We know that you care how your personal information is used and shared, and we appreciate your trust that we will do so carefully and sensibly. The following terms and conditions describe our Privacy Policy that applies to the websites at the domain. By visiting the websites you are accepting the practices described in this Privacy Policy, including the transfer of Personally Identifiable Information (PII) to the United States or another jurisdiction whose privacy laws may be different from those in your country.

This privacy policy describes how the Vatican Observatory Foundation collects and uses the personal information you provide through our websites. It also describes the choices available to you regarding the use of your personal information and how you can access and correct your personal information. Please read our Privacy Policy carefully to get a clear understanding of how we collect, use, protect or otherwise handle your Personally Identifiable Information (PII). We may update this Privacy Policy from time to time, so please check this Privacy Policy periodically for changes. The date this Privacy Policy was last updated is stated at the end of this document.


How To Contact Us

The Vatican Observatory Foundation (the Data Controller) is the owner and operator of this website. If you need to contact us for any reason related to this Privacy Policy or your use of the website, or you would like to request that you be removed from our database, please contact us at:, or write to us at:


Vatican Observatory Foundation

2017 E. Lee Street

Tucson, AZ 85719 USA


Purpose for the Information We Collect and How We Collect It

We collect information from you when you register on our site, make a donation, join our mailing list, subscribe to the newsletter or blog, or fill out a form. The information may include your name, email address, mailing address, phone number, credit card information or other details.

We may use the information we collect from you in the following ways:

To process your transactions.

To send periodic emails regarding transactions, announcements, newsletters, notices or other products and services.

To follow up after correspondence by email, mail or phone.


Vulnerability and Malware Scanning

We do not use vulnerability scanning and/or scanning to PCI standards. We use regular malware scanning.


Financial Transactions

An external PCI compliant payment gateway handles all financial transactions. All transactions are processed through a gateway provider and are not stored or processed on our servers.


Network Security

Your personal information is contained behind secured networks and is only accessible by a limited number of persons who have special access rights to such systems and are required to keep the information confidential. In addition, all sensitive/credit information you supply is encrypted via Secure Socket Layer (SSL) technology.

We implement a variety of security measures when a user enters or submits information to maintain the safety of your personal information.

We do not use cookies for tracking purposes.


Sharing Your Information

We do not sell, trade, or otherwise transfer to outside parties your Personally Identifiable Information unless we provide users with advance notice. This does not include website hosting partners and other parties who assist us in operating our website, conducting our business, or serving our users, so long as those parties agree to keep this information confidential. We may also release information when its release is appropriate to comply with the law, enforce our site policies, or protect ours or others' rights, property or safety. 

However, non-personally identifiable visitor information may be provided to other parties for marketing, advertising, or other uses.

Occasionally, at our discretion, we may include or offer third-party products or services on our website. These third-party sites have separate and independent privacy policies. We therefore have no responsibility or liability for the content and activities of these linked sites. Nonetheless, we seek to protect the integrity

of our site and welcome any feedback about these sites.

We, along with third-party vendors such as Google, use first-party cookies (such as the Google Analytics cookies) and third-party cookies (such as the DoubleClick cookie) or other third-party identifiers together to compile data regarding user interactions with ad impressions and other ad service functions as they relate to our website.


Embedded content from other websites

Articles on the websites may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website. These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracing your interaction with the embedded content if you have an account and are logged in to that website.


Third Party Websites

We also provide links to a variety of third-party social media sites and/or websites – such as Facebook, Twitter, Instagram, YouTube, Google+ - in order to provide you additional venues in which you can learn about and discuss the activities of the Vatican Observatory Foundation We may also provide links to provide you with additional resources or information. Please note that unless otherwise indicated we have no affiliation with any of these other websites that you may visit via any such links, and cannot control and are not responsible for the information collection, use, and disclosure practices of such third parties; we encourage you to review and understand their privacy practices and policies, if any, prior to providing any personally identifying information to them. We are not responsible for the content or information of these websites, any products,or any other use of the linked websites.


Policies Regarding Blog Subscribers


When blog subscribers leave comments on the site we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.

An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: After approval of your comment, your profile picture is visible to the public in the context of your comment.


Non-Personal Information We Collect by Automated Means And How We Use It

We collect certain non-personal information (data in a form that does not support direct association with any specific person or individual) by automated means when you visit the website. Much of this information is collected through the use of third-party tracking services. The information collected may include usage information, such as the numbers and frequency of users to the website, pages visited, web browsing histories, your location and device, social networking activities and similar data. When gathered, this this data is used in the aggregate, and not in a manner that is intended to identify you personally. This type of aggregate information may be shared with third parties at any time, including advertisers and marketers. In addition to the third-party tracking services mentioned above, we also collect this information through various other means, including "cookies," and IP addresses, as further explained below.


Cookies If you have a subscription and you log in to the blog site, we will set a temporary cookie to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.

When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select "Remember Me", your login will persist for two weeks. If you log out of your account, the login cookies will be removed.

If you edit or publish an article, an additional cookie will be saved in your browser. This cookie includes no personal data and simply indicates the post ID of the article you just edited. It expires after 1 day.


IP Addresses - When you visit and interact with the website, third parties with whom we have contracted to provide services for us may collect Internet Protocol addresses (each an "IP Address"), as well as browser type, Internet service provider (ISP), referring/exit pages, platform type, date/time stamp, and page navigation. An IP Address is a unique identifier number that certain electronic devices use to identify and to communicate with each other on the Internet; your Internet Service Provider automatically assigns an IP Address to the computer that you are using. We gather this information to track website visitor movement in the aggregate, and to gather broad demographic information for aggregate use. Our goal in gathering this information is to learn how our customers and the public are using our service. We may use this information to enhance our website or for other lawful purposes.


Children and Privacy

We do not knowingly collect, use, or disclose personally identifiable information about visitors to our websites that are less than 16 years of age. If you are under the age of 16, you must ask your parent or guardian to assist you while accessing/viewing our websites. If you are the parent or guardian of a child under 16 years of age and believe that they have disclosed personally identifiable information to us, please contact us and will promptly address.


How long we retain your data If you leave a comment on the blog, the comment and its metadata are retained indefinitely. This is so we can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.


For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information. We have a data retention and destruction plan that dictates the policies and procedures related to deletion and/or destruction of all information/data.


What rights you have over your data If you have an account on the blog site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.


Where we send your data Visitor comments may be checked through an automated spam detection service.

Regulations and Principles We Follow

According to California Online Privacy Protection Act (CalOPPA), we agree to the following:

Users can visit our site anonymously.

A link to the Privacy Policy is added to our home page or as a minimum, on the first significant page after entering our website.

Our Privacy Policy link includes the word 'Privacy' and can easily be found on the page specified above.

You will be notified of any Privacy Policy changes:

o On our Privacy Policy Page

o You can change your personal information:

• By emailing us

• By calling us

We honor Do Not Track signals and Do Not Track, plant cookies, or use advertising when a Do Not Track (DNT) browser mechanism is in place.It's also important to note that we do not allow third-party behavioral tracking.

In order to be in line with Fair Information Practices we will take the following responsive action, should a data breach occur:

We will notify you via email

 Within 7 business days

We will notify the users via in-site notification

 Within 7 business days

We also agree to the Individual Redress Principle which requires that individuals have the right to legally pursue enforceable rights against data collectors and processors who fail to adhere to the law. This principle requires not only that individuals have enforceable rights against data users, but also that individuals have recourse to courts or government agencies to investigate and/or prosecute non-compliance by data processors.

To be in accordance with the CAN SPAM Act, we agree to the following:

 Not use false or misleading subjects or email addresses.

 Identify the message as an advertisement in some reasonable way.

 Include the physical address of our business or site headquarters.

 Monitor third-party email marketing services for compliance, if one is used.

 Honor opt-out/unsubscribe requests quickly.

 Allow users to unsubscribe by using the link at the bottom of each email.


The Right To Lodge A Complaint

Please note that if you are an EU resident, you have the right to lodge a complaint about our processing of your information/data with a supervisory authority.


To Unsubscribe
If at any time you would like to unsubscribe from receiving future emails please follow the instructions at the bottom of each email or contact us with your requestand we will promptly remove you from all correspondence.


Vatican Observatory Foundation Mission Statement

The Vatican Observatory Foundation is a 501(c)(3) non-profit corporation of the state of Arizona established to support the scientific research and educational efforts of the astronomers of the Vatican Observatory. It also supports the maintenance and modernization of the Vatican Advanced Technology Telescope located on Mt. Graham in Arizona.


Contacting Us

If there are any questions regarding this privacy policy, you may contact us using the information below.

2017 E. Lee St.

Tucson, AZ 85719





Changes To Our Privacy Policy

We reserve the right to revise this Privacy Policy at any time. Please check back regularly to see if there have been any changes to this policy, which you can determine by reviewing the Effective Date listed below. By continuing to use the website after those changes become effective, you consent and agree to be bound by the revised Privacy Policy.

Last Edited on 2018-05-29