Effective Date of Current Policy: April 3rd, 2019
Protecting Consumer Privacy is a core tenet of our mission at Zoro. We believe consumers should be able to enjoy the web without worrying about their privacy, safety or security.
For Zoro, that means not only building tools to help consumers protect their privacy against other companies, but also considering your privacy in every decision we make internally. We consider privacy in every decision we make from structuring our own business model to designing our technology. We also strive to offer transparency in everything we do.
While privacy policies are inevitably dense and filled with legalese, we wanted to pull out a few important elements that form the backbone of how our policy operates.
You are not the product: Zoro never sells or monetizes your data to a third party. Period. Our business model has alway been simple. We charge a subscription fee for our premium products/services. We made a decision early on to never use the data of our users to build or grow another revenue stream, especially one our users can’t see. Since we do not monetize our data, there is no incentive to build rich data profiles on our users or abuse your data in anyway. Our goal is to protect your data, not give it away.
We protect your data at all costs: Zoro takes every precaution to limit the data we do have on users and to keep that data as secure as possible. While in an ideal world we could limit that data to zero, we need some data for our product to actually function and provide you with value. For example, we need to scan your social media posts for our “clean up social media” feature to work. That said, we only use/store data deemed absolutely necessary for a function to work for only as long as we need it to fulfill those functions. Here are some of the measures we take to safeguard your data:
Technical measures: Any information we store is transmitted in AES 256-bit end-to-end encryption format using SSL technology, and is deleted once it is no longer needed. We use up-to-date software and operating systems and firewall protection.
Administrative measures: Access to your PII is limited to authorized personnel who have a legitimate need to access it based on their job descriptions. These personnel are properly vetted, background checked and trained and given only as much access control as necessary to do their jobs.
Physical Measures: All servers are kept in a secure location. Access to PII is not permitted via the Internet except using an encrypted virtual private network.
Cookies: We strive to use only the absolute minimum amount of cookies required to make your experience seamless. For example, while many sites store lots of unnecessary cookies that track behavior, we only store ones that are critical to your experience, such as ones that allow you to return to Zoro without having to log-in every single time. And if you ever want to clear your cookies (from or Zoro or from any other company), here’s how to do it.
YOU are in control: You always have the right to request what information we have about you, opt out of any marketing messaging in your account settings, or delete your account. You can also contact us by emailing us, calling us at (646) 863-8226, or live-chatting us (just click the “Live Chat” button on the bottom of your screen). While laws like CCPA and GDPR offer these types of rights to residents of certain areas, we offer them to all of our users. To learn more about the information we collect, how we use it, etc you can read the rest of our policy.
Here are links that will allow you to opt out tracking done by our various partners on this site. Their cookies and related tracking elements are NOT part of our private VPN servers and will never ever be placed there for tracking by us.
Google (Advertising and Analytics)
Facebook (Advertising and Analytics)
3. TRANSPARENCY/NOTICE—TYPES OF PERSONAL INFORMATION WE COLLECT AND HOW WE USE IT
The types of Personal Information we may collect (directly from you or from Third-Party sources) and our privacy practices depend on the nature of the relationship you have with Zoro and the requirements of applicable law. Some of the ways that Zoro may collect Personal Information include:
You may provide Personal Information directly to Zoro through interacting with the Services, participating in surveys, during events such as sweepstakes, and requesting Services, or information.
As you navigate the Services, certain passive information may also be collected about your visit, including through cookies and similar technologies as described below.
We endeavor to collect only that information which is relevant for the purposes of Processing. Below are the ways we collect Personal Information and how we use it.
3.1 TYPES OF PERSONAL INFORMATION WE COLLECT
Zoro collects Personal Information regarding its current, prospective, and former clients, customers, users, visitors, and guests (collectively “Individuals”).
Information You Provide Directly to Us. When you use the Services or engage in certain activities, such as registering for an account with Zoro, responding to surveys, requesting Services or information, or contacting us directly, we may ask you to provide some or all of the following types of information:
Communications with Us. We may collect Personal Information from you such as name, email address, phone number or mailing address when you contact us or request information about our Services, register for a newsletter or loyalty program, request to receive customer or technical support, and a password when you create an account. We may further collect Personal Information from you such as payment and billing information when you register for a premium Service.
Surveys. From time to time, we may contact you to participate in online surveys. If you do decide to participate, you may be asked to provide certain information which may include Personal Information. All information collected from your participation in our surveys is provided by you voluntarily. We may use such information to improve our products, Sites and/or services and in any manner consistent with the policies provided herein.
Posting on the Site. Zoro may offer publicly accessible pages, blogs, private messages, or community forums. You should be aware that, when you disclose information about yourself in or on Zoro’s pages, blogs, private messages, and community forums, the Site will collect the information you provide in such submissions, including any Personal Information. If you choose to submit content to any public area of the Site, such content will be considered “public” and will not be subject to the privacy protections set forth herein.
Registration for Sweepstakes or Contests. Occasionally, Zoro may run sweepstakes and contests. We ask those who enter in the sweepstakes or contests to provide contact information (e.g., an e-mail address). If you participate in a sweepstakes or contest, your contact information may be used to reach you about the sweepstakes or contest, and for other promotional, marketing and business purposes. All sweepstakes/contests entry forms will provide a way for participants to opt-out of any communications that are not related to awarding prizes.
Automatic Data Collection. We may collect certain information automatically through our Services or other methods of web analysis, such as your Internet protocol (IP) address, cookie identifiers, ISP or mobile carrier, mobile advertising identifiers, MAC address, IMEI, Advertiser ID, and other device identifiers and features that are automatically assigned to your computer or device when you access the Internet, browser type and add-ons and language, proxy server, URL, geo-location information, hardware type, operating system, Internet service provider, pages that you visit before and after using the Services, the date and time of your visit, the amount of time you spend on each page, information about the links you click and pages you view within the Services, and other actions taken through use of the Services such as preferences.
Information from Other Sources. We may receive information about you from other sources, including through an entity that purchases Services that you have access to use, such as your employer, school, or university, or Third-Party services and organizations to supplement information provided by you. For example, if you access our Services through a Third-Party application, such as an App Store or a Social Networking Site (“SNS”) (e.g., Facebook), we may collect information about you from that Third-Party application that you have made public via your privacy settings or have otherwise allowed us access to. Information we collect through App Stores or SNS accounts may include your name, your SNS user identification number, your SNS user name, location, sex, birth date, email, profile picture, your posts or comments, images you have posted and your contacts on the SNS. This supplemental information allows us to verify information that you have provided to Zoro and to enhance our ability to provide you with information about our business, products, and Services.
3.2 HOW ZORO USES YOUR INFORMATION
We acquire, hold, use, and Process Personal Information about Individuals for a variety of business purposes, including:
To Provide Products, Services, or Information Requested. Zoro may use information about you to fulfill requests for products, Services, or information, including information about potential or future Services, including to:
Generally manage Individual information and accounts;
Respond to questions, comments, and other requests;
Provide access to certain areas, functionalities, and features of Zoro’s Services;
Contact you to answer requests for customer support or technical support;
Allow you to register for events; or
Investigate, respond to and resolve complaints and Service issues (e.g., bugs).
Administrative Purposes. Zoro may use Personal Information about you for its administrative purposes, including to:
Measure interest in Zoro’s Services;
Develop new products and Services;
Ensure internal quality control;
Verify Individual identity;
Communicate about Individual accounts and activities on Zoro’s Services and systems, and, in Zoro’s discretion, changes to any Zoro policy;
Send email to the email address you provide to us to verify your account and for informational and operational purposes, such as account management, customer service, or system maintenance;
Process payment for products or services purchased;
Process applications and transactions;
Prevent potentially prohibited or illegal activities; or
Enforce our Terms.
Sharing Content with Friends or Colleagues. Zoro’s Services may offer various tools and functionalities. Our referral services may allow you to forward or share certain content with a friend or colleague, such as an email inviting your friend to use our Services. Email addresses that you may provide for a friend or colleague will be used to send your friend or colleague the content or link you request, but will not be collected or otherwise used by Zoro or any other Third Parties for any other purpose.
Other Uses. Zoro may use Personal Information for which we have a legitimate interest, such as anti-fraud protection, security and investigations, or any other purpose disclosed to you at the time you provide Personal Information or with your consent.
3.3 COOKIES, PIXEL TAGS/WEB BEACONS, ANALYTICS INFORMATION, AND INTEREST-BASED ADVERTISING
Pixel Tags/Web Beacons. A pixel tag (also known as a web beacon) is a piece of code embedded on the Site that collects information about users’ engagement on that web page. The use of a pixel allows us to record, for example, that a user has visited a particular web page or clicked on a particular advertisement.
Analytics. We may also use Google Analytics and Google Analytics Demographics and Interest Reporting or other analytics platforms to collect information regarding visitor behavior and visitor demographics on some of our Services, and to develop website content. This analytics data is not tied to any Personal Information. For more information about Google Analytics, please visit www.google.com/policies/privacy/partners/. You can opt out of Google’s collection and Processing of data generated by your use of the Services by going to http://tools.google.com/dlpage/gaoptout.
If you would like to opt-out of the Technologies we employ on our sites, services, applications, or tools, you may do so by blocking, deleting, or disabling them as your browser or device permits.
3.4 THIRD-PARTY WEBSITES, SOCIAL MEDIA PLATFORMS, AND SOFTWARE DEVELOPMENT KITS
The Site may contain links to other websites and other websites may reference or link to our Site or other Services. These other domains and websites are not controlled by us, and Zoro does not endorse or make any representations about Third-Party websites or social media platforms. We encourage our users to read the privacy policies of each and every website and application with which they interact. We do not endorse, screen or approve, and are not responsible for the privacy practices or content of such other websites or applications. Visiting these other websites or applications is at your own risk.
Zoro’s Services may include publicly accessible blogs, community forums, or private messaging features. The Site and our other Services may also contain links and interactive features with various social media platforms (e.g., widgets). If you already use these platforms, their cookies may be set on your device when using our Site or other Services. You should be aware that Personal Information which you voluntarily include and transmit online in a publicly accessible blog, chat room, social media platform or otherwise online, or that you share in an open forum may be viewed and used by others without any restrictions. We are unable to control such uses of your information when interacting with a social media platform, and by using such services you assume the risk that the Personal Information provided by you may be viewed and used by third parties for any number of purposes.
We may use Third-Party software development kits (“SDKs”) and/or application programming interfaces (“APIs”) as part of the functionality of our Services.
Zoro's use and transfer to any other app of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements.
3.5 THIRD-PARTY PAYMENT PROCESSING
We may sell virtual items or merchandise through our Services. When you make purchases through the Services, we process your payments through a Third-Party application, including the Apple App Store, Google Play App Store, Amazon App Store (together with any similar applications, “App Stores”) and Social Networking Sites such as Facebook. The Third-Party application may collect certain financial information from you to process a payment on behalf of Zoro, including your name, email address, address and other billing information.
4. ONWARD TRANSFER—ZORO MAY DISCLOSE YOUR INFORMATION
4.1 INFORMATION WE SHARE
We Use Vendors and Service Providers. We may share any information we receive with vendors and service providers. The types of service providers (processors) to whom we entrust Personal Information include (but are not limited to) service providers for (i) provision of IT and related services, including for maintenance; (ii) provision of information and services you request; (iii) payment processing; (iv) customer service activities; (v) in connection with the provision of the Site; and (vi) analysis, audit, and fraud detection. Zoro has executed appropriate contracts with the service providers that prohibit them from using or sharing Personal Information except as necessary to perform the contracted services on our behalf or to comply with applicable legal requirements.
Displaying to Other Users. The content you post to the Site may be displayed on the Site. Other users of the Site may be able to see some information about you, such as your name if you submit a review. We are not responsible for privacy practices of the other users who will view and use the posted information.
Marketing – Interest-Based Advertising and Third Party Marketing. Through our Services, Zoro may allow Third-Party advertising partners to set tracking tools (e.g., cookies) to collect information regarding your activities (e.g., your IP address, page(s) visited, time of day). These advertising partners may use this information (and similar information collected from other websites) for purposes of delivering targeted advertisements to you when you visit non-Zoro related websites within their networks. This practice is commonly referred to as “interest-based advertising” or “online behavioral advertising. We may allow access to other data collected by the Site to facilitate transmittal of information that may be useful, relevant, valuable or otherwise of interest to you. If you prefer that we do not share your Personal Information with Third-Party advertising partners, you may opt-out of such sharing at no cost by following the instructions in Section 5 below. Please note that opting out will not remove advertising from the pages you visit; it will mean that the ads you see may not be matched to your interests.
Disclosures to Protect Us or Others (e.g., as Required by Law and Similar Disclosures). We may access, preserve, and disclose your Personal Information, other account information, and content if we believe doing so is required or appropriate to: (i) comply with law enforcement or national security requests and legal process, such as a court order or subpoena; (ii) respond to your requests; (iii) protect yours’, ours’ or others’ rights, property, or safety; (iv) to enforce Zoro policies or contracts; (v) to collect amounts owed to Zoro; (vi) when we believe disclosure is necessary or appropriate to prevent physical harm or financial loss or in connection with an investigation or prosecution of suspected or actual illegal activity; or (vii) if we, in good faith, believe that disclosure is otherwise necessary or advisable.
In addition, from time to time, server logs may be reviewed for security purposes – e.g., to detect unauthorized activity on the Services. In such cases, server log data containing IP addresses may be shared with law enforcement bodies in order that they may identify users in connection with their investigation of the unauthorized activities.
4.2 INTERNATIONAL DATA TRANSFERS
You agree that all Personal Information collected via or by Zoro may be transferred, Processed, and stored anywhere in the world, including but not limited to, the United States, the European Union, in the cloud, on our servers, on the servers of our affiliates or the servers of our service providers. Your Personal Information may be accessible to law enforcement or other authorities pursuant to a lawful request. By providing information to Zoro, you explicitly consent to the storage of your Personal Information in these locations.
5. OPT-OUT (RIGHT TO OBJECT TO PROCESSING)
5.2 EMAIL AND TELEPHONE COMMUNICATIONS
We maintain telephone “do-not-call” and “do-not-mail” lists as mandated by law. We process requests to be placed on do-not-mail, do-not-phone and do-not-contact lists within 60 days after receipt, or such shorter time as may be required by law.
5.3 MOBILE DEVICES
Zoro may occasionally send you push notifications through our mobile applications with updates and other notices that may be of interest to you. You may at any time opt-out from receiving these types of communications by changing the settings on your mobile device. Zoro may also collect location-based information if you use our mobile applications. You may opt-out of this collection by changing the settings on your mobile device.
5.4 “DO NOT TRACK”
Do Not Track (“DNT”) is a privacy preference that users can set in certain web browsers. DNT is a way for users to inform websites and services that they do not want certain information about their webpage visits collected over time and across websites or online services. Please note that we do not respond to or honor DNT signals or similar mechanisms transmitted by web browsers.
5.5 COOKIES AND INTEREST-BASED ADVERTISING
6. RIGHTS OF ACCESS, RECTIFICATION, ERASURE, AND RESTRICTION
Although Zoro makes good faith efforts to provide Individuals with access to their Personal Information, there may be circumstances in which Zoro is unable to provide access, including but not limited to: where the information contains legal privilege, would compromise others’ privacy or other legitimate rights, where the burden or expense of providing access would be disproportionate to the risks to the Individual’s privacy in the case in question or where it is commercially proprietary. If Zoro determines that access should be restricted in any particular instance, we will provide you with an explanation of why that determination has been made and a contact point for any further inquiries. To protect your privacy, Zoro will take commercially reasonable steps to verify your identity before granting access to or making any changes to your Personal Information.
7. DATA RETENTION
8. SECURITY OF YOUR INFORMATION
By using the Site or providing Personal Information to us, you agree that we may communicate with you electronically regarding security, privacy, and administrative issues relating to your use of the Site. If we learn of a security system’s breach, we may attempt to notify you electronically by posting a notice on the Site or sending an e-mail to you. You may have a legal right to receive this notice in writing.
9. INTERNATIONAL USERS
If you are visiting from the European Union or other regions with laws governing data collection and use, please note that you are agreeing to the transfer of your information to the United States and to Processing of your data globally. By providing your Personal Information, you consent to any transfer and Processing in accordance with this Policy.
10. CHILDREN’S PRIVACY
11. REDRESS/COMPLIANCE AND ACCOUNTABILITY
12. OTHER RIGHTS AND IMPORTANT INFORMATION
12.2 CALIFORNIA PRIVACY RIGHTS
California law permits users who are California residents to request and obtain from us once a year, free of charge, a list of the Third Parties to whom we have disclosed their Personal Information (if any) for their direct marketing purposes in the prior calendar year, as well as the type of Personal Information disclosed to those parties. Zoro does not share Personal Information with Third Parties for their own marketing purposes.
The following capitalized terms shall have the meanings herein as set forth below.
“Agent” means any Third Party that Processes Personal Information pursuant to the instructions of, and solely for, Zoro or to which Zoro discloses Personal Information for use on its behalf.
“Personal Information” is any information relating to an identified or identifiable natural person (“Individual”).
“Process” or “Processing” means any operation which is performed upon Personal Information, whether or not by automatic means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure, or destruction.
“Third Party” is any company, natural or legal person, public authority, agency, or body other than the Individual, Zoro or Zoro’s Agents.
14. REVISION HISTORY