Privacy and Policy

Last updated: December 12, 2025

This Privacy & Cookie Policy explains, in clear and simple terms, how we collect, use, store, and protect information when you visit ExpertCardCA.com.

We wrote this document to help you understand our practices, your rights, and the choices available to you.

This policy applies to all visitors, pages, and services offered on our website.

By using our site, you agree to the practices described here.

Who We Are and How to Contact Us (Controller)

We are ExpertCardCA.com, an informational website focused on personal budgeting, saving money, frugal living, and smart shopping guidance for readers in the United States.

The site is owned and operated by:

GTECK LTDA
CNPJ: 28.505.046/0001-81
Address: R Adelino Cardana, 293, Bethaville I/Centro, Barueri, SP, Brazil

Contact: through our official contact channels or contact form available on the website.

Data Protection Officer (DPO): to be appointed
EU/UK Representative (if applicable): not applicable

Data We Collect

We collect only the minimum data needed to operate, secure, and improve the site.

1. Data You Provide Voluntarily

Information submitted through contact forms (such as name, email, and message).

Requests for privacy rights or support.

2. Data Collected Automatically

When you browse the site, we automatically collect:

  • IP address (which may be anonymized where supported);
  • browser type, device type, operating system, language settings;
  • pages visited, time on page, clicks, and navigation paths;
  • cookies and unique identifiers.

3. Data from Third Parties and Integrations

We may receive data through:

  • Google Analytics (site performance and usage metrics);
  • Microsoft Clarity (heatmaps and session recordings for usability analysis).

We do not use:

  • advertising cookies;
  • remarketing tools;
  • affiliate tracking;
  • social login or account systems.

We do not intentionally collect sensitive personal data.

Purposes and Legal Bases

We process data for the following purposes:

1. Operating and Improving the Website

Ensure the proper functioning, performance, and security of the website.

Legal basis: legitimate interest; contract/performance of service.

2. Analytics and Technical Optimization

Understand how users interact with our pages to improve usability, content, and technical performance.

Use aggregated and anonymized data whenever possible.

Legal basis: consent (where required); legitimate interest.

3. Communication

Respond to messages sent via contact forms or other contact channels.

Legal basis: legitimate interest; contract.

4. Legal Compliance

Comply with obligations under applicable laws and regulations.

Legal basis: legal obligation.

You may withdraw your consent at any time when consent is the applicable legal basis.

Cookies and Similar Technologies

Cookies are small files stored on your device to enhance functionality, measure performance, and analyze usage.

We use the following types of cookies:

1. Essential Cookies

Required for site functionality, security, and basic operations.

2. Functional Cookies

Used to remember preferences such as language and basic display settings.

3. Analytical Cookies

Used with tools such as Google Analytics and Microsoft Clarity to understand visitor behavior in aggregate form.

We Do NOT Use

We do not use:

  • advertising cookies;
  • personalization cookies for targeted marketing;
  • affiliate tracking cookies.

Third-Party Cookies

Tools like Google and Microsoft may place their own cookies.

Their practices are governed by their respective privacy policies.

Cookie Management

You can:

  • accept or refuse non-essential cookies in our cookie banner (if displayed);
  • change or revoke consent at any time when technically available;
  • disable cookies in your browser settings;
  • use Google’s opt-out tools for Analytics.

Tools and Services We Use

Google Analytics

We use Google Analytics to measure traffic and usage patterns on our website.

Google Analytics uses cookies and similar technologies to collect information such as IP address, browser type, device type, pages visited, and time spent on pages.

This information is shared with Google in aggregated form to help us understand how our website is used and to improve content and performance.

We do not enable advertising features in Google Analytics.

For more details, see how Google uses information from sites or apps that use its services at:

https://policies.google.com/technologies/partner-sites
.

Microsoft Clarity

We use Microsoft Clarity to obtain heatmaps and session insights that help us understand how users interact with our pages and improve user experience.

Clarity may collect information such as mouse movements, clicks, scroll behavior, and basic technical details (such as browser and device).

We do not use Clarity to identify individual users or to perform personalized advertising.

Hosting and Infrastructure Providers

Our hosting and infrastructure providers store site files, deliver content, and protect against attacks and abuse.

These providers may process technical data such as IP address and server logs to maintain security and reliability.

Email or Contact Management

If you contact us by email or through a contact form, we use the information you provide solely to respond to your message and maintain records where necessary.

All third-party providers may process data internationally following their own compliance frameworks and legal requirements.

Sharing and International Transfers

We may share data with:

  • hosting and infrastructure partners;
  • analytics providers (such as Google and Microsoft);
  • security and anti-abuse tools;
  • public authorities when legally required.

We do not sell personal information.

For CCPA/CPRA purposes, we do not “sell” or “share” personal information for cross-context behavioral advertising.

Some providers may transfer data outside your country or region.

When this occurs, we rely on mechanisms such as Standard Contractual Clauses or equivalent safeguards, where applicable, to protect your data.

Data Retention

We keep data only for as long as necessary for the purposes described in this policy.

As a general guideline:

  • contact messages: up to 12 months;
  • analytics data: 26 to 38 months (depending on provider settings);
  • server logs: up to 12 months;
  • cookies: according to each cookie’s lifespan (usually 1 to 24 months).

When data is no longer required, we securely delete, anonymize, or aggregate it.

Your Rights

Depending on your jurisdiction (such as GDPR, LGPD, CCPA/CPRA), you may have the right to:

  • access your personal data;
  • correct inaccurate or incomplete data;
  • request deletion of your data, where applicable;
  • request portability of your data, where applicable;
  • restrict or object to certain types of processing;
  • withdraw consent when processing is based on consent;
  • know what personal information is collected and how it is used;
  • opt out of “sale” or “sharing” of personal data (we do not engage in these practices);
  • not be discriminated against for exercising privacy rights.

To exercise any of these rights, please contact us through the official channels indicated on the website.

We may need to verify your identity before responding to your request.

Children and Minors

Our site is intended for adults and a general audience.

We do not knowingly collect data from children under 13 years of age (or other applicable local ages).

If you believe that a child has provided us with personal information, please contact us so we can delete it as quickly as possible.

Security

We use technical and organizational measures such as HTTPS encryption, access controls, monitoring, and secure hosting to protect your data.

However, no system is 100% secure, and we cannot guarantee absolute protection against all threats.

We continuously review our security practices to reduce risks where reasonably possible.

Automated Decisions and Profiling

We do not perform automated decisions that produce legal effects or similarly significant impacts on individuals.

We may use aggregated analytics data to understand interest areas and improve our content, but not for personalized advertising or automated profiling.

Cookie Policy (Details)

We use cookies to:

  • remember preferences (such as language);
  • improve the overall experience on the site;
  • measure traffic and performance;
  • improve page structure, content, and navigation.

Non-essential cookies require your consent, which you may manage or withdraw at any time using your browser settings or our consent tools (where available).

Advertising and Partnerships

We do not currently display ads or participate in affiliate programs on ExpertCardCA.com.

In the future, if we introduce advertising, sponsorships, or affiliate partnerships, we will update this policy with clear details about:

  • which partners we use;
  • what data may be processed for advertising or tracking;
  • how you can manage your preferences and opt-out choices.

Policy Updates

We may update this policy from time to time to reflect legal, operational, or technological changes.

When we make changes, we will post the updated version on this page with a new “Last updated” date.

For significant changes, we may provide additional notice on the website.

Contact and Complaints

For questions, concerns, or privacy-related requests, please contact us through the official channels or contact form available on the site.

If you are located in a region with a data protection authority or regulator, you may file a complaint with them if you believe your privacy rights have been violated.

Applicable Laws

We strive to comply with the main data protection regulations applicable to our operations and audience, including:

  • GDPR / UK GDPR (European Union and United Kingdom);
  • LGPD (Brazil);
  • CCPA/CPRA (California, United States);
  • equivalent international regulations, where applicable.

Our legal bases for processing personal data rely on consent, legitimate interest, performance of a contract, or legal obligation, depending on the specific context.