Bethnal Green Flowers Privacy Policy
Introduction
At Bethnal Green Flowers, we take your privacy seriously and are committed to protecting your personal data. This Privacy Policy explains how we collect, process, use, and safeguard your information in accordance with the UK General Data Protection Regulation (GDPR). This policy applies to all customers placing orders with Bethnal Green Flowers from Bethnal Green and surrounding districts.
What Data We Collect
When you order from Bethnal Green Flowers, we may collect the following categories of personal data:
- Contact Information: such as your full name, address (including delivery address if different), and postcode.
- Order Details: including order contents, preferences, special instructions, and purchase history.
- Payment Information: payment card details or payment confirmation from our payment processor. We do not store full card numbers or security codes.
- Communication Data: records of correspondence with our team, including but not limited to calls or written communications regarding your order.
- Delivery Information: recipient name, address, and any specific instructions for delivery.
- Website Usage Data: information about how you use our website, such as IP address, browser type, pages visited, and device information, collected through cookies and analytics tools.
Lawful Basis for Processing Data
We process your personal data on the following lawful bases as defined by the GDPR:
- Performance of a Contract: We collect and process your data to fulfil your order, provide customer support, and deliver flowers and related services as requested.
- Legitimate Interests: We may use your data to improve our services, manage our business, and communicate with you about your order. Where applicable, we balance our interests with your rights and interests.
- Legal Obligations: We may process your data to comply with legal requirements, such as record-keeping obligations for tax and accounting purposes.
- Consent: In some cases, such as direct marketing via email or other channels, we will only proceed if we have obtained your explicit consent. You may withdraw this consent at any time.
Data Retention
Bethnal Green Flowers retains personal data only as long as necessary for the purposes it was collected. The retention periods depend on the type of information and the context in which we process it:
- Order and Contact Data: Typically held for up to six years to comply with regulatory, tax, or accounting requirements.
- Payment Information: We do not store your complete payment card details. If required, transaction details are kept securely for legal and audit purposes.
- Marketing Data: If you have consented to receive marketing from us, we will retain your information for as long as you remain opted in. You may unsubscribe at any time.
- Website Usage Data: Data collected via cookies may be retained for analytical purposes, generally ranging from 12 to 24 months.
Data Processors
To provide and improve our services, we may share your data with trusted third-party processors. These include:
- Payment Service Providers: For secure payment processing, with all sensitive data handled according to PCI DSS compliance standards.
- Courier and Delivery Partners: To deliver your order to the correct address as specified by you.
- IT Service Providers: Including website hosting, analytics, and security service providers who support our website and ensure its smooth operation.
- Regulatory Authorities: Where required by law, to comply with legal or tax obligations.
We require all paper and electronic processors to respect the security of your data and to process it in accordance with the law. We do not permit our third-party service providers to use your personal data for their own purposes.
How We Protect Your Data
Your personal information is stored on secure servers and protected using appropriate technical and organisational measures, such as data encryption, secure access controls, and regular security reviews. Only authorised staff and approved processors have access to your information, and all are required to maintain its confidentiality and security.
Your Data Protection Rights
As a customer in Bethnal Green and surrounding districts, you have the following rights regarding your personal data under the GDPR:
- Right to Access: You can request a copy of the personal data we hold about you.
- Right to Rectification: You can ask us to correct any inaccurate or incomplete information.
- Right to Erasure (Right to be Forgotten): In certain circumstances, you can request for your personal data to be deleted from our records.
- Right to Restrict Processing: You can ask us to restrict the processing of your data, for example if you contest its accuracy.
- Right to Data Portability: You may receive your personal data in a machine-readable format, or request that we transfer it to another service provider.
- Right to Object: You have the right to object to processing based on legitimate interests or for direct marketing purposes.
- Right to Withdraw Consent: Where processing is based on consent, you may withdraw it at any time.
- Right to Lodge a Complaint: You may lodge a complaint with a supervisory authority if you believe your rights have been infringed.
To exercise any of these rights, please contact us using the details provided on our website.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. When we do, we will indicate the date of the last update at the end of this policy. We encourage you to review this page regularly for the latest information on our privacy practices.
Contact and Further Information
If you have any questions, requests, or concerns about how your personal data is handled, please refer to our contact details available on our website. We are committed to protecting your data and will respond to your inquiries as soon as possible.
Last updated: June 2024