Collier Row Florist Privacy Policy
Our Commitment to Your Privacy
At Collier Row Florist, we are dedicated to safeguarding and respecting the personal data of our customers. This Privacy Policy explains how we collect, use, store, and protect your information when you place orders with us from Collier Row or nearby districts. It also outlines your rights under the General Data Protection Regulation (GDPR). By using our services, you agree to the practices described in this policy.
What Data We Collect
To fulfil your orders and provide a personalised experience, we may collect and process the following categories of personal data:
- Identity Data: Name, billing address, and delivery details (including recipient’s name and address).
- Contact Data: Phone number and, when necessary, postal address details of both customer and recipient.
- Order and Transaction Data: Information about products ordered, delivery instructions, purchase history, payment method (note: we do not store your full card details), and transaction identifiers.
- Correspondence Data: Communications you send us (for example, via enquiry or feedback forms).
- Technical Data: Limited data from your use of our website, such as IP address, browser type, and access logs, for security and analytics purposes.
We do not collect sensitive categories of personal data, such as health, ethnicity, or political opinions.
Our Lawful Basis for Using Your Data
Under GDPR, we must have a lawful reason to process your personal information. We use your data under the following legal bases:
- Contractual Necessity: Most data processing is needed to enter or perform our contract with you (e.g. to process your order, arrange delivery, and provide customer support).
- Legitimate Interests: To pursue our legitimate business interests, such as improving our services, preventing fraud, and understanding customer trends, provided these do not override your fundamental rights and freedoms.
- Legal Requirement: We may be required by law to retain certain data, such as for tax or accounting purposes.
- Consent: For non-essential communications such as marketing, we will ask for your explicit consent.
How We Use Your Data
Your data is used for the following purposes:
- To process and deliver your orders efficiently to the correct recipients.
- To communicate with you regarding your orders or to respond to your enquiries.
- To manage payments and refunds in a secure manner.
- To maintain accurate records in accordance with legal and accounting requirements.
- To improve our services through data analysis and feedback.
- To send you marketing information only if you have given your consent.
Who Processes Your Data
In some instances, your personal data may be processed by third-party service providers (“processors”) on our behalf. We only use trusted processors who are bound by written contracts to comply with data protection obligations and maintain the confidentiality and security of your data. Examples of such processors include:
- Payment processing services: For secure handling of card and electronic payments.
- IT service providers: Who maintain or support our website, database, or communication systems.
- Delivery services: When we need to coordinate the delivery of your orders outside our typical local area using reputable couriers.
We do not sell or rent your personal data to third parties for marketing purposes.
How Long We Retain Your Data
Your personal information is retained only for as long as necessary to fulfil the purposes for which it was collected, including for satisfying legal, accounting, or reporting requirements. The periods are determined as follows:
- Order and transaction data: Typically retained for six years to comply with UK tax law.
- Correspondence and records: Kept for as long as necessary to resolve your enquiries or provide after-sales support, then securely deleted or anonymised.
- Marketing data: Used only with your active consent and promptly deleted if you withdraw consent.
Once data is no longer needed, it will be securely destroyed or anonymised so you can no longer be identified.
Your Data Protection Rights
Our customers in Collier Row and surrounding districts are afforded the following rights under GDPR:
- Right of Access: You may request information about the personal data we hold about you.
- Right to Rectification: You have the right to ask us to correct or update incomplete or inaccurate data.
- Right to Erasure: You can request deletion of your personal information, subject to legal and contractual obligations.
- Right to Restrict Processing: In certain circumstances, you may request us to restrict the use of your data.
- Right to Object: You can object to processing for direct marketing or where processing is based on our legitimate interests.
- Right to Portability: You may request a copy of your data in a reusable electronic format.
- Right to Withdraw Consent: Where processing is based on your consent (such as for marketing), you have the right to withdraw it at any time.
To exercise any of these rights or to ask questions about this policy or your data, please contact us using the details provided on our website or at our premises. We endeavour to respond to all legitimate requests within one month.
Policy Changes and Application
This Privacy Policy applies to all customers placing orders for delivery in Collier Row and surrounding districts. Any changes to this policy will be posted on our website and, where appropriate, notified to you. We encourage you to review this policy periodically to remain updated on how we protect your personal data.