Flower Delivery Gospel Oak Privacy Policy
Introduction
This Privacy Policy outlines how Flower Delivery Gospel Oak collects, stores, uses, and protects your personal data in accordance with the General Data Protection Regulation (GDPR). This policy applies to all customers placing orders for Flower Delivery Gospel Oak services from Gospel Oak and the surrounding districts.
Data We Collect
When you place an order with Flower Delivery Gospel Oak, we may collect the following types of personal data:
- Identity Data: Your name and surname.
- Contact Data: Delivery address, billing address, telephone number (if provided), and other relevant contact details.
- Transaction Data: Details of products you have ordered, payment method used (but not your card number or security code), order history, and receipts.
- Usage Data: Information about how you use our website and services, such as pages viewed or time spent on site.
- Technical Data: IP address, browser type and version, device information, and cookies, to the extent you interact via our website.
Lawful Basis for Processing
Under GDPR, Flower Delivery Gospel Oak only processes your data when we have a lawful basis to do so. The lawful bases on which we rely are:
- Performance of a Contract: We process data in order to fulfil your flower delivery order and provide you with the requested services.
- Legal Obligation: We may process your data where we have a legal requirement, such as record keeping for tax purposes.
- Legitimate Interests: We have a legitimate interest in improving our services, preventing fraud, and ensuring network security. We always balance these interests with your rights and freedoms.
- Consent: In cases where we collect data for marketing purposes, we do so with your explicit consent. You have the right to withdraw consent at any time.
How We Use Your Data
We use your personal information to:
- Process and deliver your flower orders
- Contact you about your order or delivery
- Respond to your enquiries or customer support requests
- Process payments and issue receipts
- Maintain our accounts and business records
- Monitor and improve our services and website
Data Retention
Flower Delivery Gospel Oak retains your personal data only for as long as necessary to fulfil the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. Typically:
- Order and transaction data is retained for up to seven years to comply with tax and accounting obligations.
- Contact and delivery data is retained for as long as needed to manage any active customer account or outstanding orders, and then securely deleted or anonymised.
- Data collected for marketing purposes is kept until you withdraw your consent or request its deletion.
Data Processors and Sharing
Your data may be shared with trusted third-party processors to help us deliver our services. These may include:
- Payment processors (to handle card payments securely)
- Delivery and courier services to fulfill your order
- IT service providers who support our website and database management
- Professional advisers (e.g., accountants or legal consultants) where necessary
We only share data with third parties who are GDPR-compliant and only to the extent necessary for them to perform their services. Your data is never sold to third parties.
Data Security
We employ physical, electronic, and managerial safeguards to secure your data against loss, misuse, unauthorised access, disclosure, or alteration. These include encrypted communications and secure data storage solutions.
Your Rights Under GDPR
As a customer of Flower Delivery Gospel Oak, you have the following rights under GDPR:
- Right of Access: You have the right to request a copy of the data we hold about you.
- Right to Rectification: You can ask us to correct or update your data if it is inaccurate or incomplete.
- Right to Erasure: In certain circumstances, you can request that your data be deleted (the “right to be forgotten”).
- Right to Object: You may object to certain types of processing, such as direct marketing.
- Right to Restrict Processing: You can request us to suspend processing your data.
- Right to Data Portability: You may request to receive your data in a structured, commonly-used, and machine-readable format and have the right to transmit those data to another controller.
- Right to Withdraw Consent: Where we rely on consent, you have the right to withdraw this at any time.
To exercise any of the above rights, contact us using the details on our website. We may need to verify your identity to process some requests.
Children’s Data
Our services are not intended for children under the age of 16. We do not knowingly collect or process data from anyone under 16 years of age.
International Transfers
We do not transfer your personal data outside the United Kingdom or European Economic Area unless it is necessary and only with adequate protection in place, as required by GDPR.
Policy Updates
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal reasons. We encourage you to review this page regularly to stay informed about how we protect your data.
Contact and Complaints
If you have any questions about this Privacy Policy or how your data is handled, please contact us via the methods listed on our website. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you believe your data is not being handled in accordance with the law.