Privacy Policy

Last revision July 15, 2023.

We are Carrabassett Coffee Company

We are Carrabassett Coffee Company located at 93 Main Street in Kingfield, Maine. Our website address is https://carrabassettcoffee.com as well as any subdomains we may use such as https://shop.carrabassettcoffee.com. You can reach us at (207) 265-2326 or [email protected].

Our Website

We collect information about you during the checkout process on our store.

While you visit our site, we’ll track:

We’ll also use cookies to keep track of cart contents while you’re browsing our site.

When you purchase from us, we’ll ask you to provide information including your name, billing address, shipping address, email address, phone number, credit card/payment details and optional account information like username and password. We’ll use this information for purposes, such as, to:

If you create an account, we will store your name, address, email and phone number, which will be used to populate the checkout for future orders.

For the purposes of processing recurring subscription payments, we store the customer’s name, billing address, shipping address, email address, phone number and credit card/payment details.

We generally store information about you for as long as we need the information for the purposes for which we collect and use it, and we are not legally required to continue to keep it. For example, we will store order information indefinitely for tax and accounting purposes. This includes your name, email address and billing and shipping addresses.

We will also store comments or reviews, if you choose to leave them.

Cookies

If you visit our login page, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.

When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.

If you wish to not receive cookies, turn cookies off in your browser for our websites.

Embedded content from other websites

Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.

These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.

Who we share your data with

If you request a password reset, your IP address will be included in the reset email.

For users that register on our website we store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.

Akismet

We collect information about visitors who place comments, write reviews, or submit contact forms and send it to the Akismet anti-spam service. The information we collect depends on what you provide, but typically includes your IP address, user agent, referrer, and Site URL (along with other information you directly provide such as your name, username, email address, and the comment, review, or contact form contents itself).

iThemes / Security

The IP address of visitors, user ID of logged in users, and username of login attempts are conditionally logged to check for malicious activity and to protect the site from specific kinds of attacks. Examples of conditions when logging occurs include login attempts, log out requests, requests for suspicious URLs, changes to site content, and password updates. This information is retained for 60 days.

A QR code image is generated for users that set up two-factor authentication for this site. This image is generated using an iThemes hosted API. As part of generating this image, your username is sent to the API. This data is not logged. For privacy policy details, please see the iThemes Privacy Policy.

This site is scanned for potential malware and vulnerabilities by the iThemes Site Scanner. We do not send personal information to the scanner; however, the scanner could find personal information posted publicly (such as in comments or reviews) during the scan.

This site is part of a network of sites that protect against distributed brute force attacks. To enable this protection, the IP address of visitors attempting to log into the site is shared with a service provided by ithemes.com. For privacy policy details, please see the iThemes Privacy Policy.

Mailchimp

When shopping, we keep a record of your email and the cart contents for up to 30 days and send this data to Mailchimp. This record is kept to repopulate the contents of your cart if you switch devices or needed to come back another day as well as to send reminder emails if you leave items in your cart for a period of time. Read Mailchimp’s privacy policy here. This is partially accomplished by setting cookies.

iThemes / Sync

This web site uses a third party service to manage administrative tasks. If you leave a comment, submit personal information via a contact form, or otherwise exchange personal details with us, it is possible that we may use this service to manage that data. Please visit the iThemes Privacy Policy for more information regarding the way they handle their data.

Google Analytics

Google Analytics is a web analytics service offered by Google that tracks and reports website traffic. Google uses the data collected to track and monitor the use of our Service. This data is shared with other Google services. Google may use the collected data to contextualize and personalize the ads of its own advertising network.

You can opt-out of having made your activity on the Service available to Google Analytics by installing the Google Analytics opt-out browser add-on. The add-on prevents the Google Analytics JavaScript (ga.js, analytics.js and dc.js) from sharing information with Google Analytics about visits activity.

For more information on the privacy practices of Google, please visit the Google Privacy & Terms web page: https://policies.google.com/privacy

Postmark

Transactional emails such as password reset emails and purchase receipts are sent through Postmark. For more information on their privacy practices visit https://postmarkapp.com/privacy-policy.

PrintNode

Receipts for purchases made on our website are sent from our website to our store through PrintNode. For more information on their privacy practices visit https://www.printnode.com/en/privacy.

Heartland Payment Systems

We accept payments through Heartland. When processing payments, some of your data will be passed to Heartland, including information required to process or support the payment, such as the purchase total and billing information.

ShippingEasy

We often purchase shipping labels through ShippingEasy. Order details are sent to ShippingEasy in order to purchase shipping labels. You may view their privacy policy at https://support.shippingeasy.com/hc/en-us/articles/4407016994587.

UPS, USPS, and other Shippers

Our shipments to you typically are sent by UPS or USPS, therefore they obtain information about your orders such as your name and shipping address.

Who on our team has access

Members of our team have access to the information you provide us. For example, both Administrators and Shop Managers can access:

Our team members have access to this information to help fulfill orders, process refunds and support you.

What rights you have over your data

If you have an account on this site you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.