Privacy Policy

NorStates Bank Privacy Policy

Effective 3/31/2009

NorStates Bank recognizes the importance of our customers' privacy and the security of their personal information. Our goal is to protect your personal information in every way that we interact with you, whether it's on the telephone, in our lobby, at one of our ATMs, or on the Internet.

We think it is important for you to be informed of the policies, procedures, and security measures we have in place to safeguard your personal and confidential information. We have developed this policy to help you to understand the steps we take to protect your personal information.

Privacy Updates

New product releases may require changes to our Privacy Statement. The effective date of our policy will always be clearly displayed.

We will provide our customers copies of our Privacy Policy on an annual basis.

Categories of nonpublic personal information that we collect:

  • "Nonpublic personal information" is information about you that we obtain in connection with providing a financial product or service to you.
  • "Nonpublic personal information" includes, for example, account balance, payment history, overdraft history, income and assets.

We collect nonpublic personal information about you from the following sources:

  • Information we receive from you on applications or other forms;
  • Information about your transactions with us or others; and
  • Information we receive from a consumer reporting agency.

This website is not directed to children, and we do not knowingly collect information from children.

Privacy for Internet Users

Our commitment to safeguard your privacy also extends to the Internet. If you are just browsing through our website, we do not request any personally identifiable information, nor do we collect unique identifying information about you unless you voluntarily and knowingly provide us that information, such as when you send us an email or complete an application online. If you provide us with this information, it is only used internally and in furtherance of the purpose for which it was provided.

Our Internet financial services provider, First Data Corp. (FundsXpress) may collect information on our website for security and statistical purposes. The information collected for these purposes may include:

  • The internet address (referral site) which brought you to our web site;
  • The date and time you access our site;
  • The name and version of your browser;
  • The internet service provider you used when you accessed our site;
  • Your Internet Protocol (IP) address; and
  • The pages visited in our website.

First Data (FundsXpress) may use cookies to collect this information on the website. They also use cookies for security purposes in our Internet Banking service.

Additional information about IP addresses and cookies are provided below.

Internet Protocol (IP) Addresses

An IP address is a number that's automatically assigned to your computer whenever you're on the Internet. Web servers, the computers that "serve up" Web pages, automatically identify your computer by its IP address.

When collecting information for us, First Data (FundsXpress) does not link IP addresses to anything personally identifiable, which means that a user's session will be logged, but the user remains anonymous.

First Data (FundsXpress) may use IP addresses to audit the use of our site. They can and will use IP addresses to identify a user when necessary for security purposes.

What is a Cookie?

A cookie is a very small text file sent by a web server and it is stored on your hard drive, your computer's memory, or in your browser so that it can be read back later. Cookies cannot "read" information about you from your computer or be used to "steal" information about you; and cookies don't carry viruses. Cookies are a basic way for a server to identify you (most cookies actually identify the computer you happen to be using at the time, not you personally). Cookies are used for many things from personalizing start up pages to facilitating online purchases. Cookies help sites recognize return visitors and they perform a very important function when you engage in secure Internet banking. For your security, we do not store any of your personal information in our cookies. The cookies used in our Internet banking system are further described below.

Passcodes

First Data (FundsXpress) users are assigned an Access ID and passcode to enable them to initiate transactions and request services utilizing the First Data Corp. These passcodes should be guarded closely and should be treated as private. Sometimes a financial institution may assign a temporary passcode so that the customer can select a passcode that only they know the next time they access the system. The passcode is stored on the FundXpress' system in a one-way hash to insure that no one at FundsXpress knows or can retrieve this passcode. The customer should not disclose the passcode to anyone at FundsXpress or anyone else. No employee or agent of FundsXpress will ever ask for or receive your passcode. If anyone attempts to obtain your passcode or if you have reason to believe that the security of your passcode has been compromised, you should contact our customer service department at 800.339.4432 or email us.

Categories of Nonpublic Personal Information That We Disclose

We do not disclose any nonpublic personal information about our customers or former customers to anyone, except as permitted by law or as disclosed in this notice.

We may disclose information we receive from you on applications or other forms, such as your name and address, to other financial institutions with whom we have joint-marketing agreements.

In addition, we may disclose nonpublic personal information to other non affiliated third parties as permitted by law.

External 3rd Party Links

Our Website has numerous links to other 3rd party sites. These links to external third parties are offered as a courtesy and a convenience to our customers. You may still see our logo when visiting other 3rd party sites. A technique called "Framing" allows us to display our logo, look and feel while allowing you to browse another site at the same time. It's important to note that while you may still see our logo and frame, any information you provide to a 3rd party is not covered by our privacy policy.

Be sure to check the privacy statements of any third party web site for information about their use of cookies and personal information they may collect. You will be subject to their policies when you visit their sites.

With the exception of our service provider, First Data (FundsXpress), we do NOT have access to the information collected by any third party, nor can we control how they use this information. If you have questions or concerns about the privacy policies and practices of these third parties, please review their websites and contact them directly.

Confidentiality and Security

We restrict access to nonpublic personal information about you to those employees who need to know that information to provide products or services to you. We maintain physical, electronic, and procedural safeguards that comply with federal standards to guard your nonpublic personal information. Our Internet Banking service provider, First Data, has also developed security policies and procedures to protect the customer information that they must collect and maintain to help us process your banking transactions over the Internet. They have developed a top-of-the line security system to ensure your customer information is protected on the Internet and within the FundsXpress environment. For more information on the First Data security measures, please visit their website at www.firsdata.com/fundsxpress

Questions

If you would like to know what information we have collected in connection with your use of our products and services, please contact us at

contactus@norstates.com

800.339.4432

Internet Service Support

NorStates Bank

1601 N. Lewis Avenue

Waukegan, IL 60085

After reviewing the information, if you believe any of the information is in error, contact us either by phone or email, or send a letter that explains the alleged discrepancy. If the information is incorrect, we will work with you to ensure your information is promptly updated.

In addition, if you believe any information that this financial institution or FundsXpress has collected about you has been used for an improper purpose; please send us an email. Explain your concerns in as much detail as possible so that we may take any appropriate action.