covers the Web sites www.demandware.com, www.demandware.de and www.demandware.fr (the "Corporate Sites") as well as Demandware's eCommerce services (the "Demandware eCommerce Services") we make available to our customers. Because we want to demonstrate our commitment to your privacy, we have agreed to disclose our information practices and have our privacy practices reviewed for compliance by TRUSTe.
If you have questions or concerns regarding this Privacy Policy, you should first contact us by email at privacy@demandware.com. If you are not satisfied with our response you can contact TRUSTe here.
The TRUSTe program only covers information that is collected through our Corporate Sites, and does not cover information that may be collected through any software downloaded from our sites.
Safe Harbor
Demandware participates in the EU Safe Harbor Privacy Framework as set forth by the United States Department of Commerce in consultation with the European Commission's Directive on Data Protection on the transfer of Personal Information from European Union member countries to the United States. More information about the U.S. Department of Commerce's Safe Harbor program can be found at http://www.export.gov/safeharbor. As part of our participation in the Safe Harbor, we have agreed to TRUSTe dispute resolution for disputes relating to our compliance with the Safe Harbor Privacy Framework. If you have any complaints regarding our compliance with the Safe Harbor you should first contact us (as provided above). If contacting us does not resolve your complaint, you may raise your complaint with TRUSTe by Internet at http://watchdog.truste.com/pvr.php?page=complaint&url, fax at 415-520-3420, or mail at Watchdog Complaints, TRUSTe, 55 2nd Street, 2nd Floor, San Francisco, CA, USA 94105. If you are faxing or mailing TRUSTe to lodge a complaint, you must include the following information: our name, the alleged privacy violation, your contact information, and whether you would like the particulars of your complaint shared with us.
For information about TRUSTe or the operation of TRUSTe's dispute resolution process, see http://watchdog.truste.com/pvr.php?page=complaint&url or request this information from TRUSTe at any of the addresses listed above. The TRUSTe dispute resolution process shall be conducted in English. For human resources data we will cooperate with data protection authorities in relevant jurisdictions. Any questions, comments or complaints about the data practices (including without limitation compliance with data privacy principles of notice, choice, onward transfer, access, security, data integrity, or enforcement) of one or our eCommerce Services customers or a partners for whom Demandware processes data should be addressed to that customer or partner.
Scope
This Privacy Policy applies to all Personal Information received by Demandware via our Corporate Sites as well as via our eCommerce Services. Please see the "Demandware eCommerce Services" section below for specific privacy practices regarding our eCommerce Services.
Notice
How Personal Information is Collected
Web Visitors
On our Corporate Sites, we collect the following personally identifiable information ("PII") from prospective clients, prospective business partners, and job applicants: Name, email, phone number and address. We only collect this information for the purpose of contacting individuals who have identified themselves as prospects or applicants for our activities, services and job openings. However, we do share this information with third party service providers for email processing and related services. These third parties are prohibited from using your PII for any other purpose.
Web Site / Cookies
In order to improve the content and format of our site, Demandware uses Web site tracking software to automatically capture technical information that is then stored in our servers' log files. This information may include, but is not limited to, user domain, the type of Internet browser being used, which of our Web pages is visited, and the amount of time spent on our site.
In addition, some of Demandware's Web pages may contain "cookies." A cookie is a small amount of data which our Web site stores on your computer, and which we can later retrieve. The cookie cannot be read by a site other than ours. We use cookies for a number of administrative purposes; for example, to store your preferences for certain kinds of information. Our cookies are tied to PII to store your information and make it easier for you to use our site. We will not use the PII tied to our cookies to contact you directly. You can monitor our use of cookies on your computer by setting your Web browser to inform you when cookies are set, or you can prevent the cookies from being set entirely. The "help" portion of the toolbar on most browsers will tell you how to prevent your browser from accepting new cookies, how to have the browser notify you when you receive a new cookie, or how to disable cookies altogether. Please understand that if you disable the use of cookies on your computer, you may be unable to access certain portions or services in our applications and those of our customers.
Certain contracted third-parties use cookies and clear GIFs on our sites, which allow them to recognize a user's cookie when a user visits our sites. The information that these third-parties collect and share through this technology is only collected in the aggregate and not personally identifiable. We have no access to or control over these cookies. This privacy statement covers the use of cookies by Demandware only and does not cover the use of cookies by any advertisers.
Choice
Use of Your Personal Information
We use your Personal Information to provide you with information about Demandware and its products and services, including but not limited to webinars, newsletters, and job openings. You have the option to opt-out of any secondary communications such as promotional communications by clicking on "unsubscribe", "profile center", or "unsubscribe" on the bottom of any promotional emails.
We do not share, sell, rent or trade your Personal Information to third parties for promotional purposes. However, we may disclose your Personal Information if we are required to do so by law or we in good faith believe that such action is necessary to (1) comply with the law or with legal process including court orders or subpoenas; (2) protect and defend our rights and property; (3) protect against misuse or unauthorized use of our Web sites or eCommerce Services; or (4) protect the personal safety or property of our users or the public (among other things, this means that if you provide false information or attempt to pose as someone else, information about you may be disclosed as part of any investigation into your actions).
Other than as stated in this Privacy Policy, we will endeavor not to release your Personal Information to unknown or unaffiliated third parties, and we will not cross-reference your Personal Information with that of any other customer or entity.
Links to Non-Demandware Web Sites and Third Parties
Demandware's Web sites may contain links to third-party sites for your convenience and/or information. If you access those links, you will leave Demandware's Web site and be re-directed to a third-party site. Demandware does not control those sites or the privacy practices of those third-party sites, which may differ from Demandware's privacy practices. We do not endorse or make any representations about third-party Web sites, and the personal data you choose to provide to third-party Web sites is not covered by this Privacy Policy. We encourage you to review the privacy policy of any Web site or company before submitting your Personal Information to them.
Access
Demandware will take reasonable steps to ensure that your Personal Information is accurate, complete and current to its intended use. We provide individuals with reasonable access to the Personal Information that they provide to us, as well as the ability to review and correct such information. If you wish to access the personal information you have submitted to our Corporate Sites for the purpose of updating or deleting it, you may do so by sending us an email at privacy@demandware.com.
To protect your privacy and security, we also take reasonable steps to verify your identity, before granting access to your Personal Information. In addition, we may limit or deny access to Personal Information where providing such access would be unreasonably burdensome or expensive in the circumstances, or as otherwise permitted by the Safe Harbor Framework. We will respond to your request for access to your Personal Information within 30 days of the original request.
Security
To prevent unauthorized access or disclosure, to maintain data accuracy, and to allow only the appropriate use of your Personal Information, we utilize industry standard physical, technical, and administrative controls and procedures to safeguard the information we collect. No method of transmission over the Internet, or method of electronic storage, is 100% secure, however. Therefore, we cannot guarantee its absolute security.
Testimonials
We will on occasion post customer testimonials on our Corporate Sites. We place the testimonials here for the benefit of our prospective clients in order to provide them with feedback from our previous clients for marketing purposes. We receive expressed consent from the individuals whose Personal Information is posted along with the testimonials before it is posted to our Web sites.
Blogs, Forums and Directories
We provide the Demandware Forums and Blogs as a means for our customers and other users of our Web sites and eCommerce Services to communicate. If you use a bulletin board, blog, or chat room on this Web site, you should be aware that any personally identifiable information you submit there can be read, collected, or used by other users of these forums, and could be used to send you unsolicited messages. We are not responsible for the PII you choose to submit in these forums. To request removal of your personal information from our blog or community forum, contact us at privacy@demandware.com. In some cases, we may not be able to remove your personal information, in which case we will let you know if we are unable to do so and why.
Tell a Friend Feature
If you choose to use our referral service to tell a friend about a job, we will ask you for your friend's name and email address. We will automatically send your friend a one-time email with information about this job posting. Demandware does not store this information.
Data Integrity
As set forth above, Demandware will take reasonable steps to ensure that Personal Information is accurate, complete, and current to its intended use. Demandware will only use Personal Information in ways that are compatible with the purposes for which it was collected or subsequently authorized by you.
Enforcement and Verification
Demandware regularly reviews its compliance with this Privacy Policy. Please feel free to direct any questions or concerns regarding this Privacy Policy or Demandware's treatment of Personal Information by contacting us as provided herein.
Contact Information
At any time you may contact Demandware with questions or concerns about this Privacy Policy at privacy@demandware.com.
Written responses may also be submitted to:
Demandware, Inc
Attention: General Counsel
5 Wall Street
Burlington, MA 01803
Changes to This Privacy Policy
The practices described in this Privacy Policy are the current Personal Information protection policies as of March 21, 2011. Demandware, Inc. reserves the right to modify or amend this Privacy Policy at any time consistent with the requirements of the Safe Harbor Framework. If we decide to change our practices regarding what PII we collect, how we use it, and under what circumstances, if any, we disclose it, we will post a prominent notice on our Corporate Sites 30 calendar days prior to implementing the change.
Demandware eCommerce Services
Demandware provides our customers with a hosted eCommerce platform and application suite of services that facilitate functionality to support the development and management of an eCommerce website. The platform and application suite is not a part of our corporate web site. Demandware serves as a Data Processor for our customers who use these services. More specifically, Demandware does not own the information that is submitted to customer websites. The information that is submitted to our customers' websites will be subject to our customers' privacy policy. The following information discloses how information is submitted to these websites and how Demandware will handle the information for our customers who are the owners of this data.
Web Visitors (eCommerce Customers)
Demandware processes Personal Information about a visitor to our customers' website ("Visitors") only when the Visitor chooses to provide such information. On certain pages, for example, a Visitor may be required to provide his/her personal information such as his/her name, address, phone number and e-mail address in order to complete a transaction or perform a requested service.
Employees
Demandware employees may process Personal Information from our customers' employees for, among other things, application access and authentication.
Onward Transfer
Sharing of Visitors' Personal Information
As part of Demandware's services we may contract with third-party providers to perform certain functions on behalf of our customers to enhance our existing product and service offerings. Examples include providing product and service support.
These third parties may have access to Visitors' Personal Information only to the extent necessary to permit them to do their jobs, however, they are bound by confidentiality agreements or similar contractual restrictions before any information is provided to them, and they are restricted from using the information for other purposes.
Web Site / Cookies
In order to improve the content and format of our platform and applications, our eCommerce Services use Web site tracking software to automatically capture technical information that is then stored in our servers' log files. This information may include, but is not limited to, user domain, the type of Internet browser being used, which of our customers' Web pages are visited, and the amount of time spent on our customers' sites.
Our customers' website pages may contain "cookies." A cookie is a small amount of data which a Web site stores on a Visitor's computer, and which we or our customers can later retrieve. The cookie cannot be read by a site other than our customer's. We and our customers use cookies for a number of administrative purposes; for example, to store Visitors' preferences for certain kinds of information. We will not write to any cookie information that will allow anyone to contact Visitor's via telephone, e-mail, or any other means. Any additional use of cookies by our customers will be governed by our customers' privacy policies. Visitors can monitor use of cookies on their computers by setting their Web browser to inform them when cookies are set, or Visitors can prevent the cookies from being set entirely. The "help" portion of the toolbar on most browsers explains how to prevent the browser from accepting new cookies, how to have the browser provide notice when a new cookie is received, or how to disable cookies altogether. Please understand that if a Visitor disables the use of cookies, the Visitor may be unable to access certain portions or services in our applications or those of our customers.
Security
To protect the confidentiality, integrity, and availability of Visitors' Personal Information that is processed by our services, Demandware utilizes a variety of industry standard physical and logical access controls, firewalls, intrusion detection/prevention systems, network and database monitoring, and backup systems. We use encrypted sessions when processing or transferring sensitive data through platform and applications.
We limit access to Visitors' Personal Information and data to those persons who have a specific business purpose for maintaining and processing such information. Demandware employees who have been granted physical access to a Visitor's Personal Information will be made aware of their responsibilities to protect the confidentiality, integrity, and availability of that information and have been provided training and instruction on how to do so.
Access
Demandware will support our customers in taking reasonable steps to ensure that Visitor's Personal Information is accurate, complete, and current to its intended use. We provide our customers with reasonable access to the Personal Information that they provide to us, as well as the ability to review, correct or request the deletion of such information.
Links to Non-Demandware Web Sites and Third Parties
Demandware Customer Web sites may contain links to third-party sites for Visitors' convenience and/or information. If a Visitor accesses those links, he/she will leave the Demandware customer's website and be re-directed to a third-party site. Demandware does not control those sites or the privacy practices of those third-party sites, which may differ from Demandware's privacy practices and those of our customer. We do not endorse or make any representations about third-party Web sites, and the personal data Visitors choose to provide to third-party Web sites is not covered by this Privacy Policy. We encourage Visitors to review the privacy policy of any Web site or company before submitting their Personal Information to them.

