Data Privacy Policy
Lifelong Foundation (hereinafter referred to as "we," "us," or "our") is dedicated to safeguarding the privacy and security of personal information entrusted to us by users of our website, services, and programs. This Data Privacy Policy (the "Policy") outlines our practices regarding the collection, use, storage, sharing, and protection of your personal data. By accessing or using our website at www.lifelongfoundation.org or engaging with our services, you acknowledge and consent to the practices described herein, subject to applicable laws. 1. Scope and Application This Policy applies to all personal and non-personal information collected through our website, online forms, donation platforms, event registrations, email communications, and any other services provided by Lifelong Foundation. It governs interactions with individuals, including donors, volunteers, subscribers, and website visitors, and complies with applicable data protection laws, including but not limited to the General Data Protection Regulation (GDPR), the Data Protection Act of Kenya (2019), and other relevant regulations. 2. Information We Collect We collect information to provide, improve, and personalize our services. The types of information we collect include:
● Personal Information: Data that can identify you, such as:
○ Full name, email address, phone number, and mailing address provided during donations, event registrations, or newsletter subscriptions.
○ Payment information (e.g., credit card details or bank account information) processed securely through third-party payment processors.
○ Demographic information, such as age or occupation, provided voluntarily through surveys or program applications.
● Non-Personal Information: Anonymous or aggregated data, including:
○ Technical information, such as IP address, browser type, operating system, device type, and geolocation data, collected via cookies, web beacons, or server logs.
○ Website usage data, including pages visited, time spent on the site, and referral sources, to analyze user behavior and improve our services.
● Voluntary Information: Feedback, survey responses, or other communications you provide when interacting with our website, staff, or programs. We collect only the information necessary for the purposes outlined in this Policy and strive to minimize data collection where possible. 3. How We Collect Information We collect information through the following methods:
● Direct Interactions: When you submit information via online forms, donation portals, event registrations, or direct communications (e.g., emails or phone calls).
● Automated Technologies: Through cookies, pixel tags, and analytics tools that track website usage and performance.
● Third Parties: From trusted partners, such as payment processors or analytics providers, who provide services on our behalf, or from publicly available sources where permitted by law. 4. Purposes of Data Use We use your information for the following legitimate purposes:
● Service Delivery: To process donations, issue tax receipts, register participants for events, or deliver newsletters and updates.
● Communication: To respond to inquiries, provide customer support, or send promotional materials (with your consent).
● Website Improvement: To analyze user behavior, optimize website functionality, and enhance user experience.
● Legal Compliance: To meet legal, regulatory, or tax obligations, such as reporting to governmental authorities.
● Security: To detect, prevent, and address fraud, unauthorized access, or other security threats to our website and services.
● Program Development: To evaluate the effectiveness of our programs and tailor our services to better meet community needs. 5. Legal Basis for Processing We process personal data based on the following legal grounds, where applicable:
● Consent: When you explicitly agree to data processing, such as subscribing to our newsletter.
● Contractual Necessity: To fulfill obligations related to donations, event registrations, or other agreements.
● Legal Obligation: To comply with applicable laws or regulations.
● Legitimate Interests: For purposes such as improving our website, ensuring security, or conducting internal analytics, provided these interests do not override your rights. 6. Data Sharing and Disclosure We do not sell, rent, or trade your personal information. We may share your data under the following circumstances:
● Service Providers: With third-party vendors who perform services on our behalf, such as payment processing, email delivery, or website analytics. These providers are contractually obligated to protect your data and use it only for the specified purpose.
● Collaborators: With trusted partners or co-organizers for joint programs or events, only with your explicit consent.
● Legal Requirements: When required by law, court order, or government authority, or to protect the rights, property, or safety of Lifelong Foundation, our users, or the public.
● Business Transfers: In the event of a merger, acquisition, or asset sale, your data may be transferred to a successor entity, subject to equivalent privacy protections. 7. Cookies and Tracking Technologies Our website employs cookies, web beacons, and similar technologies to enhance functionality and user experience. Cookies are categorized as follows:
● Essential Cookies: Necessary for website operation, such as maintaining user sessions or enabling secure transactions.
● Analytics Cookies: Used to collect aggregated data on website usage, helping us understand user preferences and improve our services.
● Marketing Cookies: Used to deliver personalized content or advertisements, subject to your consent. You may manage cookie preferences through our cookie consent tool or your browser settings. Disabling cookies may limit certain website functionalities. For more information, please review our Cookie Policy. 8. Data Security We implement robust technical and organizational measures to protect your data, including encryption, secure servers, access controls, and regular security assessments. Despite these efforts, no system is impervious to all risks, and we cannot guarantee absolute security. In the event of a data breach, we will notify affected individuals and authorities as required by law.
9. Your Data Protection Rights Depending on your jurisdiction, you may have the following rights regarding your personal data:
● Right to Access: Obtain a copy of the personal data we hold about you.
● Right to Rectification: Correct inaccurate or incomplete personal data.
● Right to Erasure: Request deletion of your data, subject to legal or contractual obligations.
● Right to Restrict Processing: Limit how we process your data under certain circumstances.
● Right to Object: Object to data processing for marketing or other purposes based on legitimate interests.
● Right to Data Portability: Receive your data in a structured, commonly used, and machine-readable format.
● Right to Opt-Out: Unsubscribe from marketing communications at any time via the unsubscribe link in emails or by contacting us.
● Right to Non-Discrimination: We will not discriminate against you for exercising your rights. To exercise these rights, please submit a request to [email protected]. We will respond within the timeframes required by law (typically 30 days) and may require identity verification to protect your data. 10. Data Retention We retain personal data only for as long as necessary to fulfill the purposes outlined in this Policy or to comply with legal obligations. For example:
● Donation records are retained for seven years to comply with tax regulations.
● Newsletter subscription data is retained until you unsubscribe.
● Website analytics data is retained in aggregated form for up to 24 months.
Upon expiration of the retention period, we securely delete or anonymize your data. 11. International Data Transfers Lifelong Foundation is headquartered in Kenya, and your data may be processed or stored on servers located in Kenya or other jurisdictions. For users in the European Economic Area (EEA), United Kingdom, or other regions with strict data transfer regulations, we ensure compliance through Standard Contractual Clauses or other approved mechanisms to safeguard your data during international transfers. 12. Third-Party Links and Services Our website may include links to third-party websites, such as social media platforms or partner organizations. These sites operate under their own privacy policies, and we are not responsible for their practices. We recommend reviewing the privacy policies of any third-party sites you visit. 13. Children’s Privacy Our website and services are not directed to individuals under the age of 16. We do not knowingly collect personal information from children under 16 without verifiable parental consent. If we become aware that we have inadvertently collected such data, we will take steps to delete it promptly. Please contact us if you believe we have collected information from a child under 16. 14. Changes to This Policy We may revise this Policy periodically to reflect changes in our practices, legal requirements, or operational needs. Updates will be posted on this page with a revised
effective date. For significant changes, we may provide additional notice, such as via email or a website announcement. We encourage you to review this Policy regularly to stay informed about how we protect your data. 15. Contact Information For questions, concerns, or requests related to this Policy or our data practices, please contact our Data Protection Officer at: Lifelong Foundation Data Protection Officer Email: [email protected] Phone: +254746168835 Address: 1692, GPO Nairobi, Unicity Mall, Next to Equity Bank If you believe your data rights have been violated, you may lodge a complaint