Approach to Privacy
Melissa Corporation considers itself a steward of the information it collects, maintains and utilizes. Our responsibility is to ensure the security of the information in our care and to maintain the privacy of consumers through appropriate, responsible use.
Our information policies define how information may be used. These policies vary to meet the legal requirements and consumer expectations in the area in which the information product or service is being used. Our approach to privacy acknowledges there are changing needs and expectations and provides the flexibility so that Melissa can implement new processes and policies to resolve information issues in this dynamic environment.
Accountability for Information Use
Melissa is held accountable for its information use by consumer privacy expectations and by laws and industry codes established by government entities and industry organizations around the world.
The security of your data is important to Melissa Data. We have a 30+ year history of establishing and refining our controls to secure client data in an ever-changing and increasingly connected world.
Among the laws and industry self-regulatory codes which Melissa complies in the United States are:
Service Organization Control (SOC)
Melissa undergoes company-wide SOC 2 Type II audits on an annual basis to have its processes, procedures, and controls formerly evaluated and tested by an independent accounting and auditing firm, SSAE 16 Professionals, LLP. SOC 2 Type II is the corporate industry’s standard for an overall control structure and affirms our long-standing commitment to strong controls and safeguards for handling and processing your data.
Health Insurance Portability & Accountability Act (HIPAA) Melissa has achieved compliance with all data security standards outlined in the Health Insurance Portability & Accountability Act (HIPAA). Healthcare providers, financial institutions, government agencies, and third party data vendors who handle their data, are required to meet the most stringent data security guidelines by law. The evaluation of compliance was performed by SSAE 16 Professionals, LLP to measure the strict controls Melissa has in place to keep customer information private and secure.
Direct Marketing Association’s Ethical Business Practices
EU-U.S. Privacy Shield Framework
Melissa adheres to the core privacy and data protection principles regarding collection, use, and retention of personal information from European Union countries outlined in the EU-U.S. Privacy Shield Framework . Technical and logistic safeguards have been implemented to protect the rights of data subjects. With respect to international transfers, this is assured by contractual agreements with any applicable data controller or data processor, using the European Commission model clauses, and assessment of the general and legal criteria for compliance. Melissa is committed to subjecting all personal data of data subjects from the European Union member countries, in reliance of the Privacy Shield Framework, to the Framework’s applicable principles of Notice, Choice, Accountability for Onward Transfer, Security, Data Integrity and Purpose Limitation, and Access. More information about the Privacy Shield Framework may be obtained on the U.S. Department of Commerce website at https://www.privacyshield.gov/.
JAMS Alternate Dispute Resolution has been chosen by Melissa as a third party dispute resolution provider. More information can be found at: https://www.jamsadr.com/file-an-eu-us-privacy-shield-or-safe-harbor-claim/. In compliance with Privacy Shield Principles, Melissa commits to resolve complaints about our collection or use of personal information. EU Individuals with inquires or complaints regarding our Privacy Shield policy should first contact Melissa at: firstname.lastname@example.org. Melissa is committed to addressing all Privacy Shield inquires or complaints in a timely manner, and to refer unresolved complaints to JAMS Alternate Dispute Resolution, an alternate dispute resolution provider located in the United States. If an inquiry or complaint has not been acknowledged or resolved, EU data subjects should contact the above third party provider for more information or to file a complaint. Such services are provided at no cost to the data subject.
This Privacy Statement is designed to tell you about our practices regarding collection, use, and disclosure of personal information that you may provide via this site.
By using this site, you agree to the terms of this Privacy Statement. Whenever you submit information via this site, you consent to the collection, use and disclosure of that information in accordance with this Privacy Statement.
This policy covers how the Melissa Corporation (“Melissa”) treats personal information that Melissa collects and receives, including information related to customer past use of Melissa products and services. Personal information is information about customers, potential customers, Melissa website users, and others who may provide information that is personally identifiable, such as, name, address, email address, or phone number, and that is not otherwise publicly available. This policy does not apply to the practices of entities that Melissa does not own or control or to people that Melissa does not employ or manage.
Personally Identifiable Information Collection and General Use
Melissa may gather information related to the use of its products and services, registration of a user account on the Melissa website, or in the course of standard business practices. Personal identifiable information (“PII”) is collected from such parties only after obtaining consent, which is obtained when such parties are prompted for information when requesting product information, downloading a trial version of a product, registering a new user account, registering a product, purchasing a product or service, or contacting customer support. Melissa may collect usage statistics to enable Melissa to improve user experience and allocate internal resources.
Purchasing Melissa products or services requires a customer to provide certain personal information and enter into a License Agreement. Nothing herein is intended to modify the terms in such a License Agreement.
Information Sharing and Disclosure
Melissa does not rent, sell, or share personal information that is provided to it under Section 2, except when Melissa has obtained explicit permission, or under the following circumstances:
Information Collected During Data Processing
- Responses to subpoenas; court orders; or legal process; or to establish or exercise Melissa’s legal rights or defend against legal claims.
Information transmitted by users to the Melissa servers as part of data processing functions of its products or services is retained only to the limited extent necessary to complete the associated processing functions of the products or services.
User Account Information Use
Melissa reserves the right to send certain communications relating to its products or services, such as service announcements, administrative messages, feedback requests that are considered part of routine technical support procedures.
Melissa stores data at rest with 128 bit encryption to protect and secure it and takes appropriate steps to protect personal data from loss, misuse, and unauthorized access, disclosure, alteration, or destruction, whether in transmission or storage. All personnel are trained on the appropriate use of PII and they are retrained yearly with advances in personal security and best practices.
Targeted advertising provides choices, competitive offers and convenience – qualities sought and valued by many consumers. However, you can choose not to receive targeted advertising from Melissa by opting out.
Opting Out of Email
Melissa markets its own products and services by email. Every email send from Melissa will include appropriate unsubscribe instructions.
To opt out of or change your newsletter subscriptions, visit our newsletter subscription page here: www.melissa.com/resources/newsletters.html
. To opt out of all email marketing messages from Melissa, you must send an email to email@example.com
from the email address you with to unsubscribe. Please clearly state in your email, “Unsubscribe me from all Melissa email marketing.”
This is the only way to assure that you no longer receive email advertising messages from Melissa.
Opting Out of Direct Mail
The Direct Marketing Association’s DMAChoice mail preference service allows you to opt out of receiving unsolicited commercial mail from many national companies. When you register with this service, your name will be put on a “delete” file and made available to direct-mail marketers and organizations. This will reduce most of your unsolicited mail. If you would like to opt out of direct mail advertising, please visit www.dmachoice.org
Responsible marketing companies respect your choice to not receive direct mail advertising. DMA members, as a condition of membership, are required to suppress the names and addresses of individuals who have notified the DMA that they do not want to receive advertising by mail. As a DMA member, Melissa subscribes to and suppresses any name and address on the DMAChoice mail preference service file from its direct mail marketing efforts.
You may also contact Melissa directly to be suppresses from our direct mail marketing efforts. Opting-out of direct mail marketing from Melissa will only stop mailings from Melissa.
You can contact Melissa by calling us at 1 800 635 4772 or by sending your complete name (including any name variations), mailing address, complete telephone number (including area code) and email address to firstname.lastname@example.org
or to the below postal address.
Attn: Opt-out Services
22382 Avenida Empresa
Rancho Santa Margarita, CA 92688-2112
Please specify if you wish to be removed from our direct mailing list, email mailing list or both. If you move or change your name, you will need to opt-out again with your new address or name.