Last Updated: April 4, 2026
At Websites Nationwide, we are committed to protecting the privacy and personal data of individuals within the European Union (EU) and European Economic Area (EEA). The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect on May 25, 2018, and we fully comply with its requirements.
This GDPR Compliance Statement outlines how we collect, process, store, and protect personal data in accordance with GDPR requirements, ensuring that individuals' rights are respected and their data is handled responsibly.
Websites Nationwide acts as the data controller for all personal data processed through our website and services. We are responsible for determining the purposes and means of processing personal data.
Company Name: Websites Nationwide
Email: [email protected]
Address: Green Bay, WI 54303, United States
Data Protection Officer: Available upon request
Under GDPR, we only process personal data when we have a valid legal basis to do so. We process personal data based on the following legal grounds:
When you provide explicit consent for us to process your personal data for specific purposes, such as receiving marketing communications or accepting cookies.
When processing is necessary for the performance of a contract with you, such as delivering web design services or processing payments.
When we have a legitimate business interest that is not overridden by your rights and freedoms, such as improving our services or preventing fraud.
When processing is required to comply with legal obligations, such as tax record-keeping or responding to lawful requests from authorities.
We may collect and process the following categories of personal data:
Name, username, company name, job title
Email address, phone number, postal address
Payment card details, billing address, transaction records
IP address, browser type, pages visited, time spent on site
Records of correspondence, emails, chat messages
Preferences for receiving marketing communications
We process personal data for the following purposes:
As an EU/EEA data subject, you have the following rights under GDPR:
You have the right to obtain confirmation of whether we process your personal data and to access that data, including copies of your personal data.
You have the right to have inaccurate personal data corrected and incomplete data completed.
Also known as the "right to be forgotten," you may request deletion of your personal data when it is no longer necessary for the purposes it was collected.
You have the right to restrict our processing of your personal data in certain circumstances, such as when you contest the accuracy of the data.
You have the right to receive your personal data in a structured, commonly used, machine-readable format and transmit it to another controller.
You have the right to object to our processing of your personal data, particularly for direct marketing purposes or where processing is based on legitimate interests.
You have the right to file a complaint with your local data protection authority if you believe we have violated your GDPR rights.
Our services are operated from the United States, which means your personal data may be transferred to and processed in the USA. When we transfer personal data outside the EU/EEA, we ensure adequate protection through:
Note: We only transfer personal data internationally when necessary and with appropriate safeguards in place to protect your data.
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including to satisfy legal, accounting, or reporting requirements. Our data retention practices include:
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk of processing personal data. Our security measures include:
SSL/TLS encryption for data in transit
Enterprise-grade hosting infrastructure
Strict access controls and authentication
Security assessments and audits
In the unlikely event of a personal data breach, we are committed to complying with GDPR breach notification requirements:
We engage third-party service providers who process personal data on our behalf. We ensure that these processors provide appropriate guarantees to implement appropriate technical and organizational measures. Our third-party processors include:
| Service Provider | Purpose | Location |
|---|---|---|
| Cloud Hosting Provider | Website hosting and storage | United States |
| Payment Processor | Payment processing | United States |
| Email Service Provider | Email communications | United States |
| Analytics Provider | Website analytics | United States |
Our use of cookies is governed by both GDPR and ePrivacy regulations. For detailed information about the cookies we use, how to manage them, and your choices, please see our Cookie Policy.
We obtain explicit consent before placing non-essential cookies on your device, and you can withdraw this consent at any time through our cookie consent management platform.
We may update this GDPR Compliance Statement from time to time to reflect changes in our practices, technologies, or legal requirements. When we make significant changes, we will:
If you have any questions about this GDPR Compliance Statement, wish to exercise any of your GDPR rights, or need to submit a data protection request, please contact us:
Email: [email protected]
Address: Green Bay, WI 54303, United States
Response Time: We will respond to all GDPR-related requests within 30 days as required by GDPR Article 12.