ASP Privacy Policy, PCI Compliance, Payment Risks
Privacy Policy
PCI Compliance
Payment Types and Risks for Customers and All Safety Products, Inc.
Effective 09/2009 and Revised 07/2022
Privacy Policy and PCI Compliance for Customers, Web Site VisitorsOne can visit our Web site with complete privacy. A Web site visitor can choose to provide customer-specific information by ordering a product or service or corresponding with us through e-mail. Any information provided by a Web site visitor is held strictly confidential within our company and will not be sold to any other organization or business.
Privacy Policy
Types of Customer Information
On some Web pages users can order products, make requests for certain information. Such customer-specific information will be used to fulfill the specific request or purpose for which it was provided. In addition, such voluntarily provided information may be occasionally used to offer products and services that may be of interest. Internet users have a choice to "opt out" if they prefer not to receive this type of information.
Cookies. A Cookie is a randomly generated unique number placed on your computer. It allows us to identify your computer without requiring your disclosure of any Non-Public Personal Information. Cookies make it possible to both store and retrieve information through your Internet browser. A Cookie itself cannot read information off a hard drive or read Cookie files from other sites.
General Information is information that does not itself reveal your identity. General Information may include, without limitation: generic business type, SIC code, information derived from publicly available databases (such as Dun and Bradstreet), user behavior on our website, and aggregated generic information.
Non-Public Personal Information is any non-public information you provide to us or our Partners that is proprietary or identifies or can be used to identify, contact, or locate you or someone at your business. Non-Public Personal Information may include, without limitation: name, address, phone number, e-mail address, credit card number initially, account information, voting behavior, spending patterns, and individual tastes and preferences. As part of our PCI Compliance security, we do not keep any credit card information in our physical location. Any information of this sort is stored encrypted with our online processor, Authorize.Net.
Privacy of On-line Personal information
No personal information obtained on-line is released outside of All Safety Products, except with the customer's permission, as required by law, for safety reasons, or to survey customer satisfaction, under nondisclosure protection. We use the information provided when placing an order to complete that order. We do not share that information with outside parties except as necessary to fulfill the on-line order (e.g., providing the "ship to" address to our shipper.) We may also use that information to offer other products or services of interest. We do not sell customer information to any outside party. We do reserve the right to work with our partners to disclose minimal customer information to help us carry out our mission.
Use of Customer Information
Information collected on-line, especially from those who place an order on-line, may be used within All Safety Products to inform the user about services and products of potential interest. Customers might be contacted by telephone, direct mail or e-mail to keep them up-to-date on new products and services offered by All Safety Products. Web visitors or Internet service subscribers who do not want to hear about new products or services can opt out of any potential use of customer information with an opt out statement included in the body of the e-mail.
Access by Children
All Safety Products web site is not structured to attract children under the age of 16. We believe there is no information on our web site, which is inappropriate for viewing by children.
Other Web Sites
All Safety Products web site may contain links to other Web sites. We are not responsible for the content or privacy policies of other sites.
Data Security for Ordering
Consumers are able to order safety products through our website with complete security in mind. Our host secure server software encrypts all of your personal information including credit card number, name, address, and order information, so that it cannot be read as it travels over the Internet. We also employ a service called Foregenix to monitor and audit our website for any PCI compliance issues.
To prevent unauthorized access, maintain data accuracy and ensure only appropriate use of information, appropriate physical, electronic and managerial safeguards have been established through our host provider to secure the information collected on-line.
Privacy Policy Changes
To improve the service of All Safety Products, the information obtained about Web users may be revised in the future. This privacy statement will be updated to reflect any future developments in Internet business practices.
Changing Your Non-Public Personal Information
All Safety Products, Inc. provides you with the opportunity to change your non-public personal information online for all registration information. Please contact All Safety Products, Inc. to change any non-public personal information provided to us through a contact form, either through a contact form or through our customer service e-mail by clicking on the underlined link.
If you have any questions or concerns about any privacy issues, please contact customer service e-mail by clicking on the underlined link or be sure to use our contact form.
Back to top
Some Common Credit Card and Payment Processing Questions and Answers to Address Security Concerns about CIM and PCI Compliance:
What does PCI stand for?
The term PCI which stands for Payment Card Industry is frequently used in relation to both financial data security standards and also adding hardware to PC computers. It has adopted PCI Compliance standards
How private is my credit card information accessed by All Safety Products, Inc.?
Only the last four numbers are visible to All Safety Products Accounting Staff or Authorize.net with all the rest of the credit numbers encrypted. This is encrypted using 128 bit SSL encryption to our secure gateway processor, Authorize.net, utilizing their CIM system.
Does your website follow PCI compliance standards in keeping my confidential or company information and data secure?
Yes, All Safety Products, Inc. places a high priority on keeping information confidential and private from others. We also deal on a regular basis with government agencies (Federal, State, County and Municipal Agencies) who require a secure website. Our website is scanned regularly through a PCI compliance and website security auditing process by Foregenix.
We also have a Digicert SSL certificate for our website. Our gateway processor, Authorize.net is secure and known throughout the internet Retail Commerce Industry as a reliable and secure Gateway Processor. Our credit card payment link to our bank is handled by Elavon with a product called Converge.
How does All Safety Products use our credit card information if we choose to “Remember payment information…” option?
We use it to adjust shipping charges or product prices only with your permission. It is our company policy to charge actual freight charges only. New orders are only placed with your permission or for your shopping convenience when you place a new order on our website, by e-mail, by fax or over the phone. We review all orders before processing for accuracy. Authorize.net provided a CIM option which addressed the need expressed by numerous customers to have their credit information on file (encrypted of course) for future business. You can uncheck this option if you don't wish to keep your credit card information on Authorize.net's website.
Back to top
Payment Types and Risks for Customers and All Safety Products, Inc.
Type of Payment | Security Assessment | Additional Comments / Description |
Purchase Order | Secure For Customer, Less Secure For ASP | Some fraudulent purchase orders can be placed. See Check Payment for additional risk. ASP can send E-check link (highly secure) with invoice and accept P.O. net 30 payment terms. |
Credit Card | Secure For Customer, Less Secure For ASP | Some fraudulent orders can be placed online to ASP if customer information has been compromised before an order is placed. |
Check | Less Secure For Both Customer and ASP | Less secure for ASP since fraudulent checks can be received by ASP and orders shipped before fraud is discovered. Less secure for customer since checks may be stolen because of mail theft. |
Contact Me for Payment Information | Less Secure For Both Customer and ASP | Credit card information is provided verbally instead of being entered by customer through an encrypted online connection. See Check/Money Order for mailed check risks. ASP does not accept e-mailed payment information. Faxed information is acceptable. |
Wire Transfer | Highly Secure For Both Customer and ASP | This is a direct bank to bank transfer. Customer does absorb a wire transfer fee of about $21. ASP needs to verify funds before orders are processed and shipping scheduled. This is required for payment amounts over $5,000 or for any overseas destined shipments. |
Send Me E-check Link With Invoice For Payment | Highly Secure For Both Customer and ASP | This is a payment to ASP bank account through an ACH network. There is no cost to customer and the E-Check payment link is sent with the invoice for payment. ASP needs to verify receipt of funds before orders are processed and shipping scheduled. No fee payment amount for customer required at the present time. |
Back to top