Effective Date: December 21, 2025
Website: https://jwilliamsdesigns.com
Who We Are
J Williams Designs is operated by JohnPaul Williams II, a California-based freelancer specializing in web design, web development, and online marketing. This privacy policy explains how we collect, use, store, and protect your personal information when you use our website and client portal.
Information We Collect
Website Visitors
- Automatic Information: IP address, browser type, device information, pages visited, and time spent on pages
- Cookies: Session data, login status, and user preferences (see Cookie Policy below)
Client Portal Users
When you create an account or use our client portal, we collect:
- Account Information: Name, email address, company name, phone number, business address
- Authentication Data: Encrypted passwords and session tokens
- Project Materials: Images, videos, logos, content, and any files you upload for your project
- Communication Records: Messages, feedback, revision requests, and meeting notes
How We Use Your Information
We use the information we collect to:
- Provide web design and development services as outlined in our client agreements
- Communicate with you about your project, deadlines, and deliverables
- Provide technical support and respond to inquiries
- Improve our website, portal, and services
- Comply with legal obligations and enforce our agreements
- Send project updates and service-related notifications
We do not use your information for marketing purposes unless you explicitly opt-in to receive marketing communications.
How We Store Your Data
Database Storage
All client portal data is stored using secure cloud-based infrastructure with best practices and best intent fully involved in the environment. Our database provider maintains:
- Encrypted data transmission (SSL/TLS)
- Secure cloud infrastructure
- Regular backups and disaster recovery
- Industry-standard security practices
Data Location: Your information is stored on secure cloud servers located in the United States.
Retention Periods
- Client Portal Accounts: Retained for the duration of our business relationship and for 7 years after project completion for legal and business purposes
- Project Files and Materials: Retained for 7 years after project completion
- Shared Passwords and Credentials: Deleted within 7 days of project completion and verification. Any new project scope will require new credential sharing as we do not keep this information on file.
- Cookies: Essential cookies retained indefinitely; preference cookies retained for 1 year (see Cookie Policy below)
Cookie Policy
What Are Cookies?
Cookies are small text files stored on your device that help us provide and improve our services.
Types of Cookies We Use
Essential Cookies (Stored Indefinitely)
- Authentication Cookies: Keep you logged into the client portal
- Session Cookies: Maintain your session state and preferences
- Security Cookies: Protect against unauthorized access and fraudulent activity
These cookies are necessary for the portal to function and cannot be disabled. By using our services, you consent to the use of these essential cookies.
Preference Cookies (1 Year)
- Remember your display settings and interface preferences
- Store your language and timezone selections
Managing Cookies
You can control cookies through your browser settings. However, disabling essential cookies will prevent you from accessing the client portal. Most browsers allow you to:
- View and delete cookies
- Block third-party cookies
- Block cookies from specific sites
- Block all cookies
California-Specific Cookie Disclosure
Under California law, you have the right to know about cookies placed on your device. Essential cookies are required for the portal to function and are exempt from opt-in requirements as they are strictly necessary for the service you requested. Non-essential cookies (such as analytics) are not used without your consent.
Third-Party Services and Data Sharing
We work with trusted third-party service providers to operate our business. Your data may be shared with:
Service Providers We Use
- Database Provider: Secure cloud-based database services for portal functionality
- Payment Processors: Stripe for credit card processing (PCI-DSS compliant) – we do not store payment information
- Hosting Providers: Hostinger for WordPress hosting with CDN and security best practices
- Analytics Tools: Google Analytics for website performance tracking (if consent provided)
- WordPress Plugins: Elementor Pro, RankMath Pro, and security plugins for core functionality
- Contractors: We occasionally work with vetted contractors who may have access to client information. All contractors undergo thorough interviews and validation processes. Their work is reviewed in our own environment before any client interaction occurs.
These providers/contractors have agreed to keep your information confidential and use it only for the purposes we specify.
Email and DNS Services
Email services are not provided as part of our standard web design packages. If you need assistance implementing email records (DMARC, SMTP, or other DNS configurations), this service is available at our hourly rate of $150/hour.
When We Share Your Data
We may share your information when:
- Required by law, court order, or government regulation
- Necessary to protect our rights, property, or safety
- Part of a business transfer (merger, acquisition, or sale)
- You have given explicit consent
What We Don’t Do
- We do not sell your personal data to anyone, ever
- We do not share your SMS opt-in data or consent status with third parties for non-service-related purposes
- We do not share client project materials with anyone outside our team without your permission
- We do not store payment information – all payment processing is handled securely through Stripe
Your Rights and Choices
You have the following rights regarding your personal data:
Account Management
- Update basic account information through your portal account settings
- Request account corrections or updates by contacting us directly
Payment Information Updates
- Request a secure payment link through Stripe to update payment methods
- Payment information is managed entirely through Stripe’s secure platform
Opt-Out Rights
- Unsubscribe from marketing emails (if you opted in)
- Disable non-essential cookies through your browser
- Request account closure
How to Exercise Your Rights
To exercise any of these rights, please contact us at:
- Email: partners@jwilliamsdesigns.com
- Mail: 583 2nd Ave, San Francisco, CA 94118
We will respond to your request within 30 days.
Data Security
We implement industry-standard security measures to protect your information:
- Encryption: All data transmitted between your browser and our portal uses SSL/TLS encryption provided by our database and hosting providers
- Authentication: Secure password requirements and session management
- Access Controls: Limited access to client data on a need-to-know basis
- Regular Updates: Core WordPress updates, plugin updates, and security patches maintained through our hosting relationship with Hostinger
- CDN Protection: Content delivery network for enhanced security and performance
- Backups: Regular automated backups to prevent data loss
- Credential Management: All shared passwords and credentials are deleted within 7 days of project completion
Important: While we take security seriously and implement best practices and best efforts, no system is 100% secure. We work with third-party platforms (our database provider, Hostinger, Stripe, WordPress core) that maintain their own security standards. Security is maintained to the best of our abilities in accordance with industry standards, with liability for third-party platform security resting with those respective providers.
Contractors and Subcontractors
From time to time, we may engage contractors or subcontractors who may have access to sensitive client information. We maintain high standards for all contractors:
- Thorough interview and validation processes
- All contractor work is reviewed and verified in our own environment before client interaction
- Contractors are bound by confidentiality agreements
- Access to client information is limited to what is necessary for the specific project
Children’s Privacy
Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately so we can delete it.
California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to know what personal information we collect and how it’s used
- Right to delete your personal information (with exceptions for legal retention requirements)
- Right to opt-out of the “sale” of personal information (we don’t sell data)
- Right to non-discrimination for exercising your privacy rights
Accessibility Commitment
We are committed to making our website and services accessible to all users. While we do not currently have an ADA complianct website, we are working toward full compliance with the Americans with Disabilities Act (ADA) and Web Content Accessibility Guidelines (WCAG). If you encounter any accessibility barriers, please contact us so we can assist you and continue improving our accessibility features.
Changes to This Privacy Policy
We reserve the complete right to update this privacy policy and our client agreements as needed to best serve our clients in today’s shifting market. As we continue to grow and adapt to changing AI technologies, security requirements, and industry standards, we may make adjustments to our policies.
We always keep our clients in mind and the longevity of their brand online before making long-term adjustments. This is especially important in an age of rapidly evolving AI and security policies.
We will notify you of significant changes by:
- Posting the updated policy on this page
- Updating the “Effective Date” at the top
- Sending an email notification for material changes (if you have an account)
Your continued use of our services after changes constitutes acceptance of the updated policy.
Media and Embedded Content
Uploaded Images
If you upload images to the client portal, avoid uploading images with embedded location data (EXIF GPS). Visitors to the website may be able to download and extract location data from publicly accessible images.
Embedded Content
Our website may include embedded content from other websites (videos, images, articles). Embedded content behaves as if you visited that website directly, meaning:
- Those websites may collect data about you
- They may use cookies and tracking
- They may monitor your interaction with the embedded content
Spam Protection
Form submissions may be checked through automated spam detection services to protect our site and users.
Business Transfers
In the event of a merger, acquisition, or sale of all or a portion of our business, your information may be transferred as part of that transaction. We will notify you via email and/or a prominent notice on our website of any change in ownership or uses of your personal information.
Contact Us
If you have questions about this privacy policy or how we handle your data, please contact us:
JohnPaul Williams II
Founder, J Williams Designs
Email: partners@jwilliamsdesigns.com
Address: 583 2nd Ave, San Francisco, CA 94118
Website: https://jwilliamsdesigns.com
Compliance and Legal
This privacy policy complies with:
- General Data Protection Regulation (GDPR)
- California Consumer Privacy Act (CCPA)
- California Online Privacy Protection Act (CalOPPA)
- CAN-SPAM Act
- Telephone Consumer Protection Act (TCPA)
- Wireless carrier requirements for SMS data handling
- Americans with Disabilities Act (ADA) – in progress
Governing Law: This privacy policy is governed by the laws of the State of California, without regard to conflict of law principles.