GLBA Privacy Policy
FACTS
WHAT DOES HERITAGE BANK OF COMMERCE DO WITH YOUR PERSONAL INFORMATION?
WHY?
Financial companies choose how they share your personal information. Federal law gives consumers the right to limit some but not all sharing. Federal law also requires us to tell you how we collect, share, and protect your personal information. Please read this notice carefully to understand what we do.
WHAT?
The types of personal information we collect and share depend on the product or service you have with us. This information can include:
- Social Security Number
- Account Balances
- Checking Account Information
- Account Transactions
- Transaction History
- Overdraft History
When you are no longer our customer, we continue to share your information as described in this notice.
HOW?
All financial companies need to share customers’ personal information to run their everyday business. In the section below, we list the reasons financial companies can share their customers’ personal information; the reasons Heritage Bank of Commerce chooses to share; and whether you can limit this sharing.
Reasons we can share your personal information | Does Heritage Bank of Commerce share? | Can you limit this sharing? |
---|---|---|
For our everyday business purposes-such as to process your transactions, maintain your account(s), respond to court orders and legal investigations, or report to credit bureaus | Yes | No |
For our marketing purposes- to offer our products and services to you | Yes | No |
For joint marketing with other financial companies | No | We don’t share |
For our affiliates’ everyday business purposes- information about your transactions and experiences | Yes | No |
For our affiliates’ everyday business purposes- information about your creditworthiness | No | We don’t share |
For our affiliates to market to you | No | We don’t share |
For non-affiliates to market to you | No | We don’t share |
Who we are | |
---|---|
Who is providing this notice? | Heritage Bank of Commerce |
What we do | |
---|---|
How does Heritage Bank of Commerce protect my personal information? | To protect your personal information from unauthorized access and use, we use security measures that comply with federal law. These measures include computer safeguards and secured files and buildings.
We restrict access to personal information about you to those employees who need to know that information to provide products or services to you. |
How does Heritage Bank of Commerce collect my personal information? | We collect your personal information, for example, when you
We also collect your personal information from others, such as credit bureaus, affiliates, or other companies. |
Why can’t I limit all sharing? | Federal law gives you the right to limit only
State laws and individual companies may give you additional rights to limit sharing. |
Definitions | |
---|---|
Affiliates | Companies related by common ownership or control. They can be financial and non-financial companies.
|
Non-affiliates | Companies not related by common ownership or control. They can be financial and non-financial companies.
|
Joint Marketing | A formal agreement between non-affiliated financial companies that together market financial products or services to you.
|
CALIFORNIA CONSUMER PRIVACY ACT POLICY
Effective/Last Updated January 1, 2023
Heritage Bank of Commerce (the “Bank”) and all applicable subsidiaries comply with all requirements of the California Consumer Privacy Act of 2018, including as how that law is amended by the California Privacy Rights Act of 2020 (collectively the “CCPA”).
Your Right to Know About Personal Information Collected
Under the CCPA a consumer (which means a California resident) has the right to know what personal information the business has collected about them, including the categories of personal information, the categories of sources from which the personal information was collected, the business or commercial purpose for collecting, selling or sharing the personal information, the categories of third parties to whom the business discloses personal information and the specific pieces of personal information the business has collected. Thus, you may request that we disclose what personal information we collect, use, and disclose about you (a “Request to Know” or “RTK”).
If you wish to submit a verifiable RTK you should do one of the following:
Call 1 (833) 996-1801;
Send an e-mail to CCPA@herbank.com; or
Ask your branch representative to provide you with a form for your request.
When you submit a RTK, the Bank will verify your identity. To verify your identity we will ask you for your name, address, and other pieces of information pertinent to your request that we can use to match with the information we have on file. The amount and type of information we request may vary depending on the sensitivity of personal information covered by the request.
Collection of Personal Information (“PI”)
Below is a list of categories of PI and categories of sensitive PI we have collected about consumers in the preceding 12 months. We have also provided the categories of sources from which we collected the personal information, and the business or commercial purpose for collecting the information:
Below is a list of categories of personal information we have collected about consumers in the preceding 12 months. For each category identified we have also provided the categories of sources from which we collected the personal information, the business or commercial purpose for collecting the information, and the categories of third parties with whom we share the personal information:
Categories of PI we Collect |
|
---|---|
Categories of Sensitive PI We Collect |
|
Categories of Sources from Which We Collect the PI |
|
Our Business or Commercial Purpose for Collecting the PI |
|
Sale or Sharing of Personal Information
We have not sold or shared any personal information about consumers in the preceding 12 months.
We DO NOT have actual knowledge that we sell or share the personal information of minors under 16 years of age.
Disclosure of Personal Information for Business Purposes
We have disclosed personal information about consumers to third parties for a business or commercial purpose in the preceding 12 months. Below is a list of the categories of personal information we have disclosed to third parties in the preceding 12 months for a business or commercial purpose. For each category identified we have also disclosed the category of third party to whom the PI was disclosed.
Categories of PI Disclosed to Third Parties | Categories of Third Parties With Whom the PI Was Disclosed |
---|---|
Identity Data |
|
Personal Data |
|
Characteristic Data |
|
Transaction Data |
|
Financial Data |
|
Usage Data |
|
Geolocation Data |
|
Biometric Data |
|
Sensory Data |
|
Employment-Related Data |
|
Education Data |
|
Business Purposes
We have disclosed personal information to third parties for the following business or commercial purposes:
- Auditing of bank records for compliance with state and federal banking regulation;
- Detecting security incidents, protecting against malicious, deceptive, fraudulent or illegal activity, and prosecuting those responsible for that activity;
- Performing services on behalf of the Bank, including maintaining or servicing accounts, providing customer service, processing or fulfilling orders or transactions, verifying customer information, processing payments, providing advertising or marketing services, providing analytic services, or providing similar services on behalf of the business or service provider; and
- Undertaking internal research for technological development and demonstration.
USE OF SENSITIVE PERSONAL INFORMATION
We have not used or disclosed any of the categories of sensitive PI for purposes other than those specified as permissible uses as set forth in the CCPA and the implementing regulations adopted by the California Privacy Protection Agency (including how the CCPA and its regulations may be amended from time to time) that do not trigger a consumers right to limit use.
https://heritagebankofcommerce.bank/wp-admin/post.php?post=779&action=edit#
Rights under the CCPA
Right to Request Deletion or Corrections of Personal Information
You have the right to request the deletion of any personal information about you which we have collected or maintained, subject to certain exceptions. You also have the right to request that we correct inaccurate personal information we may maintain about you.
If you wish to submit a request to delete or request to correct the personal information we collected or maintain about you, you may call us at (833) 996-1801, or e-mail us at CCPA@herbank.com.
In order to respond to a request to delete or request to correct we will need to verify your identity. Bank may contact you to confirm your identity and comply with your request. To verify your identity we will ask you for your name, address, and other pieces of information pertinent to your request that we can use to match with the information we have on file. The amount and type of information we request may vary depending on the sensitivity of personal information covered by the request. We will endeavor to respond to a verifiable consumer request within 45 days of its receipt. If we require more time (up to 90 days), we will inform you of the reason and extension period in writing. The response we provide will also explain the reasons we cannot comply with a request, if applicable.
Right to Opt-Out of the Sale or Sharing of Personal Information
You have the right to opt out of the sale or sharing of your personal information, if a business sells or shares your personal information.
The Bank does not sell or share your personal information.
Right to Non-Discrimination for the Exercise of Your Privacy Rights
You have a right not to receive discriminatory treatment by us for the exercise of any privacy rights conferred by the CCPA, including an employee’s, applicant’s or independent contractor’s right not to be retaliated against for the exercise of their rights under the CCPA.
Right to Limit Use of Sensitive Personal Information
You have the right to limit the use or disclosure of your sensitive personal information if a business uses or discloses your sensitive personal information for certain reasons not expressly permitted by the CCPA or its implementing regulations.
Opt Out Preference Signals
We do not sell or share personal information so the receipt of an opt-out preference signal will not impact how we collect, use or disclose your personal information.
Authorized Agent
You may designate an authorized agent to make a request under the CCPA on your behalf by providing the agent written permission to make the request and sending that written authorization to Heritage Bank of Commerce, Attn: CCPA, 224 Airport Parkway, San Jose, CA 95110. We will verify your identity with the authorized agent.
Contact for More Information
For more information, please call us at (833) 996-1801, or e-mail us at CCPA@herbank.com.
HBC Secure Privacy Policy
HBC Secure is an application for mobile banking that provides a seamless experience to use and manage your debit cards. Visit here to see the HBC Secure Privacy Policy.
Cookie Policy
The Cookie Policy explains what cookies are and how we use them, the types of cookies we use i.e, the information we collect using cookies and how that information is used, and how to control the cookie preferences. To see the complete Cookie Policy visit here.
Google Analytics
Like many other websites, we employ Google Analytics to collect non-personally identifiable information when available (such as age, gender and interests). Any third-party sources provide us with a summary that is statistical in nature and cannot be tracked back to a specific individual. We use this information to gauge the impact of website changes and to make improvements to our website. However, we do not facilitate the merging of your personally identifiable information with the non-personally identifiable information we collect. Google’s ability to use and share information collected by Google Analytics about your visits to this site is restricted by the Google Analytics Terms of Use and the Google Privacy Policy. You can prevent Google Analytics from recognizing you on return visits to this site by disabling cookies on your browser.