A website privacy policy is a legal statement a business places on its website to inform users of what personally identifiable information (PII) the business collects, and how it complies with privacy laws. Privacy laws govern the collection, use, storage, protection, sharing, and deletion of PII—and the disclosure to consumers of what PII a business has collected about them. Examples of PII include names, addresses, telephone numbers, credit card information, and online user names and passwords. Many states have privacy laws, and these laws vary from state to state.
In New Jersey, as in many states, businesses that operate websites and collect personally identifiable information (PII) from New Jersey residents are expected to have a privacy policy in place. This policy must clearly disclose the types of PII collected, the purposes for which it is collected, how it is used, and with whom it is shared. New Jersey follows the general principles outlined in various federal privacy laws, such as the Children's Online Privacy Protection Act (COPPA) for the collection of data from children under the age of 13, and the Gramm-Leach-Bliley Act (GLBA) for financial institutions. Additionally, New Jersey has its own Consumer Fraud Act, which requires businesses to notify consumers of any security breaches involving personal information. While there is no specific state statute in New Jersey that mandates the presence of a privacy policy for all websites, failure to adhere to stated privacy policies or engaging in deceptive practices in relation to privacy could lead to legal action under consumer protection laws. It is important for businesses to be transparent about their data practices and to comply with applicable federal and state regulations to avoid legal issues.