Trust & Security
This page summarizes the security practices Ben Creative LLC, a Wyoming limited liability company operating from 609 Scott St, Hinesville, GA 31313 uses for the website, client communications, payments, galleries, and project files.
- Legal entity
- Ben Creative LLC
- Formation
- Wyoming limited liability company
- Studio / operating address
- 609 Scott St, Hinesville, GA 31313, USA
Who we are
Ben Creative LLC is formed in Wyoming and operates its studio from Hinesville, Georgia. The street address on this website is the studio, mailing, and customer-service address.
Ben Creative LLC, a Wyoming limited liability company operating from 609 Scott St, Hinesville, GA 31313. We do business as Ben Creative at photosofben.com.
The published address, 609 Scott St, Hinesville, GA 31313, USA, is our studio, operating, mailing, and customer-service address. It is labeled by role wherever it appears. This site does not publish a registered-agent address.
Our ordinary service area is Hinesville, Liberty County, and Coastal Georgia. Website use is available wherever the site can be reached, but photography sessions are scheduled in that service area unless a written quote says otherwise.
Security overview
We use reasonable administrative, technical, and organizational safeguards for a small photography studio.
Ben Creative LLC uses reputable website hosting, HTTPS, access controls, limited administrative access, secure service providers, and routine software updates to reduce risk.
No website, email system, payment workflow, or storage system can be guaranteed completely secure. We work to use safeguards that match the size and nature of the business.
Website security
The public site is served over HTTPS with modern browser security headers.
photosofben.com is served over HTTPS. HTTP requests are redirected. The site sends HSTS and other standard security headers, including a content-security policy that limits where scripts, frames, and connections may go.
Public forms reject likely payment-card numbers before anything is stored, delivered, or logged as an inquiry. Connecting IP addresses used for rate limiting are stored as a hashed value.
Privacy controls and consent
Optional third-party scripts stay out of the page until the consent tool allows them.
The website uses Termly to keep optional third-party scripts out of the page until allowed by category, region, saved choice, and Global Privacy Control status.
tawk.to live chat is loaded only after the Performance category is allowed.
The retired first-party consent-write endpoint is no longer used.
Payment security
This website is not a card form. Card data is entered only on Stripe's payment page.
Listed session packages leave this website and are paid on a Stripe payment page for the published USD amount.
Card details are entered only on Stripe's payment page. Ben Creative LLC never sees, collects, or stores full card numbers or security codes.
That design reduces our exposure to cardholder data and supports PCI DSS responsibilities by keeping sensitive card entry and processing with the payment service provider.
Card networks presented for U.S. payments in USD are Visa, Mastercard, American Express, and Discover. See the footer on any page and How booking works.
The long statement descriptor is BEN CREATIVE. Card charges use the shortened descriptor/card prefix BENCREATI*, then a short product label in the [PRODUCT] place for that payment. Banks may display that line with different spacing, capitals, or omitted characters.
Access control and vendors
Access to client and business records is limited to people and providers who need it.
We limit access to client communications, galleries, billing records, and project materials to the people and service providers who need access to operate the studio and provide services.
Vendors that help operate the public site and studio communications include Cloudflare, Termly, Stripe, Resend, Migadu, and, when allowed, tawk.to. The Privacy Policy names what they typically receive.
Clients should use secure devices and avoid sending highly sensitive information through ordinary email or form messages unless necessary.
Incident response
We investigate security issues and provide the notices the law requires.
If we become aware of a security incident affecting personal information, we will investigate, take appropriate containment steps, work with service providers as needed, and provide notices required by applicable law.
For EEA or UK personal-data incidents where regulator notification is legally required, we will work toward notification within the applicable legal timeframe, including the 72-hour window where GDPR requires it.
What we do not claim
We do not claim independent security certifications unless a current certificate is posted here.
This website does not claim SOC 2, ISO 27001, PCI certification of Ben Creative LLC itself, or other independent certification unless a current certification is posted on this page. Security practices may change as the business and service providers change.
Stripe maintains its own security and PCI program for the hosted payment page.
Reporting a security concern
Tell us if you think something is wrong.
Email contact@photosofben.com or use the contact page. Include the page, what you observed, and the time if you have it. Do not send exploit code or live card numbers.
Contact
Questions about this page may be sent by email, through the contact form, or by mail to the studio address. The street address below is the studio and operating address, not a registered-agent address.
- Legal entity
- Ben Creative LLC, a Wyoming limited liability company
- Contact form
- photosofben.com/contact
- Studio / operating address
- 609 Scott St, Hinesville, GA 31313, USA