Privacy
Policy

How To Find This Policy: Our Privacy Policy is available via a link in the footer of every page on our website and in any data collection forms. You can also access it directly at newerahvac.com/privacy-policy.

Who

We Are
New Era Heating & Cooling

Republic, MO 65738

Scope

Effective: 2/1/2026
This Privacy Policy describes how New Era Heating & Cooling ("New Era," "we," "us," or "our") collects, uses, and shares information when you visit Https://newerahvac.com or interact with any site we operate.

Quick-Read Summary

Summed up version
Below is a summed up version of everything located on this page. You are welcome to continue scrolling to read every detail.
Topic What to know in plain English
What we collect: Name, email, phone, service address (from service booking form) and anonymous site analytics (Google, Meta Pixel, Zoho Pagesense).
Why: To gather information so that we can provide services requested at provided service location, answer your questions, and to improve our site.
Who sees it: New Era staff and our trusted vendors that help us host, email, analyze, or automate (2oddballs Creative, Zoho, Host With Love, Meta, Google). We never sell your data.
Your controls: • Email privacy@newerahvac.com for access / delete / correct
• Use the “Cookie Settings” button or a Global Privacy Control (GPC) signal to stop targeted ads.
Kids: We don't direct our services to those under 17.
Security: TLS/SSL encryption while data moves across the internet and MFA-protected admin access on our side. cloudflare.com
Changes: We'll post a banner or send and email if we materially change this policy.

If you’re into the fine print (you wild rebel!), the full nerd version is just below.

Brace Yourself

Legal stuff

Is Clocking In

Information we collect

Scroll to see full table >>
Category Examples Source
Identifiers Directly Entered Personal Identifiers:
  • Full name
  • Email Address
  • Phone Number
  • Service Address

Technical & Device Identifiers:
  • IP address (captured server-side on submission)
  • User-Agent String (browser + OS + device info)
  • Viewport size

Tracking & Marketing Identifiers
  • Session ID
  • First & Third Party Cookie Values (Analytics)
  • Referral URL

Location & Session Metadata
  • Time stamps (when the form was loaded, interacted with, and submitted)
  • Time on form (helps detect spam/bots)
  • Referring page and click-path tracking
You contacting us directly or filling out forms on our site
Internet Activity: Page Views, Clicks, Referring URL, IP Address, Device/Browser Automated via GA4 (Google), Meta Pixel, Zoho PageSense
European Data Protection: Information for Individuals in the EEA. We Provide:
  • Our company name and contact details, and our Data Protection Officer (privacy@2oddballs.com)
  • Purposes of processing (e.g., service delivery, analytics) and the legal basis for each purpose
  • Categories of recipients (e.g., payment processors, hosting providers)
  • Retention period or criteria used to determine retention
  • Your rights to access, rectify, erase, restrict processing, data portability, object to processing, and lodge a complaint with an EU supervisory authority
If you are located in the European Economic Area, at the time we collect personal data from you
Collection from Other Sources: When we obtain personal data from sources other than you, we will, within one month of obtaining that data, provide you with the information listed in the ‘Information for Individuals in the EEA’ section above, or the first time we communicate with you, whichever comes first.
Scroll to see full table >>
Category of Personal Information Source of Collection Purpose(s) Disclosed to Third Parties
Identifiers (name, email, IP address) Forms, Cookies Account setup, service provision Hosting providers, analytics
Financial data Checkout forms Payment processing Payment processor
Commercial data (purchase history) Transaction logs Service Orders Scheduling providers
Internet behavior (cookies, analytics) Site interactions UX improvements Analytics, Website Administration

We do not knowingly collect sensitive personal data or information about children.

How we use data

We use information to:

  • Provide & respond — reply to your inquiries and schedule services.

  • Improve & secure — debug, measure engagement, run A/B tests, and protect against fraud.

  • Comply — meet legal obligations, exercise our rights, or defend against claims.

Purpose and legal basis

We collect your personal data only for the purposes listed in this policy. For individuals in the EEA, we process personal data under the following lawful bases:

  • Contract Performance (Art. 6(1)(b)): To provide our services;

  • Consent (Art. 6(1)(a)): Where you have explicitly consented;

  • Legitimate Interests (Art. 6(1)(f)): For analytics and service improvement, with your rights protected

How share data

We never sell personal data. We may disclose it to:
Recipient Type Example Vendors
Hosting & Infrastructure Host With Love (website/server)
Cloud & Productivity Housecall Pro (schedule service), 2oddballs Creative (website maintenance)
Analytics Google (GA4), Meta (Pixel), Zoho Pagesense

All vendors are bound by contracts requiring them to protect your information.

Third-Party data sharing

We may share your personal information with the following categories of recipients:

  • Service Providers: scheduling processors, payment processors, analytics;

  • Advertising Partners: social media platforms;

  • Professional Advisors: legal, accounting, auditors;

  • Affiliates: website management and hosting providers;

  • Government Agencies and Law Enforcement: where required by law.

  • Analytics: We share your browsing history and online identifiers with analytics providers user interactions with our site in order to make user improvements and update information. To opt out of this sharing, please contact New Era at privacy@newerahvac.com to request us not to sell or share your data.

SMS Consent

SMS consent is not shared with third parties or affiliates for marketing or promotional purposes. We only share a customer’s phone number and SMS opt-in status with service providers (such as messaging platforms, carriers, and vendors) as needed to deliver text messages and provide support.

SMS Terms of Service

By opting into SMS from a web form, by texting us first, or through another agreed method, you consent to receive text messages from us.

Types of messages may include: customer support and conversational messages, service updates, scheduling/appointment reminders, and account notifications.

Message frequency may vary. Message and data rates may apply.

To opt out at any time, reply STOP.
For assistance, reply HELP or visit https://newerahvac.com/

Privacy: https://newerahvac.com/privacy-policy/

SMS consent is not shared with third parties or affiliates.

Cookie & Tracking Technologies

We use first- and third-party cookies, pixels, and similar technologies for analytics.


You can:

  1. Set preferences in our “Cookie Settings” banner (powered by Google).
  2. **Send a browser-based opt-out signal such as **Global Privacy Control (“GPC”). We honor it for all U.S. visitors, as required by the Texas Data Privacy and Security Act. bendelelegal.com

Your Privacy Rights

  • Access/Portability – obtain a copy of data we hold.

  • Correct/Delete – fix inaccuracies or ask us to erase data we don’t need.

  • Opt-out of targeted ads or “sharing” – via Cookie Settings or GPC.

  • Opt-out of “profiling” for legal or similar effects – Not applicable; we do not use automated decision-making that produces legal or similarly significant effects. cppa.ca.gov

  • Appeal – if we deny a request, you may appeal by emailing privacy@newerahvac.com.

Submit any request by emailing privacy@newerahvac.com. We’ll verify identity (match email + confirmation link) and respond within 30 days.

your GDPR Rights (EEA Residents)

  • Right of Access: You can request a copy of your personal data;

  • Right to Rectification: You can request corrections to inaccurate data;

  • Right to Erasure: You can ask us to delete your personal data;

  • Right to Restrict Processing: You can limit how we use your data;

  • Right to Data Portability: You can obtain and reuse your data across services;

  • Right to Object: You can object to data processing for direct marketing;

  • Right to Withdraw Consent: If processing is based on consent, you can withdraw it at any time.

Additional Rights Under California Privacy Rights Act (CPRA):

  • Right to Correct: You may request correction of inaccurate personal information;

  • Right to Limit Use of Sensitive Personal Information: You may require us to use your sensitive personal information only to provide requested goods or services;

  • Right to Non-Discrimination: We may not refuse service or charge differently for exercising these rights.

Data Retention

Data Type Retention Rule
Contact form submissions, CRM records, scheduling service form submissions
  • until you request deletion in writing to New Era Heating and Cooling
  • otherwise New Era will review our lists at our own discretion to decide what information to keep or delete
Google (GA4) Event Level Logs 14 months (Googles longest option for standard GA4)
Aggregated, de-identified analytics
total page views, average session length, number of clicks on a button - basically scrubbed so it can't trace back to you
Indefinitely (because there are no personal identifiers that can trace back to any one given person)

Missouri Data Retention

For Missouri residents, we retain personal information only as long as necessary to fulfill the purpose for which it was collected, or as required by law. We maintain records of any risk assessments sustaining that no harm would likely result from any breach, consistent with Mo. Rev. Stat. §407.1500(5).

Security

We employ a comprehensive security program designed to protect your personal information against unauthorized access, disclosure, or modification, including:

  • Administrative Safeguards: Annual security training for staff, data minimization reviews;

  • Physical Safeguards: Access-controlled facilities, secured backup storage;

  • Technical Safeguards: AES-256 encryption at rest, TLS 1.2+ encryption in transit, role-based access controls, two-factor authentication, and regular vulnerability scanning and penetration testing.

We secure data with:

  • TLS/SSL encryption in transit (look for the lock icon in your browser). cloudflare.com

  • Encrypted daily backups & access logging on our servers.

  • Multi-Factor Authentication (MFA) for all admin and cloud accounts.

  • Quarterly vulnerability scans and annual vendor & contact reviews.

Missouri Breach Notification

In compliance with Mo. Rev. Stat. §407.1500, if we discover or are notified of a breach resulting in unauthorized access to personal information of Missouri residents, New Era will:

  • Notify affected individuals ‘without unreasonable delay’ and in no event later than sixty (60) days after discovering the breach, unless law enforcement requests a delay in writing;

    • The notification will include at minimum:

      • A general description of the breach incident;

      • The categories of personal information involved (e.g., name combined with Social Security number, driver’s license number, financial account information);

      • A toll-free number or email address for affected individuals to obtain further information;

      • Contact information for the three nationwide consumer reporting agencies;

      • Guidance to monitor credit reports and account statements for fraudulent activity

  • Provide notification by written notice, electronic notice, or substitute notice consistent with statutory requirements; and

  • If more than 1,000 Missouri residents are affected, also notify consumer reporting agencies that maintain nationwide files.

Children's Privacy

New Era services are not directed to children under 17. We do not knowingly collect personal information from them. If you believe we have unintentionally collected such data, contact us and we will delete it.

Additional Disclosures

Missouri Merchandising Practices Act

In accordance with Mo. Rev. Stat. §407.020, New Era does not engage in any deceptive, unconscionable, or unfair practices in the collection, use, or disclosure of personal information. Any consumer who believes that our data practices violate this Act may contact the Missouri Attorney General’s office.

Missouri Residents Rights

Missouri residents may request written notification of any breach risk assessments performed under Mo. Rev. Stat. §407.1500(5) and any steps taken to mitigate potential harm. To make a request, contact us at privacy@newerahvac.com.

Health Information Notice

To the extent we collect or process health information that constitutes protected health information (PHI) under HIPAA (which we more than likely never will – but just in case), we will provide you with a Notice of Privacy Practices that explains how we may use and disclose your PHI, your rights under HIPAA, and how to access or amend your PHI. Please contact privacy@newerahvac.com to request a copy.

Effective Date and Changes

This policy is effective as of February 1, 2026. We may update it to reflect changes in laws or business practices. We will notify you of significant changes by posting an updated policy with a revised date and, where required, by notifying you through email or in-site notification.

State Specific

Privacy Addenda

Summary
State Extra Rights
California California Residents: New Era does not sell or share personal information at this time, but if we ever do we will give you the option via a banner on our homepage to opt out or ask us to keep your information private or delete.
California Residents have the right to opt-out of “sharing” for cross-context behavioral advertising.

In addition to your CCPA rights, California residents have the following under the CPRA:
  • Right to Correct: You may request correction of inaccurate personal information we hold about you;
  • Right to Limit Use of Sensitive Personal Information: You may direct us to limit use of your sensitive personal information to the purposes necessary to provide you with goods or services.
Colorado
Connecticut
Delaware
Maryland
Minnesota
New Jersey
Oregon
Tennessee
Texas
Utah
Virginia
(and others)
Opt-out of targeted ads & “profiling”; GPC honored for all.
2025 laws
Florida
Nebraska
Added disclosure of sensitive-data definitions and affirmation that we do not process such data

Full legal text for each state is available on request

Yum, Yum

Cookie

Notice

We use cookies to
(a) remember your preferences
(b) count visitors
(c) improve user experience

Choose “Accept All,” “Reject Non-Essential,” or dive into “Settings” to fine-tune analytics & ad tags. You can change your mind anytime, or send a Global Privacy Control signal and we’ll respect it automatically.