Privacy Policy for Ordering Flowers in Golders Green
Introduction
This Privacy Policy explains how Flower Delivery Golders Green (referred to as "we", "us", or "our") collects, uses, stores, and protects your personal data when you place an order with us. We are committed to safeguarding your privacy and complying with the EU General Data Protection Regulation (GDPR) as well as UK data protection laws. This policy applies to all customers placing flower delivery orders from Golders Green and surrounding districts.
Information We Collect
When you order flowers through Flower Delivery Golders Green, we collect and process the following types of personal data:
- Identity Data: Full name, title, and occasionally, proof of identification if required to verify payment.
- Contact Data: Billing address, delivery address, email address, and telephone number.
- Transaction Data: Details about the products and services you order, and payment status (note: payment card details are processed securely and are not stored by us, except where required for refunds or charge review).
- Recipient Details: Name, address, and contact details of the recipient, as provided by you for delivery purposes.
- Technical Data: IP address, browser type, and usage data collected during visits to our website for analytics and security purposes.
Lawful Basis for Processing Data
We collect and process your personal data under the following lawful bases as defined by GDPR:
- Contractual Necessity: To fulfill our contract with you by processing and delivering your order, managing payments, and handling customer service inquiries.
- Legal Obligation: To comply with legal and regulatory requirements, such as tax laws and record-keeping obligations.
- Legitimate Interests: To improve our services, ensure website security, and prevent fraudulent transactions, provided these interests are not overridden by your rights.
- Consent: We may process your personal information based on your consent for optional marketing communications. You can withdraw this consent at any time.
How We Use Your Information
Your personal data is used only for the purposes for which it was collected, including:
- Processing, confirming, and delivering your flower order to you or your nominee.
- Contacting you regarding your order, including updates or potential issues.
- Providing customer support and handling any inquiries, complaints, or feedback.
- Processing payments and refunds when necessary.
- Fulfilling our legal obligations, such as for accounting and tax purposes.
- Improving our website and customer experience through the use of analytics data.
Retention of Your Data
We retain your personal data only as long as necessary to fulfil the purposes for which it was collected:
- Order and transaction records are retained for up to seven years, in line with legal and financial record-keeping regulations.
- Contact details used for marketing will be retained until you unsubscribe or withdraw your consent.
- Technical data is retained for up to two years for security and analytics purposes.
Once the relevant retention period has elapsed, your data is securely erased or anonymised.
Data Processors and Sharing Your Data
To provide our services, we may share your data with trusted third-party processors. These include:
- Payment processing providers to securely manage your financial transactions.
- Courier or delivery service partners, to ensure timely and accurate delivery of your orders.
- IT service providers who maintain our ordering platform, website, and customer management systems.
- Professional advisors such as accountants or legal counsel, as required by law.
We ensure that all third-party processors comply with GDPR and treat your data with the same level of protection as set out in this policy. Your data will not be sold or transferred outside the European Economic Area unless appropriate safeguards are in place.
Security of Your Personal Data
We take the security of your personal data seriously and use appropriate technical and organisational measures to protect it from unauthorized access, alteration, disclosure, or destruction. These measures include data encryption, secure storage environments, restricted access, regular audits, and staff training.
Your Rights Under GDPR
As a data subject, you have the following rights regarding your personal data:
- Right to Access: You can request a copy of the personal data we hold about you.
- Right to Rectification: You can ask us to correct any inaccurate or incomplete data.
- Right to Erasure: You can request deletion of your data if it is no longer necessary for the purpose for which it was collected, or if you withdraw consent.
- Right to Restrict Processing: You can ask us to restrict or suppress processing of your personal data in certain circumstances.
- Right to Data Portability: You have the right to receive your data in a commonly used format so you can transfer it to another provider.
- Right to Object: You can object to certain types of data processing, such as direct marketing.
- Right to Withdraw Consent: Where processing is based on your consent, you may withdraw it at any time without affecting the lawfulness of processing before withdrawal.
If you wish to exercise any of these rights, please contact us using the contact options on our website. We will respond to your request in line with legal requirements and within one calendar month.
Children's Privacy
Our services are not directed at children under the age of 16. We do not knowingly collect or process personal data from anyone under 16 years of age. If we become aware that we have collected such data, it will be deleted promptly.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time in response to changes in legal, technical, or business developments. When changes are made, the updated policy will be posted on our website with the revised date. We encourage you to review this policy regularly.
Contact and Complaints
If you have any questions about this Privacy Policy, your personal data, or wish to make a complaint, please use the contact options provided on our website. You also have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO) if you believe we have not complied with data protection laws.
This Privacy Policy is effective as of 20 June 2024 and applies to all flower delivery orders placed for Golders Green and the neighbouring districts.