PRIVACY POLICY

The OT Connection, LLC

Effective Date: July 1, 2025

Website: www.theotconnection.com

This Privacy Policy describes how The OT Connection, LLC collects, uses, stores, discloses,

and protects your personal information when you visit our website at www.theotconnection.com,

create an account, purchase products or services, or otherwise interact with us. By using our

Site or Services, you agree to the collection and use of information in accordance with this

Policy.

1. INFORMATION WE COLLECT

1.1 Information You Provide Directly

• Identity information: Name, professional credentials, licensure status;

• Contact information: Email address, phone number, mailing address;

• Payment information: Credit or debit card details (processed and stored by our third-

party payment processor; the Company does not store full card numbers);

• Account credentials: Username and password;

• Professional information: Occupation, employer, state of licensure;

• Communications: Messages you send us, survey responses, feedback.

1.2 Information Collected Automatically

When you visit our Site, we may automatically collect:

• Log data: IP address, browser type, operating system, referring URLs, pages visited,

time and date of access;

• Device information: Hardware model, operating system version, unique device

identifiers;

• Usage data: Clickstream data, course progress, content accessed, time spent on pages;

• Cookies and similar tracking technologies (see our Cookie Policy for details).

1.3 Information from Third Parties

We may receive information about you from third parties such as payment processors, email

marketing platforms, learning management system providers, and social media platforms if you

choose to connect those accounts.

2

Effective July 1, 2025 |

[email protected]

2. HOW WE USE YOUR INFORMATION

We use your personal information for the following purposes:

• To process and fulfill your purchases and course registrations;

• To create and manage your account;

• To deliver continuing education content and issue completion certificates;

• To communicate with you about your orders, account, and our Services;

• To send you marketing communications if you have opted in (you may opt out at any

time);

• To send SMS text messages if you have opted in (see A2P compliance disclosures);

• To comply with continuing education accreditation and record-keeping requirements;

• To analyze and improve our Site, Services, and user experience;

• To detect, prevent, and address fraudulent activity or security incidents;

• To comply with applicable legal obligations.

3. LEGAL BASIS FOR PROCESSING (GDPR)

For users in the European Economic Area (EEA) or United Kingdom, we rely on the following

legal bases for processing your personal data:

• Contract performance: Processing necessary to fulfill your purchase or service

agreement;

• Legitimate interests: Improving our Services, fraud prevention, and direct marketing to

existing customers;

• Consent: Where you have provided explicit consent, such as for marketing

communications or cookies;

• Legal obligation: Compliance with applicable laws and regulations.

4. HOW WE SHARE YOUR INFORMATION

We do not sell your personal information.

4.1 Non-sharing Clause

No mobile information will be shared with third parties/affiliates for marketing/promotional

purposes. Information sharing to subcontractors in support services, such as customer service,

is permitted. All other use case categories exclude text messaging originator opt-in data and

consent; this information will not be shared with any third parties.

We may share your information with:

4.2 Service Providers

3

Effective July 1, 2025 |

[email protected]

Third-party vendors who assist us in operating our Site and Services, including payment

processors, email platforms, learning management systems, webinar providers, analytics

services, and customer support tools. These vendors are contractually obligated to protect your

data and use it only for the purposes we specify.

4.3 Accreditation and Continuing Education Bodies

If you complete a course for continuing education credit, we may share your name, credential,

and completion data with relevant accrediting bodies or state licensure boards as required.

4.4 Legal Requirements

We may disclose your information if required by law, court order, or governmental authority, or if

we believe disclosure is necessary to protect the rights, property, or safety of the Company, our

users, or the public.

4.5 Business Transfers

In the event of a merger, acquisition, reorganization, or sale of all or a portion of our assets, your

personal information may be transferred as part of that transaction. We will notify you via email

or prominent notice on our Site of any such change.

4.6 AI Tools and Automations

The Company may utilize artificial intelligence tools, automations, analytics systems, or

machine-learning-enabled software to support customer service, marketing, administrative

functions, educational delivery, and operational efficiency. Such tools are used in conjunction

with commercially reasonable safeguards and contractual protections where appropriate.

5. DATA RETENTION

We retain your personal information for as long as necessary to fulfill the purposes described in

this Policy, comply with our legal obligations, resolve disputes, and enforce our agreements.

Course completion records may be retained indefinitely to support your continuing education

documentation needs. When retention is no longer necessary, we securely delete or anonymize

your data. The Company may retain continuing education completion records, attendance data,

certificates, and related documentation for compliance, accreditation, and audit purposes for as

long as reasonably necessary.

6. DATA SECURITY

We implement reasonable administrative, technical, and physical safeguards to protect your

personal information from unauthorized access, disclosure, alteration, and destruction.

However, no method of transmission over the Internet or electronic storage is 100% secure. We

4

Effective July 1, 2025 |

[email protected]

cannot guarantee absolute security and encourage you to use a strong, unique password for

your account.

6.1 Data Incidents

Although the Company employs commercially reasonable safeguards, no method of electronic

transmission or storage is completely secure. In the event of a suspected data breach affecting

personal information, the Company reserves the right to investigate, mitigate, and provide

notifications consistent with applicable law.

7. YOUR RIGHTS AND CHOICES

7.1 Access and Correction

You may access and update your account information at any time by logging into your account

or contacting us at [email protected].

7.2 Deletion

You may request deletion of your personal information by contacting us at

[email protected]. Please note that we may be required to retain certain information

for legal, accreditation, or contractual purposes.

7.3 Marketing Opt-Out

You may opt out of marketing emails at any time by clicking the unsubscribe link in any email or

contacting us directly. You may opt out of SMS communications by replying STOP to any text

message.

7.4 Cookies

You may control cookie preferences through your browser settings. See our Cookie Policy for

more information.

7.5 California Residents (CCPA/CPRA)

California residents have the right to: know what personal information is collected about them;

request deletion of their personal information; opt out of the sale of personal information (we do

not sell personal information); and non-discrimination for exercising these rights. To submit a

verifiable consumer request, contact us at [email protected].

7.6 EEA and UK Residents (GDPR/UK GDPR)

If you are located in the EEA or UK, you have rights including: access, rectification, erasure,

restriction of processing, data portability, and the right to object. You also have the right to lodge

a complaint with your local supervisory authority. Contact us at [email protected] to

exercise these rights.

5

Effective July 1, 2025 |

[email protected]

7.7 Nevada Residents

Nevada residents may opt out of the sale of covered information. We do not sell personal

information, but you may submit an opt-out request at [email protected].

8. CHILDREN'S PRIVACY

Our Site and Services are intended for adults aged 18 and over and are not directed to children

under the age of 13. We do not knowingly collect personal information from children under 13. If

we become aware that we have collected personal information from a child under 13 without

parental consent, we will take steps to delete that information promptly.

9. THIRD-PARTY LINKS

Our Site may contain links to third-party websites. We are not responsible for the privacy

practices of those sites and encourage you to review their privacy policies before providing any

personal information.

10. INTERNATIONAL DATA TRANSFERS

Our servers are located in the United States. If you access our Site from outside the United

States, your information may be transferred to, stored, and processed in the United States. By

using our Site, you consent to such transfers. Where required, we will implement appropriate

safeguards such as standard contractual clauses approved by the European Commission.

11. CHANGES TO THIS POLICY

We may update this Privacy Policy from time to time. We will notify you of material changes by

posting the updated Policy on our Site with a new effective date. We encourage you to review

this Policy periodically.

12. CONTACT US

If you have questions or concerns about this Privacy Policy, please contact:

The OT Connection, LLC

Attn: Privacy Officer – Jennifer Kinkade, PP-OTD, OTR

1205 Lois Ave., Brookfield, WI 53045

(414) 404-5280

Email: [email protected]

Website: www.theotconnection.com