Privacy Policy
Your Privacy is Our Priority
1. Introduction
GoneFinder Registry Services ("we," "our," or "us") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Lost Property Registry System.
We comply with all applicable data protection laws, including the General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and other relevant privacy regulations.
2. Information We Collect
2.1 Information You Provide Directly
When you register for an account or report lost/stolen property, we collect:
- Account Information: Name, email address, phone number, username, password
- Contact Details: Mailing address, alternative contact methods
- Property Information: Serial numbers, VINs, IMEIs, descriptions, photos
- Location Data: Last known location of lost property (when provided)
- Police Report Information: Report numbers and filing details
- Verification Documents: Proof of ownership when required
2.2 Information Collected Automatically
When you use our Service, we automatically collect:
- Device Information: IP address, browser type, operating system
- Usage Data: Pages viewed, features used, search queries
- Cookies and Tracking: Session cookies, preference settings
- Log Data: Access times, referring URLs, error logs
- Performance Data: Load times, interaction metrics
2.3 Information from Third Parties
We may receive information from:
- Law enforcement agencies (for verification and investigation)
- Business partners (for recovered property notifications)
- Public databases (for ownership verification)
- Social media platforms (if you choose to connect accounts)
3. How We Use Your Information
3.1 Primary Purposes
| Purpose | Legal Basis |
|---|---|
| Provide registry services | Contract performance |
| Process property reports | Legitimate interest |
| Send service notifications | Contract performance |
| Prevent fraud and abuse | Legal obligation |
| Comply with legal requirements | Legal obligation |
| Improve our services | Legitimate interest |
3.2 Specific Uses
- Verifying your identity and account ownership
- Matching lost and found property
- Facilitating communication between parties
- Generating statistical reports (anonymized)
- Detecting and preventing fraudulent activity
- Responding to legal requests and court orders
- Sending critical security alerts
4. Information Sharing and Disclosure
4.1 We DO NOT Sell Your Personal Information
4.2 Authorized Sharing
We may share your information in these limited circumstances:
Law Enforcement and Legal Compliance
- When required by law, subpoena, or court order
- To assist in criminal investigations of stolen property
- To prevent or investigate potential crimes
- To protect rights, property, or safety
Service Providers
- Cloud hosting services (for data storage)
- Email service providers (for notifications)
- Payment processors (for premium services)
- Analytics providers (anonymized data only)
With Your Consent
- When you explicitly authorize sharing
- To potential buyers/finders of your property
- To insurance companies (with your permission)
5. Data Security
5.1 Security Measures
We implement comprehensive security measures including:
- Encryption: TLS/SSL for data in transit, AES-256 for data at rest
- Access Controls: Role-based permissions, multi-factor authentication
- Monitoring: 24/7 security monitoring and intrusion detection
- Regular Audits: Security assessments and penetration testing
- Incident Response: Dedicated security team and response procedures
- Data Centers: SOC 2 Type II certified facilities
5.2 Data Breach Response
In the unlikely event of a data breach, we will:
- Immediately investigate and contain the breach
- Assess the risk to affected individuals
- Notify affected users within 72 hours
- Report to relevant authorities as required
- Provide guidance on protective measures
- Implement measures to prevent recurrence
6. Your Privacy Rights
6.1 Rights Under GDPR (European Users)
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate information
- Erasure: Request deletion of your data ("right to be forgotten")
- Portability: Receive your data in a portable format
- Restriction: Limit processing of your data
- Objection: Object to certain processing activities
6.2 Rights Under CCPA (California Residents)
- Know: What personal information we collect and how it's used
- Delete: Request deletion of your personal information
- Opt-Out: Opt-out of sale of personal information (we don't sell data)
- Non-Discrimination: Equal service regardless of privacy choices
6.3 How to Exercise Your Rights
To exercise any of these rights, contact us at:
- Email: privacy@gonefinder.gov
- Phone: 1-800-PRIVACY (1-800-774-8229)
- Online Form: www.gonefinder.gov/privacy-request
7. Data Retention
7.1 Retention Periods
| Data Type | Retention Period |
|---|---|
| Active account data | Duration of account + 30 days |
| Stolen property reports | 7 years or until recovered |
| Recovered property records | 3 years after recovery |
| Transaction logs | 5 years (legal requirement) |
| Security logs | 1 year |
| Marketing preferences | Until withdrawn |
7.2 Deletion Process
When data reaches its retention limit or you request deletion, we:
- Securely delete data from active systems
- Remove backups within 90 days
- Retain only anonymized statistics
- Confirm deletion completion
8. Cookies and Tracking Technologies
8.1 Types of Cookies We Use
- Essential Cookies: Required for site functionality
- Security Cookies: Detect authentication and prevent fraud
- Preference Cookies: Remember your settings and choices
- Analytics Cookies: Understand usage patterns (anonymized)
8.2 Managing Cookies
You can control cookies through:
- Browser settings (block or delete cookies)
- Our cookie consent tool (on first visit)
- Cookie preferences in your account settings
8.3 Do Not Track
We honor Do Not Track browser settings and do not track users who have enabled this feature.
9. Children's Privacy
Our Service is not directed to children under 13. We do not knowingly collect personal information from children under 13. If we discover we have collected information from a child under 13, we will promptly delete it.
Parents or guardians who believe we may have collected information from their child should contact us immediately at privacy@gonefinder.gov.
10. International Data Transfers
If you access our Service from outside the United States, your information may be transferred to and processed in the United States. We ensure appropriate safeguards are in place for international transfers, including:
- Standard Contractual Clauses approved by the European Commission
- Privacy Shield certification (where applicable)
- Adequate security measures for all data transfers
11. Third-Party Links
Our Service may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing personal information.
12. Changes to This Privacy Policy
We may update this Privacy Policy periodically. Changes will be posted on this page with an updated "Last Updated" date. For material changes, we will provide additional notice via email or through the Service.
Your continued use of the Service after changes indicates acceptance of the updated Privacy Policy.
13. Contact Information
For privacy-related questions, concerns, or requests, contact our Privacy Office:
Email: privacy@gonefinder.gov
Phone: 1-800-PRIVACY (1-800-774-8229)
Address: 1000 Registry Way, Suite 500
Wilmington, DE 19801
United States
Data Protection Officer:
Dr. Sarah Mitchell
Email: dpo@gonefinder.gov
Phone: 1-800-774-8229 ext. 100
14. Supervisory Authority
European Union residents have the right to lodge a complaint with their local supervisory authority if they believe their data protection rights have been violated.