|
Step 1: Review your site
Before you can create your own privacy policy, you need to know your company’s personal data collection practices. Therefore, it is essential to conduct an extensive internal review of your current Web site and data collection practices. For example:
- Do you collect personal data?
- What kind of personal data do you collect?
- Are individuals aware that their personal data is being collected?
- Why do you collect personal data?
- How is it used?
- Who controls personal data once it is collected?
- Is personal data disclosed to third parties and if so, why?
- How and where is the data stored?
- Do you have standards, guidelines and regulations that apply to your collection and use of personal data?
- Do you allow visitors access to the personal data you have about them?
- What happens if a visitor has a question about the data you maintain?
- What happens if they are not satisfied with how you answer their question?
next
|