Privacy Policy

Effective date: 02/19/22

We value your privacy. We don’t rent or sell your personal information with any person, business or organization. Not ever. We commit to uphold transparency, accountability and choice regarding the collection of any and all your personal information. We are committed to using the personal information you provide to only support your relationship with Sheroes United  (SU) and the global network of SU affiliates and sponsors. Our Sheroes United global team has business processes to ensure that personally identifiable data is accurate and complete. These business processes are according to best practice and in accordance with SU’s privacy policy and serve to support your relationship with the Sheroes United global team. This privacy policy describes how the Sheroes United global team collects and uses the personal information you provide, whether online or offline. It also describes the choices available to you regarding our use of your personal information and how you can access and update this information.

Please know this: visitors to can browse our website without providing any personal information.

1) Contact information of the controller Sheroes United , as the data controller, is located at PO Box 952, Layton, Utah 84041. If you have questions or complaints regarding our privacy policy or practices, please contact us via email at

2) Collection and use of Personal Information

  • Collection and use of personal information in connection with your donations and any services provided to you by Sheroes United.

Purpose and Legal Basis of Processing

i.) Art. 6 (1) a) GDPR (processing is based on your consent)

Only if you provide us your consent (which is revocable at any time), we process personal information from you for e.g. marketing purposes or to facilitate your participation in Sheroes United education, events or activities in which you voluntarily engage. In respect to education, we are aware of the need for anonymity at times for those working to leave unsafe situations. In the course of such needs under education (such as the online Sheroes Inside-Out leadership training program), we invite you to create an anonymous email and use a pseudonym (fake name) in those situations to protect your anonymity. Be aware that the rest of these privacy policies are meant for visitors not needing to utilize such precautions.

ii.) Art. 6 (1) b) GDPR (processing is necessary for the performance of a contract)

In order to communicate with you and for the performance of our contractual obligations to you (for example, to process your donation, issue receipts, and otherwise support your relationship with Sheroes United), we may collect the following personal information from you:

  • Contact information such as name, e-mail address, mailing address, phone number
  • Billing Information such as credit card number and billing address
  • Unique identifiers such as username, account number, password
  • Additional information as needed to support your relationship with SU, such as minimum age or DOB (to ensure age-appropriate content) and tax-payer information (to support tax recovery for donations)

iii) Art.6 (1) c) GDPR (complying with a legal obligation)

In certain circumstances we are obliged to process personal data from you due to a legal obligation, such as anti-corruption stipulations or statutory retention periods.

  1. iv) Art.6 (1) f) GDPR (legitimate interest in transmitting personal data)

We primarily rely on the legitimate interest of the Sheroes United global team to provide constituents with desired information about Sheroes United and its work worldwide. Where we process your personal information on the basis of legitimate interests, including sharing of your personal information within the Sheroes United global team or with third party processors for such purpose, we do so primarily to provide and improve constituent services and provide constituents a service which is suitable to their requirements. We may use your information to improve and customize our constituent services, and as necessary to pursue our legitimate interests of improving our constituent services and experience; understanding how constituents engage with the Sheroes United global team, communicating with constituents in appropriately customized ways, and exploring ways to better engage current and future constituents in the mission of Sheroes United . We may also process your information for our legitimate interest in providing age-appropriate content for children; supporting tax recovery; and maintaining the safety and security of our constituent services, including enhancing protection against spam, harassment, intellectual property infringement, crime, and security risks of all kind. We may further process personal information of constituents who attend in person events or trips for our legitimate interest in providing for the safety and security of all event attendees. The Sheroes United global team has a further legitimate interests in processing your personal information as follows:

  • We may exchange personal data within Sheroes United’s international affiliate offices for the legitimate interests described above, as well as for administrative purposes.
  • We may also process personal data from you in order to defend legal claims.

Additionally, we may collect the following personal information from third party sources, including from public sources:

  • Marketing information such as additional forms of contact, indicators or flags used for segmentation purposes.
  • Demographic information, including census data or third-party research for segmentation purposes.

Surveys or Contests

From time-to-time we may provide you the opportunity to participate in contests or surveys on our website or elsewhere. If you participate, we will request certain personal information from you. Participation in these surveys or contests is completely voluntary and you therefore have a choice whether or not you decide to disclose this information. The requested information typically includes contact information (such as name and shipping address), and demographic information (such as zip code). The legal basis for processing that Personal Data is Art.6 (1) a) GDPR (consent).

  • Collection and use of Personal Information in connection with your use of our website

Informational use of our website

If you do not register with us or otherwise provide us with personal information, we only process the personal information that your browser transmits to our server. This includes your IP address, date and time of the request, time zone difference to Greenwich Mean Time (GMT), content of the request (specific page), the access status/HTTP status code, the amount of data transferred in each case, website from which the request comes, browser, operating system and its surface, language and version of the browser software. This processing is technically necessary for us to display our website to you and to ensure the stability and security of the website. The legal basis for such processing is Art.6 (1) f) GDPR.


What Are Cookies? Cookies are a feature of web browser software that allows web servers to recognize the computer used to access a website. Cookies are small pieces of data that are stored by a user’s web browser on the user’s hard drive. Cookies can remember what information a user accesses on one web page to simplify subsequent interactions with that website by the same user or to use the information to streamline the user’s transactions on related web pages. This makes it easier for a user to move from web page to web page and to complete commercial transactions over the Internet. Cookies should make your online experience easier and more personalized.
How Do We Use Information Collected From Cookies? We use website browser software tools such as cookies and web server logs to gather information about our website users’ browsing activities, in order to constantly improve our website and better serve our users. This information assists us to design and arrange our web pages in the most user-friendly manner and to continually improve our website to better meet the needs of our users and prospective users. Cookies help us collect important business and technical statistics. The information in the cookies lets us trace the paths followed by users to our website as they move from one page to another. Web server logs allow us to count how many people visit our website and evaluate our website’s visitor capacity. We do not use these technologies to capture your individual email address or any personally identifying information about you.


Links to Other Websites

Our Site includes links to other websites whose privacy practices may differ from those of Sheroes United . If you submit personal information to any of those sites, your information is governed by their privacy policies. We encourage you to carefully read the privacy policy of any website you visit.

Social Media Widgets

  1. We currently use the following social media plug-ins:

Facebook Like Button

We use the so-called two-click solution. This means that when you visit our site, no personal information is initially passed on to the providers of the plug-ins. You can recognize the provider of the plug-in by the marking on the box above its initial letter or the logo. We offer you the possibility to communicate directly with the provider of the plug-in via the button. Only if you click on the marked field and thereby activate it, the plug-in provider receives the information that you have accessed the corresponding website of our online offer. In addition, the data specified in section b) “Informational Use” of this privacy policy will be transmitted. In the case of using the “Facebook Like Button,” for example, the IP address is anonymized immediately after collection, according to the respective website provider. By activating the plug-in, personal data is transferred from you to the respective plug-in provider and stored there. Since the plug-in provider collects data mainly via cookies, we recommend that you delete all cookies before clicking on the grayed-out box using your browser's security settings.

  1. We have no influence on the data collected and data processing processes, nor are we aware of the full extent of data collection, the purposes of processing, the storage periods. We also have no information on the deletion of the data collected by the plug-in provider.
  2. The plug-in provider stores the data collected about you as user profiles and uses these for the purposes of advertising, market research and/or demand-oriented design of its website. Such an evaluation takes place in particular (also for not logged in users) for the representation of demand-fair advertisement and in order to inform other users of the social network about your activities on our website. You have a right of objection to the creation of these user profiles, whereby you must contact the respective plug-in provider to exercise this right. Through the plug-ins we offer you the possibility to interact with social networks and other users, so that we can improve our offer and make it more interesting for you as a user. The legal basis for the use of the plug-ins is Art.6 (1) f) GDPR.
  3. The data is passed on regardless of whether you have an account with the plug-in provider and are logged in there. If you are logged in with the plug-in provider, your data collected with us will be directly assigned to your existing account with the plug-in provider. If you click the activated button and, for example, link the page, the plug-in provider also stores this information in your user account and shares it publicly with your contacts. We recommend that you log out regularly after using a social network, especially before activating the button, as this way you can avoid being assigned to your profile with the plug-in provider.
  4. Further information on the purpose and scope of data collection and its processing by the plug-in provider can be found in the data protection declarations of these providers notified below. They will also provide you with further information about your rights in this regard and setting options to protect your privacy.
  5. Addresses of the respective plug-in providers and URL with their data protection information:

Facebook Inc., 1601 S California Ave, Palo Alto, California 94304, USA;; weitere Informationen zur Datenerhebung: sowie" class="redactor-autoparser-object"> Facebook hat sich dem EU-US-Privacy-Shield unterworfen,

3) Recipients of your Personal Information

We will share your personal information with third parties only in the ways that are described in this privacy policy. We do not ever sell your personal information to third parties. In those situations where we use a third party to process your data, we require that these third parties agree to provide the equivalent level of protection as provided under the applicable data privacy law and this privacy policy. Third parties may be suppliers that process personal data on our behalf, such as:

  • IT service providers
  • Companies that assist with customer service, shipping, or event registration
  • Companies that provide other services to support our relationship with you
  • Companies that provide demographic and market research assistance
  • Companies that provide online classes and educational support for education only

Specific to donations, SU uses Stripe and PayPal to gather End User’s data from financial institutions. By using our service, you grant SU and Plaid the right, power, and authority to act on your behalf to access and transmit your personal and financial information from the relevant financial institution. You agree to your personal and financial information being transferred, stored, and processed by Plaid in accordance with the Plaid Privacy Policy.

In addition, any office within the Sheroes United global team may share personal information you provide it to the Sheroes United  office in the United States, or another member of the Sheroes United global team, so that the receiving office may engage with users located in their country and as otherwise necessary to manage the provision of suitable services to constituents as appropriate for their needs.

We may also disclose your personal information to third parties:

  • as required by law such as to comply with a subpoena, or similar legal process;
  • when we believe in good faith that disclosure is necessary to protect our rights, protect your safety or the safety of others, investigate fraud, or respond to a government request; or
  • with your prior consent to do so.

4.) General information and your rights


Where you have provided your consent, you have the right to withdraw your consent to our processing of your personal information. For example, you may choose to stop receiving all or certain types of communication by following the unsubscribe instructions included in these emails or you can contact us at You can further choose to withdraw your consent to our processing of your personal information related to an online account (e.g., donor portal) by closing your account through your account settings and then emailing to request that your personal information be deleted, except for information that we are required to retain. This deletion is permanent and your account cannot be reinstated.

Correcting, Deleting and Updating Your Personal Data

To review and update or delete your personal information, contact us at We will respond to your request to access within 14 business days.

Customer Testimonials/Comments/Reviews

We may post customer testimonials/comments/reviews on our website which may contain personal information. We do obtain the customer's consent via email prior to posting the testimonial to post their name along with their testimonial. If you wish to update or delete your testimonial, you can contact us at The legal basis for that processing is Art.6 (1) a) GDPR.

Data Retention

We will retain your information for as long as your account is active or as needed to provide you services. If you wish to cancel your account or request that we no longer use your information to provide you services, contact us as described in this policy. We will retain and use your information as necessary to comply with our legal obligations, resolve disputes, and enforce our agreements.


The security of your personal information is important to us. We follow generally accepted industry standards to protect the personal information submitted to us, both during transmission and once we receive it. No method of transmission over the Internet, or method of electronic storage, is 100% secure, however. Therefore, we cannot guarantee its absolute security. If you have any questions about security on our website, you can contact us at When you enter sensitive information (such as a credit card number) on our order forms, we encrypt the transmission of that information using secure socket layer technology (SSL).

Transaction Security

The personal information collected when you make a contribution or purchase items by credit card is kept for the purposes of tracking your order and to provide a receipt of the transaction. This information is stored on an encrypted, secure server managed by a third-party commercial credit card processing institution.

Notification of Privacy Policy Changes

We may update this privacy policy to reflect changes to our information practices. If we make any material changes, we will notify you by e-mail (sent to the e-mail address specified in your account) or by means of a notice on this site prior to the change becoming effective. We encourage you to periodically review this page for the latest information on our privacy practices.

Your rights in respect of your Personal Data

You have the right of access (Art.15 GDPR), rectification (Art.16 GDPR), erasure (Art.17 GDPR), restriction of processing (Art.18 GDPR) and the right to data portability (Art.20 GDPR). In addition, you have the right to object to processing that is based on Art.6 (1) f) GDPR. You also have the right to lodge a complaint with the data privacy supervisory authority.

If you have given us your consent to process personal data for specific purposes, this consent is the legal basis for processing your personal data. Consent can be revoked at any time without affecting the legality of the processing carried out on the basis of the consent until revocation. The revocation can take place form-free and should be directed if possible, to the contact information provided in this policy.


Contact Information

Sheroes United, nonprofit 501(c)3

PO Box 952

Layton, Utah 84041




© 2022 Sheroes united

Translate »