(360) 800-7341

GDPR Compliance

Last Updated: August 29, 2026

Introduction

We are committed to protecting the privacy and rights of individuals in accordance with the General Data Protection Regulation (GDPR). This policy outlines how we comply with GDPR requirements in our processing of personal data.

Data Controller

For the purposes of GDPR, we are the data controller for the personal information collected through our website and services. This means we determine the purposes and means of processing your personal data.

Our Data Protection Principles

We adhere to the following principles when processing personal data:

  • Lawfulness, fairness, and transparency
  • Purpose limitation - data is collected for specified, explicit, and legitimate purposes
  • Data minimization - we only collect what is necessary
  • Accuracy - we keep personal data accurate and up to date
  • Storage limitation - we don't keep data longer than needed
  • Integrity and confidentiality - data is processed securely
  • Accountability - we take responsibility for how we process personal data

Legal Bases for Processing

We only process personal data when we have a valid legal basis to do so, such as:

  • Consent: When you have given clear consent for us to process your personal data for a specific purpose.
  • Contract: When processing is necessary to fulfill a contract with you or take steps before entering into a contract.
  • Legal Obligation: When processing is necessary to comply with the law.
  • Legitimate Interests: When processing is necessary for our legitimate interests, providing those interests don't override your fundamental rights and freedoms.

Your Rights Under GDPR

Under GDPR, you have the following rights:

  • Right to Access: You can request a copy of your personal data.
  • Right to Rectification: You can request correction of inaccurate personal data.
  • Right to Erasure: You can request deletion of your personal data in certain circumstances.
  • Right to Restrict Processing: You can request that we limit the way we use your personal data.
  • Right to Data Portability: You can request transfer of your personal data to another service provider.
  • Right to Object: You can object to our processing of your personal data in certain circumstances.
  • Rights Related to Automated Decision Making: You have protections against automated decision-making without human involvement.

How to Exercise Your Rights

To exercise any of these rights, please contact us through the contact information provided on our website. We will respond to your request within one month.

Data Security

We have implemented appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:

  • Encryption of personal data where appropriate
  • Regular security assessments and tests
  • Staff training on data protection
  • Access controls to limit who can access personal data

International Data Transfers

We generally process personal data within the European Economic Area (EEA). However, if we need to transfer personal data outside the EEA, we will ensure appropriate safeguards are in place.

Data Breach Notification

In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority without undue delay and, when required, affected individuals.

Changes to This GDPR Compliance Policy

We may update this policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last Updated" date.

Contact Us

If you have any questions about this GDPR Compliance Policy or our data practices, please contact us through the contact information provided on our website.