Last updated: April 25, 2025
We respect your privacy and are committed to protecting your personal information. This policy explains how Second Mile, a HubSpot partner agency and web‑development company, collects, uses, shares, and safeguards information when you interact with our websites, services, or communications (collectively, our “Services”).
Category | Examples | Source |
---|---|---|
Contact data | name, business name, job title, email address, phone number, mailing address | Provided by you via forms, chat, email, phone |
Account & service data | project details, support history, preferences, HubSpot CRM records | Generated through use of our Services |
Technical & usage data | IP address, browser type, device identifiers, pages visited, time spent, clicks, referring/exit pages | Collected automatically via cookies, HubSpot tracking code, and Google Analytics |
Marketing data | engagement with emails, event attendance, downloads, social media interactions | Provided by you or derived from interactions |
Payment data | limited billing information (handled by payment processors—no full card details stored) | Provided by you to our secure payment provider |
Sensitive data: We do not intentionally collect sensitive personal information (e.g., health, biometric, or precise geolocation data). If you believe you have provided such information, please contact us so we can delete it.
We use personal data only when we have a lawful basis (GDPR Art. 6) and a legitimate business purpose, including to:
Provide and improve Services – manage projects, troubleshoot, and develop new features.
Measure performance – analyze traffic and usage to enhance user experience.
Marketing & communications – send newsletters, offers, and event invitations (with your consent where required).
Customer support – respond to inquiries, requests, and feedback.
Security & fraud prevention – detect, prevent, and address security incidents or violations of our Terms.
Compliance & legal obligations – maintain records, enforce agreements, and comply with applicable laws.
Service | Purpose | Privacy Resources |
---|---|---|
HubSpot | CRM, marketing automation, email delivery, website analytics | https://legal.hubspot.com/privacy-policy |
Google Analytics | Website traffic measurement and reporting | https://policies.google.com/privacy |
Payment Processors | Secure online payments (e.g., Stripe, PayPal) | See respective privacy notices |
These providers may collect information directly or receive data from us. We ensure each third party commits to adequate privacy and security standards via data‑processing agreements and, where relevant, Standard Contractual Clauses (SCCs).
We use cookies, beacons, pixels, and similar tools to:
Remember your preferences and improve site functionality.
Understand how visitors navigate our site.
Measure the effectiveness of campaigns.
You can control cookies through your browser settings and opt‑out of Google Analytics via the Google Analytics Opt‑out Browser Add‑on.
We rely on one or more of the following bases:
Performance of a contract when we provide Services you request.
Consent for optional marketing communications or non‑essential cookies.
Legitimate interests to improve Services and protect our business, balanced against your rights.
Legal obligation where we must comply with laws.
We do not sell or rent personal data. We may share information with:
Service providers acting on our behalf under strict confidentiality obligations.
Professional advisers (e.g., auditors, lawyers) under confidentiality.
Authorities when required by law, court order, or to protect rights and safety.
Successors in merger, acquisition, or asset sale scenarios (with notice to you where required).
We are based in North America but operate globally. Where personal data is transferred outside your jurisdiction:
We rely on adequacy decisions, SCCs, or other lawful transfer mechanisms recognized by the GDPR and similar frameworks.
For Canadian residents, cross‑border transfers comply with PIPEDA.
We implement administrative, technical, and physical safeguards such as:
Encryption in transit (TLS) and at rest where appropriate.
Access controls and multi‑factor authentication.
Regular security training and audits.
Incident response procedures.
No internet transmission is 100% secure. If we detect a data breach that poses a high risk to you, we will notify you and regulators as required.
Depending on where you live, you may have rights to:
Access personal data we hold about you.
Correct inaccurate or incomplete data.
Delete your data (“right to be forgotten”).
Restrict or object to processing.
Port your data to another service.
Opt‑out of marketing communications.
To exercise these rights, please email admin@thesecondmile.com. We will respond within 30 days (or the period required by law) and may need to verify your identity.
California residents can also:
Request a list of categories of personal information disclosed for business purposes.
Opt out of “sales” or “sharing” of personal information (we do not engage in such activities).
You can unsubscribe from our emails at any time via the “unsubscribe” link or by contacting us. Opting out will not affect transactional messages.
We keep personal data only as long as necessary for the purposes in this policy, to comply with legal obligations, resolve disputes, and enforce agreements. If you close your account or withdraw consent, we will delete or anonymize your data unless retention is required by law.
Our Services are not directed to children under 16, and we do not knowingly collect their information. If you believe a child has provided us with personal data, contact us so we can delete it.
We may update this policy from time to time. We will post the new version here and, if the changes are material, notify you via email or prominent notice at least 30 days before they take effect. The “Last updated” date at the top reflects the revision date.
If you have questions or concerns about this policy or your data, please contact:
Privacy Team
Second Mile
Email: admin@thesecondmile.com