Data Compliance
Last updated: January 12, 2025
1. Overview
At The Church of Prompt, we are committed to protecting your data and maintaining compliance with applicable data protection regulations. This document outlines our technical and organizational measures for data security and compliance.
2. Data Security Measures
Technical Safeguards
- Encryption in Transit: All data transmitted between your browser and our servers is encrypted using TLS 1.2 or higher
- Encryption at Rest: Sensitive data stored on our systems is encrypted using industry-standard encryption algorithms
- Access Controls: Role-based access controls limit data access to authorized personnel only
- Network Security: Firewalls, intrusion detection systems, and regular security monitoring protect our infrastructure
- Regular Updates: Systems and software are kept up-to-date with security patches
Organizational Safeguards
- Data handling procedures and security policies for all personnel
- Regular security awareness training
- Incident response procedures
- Periodic security assessments and reviews
3. Data Processing
Data Minimization
We only collect and process data that is necessary for providing our services. We do not collect excessive or unnecessary personal information.
Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, or as required by law. When data is no longer needed, it is securely deleted or anonymized.
Third-Party Processors
When we engage third-party service providers to process data on our behalf, we ensure they maintain appropriate security measures and comply with applicable data protection requirements.
4. GDPR Compliance
For users in the European Economic Area (EEA), we comply with the General Data Protection Regulation (GDPR). This includes:
- Lawful basis for processing personal data
- Transparent information about data processing
- Honoring data subject rights (access, rectification, erasure, portability)
- Data Protection Impact Assessments where required
- Appropriate safeguards for international data transfers
5. CCPA Compliance
For California residents, we comply with the California Consumer Privacy Act (CCPA). This includes:
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt-out of sale of personal information
- Non-discrimination for exercising privacy rights
We do not sell personal information to third parties.
6. Incident Response
In the event of a data breach or security incident:
- We will promptly investigate and take steps to contain the incident
- Affected individuals will be notified as required by applicable law
- Relevant regulatory authorities will be notified where required
- We will document the incident and implement measures to prevent recurrence
7. Data Subject Requests
To exercise your data protection rights or submit a data-related request, please contact us at:
Hasher Technologies LLC155 Cherokee Place #1109
Cartersville, GA 30121
Email: contact@thechurchofprompt.com
We will respond to valid requests within the timeframes required by applicable law (typically 30 days for GDPR requests and 45 days for CCPA requests).
8. Updates to This Document
We may update this Data Compliance document periodically to reflect changes in our practices or regulatory requirements. Material changes will be communicated through appropriate channels.