Our Commitment to Data Security
Pet Center takes data protection seriously. We implement industry-standard security measures to protect your personal information from unauthorized access, alteration, and disclosure.
Data Retention Policy
| Data Type | Retention Period | Reason |
|---|---|---|
| Transaction Records | 7 years | Legal/accounting requirements |
| Payment Records | 7 years | Dispute resolution & audits |
| Adoption Applications | 2 years (after decision) | Reference & follow-up |
| Government IDs (scans) | 2 years | Verification, then deleted |
| Communication Logs | 3 years | Dispute resolution |
| Marketing Email Lists | Until unsubscribe | Communication with opt-in users |
| Website Analytics | Indefinitely (aggregated) | Site improvement & usage |
Security Measures
Encryption & Transmission
- HTTPS: All website pages use TLS encryption
- Data in Transit: All data encrypted during transmission
- Data at Rest: Sensitive data encrypted in storage
- Certificates: Valid SSL certificates on all pages
Payment Security
- PCI Compliance: Level 1 certified payment processor (Stripe)
- No Card Storage: Pet Center never stores full card numbers
- Tokenization: Recurring payments use secure tokens only
- 3D Secure: Additional verification for credit card payments
- Zero Knowledge: Card data only seen by Stripe, never by Pet Center staff
Access Controls
- Employee Access: Restricted to job-necessary personnel only
- Authentication: Multi-factor authentication for admin access
- Passwords: Strong password requirements and regular updates
- Logging: All access attempts logged and monitored
- Segregation: Customer data separated from internal systems
Infrastructure Security
- Firewalls: Enterprise-grade firewalls and DDoS protection
- Intrusion Detection: 24/7 monitoring for suspicious activity
- Regular Backups: Data backed up daily with offsite copies
- Disaster Recovery: Plans in place for emergency scenarios
- Patch Management: Regular security updates and patches
Compliance Standards
- GDPR: Compliant with European data protection regulations
- CCPA: California Consumer Privacy Act compliance
- PCI-DSS: Payment Card Industry Data Security Standard
- HIPAA: Health privacy standards (for veterinary records)
- State Laws: Compliance with all applicable state privacy laws
Your Data Rights
You have the right to:
- Access: Request a copy of your personal data
- Correct: Update or fix inaccurate information
- Delete: Request deletion of your data (right to be forgotten)
- Export: Receive your data in a portable format
- Opt-out: Unsubscribe from marketing communications
- Restrict: Limit how we use your data in certain ways
To exercise these rights, email support@petcenterco.com with "Privacy Rights Request" in the subject line. We respond within 30 days.
Third-Party Security
Pet Center uses trusted third-party services for specific functions:
- Stripe: Payment processing (PCI Level 1 certified)
- Google Analytics: Website usage tracking (anonymized)
- Email Services: Transactional emails and communications
- Hosting: Secure cloud infrastructure with redundancy
All third parties must comply with data protection standards and sign data processing agreements.
Data Breach Response
Security Best Practices for You
- Use a strong, unique password for your Pet Center account
- Never share your login credentials with anyone
- Log out after accessing your account
- Use secure WiFi when accessing your account
- Report suspicious activity immediately to support@petcenterco.com
- Keep your contact information current
Contact & Support
Questions about data security or privacy?
- Privacy Questions: support@petcenterco.com
- Data Access Requests: support@petcenterco.com
- Security Concerns: support@petcenterco.com
- Suspicious Activity: support@petcenterco.com (urgent)
See our Privacy Policy for complete information about data handling.
Data Security Questions?
Contact our support team with any security or privacy concerns.
← Back to Documentation Hub