
Privacy Notice
This Privacy Notice (“Privacy Notice”) describes how Aurinia Pharmaceuticals Inc. and its affiliates and subsidiaries (“we,” “us” or “our”) collect, use and disclose information about you when you interact with each website or online service that links to or references this Privacy Notice (the “Site”), and the services available through the Site (collectively, the “Services”). By accessing the Site or using the Services, you acknowledge that you understand and agree that your information will be handled as described in this Privacy Notice.
State Privacy Disclosures: If you are a California, Colorado, Connecticut, Delaware, Iowa, Minnesota, Montana, Nebraska, New Hampshire, New Jersey, Oregon, Tennessee, Texas, Utah or Virginia resident, review our State Privacy Disclosures for additional information regarding our processing of your information and the rights you may have under applicable law.
Categories of Information Collected
We may collect the following categories of information about you directly from you, automatically through your use of the Site and from third parties:
- Identifiers, such as name, date of birth, email address, mailing address, telephone number and IP address.
- Demographic information, such as race, gender and ethnicity.
- Commercial information, such as records of services obtained or considered, your feedback and preferences and contents of your communications with us.
- Audio, visual or similar information, such as profile images that you choose to share.
- Professional or employment information, such as employer, professional contact information, professional credentials and information included in a resume.
- Geolocation data, such as approximate location based on IP address.
- Internet or other electronic network activity, such as your browser type and operating system, browsing history, clickstream data, search history on the Site, the length of time you visit our Site, the referring URL that led you to the Site, your approximate physical location based on IP address and information regarding your interaction with an internet website, mobile application, email, newsletter or advertisement, including access logs and other activity information related to your use of the Site.
- Inferences, such as those drawn to create a profile reflecting your preferences, characteristics, psychological trends, predispositions, behavior, attitudes, intelligence, abilities or aptitudes.
- Sensitive data, as defined under applicable law, such as account login credentials and passwords, social security number, certain characteristics of protected classifications under applicable law and health and medical information.
We collect the categories of information described above from the following sources:
- Information we collect directly from you. We collect information directly from you when you use the Site or Services, such as when you provide us with information through a form on our Site, contact us, sign up to our ambassador programs or participate in a patient assistance or support program.
- Information we collect automatically. We automatically collect information when you access or interact with the Site using cookies, pixels, clear GIFs and similar technologies. This may include information such as your IP address and the types of information described above as “Internet or other electronic network activity.”
- Information we collect from other sources. We collect information about you from other sources, such as health care providers and your authorized representatives, service providers who perform functions on our behalf and our advertising and analytics partners.
Use of Information Collected
We use the categories of information we collect for the following purposes:
- To operate our business.
- To provide customer service, respond to inquiries and fulfill requests.
- To provide the Site and Services.
- To understand and analyze use of our Site and Services.
- To improve and enhance the Site and Services and to develop new services and functionality.
- To personalize your experiences while using the Site and Services.
- To advertise and market our products and tailor the content and information we send or display to you.
- To distribute receipts and other correspondence.
- To inform individuals of our products.
- To conduct internal analysis and record keeping.
- To protect us and others, where we believe necessary to investigate, prevent or take action regarding suspected or actual illegal activities, fraud, situations involving potential threats to the safety of any person or to otherwise enforce our policies.
- To comply with our legal and regulatory obligations and to exercise or defend our rights or the rights of a third party, including, but not limited to, complying with law enforcement or government authority requests, such as subpoenas, warrants, court orders, levies, attachments, orders of a court-appointed receiver or other comparable legal processes, and participating in compliance audits.
- To contact you about changes to this policy.
- To deidentify or anonymize your data in such a way that you may not reasonably be reidentified by us or another party, and we may use such deidentified data for any purposes permitted under applicable law. To the extent we deidentify data originally based on personal information, we will maintain and use such data in deidentified form and will not attempt to reidentify that data, except as permitted under applicable law.
Disclosure of Information Collected
We disclose the categories of information we collect for our business purposes as follows:
- Related entities. We may disclose the information we collect about you to our subsidiaries, affiliates and related entities.
- Service providers. We may disclose the information we collect about you to service providers, contractors and agents who perform functions and business operations on our behalf for the purposes set forth above. For example, we engage service providers to help us with data storage, technology support and services, customer service, risk solution provisions, analytics, fraud prevention and marketing services.
- Third parties. We may disclose the information we collect to our third-party business partners, such as our advertising and analytics partners, including through the use of cookies, pixels and similar technologies on the Site.
We may also disclose your information in the following circumstances:
- Business transfers. If (i) we or our affiliates are or may be acquired by, merged with or invested in by another company; or (ii) if any of our assets are or may be transferred to another company, whether as part of a bankruptcy or insolvency proceeding or otherwise, we may transfer the information we have collected about you to the other company. As part of the business transfer process, we may disclose certain of your information to lenders, auditors and third-party advisors, including attorneys and consultants.
- In response to legal process. We may disclose your information where we believe necessary to comply with the law, a judicial proceeding, court order or other legal process, such as in response to a court order or a subpoena.
- To protect us and others. We disclose your information where we believe it is appropriate to do so to investigate, prevent or take action regarding illegal activities, suspected fraud, situations involving potential threats to the safety of any person, violations of our policies or as evidence in litigation in which we are involved.
- Consent. We may disclose your information with your consent for any purposes permitted under applicable law.
Our Use of Cookies and Similar Technologies
We, and our third-party advertising and analytics partners, may use cookies, pixels and similar technologies to track information about your use of the Site to better understand, customize and improve your experience, as well as for advertising purposes. We may combine this information with other information we collect about you (and our third-party business partners may do so on our behalf).
- Cookies. Cookies are small text files containing a string of alphanumeric characters. We may use both session and persistent cookies. A session cookie disappears after you close your browser. A persistent cookie remains after you close your browser and may be used by your browser on subsequent visits to our Site. Please review your browser’s “Help” file to learn the proper way to modify your cookie settings. You can learn more about cookies.
- Clear GIFs, pixels and other technologies. Clear GIFs are tiny graphics with a unique identifier, similar in function to cookies. In contrast to cookies, which are stored on your computer’s hard drive, clear GIFs are embedded invisibly on web and app pages. We may use clear GIFs (a.k.a. web beacons, web bugs or pixel tags) to, among other things, track the activities of Site visitors, help us manage content and compile statistics about Site usage. A clear GIF can collect information such as: your IP address, URLs of the webpages you view and the referring URL or webpage that led you to our Site, your browser type and language, geographic location, search history on the sites, clickstream data and the identification number of any cookie on your computer previously placed by that web server. We and our third party business partners may also use clear GIFs in HTML emails to our customer to help track email response rates, identify when our emails are viewed and track whether our emails are forwarded.
- Analytics. We may use third-party analytics tools, such as Google Analytics, to analyze your use of the Site in order to improve our products and services. You can find out how Google Analytics uses data and how to opt out of Google Analytics.
- Advertising. In certain instances, we may set tracking tools (e.g., cookies, clear GIFs) provided by third-party advertising partners to collect information regarding your activities on our Site (e.g., your IP address, page(s) visited, time of day) for advertising purposes. We may also share such information with third party advertising partners. These advertising partners may use this information (and similar information collected from other websites) for purposes of delivering targeted advertisements to you when you visit unaffiliated websites within their networks. This practice is commonly referred to as "interest-based advertising" or "online behavioral advertising." If you do not want interest-based advertising, you may be able to opt-out by visiting Digital Advertising Alliance or Network Advertising Initiative.
State Privacy Disclosures
The following sections provide additional disclosures for residents of certain U.S. states with applicable comprehensive privacy legislation, such as California, Colorado, Connecticut, Delaware, Iowa, Montana, Nebraska, New Hampshire, New Jersey, Oregon, Tennessee, Texas, Utah and Virginia.
Disclosures of Personal Information
The following chart describes the categories of third parties to whom we disclose, “sell” or “share” each Category of Information Collected for the purposes set out in the Use of Information Collected section of this Privacy Notice. You can opt-out of our “sale” or “sharing” of your personal information by clicking: Do Not Sell or Share My Personal Information.
Category of Personal Information Collected | Categories of Third Parties to Whom We Disclose Personal Information for a Business Purpose | Categories of Third Parties with Whom Personal Information Is “Sold” or “Shared” |
---|---|---|
Identifiers |
|
|
Demographic information |
|
|
Commercial information |
|
|
Audio, visual or similar information |
|
|
Professional or employment information |
|
|
Geolocation data |
|
|
Internet or other electronic network activity |
|
|
Inferences |
|
|
Sensitive data, as defined by applicable law |
|
|
Data Retention
We retain your personal information for only so long as necessary to fulfill the purposes for which it was collected, unless a longer retention period is required or permitted by applicable law. When assessing retention periods, we examine (i) whether it is necessary to retain personal information for the purposes set out in this Privacy Notice; (ii) the length of time we have a relationship with you; and (iii) the need to fulfill legal obligations to which we are subject.
Your Privacy Rights
Subject to applicable exceptions, you may have the following rights under applicable law:
- Request to know/access information regarding our processing of your personal information.
- Request a list of the specific third parties to whom we have disclosed your personal information (Oregon, Minnesota and Delaware residents only).
- Request to delete the personal information we have collected about you.
- Request to correct inaccurate personal information we maintain about you.
- Request to opt out of targeted advertising, “sales” and “sharing” of your personal information.
- Right to non-discrimination for exercising your rights under applicable law.
- Right to appeal a decision we make in connection with your privacy rights request where permitted by applicable law.
We do not use or disclose your sensitive personal information for purposes other than permitted under applicable law.
Exercising Your Privacy Rights
To exercise your rights, or if you are an authorized agent submitting a request on behalf of a consumer under applicable law, you may contact us at +1 (888) 500-2905, email us at Privacy@auriniapharma.com or submit your request through our Data Subject Right Portal. You or your authorized agent may be asked to provide information such as your name, email address, phone number and other information you may have shared on our website to verify your identity. Authorized agents may also be required to provide a copy of your signed permission authorizing the agent to submit a request on your behalf.
You can also opt-out of our “sale” or “sharing” of your personal information through privacy preference signals recognized under applicable law, such as the Global Privacy Control (GPC), but please note that this signal will be linked only to your browser or device. You can learn more about how to use the Global Privacy Control.
To appeal a decision we have made relating to your privacy rights request under applicable law, please contact us at Privacy@auriniapharma.com.
Protection of Personal Information
We implement physical, technical and organizational measures designed to safeguard personal information from loss, misuse and unauthorized access or disclosure. Please be aware that despite our efforts, no data security measures can guarantee security.
Children
Our Site and Services are not designed for children under the age of 18. If we discover that a child under the age of 18 has provided us with personal information, we will take reasonable measures to delete such information from our systems. We do not knowingly “sell” or “share” the personal information of consumers under the age of 18.
Links to Third-Party Websites
The Site may feature links to third-party websites that offer goods, services or information. We are not responsible for the information collection practices of these third-party websites. It is your responsibility to review the privacy policies of the third-party websites before using them.
Changes to this Privacy Notice
This Privacy Notice is current as of the Effective Date set forth above. We may update this Privacy Notice from time-to-time as it deems necessary in its sole discretion, so please be sure to check back periodically. We will post any changes to this Privacy Notice on the Site. If we make changes to this Privacy Notice that materially affect our practices with regard to the information we have previously collected about you, we will endeavor to provide you with notice by highlighting the change on the Site or sending you an email.
Contact Us
If you have any questions about this Privacy Notice, please contact us at Privacy@auriniapharma.com.