Privacy Policy
Last updated July 2026.
This Privacy Policy describes how Play Nice Together, Inc. (“we,” “us,” or “our”) collects, uses, and shares information when you visit playnicetogether.com (the “Site”). The Site presents our digital agency services — web design, branding, custom software, and hosting — and lets you contact us, schedule a consultation, and pay invoices online. Work we perform for clients is governed by separate written service agreements; this Policy covers the Site itself.
1. Who we are
The Site is operated by Play Nice Together, Inc., a corporation registered in New York, United States. For privacy questions or requests, reach us using the contact information in section 12.
2. Information we collect
2.1 Information collected automatically
When you visit the Site, our web server and security infrastructure automatically process technical information such as:
- IP address
- Browser type, version, language, and user-agent string
- Operating system and device type
- Referring URL and pages visited on the Site
- Approximate geographic location derived from IP address
- Date and time of the visit
- Request URL, HTTP method, response status, and similar server-log details
This operational logging is necessary to serve pages, debug errors, protect the Site from abuse, and comply with legal obligations. It does not depend on cookie consent because it does not rely on optional tracking cookies. Where the privacy laws of the European Economic Area, the United Kingdom, or similar regions apply, we rely on our legitimate interest in operating, securing, and debugging the Site (GDPR Article 6(1)(f)) as the basis for this logging.
2.2 Contact form
If you contact us through the contact form, we collect the information you choose to provide, such as your name, email address, phone number, and the contents of your message, so we can respond and maintain appropriate records. The contact form is protected by ALTCHA, a proof-of-work spam check that runs on our own infrastructure — unlike third-party CAPTCHA services, it does not send your information to anyone else or track you across sites.
2.3 Appointment scheduling
If you schedule a consultation through the Site, we collect the details you provide — such as your name, email address, and the appointment date and time — so we can hold the appointment and follow up. This information is stored in the Site’s own database on our infrastructure.
2.4 Billing and payments
If you pay an invoice through the Site, your payment details are transmitted directly to our payment processors: credit card payments are processed by Chase Paymentech, and electronic check (e-check) payments are processed by Intuit (QuickBooks). Full card and bank account numbers are handled by those processors and are not stored on our servers. We retain transaction records — such as invoice numbers, amounts, dates, and payment confirmations — as required for accounting and tax purposes.
3. Third-party services
3.1 Payment processing
Chase Paymentech (a subsidiary of JPMorgan Chase & Co.) processes credit card payments, and Intuit Inc. processes e-check payments through QuickBooks. When you pay an invoice, these processors receive the payment details needed to complete the transaction and handle them under their own privacy policies and PCI DSS compliance standards.
3.2 Amazon Web Services and server infrastructure
The Site runs on Amazon Web Services (AWS) infrastructure in the United States, behind a web application firewall that protects it from abuse and attacks. AWS processes data on our behalf under its data-processing terms. Our web server and security infrastructure automatically log standard request information as described in section 2.1. These logs are used solely for operating, debugging, and securing the Site, are retained for 90 days, and are not used for marketing or profiling.
3.3 Matomo analytics (runs by default)
We use Matomo, a web analytics platform we self-host on infrastructure under our control, to understand aggregate Site usage. Matomo runs for all visitors on the basis of our legitimate interest in understanding how the Site is used (GDPR Article 6(1)(f)), with minimal privacy impact:
- Cookies disabled. Matomo runs in cookieless mode — no Matomo identifiers are stored on your device.
- IP anonymization enabled. Visitor IP addresses are masked before logging, so we cannot uniquely identify individual visitors through Matomo.
- Self-hosted. Matomo data is stored on infrastructure we operate and is not shared with any third party.
- Do Not Track honored. If your browser sends the Do Not Track signal, Matomo does not record your visit.
This cookieless, IP-anonymized, self-hosted configuration is the kind of setup that data-protection authorities such as France’s CNIL treat as exempt from prior consent. You can opt out of Matomo at any time by enabling Do Not Track in your browser settings.
3.4 Google Analytics (consent required)
If you consent through our cookie banner, we use Google Analytics, a web analytics service provided by Google LLC, to collect aggregate data about how visitors use the Site. Google Analytics uses cookies and may transfer data to Google servers in the United States or other locations. The information collected includes pages viewed, time spent on the Site, approximate location, and device information.
Google Analytics does not load until you accept it. If you decline or do not respond to the cookie banner, Google Analytics will not run on your visit. You can withdraw consent at any time by clicking “Cookie Preferences” in the footer. You can also install the Google Analytics Opt-out Browser Add-on. Google’s privacy practices are described at policies.google.com/privacy.
3.5 Grafana Faro (consent required)
If you consent through our cookie banner, the Site uses Grafana Faro, a self-hosted front-end monitoring tool, to understand real-browser performance and reliability. Faro may collect technical performance information such as page-load timing, Web Vitals, JavaScript errors, basic device and browser information, and a randomly generated session identifier stored in browser web storage. Faro does not use cookies, its data stays on infrastructure we operate, and it is not shared with third-party advertising networks. Faro does not load if you decline or ignore the cookie banner.
4. Cookies and local storage
The Site uses cookies, local storage, and similar browser-based technologies sparingly:
- Strictly necessary. These support basic Site operation and security and cannot be turned off through the cookie controls. They include browser local storage that remembers your cookie and analytics consent
choice (
pnt_analytics_consent), so the banner does not reappear on every visit; a short-lived security token our web application firewall may use to tell legitimate visitors apart from automated abuse; and standard WordPress cookies set only if you log in or interact with certain Site features. These are first-party and are not used to track you across other sites. - Anonymous analytics (Matomo). Our self-hosted Matomo runs in cookieless mode and stores no identifiers on your device. Runs by default on a legitimate-interest basis; no consent required.
- Google Analytics cookies. Set only after you accept through our cookie banner. Used to measure how the Site is used in aggregate.
- Grafana Faro web storage. Used only after you accept through our cookie banner, to group performance signals from a single visit.
You can change your choices at any time using the “Cookie Preferences” link in the Site footer. You can also control cookies and browser storage through your browser settings, although blocking them may affect Site features.
5. How information is used
We use the information we collect to:
- Operate, maintain, secure, and improve the Site
- Respond to inquiries and messages you send
- Schedule and hold consultations you book
- Process invoice payments and maintain billing records
- Understand, in aggregate, how the Site is used
- Monitor Site performance and reliability where consented
- Detect and prevent fraud, abuse, spam, and security incidents
- Comply with legal and regulatory obligations
We do not sell your personal information, use it for third-party advertising, or share it with data brokers.
6. Information sharing
We share information only as follows:
- With service providers who help us operate the Site and process payments (AWS, Chase Paymentech, Intuit, and Google), under their respective agreements with us
- For legal compliance when required by law, court order, or government request
- To protect the rights and safety of Play Nice Together, Inc., our clients, Site visitors, or the public
- In connection with a business transaction such as a merger or acquisition, in which case the acquiring entity will be bound by this Privacy Policy or will provide appropriate notice of any changes
7. Your rights and choices
Cookie and consent choices. Use the “Cookie Preferences” link in the footer to update your choices for Google Analytics and Grafana Faro at any time.
California residents. Under the California Consumer Privacy Act, as amended by the California Privacy Rights Act, California residents may have rights to know what personal information is collected, to delete it, to correct it, and to opt out of its sale or its sharing for cross-context behavioral advertising. We do not sell personal information or share it for cross-context behavioral advertising. We will not discriminate or retaliate against you for exercising these rights.
Other US states. Residents of Virginia, Colorado, Connecticut, Utah, Texas, and other states with comprehensive privacy laws may have similar rights regarding personal information handled through the Site. We honor these rights as required by applicable law.
Visitors from the EU and UK. If you visit from the European Economic Area or the United Kingdom, we process your personal information on the lawful bases described in this Policy: our legitimate interest in operating, securing, and measuring the Site, your consent (for Google Analytics and Grafana Faro), or contractual necessity (for appointments you book and invoices you pay). You may have rights to access, rectify, erase, restrict, or object to our processing of your personal information, and to lodge a complaint with your local supervisory authority.
Outside the United States. The Site is operated from the United States. If you visit from elsewhere, your information may be transferred to and processed in the United States, where privacy laws may differ from those in your location.
Making a request. To exercise any of these rights, contact us through the contact page or by mail at the address in section 12. We will respond within 45 days, or as otherwise required by applicable law, and may need to verify your request before acting on it.
8. Children’s privacy
The Site is intended for businesses and a general adult audience and is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided personal information through the Site, contact us and we will take appropriate steps to delete it.
9. Data retention
We keep personal information only as long as reasonably necessary for the purposes described in this Policy, unless a longer period is required or permitted by law.
- Server and security logs. Web server and firewall logs are retained for approximately 90 days and then deleted or rotated.
- Billing records. Invoice and payment records are retained indefinitely as part of our business, tax, and accounting records.
- Contact and appointment records. Messages and appointment details are retained as long as needed to respond, maintain business records, and comply with legal obligations, unless deletion is appropriate and requested.
- Matomo analytics. Self-hosted analytics data is retained for up to 24 months for trend analysis and then purged.
- Google Analytics. Collected only with consent and retained according to the configured Google Analytics retention setting (up to 26 months) and Google’s policies.
- Grafana Faro. Collected only with consent and retained for up to 90 days for performance and reliability analysis.
10. Security
We use reasonable administrative, technical, and physical measures to protect the information we hold, including HTTPS encryption, a web application firewall, and access controls. No method of transmission or storage over the internet is completely secure, and we cannot guarantee absolute security. In the event of a data breach affecting your personal information, we will notify you as required by applicable law.
11. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. The “Last updated” date above reflects the most recent version. Material changes may be highlighted on the Site. Your continued use of the Site after changes are posted constitutes acceptance of the updated policy.
12. Contact
For questions about this Privacy Policy or to exercise your rights, reach us through the contact page, by phone at (914) 347-2899, or write to:
Play Nice Together, Inc.
PO Box 510
Elmsford, NY 10523
Last updated July 2026.
No, you may not look at our code. That's indecent ...
© Play Nice Together, Inc. All rights reserved.
Play Nice Together® is a registered trademark of Play Nice Together, Inc.
We use privacy-friendly, cookieless Matomo analytics by default to understand basic site usage. If you accept, we’ll also enable Google Analytics and performance monitoring to help understand how visitors use the site and how it performs. No ads, no data brokers. You can change your choice later. Learn more about cookies