Privacy Policy

Privacy Policy

Your privacy is important to us. Grace Presbyterian Church does not sell or disclose your personal information to third parties for marketing purposes. This policy provides transparency around the collection and use of your personal information.

Legal information

This Privacy Policy was last modified on October 6, 2025.

Grace Presbyterian Church (“us”, “we”, or “our”) operates https://www.gracevienna.org (the “Site”). This page informs you of our policies regarding the collection, use and disclosure of Personal Information we receive from users of the Site. The “Members” area of our site is private and only accessible to those who request a “Login.” Anyone may visit the public areas of our site without a login.

Use of Personal information

We use your Personal Information only for providing and improving the Site. By using the Site, you agree to the collection and use of information in accordance with this policy.

Information Collection

While using our Site, we only ask you to provide us with certain personally identifiable information that can be used to contact or identify you via our Contact Form. Personally identifiable information may include, but is not limited to, your name and email address.

Security

The security of your Personal Information is important to us, but remember that no method of transmission over the Internet, or method of electronic storage, is 100% secure. While we strive to use commercially acceptable means to protect your Personal Information, we cannot guarantee its absolute security.

Links to Other Sites

Our Site may contain links to other sites that are not operated by us. If you click on a third party link, you will be directed to that third party’s site. We strongly advise you to review the Privacy Policy of every site you visit.

We have no control over, and assume no responsibility for, the content, privacy policies, or practices of any third party sites or services.

Log Data

Like many site operators, we collect information that your browser sends whenever you visit our Site (“Log Data”). This Log Data may include information such as your computer’s Internet Protocol (“IP”) address, browser type, browser version, the pages of our Site that you visit, the time and date of your visit, the time spent on those pages and other statistics.

Cookies

Cookies are files with a small amount of data, which may include an anonymous unique identifier. Cookies are sent to your browser from a web site and stored on your computer’s hard drive. Like many sites, we use “cookies” to collect information. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Site.

Service Providers

We share information, including personal information, with our third-party service providers that we use to provide hosting for and maintenance of our Websites, application development, backup, storage, payment processing, analytics and other services for us. These third-party service providers may have access to or process your personal information for the purpose of providing these services for us. We do not permit our third-party service providers to use the personal information that we share with them for their marketing purposes or for any other purpose than in connection with the services they provide to us.

1. Personal Information:

  • Breeze (via “Give” menu) – We may store basic user information like name and email submitted through the Breeze form. Credit card or bank details are not saved. Financial data is securely stored by the payment processor, Stripe. Breeze Privacy Policy.

2. Security and Performance Logs:

  • Solid Security Pro – The website may log IP addresses and browser details for security purposes (e.g., firewall, spam protection). Solid Security Pro Privacy Policy

3. WordPress Core and Plugins:

Some plugins may store user data.  ​This data can include names, email addresses, and other personal information.  How WordPress plugins collect data:

  • Contact Forms: Collects data when users submit a form on your site.  See “Contact Forms” above
  • Social media sharing buttons:  Collects data when users share your content on social media 
  • Analytics cookies:  Collects data about how users interact with your site

More About WordPress

Who they are:

  • WordPress is our website content management system (CMS) provider and hosts this site at https://gracevienna.org.

Cookies:

  • If you visit our login page, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.
  • When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.
  • If you edit or publish an article, an additional cookie will be saved in your browser. This cookie includes no personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.

Embedded content from other websites:

  • Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.
  • These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.

Who we share your data with:

  • If you request a password reset, your IP address will be included in the reset email.

How long we retain your data:

  • If you leave a comment, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.
  • For users that register, request a “Login” on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.

What rights you have over your data:

  • If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.

Where your data is sent:

  • Visitor comments may be checked through an automated spam detection service.

About Solid Security

What personal data we collect and why we collect it:

  • Cookies – A cookie named “itsec_interstitial_browser” is created to track a user’s login process to implement enhanced security features.
  • Security Logs -The IP address of visitors, user ID of logged in users, and username of login attempts are conditionally logged to check for malicious activity and to protect the site from specific kinds of attacks. Examples of conditions when logging occurs include login attempts, log out requests, requests for suspicious URLs, changes to site content, and password updates. This information is retained for 180 days.

Who we share your data with:

  • A QR code image is generated for users that set up two-factor authentication for this site. This image is generated using a SolidWP-hosted API. In the process of generating this image, your username is sent to the API. This data is not logged. For privacy policy details, please see the SolidWP Privacy Policy.
  • When running Security Check, solidwp.com will be contacted as part of a process to determine if the site supports TLS/SSL requests. No personal data is sent to solidwp.com as part of this process. Requests to solidwp.com include the site’s URL. For solidwp.com privacy policy details, please see the SolidWP Privacy Policy.
  • This site is scanned for potential malware and vulnerabilities by the SolidWP Site Scanner. We do not send personal information to the scanner; however, the scanner could find personal information posted publicly (such as in comments) during the scan.
  • In order to ensure file integrity, Solid Security pulls data from wordpress.org, solidwp.com, ithemes.com and amazonaws.com. No personal data is sent to these sites. Requests to wordpress.org include the WordPress version, the site’s locale, a list of installed plugins, and a list of each plugin’s version. Requests to solidwp.com and amazonaws.com include the installed SolidWP products and their versions. For wordpress.org privacy policy details, please see the WordPress Privacy Policy. For solidwp.com privacy policy details, please see the SolidWP Privacy Policy. Requests to amazonaws.com are to retrieve content added and managed by SolidWP which is covered by the Amazon Web Services Data Privacy policy.

How long we retain your data:

  • Security logs are retained for 180 days.

Where we send your data:

  • This site is part of a network of sites that protect against distributed brute force attacks. To enable this protection, the IP address of visitors attempting to log into the site is shared with a service provided by solidwp.com. For privacy policy details, please see the SolidWP Privacy Policy.

About Sold BAckups

What personal data we collect and why we collect it:

  • Backups – Per the functionality of this plugin, backups of your website files and/or database are created and stored locally on your server and/or remotely on 3rd party servers based on the settings of this plugin. Archives can include, but are not limited to, file and database assets, including hashed passwords, 3rd party data, uploads and user information. These backups are stored to provide critical functionality of this plugin.
  • Cookies – Cookies are used to handle importing and restoring backups.
  • Plugin Settings – Some plugin settings ask for an email address or login credentials to 3rd party services. This is stored to provide functional features to the plugin.
  • Recent Activity – This plugin tracks dates, times and actions of successful and unsuccessful backups and remote data transfers. This is stored to help make the plugin better and assist with troubleshooting problems.
  • Logging – This plugin logs some personal information such as email addresses, usernames, database and server information. This is stored to help make the plugin better and assist with troubleshooting problems.

How long we retain your data:

  • Backups – Backup retention is completely up to the website owner. This can vary from less than one minute to indefinitely.
  • Cookies – Cookies used during the restore/import process expire after 24 hours.
  • Plugin Settings – Settings are retained indefinitely until they are changed or removed manually.

Where we send your data:

  • Backups – Backups are not automatically sent to remote destinations automatically, however backups can be configured to be sent to third-party servers.

How we protect your data:

  • Backups – Backup zip files are stored with hashed file names to prevent filename guessing and directory browsing is disabled.

What third parties we receive data from:

  • Links to third party privacy policies have been included.

Embedded Content From Other Websites

Pages on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.

These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.

How long we retain your data

Unless otherwise noted above, for users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.