This policy describes the current website, including its use of Google Analytics for aggregate website measurement. It also explains how Canadian privacy requirements, including PIPEDA, and GDPR rights may apply. It will be reviewed whenever forms, newsletters, advertising, accounts, PostHog, or other data tools are added or changed.
1. Scope and accountability
This policy applies to personal information handled through onikadainty.com. Onika L. Dainty is responsible for the content and relationship with visitors. SturdyCloud manages the website’s technical operations and may support privacy, security, and access requests.
Questions may be sent to [email protected].
2. Information that may be collected
Information you provide
If you email, request speaking information, suggest a resource, or ask for content permission, we may receive your name, email address, organization, message, and any details you choose to include.
Technical information
The hosting provider and technical manager may automatically process standard server information such as an IP address, browser type, device type, requested page, referring page, date, time, and security events. This information helps deliver and protect the website.
Sensitive information
Please do not send medical records, detailed health information, passwords, payment information, or other sensitive information through a general email. The website is not a clinical service or secure patient portal.
Cookies and Google Analytics
The website uses Google Analytics 4 to understand aggregate website use, including pages visited, approximate location, device and browser information, referring sources, and interaction events. Google Analytics may use cookies or similar technologies and may process information on Google’s systems. The website’s measurement ID is G-6XSY0CP3N7. The website does not intentionally use Google Analytics for behavioural advertising, and personal information is not sold. Learn more in Google’s Privacy Policy.
PostHog
PostHog is not currently active on this website. If it is activated, it may be used to understand page views and website interactions and may process technical information such as an IP address, browser and device details, referring source, pages visited, event times, approximate location, and a pseudonymous visitor identifier. Session recording, automatic form capture, and the intentional collection of health information will not be enabled without a separate privacy review, an updated notice, and consent controls where required. The selected PostHog hosting region, retention period, and Data Processing Agreement will be confirmed before activation. Learn more in PostHog’s Privacy Policy and privacy documentation.
Advertising
The Journal has been prepared for possible future Google AdSense advertising, but advertising is not currently active. Before ads are enabled, this policy and any consent choices will be updated to describe the advertising technologies in use.
3. How information may be used
- to respond to messages, speaking inquiries, permission requests, and resource suggestions;
- to manage relationships and provide requested information;
- to understand aggregate website use and improve navigation and content;
- to operate, maintain, troubleshoot, and secure the website;
- to prevent misuse, fraud, or security incidents;
- to keep appropriate business and consent records; and
- to comply with legal obligations or protect legal rights.
Personal information should be collected and used only for identified, reasonable purposes and limited to what is needed.
Legal bases where GDPR applies
Where the General Data Protection Regulation applies, information will be processed only when there is an appropriate legal basis, which may include consent, legitimate interests in operating and securing the website, responding to a request, or compliance with a legal obligation. Consent will be requested before non-essential analytics or advertising technologies are activated where prior consent is required. Consent may be withdrawn without affecting processing that was lawful before withdrawal.
5. Retention and safeguards
Information is kept only as long as reasonably needed for the purpose it was collected, legitimate operational needs, legal requirements, dispute resolution, or security. Reasonable administrative, technical, and organizational safeguards are used based on the sensitivity of the information.
No internet or email system can be guaranteed completely secure. If a service provider processes information in another jurisdiction, that information may be subject to the laws of that jurisdiction.
6. Your privacy choices
Subject to applicable law and appropriate identity verification, you may ask whether personal information about you is held, request access, ask for a correction, withdraw consent where applicable, or raise a concern about how information was handled.
Where GDPR applies, you may also have rights to erasure, restriction, data portability, objection, and freedom from certain decisions based only on automated processing. You may complain to the data-protection authority where you live, work, or believe an infringement occurred.
You may limit cookies through your browser settings or install the Google Analytics opt-out browser add-on. Blocking analytics may affect website measurement but should not prevent access to the website’s main content.
To help us locate the information, include your name, the email address you used, the approximate date of contact, and the nature of your request. We will respond as required by applicable law.
For general Canadian privacy information, visit the Office of the Privacy Commissioner of Canada. For European privacy rights, visit the European Commission’s GDPR information for individuals.
7. Applicable privacy frameworks
PIPEDA and Canadian private-sector privacy
Where applicable, the website’s handling of personal information is guided by Canada’s Personal Information Protection and Electronic Documents Act, commonly called PIPEDA. Its principles include accountability, identifying purposes, consent, limiting collection, limiting use and retention, accuracy, safeguards, openness, individual access, and the ability to challenge compliance.
Ontario health information
Ontario’s Personal Health Information Protection Act, commonly called PHIPA, applies to health information custodians and certain handling of personal health information. This website is a lived-experience, educational, and speaking website. It is not a health information custodian, healthcare provider, clinical record system, or patient portal, and visitors should not submit personal health records or detailed health information through general email.
GDPR
Where the European Union General Data Protection Regulation applies, the website will follow applicable requirements concerning lawful, fair, and transparent processing, purpose limitation, data minimization, storage limitation, accuracy, security, accountability, international transfers, and data-subject rights. Nothing in this policy is intended to reduce rights provided by applicable privacy law.
8. SturdyCloud’s role, liability, and indemnity
Technical role
SturdyCloud acts as a technical service provider for the website. It does not author or verify Onika’s personal stories, opinions, mental health information, external resources, or third-party content, and it is not responsible for decisions visitors make based on that material.
Limitation of liability
To the fullest extent permitted by applicable law, SturdyCloud and its owners, directors, officers, employees, contractors, agents, affiliates, and service providers are not responsible or liable for loss, harm, claims, costs, service interruptions, third-party practices, external links, unauthorized access, or consequences arising from the website, its content, its availability, or your use of or reliance on it.
Your indemnity
By accessing or using this website, you agree, to the fullest extent permitted by law, to defend, indemnify, and hold harmless SturdyCloud and its owners, directors, officers, employees, contractors, agents, affiliates, and service providers from claims, liabilities, damages, losses, and reasonable legal costs arising from your unlawful use of the website, breach of the Terms of Use, infringement of another person’s rights, misuse of content, unauthorized access attempts, or material you submit or transmit.
Nothing in this policy limits privacy, security, consumer-protection, or other legal duties that cannot lawfully be excluded, waived, or limited. Organizations remain accountable for personal information under their control as required by applicable law.
9. Privacy contact
Privacy questions, access requests, and corrections
Email [email protected]. Please do not include sensitive health or financial information in your first message.