LAST UPDATED:  June 26, 2023

 

California, Colorado, Connecticut, Utah, and Virginia have enacted consumer privacy laws that grant their residents certain rights and require additional disclosures. This U.S. State Privacy Notice ("Notice") addresses these state-specific requirements and serves as our California notice at collection. 

 

If you are a resident of one of the states listed above, this Notice, together with our Privacy Policy, applies to you.

 

We may update this Notice from time to time. If we make changes, we will notify you by revising the date at the top of this Notice. If we make material changes, we will provide you with additional notice (such as by adding a statement to our websites or sending you a notification). We encourage you to review this Notice regularly to stay informed about our information practices and the choices available to you.

 

Click on the links below to jump to the different sections of this Notice.

 

Collection, Use, and Disclosure of Personal Data

Other Details About Our Information Practices

Additional Privacy Rights

Notice of Financial Incentives

Contact Us

 

Collection, Use, and Disclosure of Personal Data

As described in our Privacy Policy, we collect, use, and disclose personal data about you. Below, we use two different tables to explain this same information in accordance with state privacy laws. The tables describe our data practices now and during the past 12 months.

 

Collection, Use, and Disclosure of Personal Data for Business Purposes

 

Category of Personal Data

Categories of Recipients

Use of Personal Data

Identifiers (such as your name, email, and IP address)

Partners that provide advertising and marketing services, data analytics providers, payment processors, partners that help provide surveys and organize events, fulfillment partners, customer support partners, Internet service providers, operating systems and platforms, other users, fraud prevention partners, cloud service providers, technical maintenance and system security providers

We use this personal data to:

● Provide the products and services you request;

● Create and manage your online accounts and profiles;

● Communicate with you, including to tell you about products and services that may be of interest to you and to respond to your requests, inquiries, comments, and suggestions;

● Complete the transactions you request, perform our contractual obligations, send cart reminders, and use as otherwise anticipated within the context of our ongoing business relationship;

● Facilitate your engagement with us, including to enable you to post comments and reviews on our websites, to engage with other customers, and to post on social media;

● Offer contests, sweepstakes,      and other promotions;

● Tailor the content and information that we send or display to you, offer location customization and personalized recommendations, help, and instructions, and otherwise personalize your experience while using our products and services;

● Conduct surveys and market research and monitor, audit, and analyze trends, usage, and activities in connection with our websites, stores, products, services, and advertisements;

● Carry out short-term activities and other internal uses related to the products or services you purchase from us or your ongoing relationship with us;

● Conduct internal research and development;

● Detect, investigate, and respond to security incidents and protect against illegal or objectionable activities; and

● Comply with our legal obligations, including those required for you to benefit from rights recognized by law, or any regulatory requirements or provisions.

     Characteristics of Protected Classifications Under California or U.S. Law (such as your age and gender)

     Partners that provide advertising and marketing services,      other users of our websites when posting reviews, and customer      feedback platforms

We use this personal data to:

● Facilitate your engagement with us, including to enable you to post comments and reviews on our websites, to engage with other customers, and to post on social media

● Tailor the content and information that we send or display to you, offer location customization and personalized recommendations, help, and instructions, and otherwise personalize your experience while using our products and services;

● Carry out short-term activities and other internal uses related to the products or services you purchase from us or your ongoing relationship with us;

● Conduct internal research and development; and

● Conduct surveys and other market research and monitor, audit, and analyze trends, usage, and activities in connection with our websites, stores, products, services, and advertisements.

 

     Commercial Information (such as records of products you purchased)

     Data analytics providers, partners that provide advertising and marketing services,      payment processors, fulfillment partners, customer      support partners, fraud prevention partners, and cloud service providers

Same as “Identifiers” above.

Internet or      Other Electronic Network Activity Information (such as information about your activity on our websites)

Partners that provide advertising and marketing services, data analytics providers, Internet service providers, operating systems and platforms, cloud service providers, fraud prevention partners, and technical maintenance and system security providers  

We use this personal data to:

● Provide the products and services you request;

● Send cart reminders and use as otherwise anticipated within the context of our ongoing business relationship;

● Tailor the content and information that we send or display to you, offer location customization and personalized recommendations, help, and instructions, and otherwise personalize your experience while using our products and services; and

● Monitor, audit, and analyze trends, usage, and activities in connection with our websites, stores, products, services, and advertisements;

● Conduct internal research and development;

● Detect, investigate, and respond to security incidents and protect against illegal or objectionable activities

● Comply with our legal obligations, including those required for you to benefit from rights recognized by law, or any regulatory requirements or provision.

Approximate Geolocation      Data (such as your city of residence)

Partners that provide advertising and marketing services, data analytics providers, Internet service providers, and operating systems and platforms

 

We use this personal data to:

● Provide the products and services you request;

● Tailor the content and information that we send or display to you, offer location customization and personalized recommendations, help, and instructions, and otherwise personalize your experience while using our products and services; and

● Detect, investigate, and respond to security incidents and protect against illegal or objectionable activities

     Audio, Electronic, or Visual Information (such as phone recordings when you call our customer service channels)

Customer support partners, market research platform partners, and facility security partners

 

We use this personal data to:

● Communicate with you and provide customer service; Provide the products and services you request;

● Detect, investigate, and respond to security incidents and protect against illegal or objectionable activities; and

● Comply with our legal obligations, including those required for you to benefit from rights recognized by law, or any regulatory requirements or provision..

     Inferences about you (such as information drawn about your shopping preferences)

Partners that provide advertising and marketing services, data analytics providers, customer support partners, cloud service providers, and fraud prevention partners

 

We use this personal data to:

● Provide the products and services you request;

● Tailor the content and information that we send or display to you, offer location customization and personalized recommendations, help, and instructions, and otherwise personalize your experience while using our products and services; and

● Conduct internal research and development.

 

Personal Data that we “Share,” “Sell,” or Use for “Targeted Advertising”

We disclose the following categories of personal data to third parties to show you ads promoting Glossier on other websites and services. These activities may be considered sales,” “sharing,” or “targeted advertising” under certain state laws and you have the right to opt out of having your personal data used or disclosed for these purposes. See below for details about opting out.

 

Category of Personal Data “Shared,” “Sold,” or Used for Targeted Advertising

     Categories of Third Parties

Identifiers

Marketing and advertising partners

Commercial Information

Marketing and advertising partners

Internet or other electronic network activity

Marketing and advertising partners

 

Other Details About Our Information Practices

As described in more detail in our Privacy Policy, we collect personal data from different sources, including: directly from you; automatically when you purchase our products, access or use our websites, interact with our communications, or visit our stores; and from other sources, including other customers, online booking partners, order processing partners, marketing and advertising partners, market research companies, and sample distributors. We may also derive information or draw inferences about you based on the information we collect.

 

We do not knowingly collect, sell, or share personal data about consumers under the age of 16.

 

We do not collect data that is considered “sensitive” under certain state privacy laws, which means that we also do not use or disclose sensitive personal data to infer characteristics about you.

 

We store personal data for as long as is necessary for the processing purpose(s) for which the data was collected, and any other permissible purpose explained in this Notice or our Privacy Policy. For example, we may retain certain transaction details and correspondence until the time limit for claims arising from the transaction has expired. When we no longer need to use your personal data, we remove it from our systems and records or anonymize it so that you can no longer be identified from it.

 

Additional Privacy Rights

Opting Out of Sales, Sharing, and Targeted Advertising

As described above, you have the right to opt out of having your personal data sold, shared, or used for targeted advertising. You may opt out by following the prompts here. If you are a resident of California, you can also opt out by visiting our websites with a legally recognized opt-out preference signal enabled, such as the Global Privacy Control. You will need to renew your opt-out choice at each Glossier-branded website you visit, if you visit our websites from a new device or browser, or if you clear your cookies because your opt-out choice will be linked to your browser only.

In addition, we may disclose your personal information to third parties for their own marketing purposes or to expand the reach and effectiveness of our own marketing campaigns. Such disclosures may constitute “sales” of your personal information under the State Laws, and you may opt out of such activities by following the instructions here.

Access, Correction, and Deletion

You have the right to (1) request to know more about and access your personal data, including in a portable format, (2) request deletion of your personal data, and (3) request correction of inaccurate personal data. To request access, correction, or deletion of your personal data, please fill out our online form. If you prefer to talk to someone on the phone, or you have a disability that makes it difficult to use the online request forms, you may call our toll-free number at 1-855-929-2179 to submit a request. You can also access, correct, or delete certain information stored within your online account, including your profile, contact, payment, and shipping information, at any time by logging into your Glossier account. You can also deactivate your Glossier account by emailing gTeam@glossier.com. We may verify your request by asking you to provide information related to your recent interactions with us, such as your email address, shipping address, or order number.

Nondiscrimination

We will not discriminate against you for exercising your privacy rights.

Authorized Agent

You can designate an authorized agent to submit a privacy rights request on your behalf. We may ask authorized agents to submit proof of their authority to make a request, such as a valid power of attorney or proof that they have signed permission from the consumer who is the subject of the request. In some cases, we may be required to contact the individual who is the subject of the request to verify his or her own identity or confirm you have permission to submit this request. If you are an authorized agent seeking to make a request, please fill out our online form.

Appeals

In some cases, we may deny your privacy rights request. You have the right to appeal our decision by contacting us at Privacy@glossier.com. If you have concerns about the result of your appeal, you may contact the attorney general in the state where you reside.

Notice of Financial Incentives

We provide discounts, gift cards, and other benefits to customers who sign up to receive our marketing emails or participate in surveys. These offerings may constitute “financial incentives” under certain state privacy laws. If you decide to participate in a financial incentive, we collect personal data from you, such as identifiers (like your name and email address), commercial information (like your purchase history), and inferences (like your shopping preferences).    

You can opt into a financial incentive by following the sign-up or participation instructions provided and you can opt out at any time by following the     unsubscribe instructions in our promotional emails or contacting us at Privacy@glossier.com. In some cases, we may provide additional terms and conditions, which we will provide to you when you sign up. The value of your personal data is reasonably related to the value of the offer or discount presented to you.

Contact Us

If you have any questions, comments, or concerns about this Notice or about our privacy practices, please contact us using the information provided below:

 

Glossier, Inc.
233 Spring Street, Floor 10
New York, NY 10013
Privacy@glossier.com