Who we are
Our website address is https://openworldeng.com. You can contact us via email at info@openworldeng.com or telephone at (+57) 323 438 9426.
Scope
This Privacy Policy sets out what we will do with any personal information we collect from or about you, or that you provide to us, when you use our website and/or it’s services.
This Privacy Policy applies to the processing by us of personal information (defined below) relating to you, being a user who accesses and/or uses our website and/or it’s services.
What personal information we collect and why we collect it
Personal Information we collect may include your first name and last name, contact details (e.g. your billing address, email address and/or phone number), profile picture, biographical information, your level of English, a unique payment identifier and a payment provider identifier.
We may collect information such as your IP address, unique device identifier, the type of device used to access our Website including the hardware model and settings, operating system type and version, browser language, system activity, and crashes.
We collect your personal information when your register on our website, access the content and/or services on our website or send us an enquiry via our contact form.
For the purposes of processing recurring subscription payments, we store the your name, billing address, email address, phone number and credit card/payment details.
We use the information we collect to provide, maintain and improve our website, to provide current, and develop new, services, and to protect us, our services and our users.
We may use your personal information to retain and make available to you information on our website, to create your user account where applicable and ensure that it doesn’t duplicate an existing user account on our website and to establish and verify your identity on our website. We may use your personal information to fulfil your requests for certain services and to diagnose and deal with technical issues and user support queries and other user queries. We may also use your personal information to detect, prevent or deal with actual or alleged fraud, security or the abuse, misuse or unauthorised use of our website. Your personal information may also be used for customer relations.
When visitors leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.
An anonymised string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to other subscribers of our service in the context of your comment.
Who we share your data with
The services we offer on our website may use services offered by industry-leading and/or established third-parties. We may also use third-party services to improve your overall experience of the services offered on our website.
We use WooCommerce as our e-commerce engine. The Privacy Policy of WooCommerce can be found here.
We use WooCommerce Subscriptions to offer customers recurring subscriptions. The Privacy Policy of WooCommerce Subscriptions can be found here.
We use Braintree (A PayPal Service) as our payment gateway to accept online credit card payments for subscriptions offered on our website. The Privacy Policy of Braintree can be found here.
Our servers hosting our website content and your data at rest may be in a jurisdictions that is outside the country from which you access the services and may be outside your country of residence. The security statement of our website hosting company can be found here.
How long we retain your data
We keep your account information such as name, contact details, billing information and payment details for up to 5 years after you cancel your subscription or your subscription ends and delete it or anonymise it thereafter. We retain your information for business administration and legal purposes, unless you send us a request to erase all the data we have on record for you. See the section below explaining what rights you have over your data for more information about how to erase your data permanently.
Inactive accounts which are accounts where there has been no login or order placed are kept for a period of 2 years and are deleted or anonymised thereafter.
Pending orders which are orders that have been left unpaid will be retained for a period of 1 year and are deleted or anonymised thereafter.
Failed orders which are orders that have been unpaid and abandoned by the customer will be retained for a period of 1 year and are deleted or anonymised thereafter.
Cancelled orders which are orders that have been unpaid and may have been cancelled by us or the customer will be retained for a period of 2 years and are deleted or anonymised thereafter.
Completed orders and the associated Subscription of the completed order by the customer are retained for a period of 5 years after the Subscription ends and are deleted or anonymised thereafter.
What rights you have over your data
If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal or security purposes.
To request an export of all the data we hold about you or to request an erasure of all personal data we hold about you use the buttons provided for these functions on the My Profile page after logging in to your account. As soon as we receive your request we will send you a confirmation email before fulfilling your request for export or erasure.
How we protect your data
All data you submit to us during registration, login, password resets, on our contact us form, comments and during the payment process is encrypted and transmitted to us in accordance with the latest technology.
You are able to contact us via email but please note emails are not always encrypted and you as the customer must ensure that they are encrypted. We can therefore not assume any responsibility for the security of transmission of your emails from the sender to receipt on our server and therefore recommend using our online contact us form to make contact or call us.
Our payment gateway Braintree is Level 1 PCI compliant and encrypts cardholder data. They do not store prohibited data such as raw magnetic stripe, card validation code, or PIN block data.
Our webserver hosting provider implements industry best practices and standards to ensure our website content and your data at rest is protected at all times.
What data breach procedures we have in place
In the event of a data breach we will contact you using your preferred method of contact as specified on your profile to inform you of the breach and the nature thereof. We will initiate immediate protocols with our hosting provider and web security partners to identify the extent of the breach and the actions required to restore our website, service and your data.
Changes to this Privacy Policy
We will occasionally update our privacy policy. Where appropriate we will notify you using your preferred method of contact as specified on your profile of any significant updates to our privacy policy. This may include phone, SMS, e-mail or interactive social media. We encourage you to periodically review our privacy policy to be informed of how we use your information.
This Privacy Policy was last updated on 15 June 2021.