Newman Family Farm

Legal

Privacy Policy

Last updated: February 14, 2026

Information We Collect

When you create an account, place an order, or interact with our website, we may collect the following information:

  • Account information: Name, email address, and password when you create an account

  • Order information: Products purchased, order history, pickup preferences, and contact details

  • Payment information: Payment details are processed securely by Stripe and are never stored on our servers

  • Waiver records: If you sign a Private Membership Association waiver, we record your name, signature, IP address, and timestamp for legal compliance

  • Contact form submissions: Your name, email, and message when you reach out through our contact page

  • Newsletter engagement data: Email open rates and link click activity for subscribers

  • Usage data: Pages visited, browser type, and general browsing patterns to improve our website

How We Use Your Information

  • Process and fulfill your orders, including pickup coordination

  • Send order confirmations, status updates, and pickup reminders

  • Respond to inquiries submitted through our contact form

  • Deliver newsletters and farm updates if you have subscribed

  • Improve our website, products, and customer experience

  • Protect the security of our website and enforce our Terms of Service

  • Comply with legal obligations, including PMA waiver requirements

Third-Party Services

We use trusted third-party services to operate our website and process transactions:

  • Stripe — Secure payment processing. Your card details are handled directly by Stripe and never touch our servers.

  • Resend — Email delivery for order confirmations, status updates, and newsletters

  • Google — Optional sign-in via Google OAuth for account creation

  • Vercel — Website hosting and image storage

Cookies and Tracking

We use essential session cookies to maintain your authenticated state. These are functional cookies necessary for the website to operate and are not used for advertising or marketing purposes. We do not use third-party advertising trackers or analytics services.

Newsletter emails may include a small tracking pixel to measure open rates and link engagement. You may opt out of newsletter communications at any time via the unsubscribe link in each email.

Data Security

We implement reasonable technical and organizational safeguards to protect your personal information, including:

  • Encrypted data transmission via HTTPS/TLS for all website connections

  • Secure password hashing for account credentials

  • PCI-compliant payment processing through Stripe — we never store card numbers

  • Access controls limiting data access to authorized personnel

While no system is completely secure, we are committed to protecting your information using industry-standard measures.

Data Retention

  • Account data is retained while your account is active

  • Order records are kept for tax, legal, and business compliance purposes

  • Waiver records are retained indefinitely for legal compliance

  • Contact form messages are retained for customer service and business records

  • Newsletter subscriptions are retained until you unsubscribe

If you request account deletion, we will remove your personal data within thirty (30) days, except where retention is required by law (e.g., order records for tax compliance, PMA waiver records for legal compliance).

Your Rights

You have the right to:

  • Request details about the personal information we hold about you

  • Request corrections to any inaccurate personal data

  • Request deletion of your account and personal data

  • Unsubscribe from newsletters at any time via the link in each email

  • Update your account information through your profile settings

We will respond to verifiable requests within thirty (30) days. To exercise any of these rights, please contact us. Note that certain data (order history, waiver records) may be retained as required by law even after account deletion.

Data Breach Notification

In the event of a security breach involving your personal information, Newman Family Farm will notify affected individuals in accordance with the Tennessee Identity Theft Deterrence Act (TCA § 47-18-2107). We will provide notification without unreasonable delay, and no later than forty-five (45) days after discovery of the breach, as required by Tennessee law. Notification will include the nature of the breach, the types of information involved, and steps you can take to protect yourself.

Do Not Sell Your Information

Newman Family Farm does not sell, rent, lease, or trade your personal information to third parties for marketing or commercial purposes. Information is shared only with the third-party service providers listed above, solely for the purposes of operating our website and fulfilling your orders.

Children's Privacy

Our website is not directed at children under 13 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can remove it.

Governing Law

This Privacy Policy is governed by the laws of the State of Tennessee. For questions about dispute resolution, please refer to our Terms of Service.

Changes to This Policy

We may update this privacy policy from time to time. Any changes will be posted on this page with an updated “Last Updated” date. We encourage you to review this policy periodically.

Contact Us

If you have any questions about this privacy policy or how we handle your data, please reach out:

  • Phone: (865) 207-8665

  • Location: Blaine, Tennessee