Privacy Policy for Flower Delivery Baldock
Introduction
This Privacy Policy describes how Flower Delivery Baldock collects, uses, stores, and protects your personal information in compliance with the General Data Protection Regulation (GDPR). This policy applies to all customers placing Flower Delivery Baldock orders from Baldock and the surrounding districts. We are committed to maintaining the confidentiality and security of your personal data and ensuring transparency regarding our practices.
What Data We Collect
When you place an order with Flower Delivery Baldock, we may collect the following types of personal data:
- Identification Data: Name, surname, and in certain cases, ID number (if required for payment verification).
- Contact Details: Delivery address, billing address, email address, and telephone number.
- Order Details: Details about the products you order, order notes, delivery instructions, and recipient information.
- Payment Information: Limited details such as payment method (e.g., credit card, debit card, or other means). Full payment information is securely processed by trusted third-party payment processors; we do not retain your complete payment card details.
- Website Usage Data: Information about how you interact with our website, including IP address, browser type, device information, and browsing actions.
Lawful Basis for Processing
We process your personal data according to the following lawful bases as prescribed by the GDPR:
- Contractual Necessity: Most data is processed to fulfil our contract with you, such as processing and delivering your order and communicating with you about the status of your order.
- Legal Obligation: We may process and retain data as required to comply with applicable legal and regulatory requirements (for example, with respect to tax laws).
- Legitimate Interests: Some information may be used for legitimate business purposes, such as improving our service or preventing fraud, where such interests are not overridden by your rights.
- Consent: We will only send you marketing communications by email or otherwise if we have your explicit consent. You can withdraw your consent at any time.
How We Use Your Data
Your personal data is used for the following purposes:
- Processing, packaging, and delivering your flower orders.
- Contacting you about your order status and responding to your queries.
- Improving our website and service based on your feedback and usage patterns.
- Complying with legal and regulatory obligations.
- Providing customer service and support.
- Sending you marketing communications if you have given consent.
Data Sharing and Processors
We may share your personal data with trusted third-party service providers who act as data processors on our behalf. These may include:
- Payment processors who handle transaction payments securely.
- Delivery partners to ensure successful order fulfillment.
- IT service providers for website hosting, maintenance, and security.
- Customer support platforms to manage customer communications.
All third-party service providers are vetted for GDPR compliance and are only permitted to process your data in accordance with our instructions. We do not sell your personal data to third parties.
Data Retention
We retain your personal data only for as long as necessary to fulfil the purposes described in this policy and to comply with legal and regulatory requirements. Specifically:
- Order-related information is generally kept for up to six years after your last transaction, primarily to satisfy tax and accounting obligations.
- If you have registered an account with us, your account details are retained for as long as the account remains active and will be deleted upon your request, subject to the retention of any order or transactional data as required by law.
- Marketing preferences are kept until you opt out or withdraw your consent.
- Technical data (such as website logs) may be kept for up to twelve months for security and analytical purposes.
Securing Your Data
We take the security of your data seriously. We employ appropriate technical and organisational measures to protect your personal information against unauthorised access, accidental loss, destruction, or damage. This includes secure web servers, data anonymisation where possible, and restrictions on access to authorised personnel only.
Your Rights
Under GDPR, you have the following rights with respect to your personal data:
- Right to Access: You can request a copy of the personal data we hold about you.
- Right to Rectification: You can ask us to correct inaccuracies or complete your data.
- Right to Erasure: You may request that we delete your data under certain circumstances (also called the “right to be forgotten”).
- Right to Restrict Processing: You have the right to limit how we use your data in certain circumstances.
- Right to Data Portability: You can request your data in a commonly used format and have it transferred to another controller where technically feasible.
- Right to Object: You may object to certain types of processing, such as direct marketing.
- Right to Withdraw Consent: If processing is based on your consent, you can withdraw that consent at any time without affecting prior processing.
- Right to Lodge a Complaint: You have the right to lodge a complaint with the relevant supervisory authority if you believe your data has been processed unlawfully.
Policy Scope and Updates
This Privacy Policy applies to all customers placing Flower Delivery Baldock orders from Baldock and its surrounding districts. Our Privacy Policy may be updated occasionally to reflect changes in our operations or legal requirements. Any changes will be effective when published on our website. We encourage you to review this policy periodically to stay informed of how we are protecting your information.
Contacting Us
If you have any questions about this Privacy Policy or your data rights, please contact Flower Delivery Baldock using the contact form provided on our website or by using the postal address available there. We are committed to addressing your questions and requests regarding your privacy seriously and promptly.