What personal information do we collect from the people that visit our blog, website or app?
When asking for information or registering on our site, as appropriate, you may be asked to enter your name, email address, country of residence or other details to help you with your experience.
When do we collect information?
We collect information from you when you subscribe to a newsletter, fill out a form or enter information on our site. We also gather information when you provide us with feedback on our products or services
How do we use your information?
We may use the information we collect from you when you make an enquiry, register, make a booking, sign up for our newsletter, respond to a survey or marketing communication, surf the website, or use certain other site features in the following ways:
• To improve our website in order to better serve you.
• To allow us to better service you in responding to your customer service requests.
• To send periodic emails regarding your booking or other products and services.
How do we protect your information?
We do not use vulnerability scanning and/or scanning to PCI standards. We only provide articles and information. We never ask for credit card numbers.
Do we use ‘cookies’?
We use regular Malware Scanning.
Your personal information is contained behind secured networks and is only accessible by a limited number of persons who have special access rights to such systems, and are required to keep the information confidential. In addition, all sensitive/credit information you supply is encrypted via Secure Socket Layer (SSL) technology. We implement a variety of security measures when a user enters, submits, or accesses their information to maintain the safety of your personal information.
All transactions are processed through a gateway provider and are not stored or processed on our servers.
We do not sell, trade, or otherwise transfer to outside parties your Personally Identifiable Information.
We work not only in close cooperation with our Zambian Bank, but also selected two separate Payment Service Providers to be able to offer you a range of payment solutions. We have put a lot of effort into making our services available to a wide range of customers to access and pay for them in a myriad of ways.
Safety with Online payments
Following any link will open a new secure window. Before you enter any personal or payment information online, always check that the website is secure. This is indicated by a yellow padlock icon at the top of the screen and a website address that starts with ‘https://’ (the ‘s’ stands for ‘secure’). Always take the utmost care to be safe online.
Payment Card Industry Security Standards
As an ease of mind know that The Bush-Spa will never store or see any of your card details. So you are secure with us. It is for this very same reason we outsourced our online payment processing and we use a DPO hosted payment page as our payment processors.
Within our facility we use standard Point of Sales machines from our Zambian bank where PIN entry is required. The Bush-Spa does not come into any contact with your credit card information.
We have or will be implementing the following:
• Google Display Network Impression Reporting
• Demographics and Interests Reporting
We, along with third-party vendors such as Google use first-party cookies (such as the Google Analytics cookies) and third-party cookies (such as the DoubleClick cookie) or other third-party identifiers together to compile data regarding user interactions with ad impressions and other ad service functions as they relate to our website.
Opting out: Users can set preferences for how Google advertises to you using the Google Ad Settings page. Alternatively, you can opt out by visiting the Network Advertising Initiative Opt Out page or by using the Google Analytics Opt Out Browser add on.
California Online Privacy Protection Act
According to CalOPPA, we agree to the following:
* Users can visit our site anonymously.
* You can change your personal information by emailing us
How does our site handle Do Not Track signals?
We honour Do Not Track signals and Do Not Track, plant cookies, or use advertising when a Do Not Track (DNT) browser mechanism is in place. It’s also important to note that we do not allow third-party behavioural tracking
COPPA (Children Online Privacy Protection Act)
When it comes to the collection of personal information from children under the age of 13 years old, the Children’s Online Privacy Protection Act (COPPA) puts parents in control. The Federal Trade Commission, United States’ consumer protection agency, enforces the COPPA Rule, which spells out what operators of websites and online services must do to protect children’s privacy and safety online. The Bush-Spa does not specifically market to children under the age of 13 years old.
Fair Information Practices
The Fair Information Practices Principles form the backbone of privacy law and the concepts they include have played a significant role in the development of data protection laws around the globe. Understanding the Fair Information Practice Principles and how they should be implemented is critical to comply with the various privacy laws that protect personal information. In order to be in line with Fair Information Practices we will notify the users via on-site notifications within 1 business day.
We also agree to the Individual Redress Principle which requires that individuals have the right to legally pursue enforceable rights against data collectors and processors who fail to adhere to the law. This principle requires not only, that individuals have enforceable rights against data users, but also that individuals have recourse to courts or government agencies to investigate and/or prosecute non-compliance by data processors.
CAN SPAM Act
The CAN-SPAM Act is a law that sets the rules for commercial email, establishes requirements for commercial messages, gives recipients the right to have emails stopped from being sent to them, and spells out tough penalties for violations. We collect your email address in order to:
• Send information, respond to enquiries, and/or other requests or questions
• Market to our mailing list or continue to send emails to our clients after the original transaction has occurred.
To be in accordance with CANSPAM, we agree to the following:
• Not use false or misleading subjects or email addresses.
• Identify the message as an advertisement in some reasonable way.
• Include the physical address of our business or site headquarters.
• Monitor third-party email marketing services for compliance, if one is used.
• Honour opt-out/unsubscribe requests quickly.
• Allow users to unsubscribe by using the link at the bottom of each email.
If at any time you would like to unsubscribe from receiving future emails, you can email us or follow the link at the bottom of each marketing e-mail and we will promptly remove you from ALL correspondence.