Privacy Policy for Flower Delivery Stroud Green
Introduction
This Privacy Policy outlines how Flower Delivery Stroud Green collects, uses, retains, and safeguards the personal data of customers placing orders in Stroud Green and the surrounding districts. The policy complies with the General Data Protection Regulation (EU) 2016/679 ("GDPR"). It also informs you of your rights regarding your personal data and the measures we take to protect your information.
Scope of This Policy
This policy applies to all personal data provided by customers or collected by Flower Delivery Stroud Green when you place an order for delivery in Stroud Green and surrounding areas. By placing an order, you consent to the practices described herein.
Data We Collect
To process flower delivery orders, we may collect and process the following categories of personal data:
- Identity Data: Name of the customer and (if different) recipient of the flowers.
- Contact Data: Delivery address, billing address, telephone number (if provided), and similar contact details.
- Order Data: Order details (product, delivery preferences, notes), purchase history, and order value.
- Payment Data: Partial payment information (as processed securely by third-party payment providers; we do not store card numbers).
- Technical Data: IP address, device type, browser type, and cookies (as required for website functionality and security).
- Communication Data: Customer service inquiries, feedback, and correspondence related to orders.
Lawful Basis for Processing
We collect and process your personal data only when there is a lawful basis to do so, as defined by the GDPR:
- Contractual necessity: To process and deliver your flower order, it is necessary for us to collect and use your data.
- Legal obligation: We may retain information to comply with tax, accounting, and related legal requirements.
- Legitimate interests: We process data to ensure the smooth running of our services, improve customer experience, and prevent fraud, provided that your rights and interests do not override these objectives.
- Consent: Where required, such as for direct marketing communications, we will seek your explicit consent. You have the right to withdraw consent at any time.
How We Use Your Data
Your personal data may be used for the following purposes:
- Processing, fulfilling, and delivering your flower order;
- Communicating with you regarding your order, delivery times, and any customer service queries;
- Managing payments and refunds via secure payment processors;
- Improving our services and enhancing your experience;
- Complying with any legal obligations or regulatory requirements;
- With your permission, sending you promotional offers or updates about our services.
Data Retention
We retain your personal data only for as long as necessary to fulfill the purpose for which it was collected, as well as to comply with applicable laws and regulations. Specifically:
- Order data: Retained for up to 7 years to comply with accounting and tax regulations.
- Marketing data: Retained until you withdraw your consent or unsubscribe, whichever comes first.
- Customer support communications: Retained for the necessary period to resolve queries, typically up to 2 years.
- Data is securely deleted or anonymized once the retention period expires, unless required longer by law.
Data Sharing and Processors
In certain circumstances, we may share your data with trusted third parties, known as data processors, to facilitate delivery, payments, or technical operations. These processors are obliged to process your data securely and only on our instructions. Examples include:
- Delivery partners (for delivering your flowers to the correct address);
- Payment service providers (to securely handle transactions);
- IT and website hosting providers (for website functionality and security);
We do not sell or rent your personal data to third parties. All processors are contractually bound by data protection agreements in line with GDPR requirements.
International Transfers
Your personal data is generally processed and stored within the United Kingdom or European Economic Area (EEA). If any international data transfers are necessary, we ensure appropriate safeguards are in place as required by the GDPR, such as Standard Contractual Clauses or adequacy decisions.
Data Security
We place a high priority on the security of your personal data. We implement organizational and technical measures to protect it from unauthorized access, accidental loss, destruction, or disclosure. Measures include restricted access to data, encryption, secure servers, and regular review of our security policies and practices.
Your Rights
Under the GDPR, you have a range of rights regarding your personal data. These include:
- Right of access: You have the right to know what personal data we hold about you and to receive a copy upon request.
- Right to rectification: You may request correction of inaccurate or incomplete information.
- Right to erasure: You can request deletion of your data, except where we are legally required to retain it.
- Right to restrict processing: You may request temporary suspension of processing if you contest the accuracy or use of your data.
- Right to object: You may object to processing based on legitimate interests or direct marketing.
- Right to data portability: You can request transfer of your data to another service provider in a commonly used format.
- Right to withdraw consent: Where processing is based on consent, you can withdraw this at any time without affecting the lawfulness of prior processing.
- Right to lodge a complaint: You have the right to complain to a supervisory authority if you believe your data protection rights have been violated.
To exercise any of these rights, please use the contact details provided on our website or reach out in writing to our data protection representative.
Changes to This Privacy Policy
We may revise this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The most current version will always be available on our website. We encourage you to review this policy periodically.
Contact and Queries
If you have any questions, concerns, or wish to exercise your data protection rights, please use the contact options provided on our website. We are committed to ensuring your privacy and addressing your queries promptly.
