Florist Harold Hill Data Protection Policy
Introduction
Florist Harold Hill is committed to safeguarding the privacy and personal data of all customers who place orders with us from Harold Hill and the surrounding districts. This Data Protection Policy explains how we collect, use, store, and share your information in accordance with the General Data Protection Regulation (GDPR) and other applicable laws. Our aim is to be transparent about our data processing practices while ensuring your privacy rights are protected. Please read this policy carefully to understand how we manage your personal information.
Scope of this Policy
This policy applies to all data processing activities related to orders placed by customers with Florist Harold Hill, whether made online, over the phone, or in person, provided the orders originate from Harold Hill and surrounding districts.
What Personal Data We Collect
When you interact with Florist Harold Hill, we may collect the following categories of personal data:
- Identity Data: Full name of the customer and, where necessary, the recipient.
- Contact Data: Delivery address, billing address, telephone number, and, if provided, email address.
- Order Data: Details of the products ordered, delivery preferences, messages or card text provided, and order history.
- Payment Data: Payment method, partial payment card details (only to the extent required for transaction processing), transaction date, and transaction amount.
- Technical Data: For online orders, we may collect IP address, browser type, and device details to ensure website functionality and security.
- Marketing Preferences: Your preference regarding receipt of marketing information from us, where applicable and with your consent.
Purpose and Lawful Basis for Processing Your Data
Florist Harold Hill processes your personal data only when there is a lawful basis to do so under GDPR. The purposes for which we collect and process your information include:
- Order Fulfilment: To process your order, arrange delivery, and provide customer support.
Lawful Basis: Performance of a contract. - Payment Processing: To receive payment and manage refunds if necessary.
Lawful Basis: Performance of a contract and compliance with legal obligations. - Record Keeping: To maintain accurate records for accounting, tax, and regulatory purposes.
Lawful Basis: Compliance with legal obligations. - Customer Service: To respond to your queries, complaints, and requests.
Lawful Basis: Legitimate interests and/or performance of a contract. - Marketing Communications: To send you occasional updates about products or promotions, only if you have provided your explicit consent.
Lawful Basis: Consent (you may withdraw your consent at any time). - Website Security: To protect our website, manage traffic, and prevent fraud or misuse.
Lawful Basis: Legitimate interests.
Retention of Personal Data
Your personal data is retained only as long as necessary for the purposes outlined above, or as required by law. Typically:
- Order and transaction records are kept for up to seven years for legal, tax, and accounting reasons.
- Contact and identity details may be retained as long as your account is active or for two years following your last order or interaction with us, unless you request deletion sooner (subject to legal requirements).
- Marketing preferences are retained until you withdraw your consent or update your preferences.
Processors and Sharing of Data
Florist Harold Hill may engage trusted third-party processors to facilitate the operation of our business and delivery of services. These may include:
- Payment processors to securely handle and process card transactions.
- Flower suppliers and delivery partners who fulfil and deliver your orders.
- IT and systems service providers who manage website hosting and technical support.
- Professional advisers for accounting, legal, or compliance purposes.
All third-party processors are contractually required to process your data only on our instructions and to implement appropriate security measures. Your data will never be sold or shared for commercial gain. We do not transfer your data outside of the UK or European Economic Area, except where adequate protection or your explicit consent is in place.
Your Data Protection Rights
Under GDPR, you have several important rights regarding your personal data:
- Right to Access: Request a copy of your personal data held by us.
- Right to Rectification: Request corrections if your data is inaccurate or incomplete.
- Right to Erasure: Request deletion of your data where there is no lawful reason for us retaining it.
- Right to Restrict Processing: Request restriction or suppression of your data in certain circumstances.
- Right to Data Portability: Request to receive your data in a structured, commonly used, and machine-readable format, where technically feasible.
- Right to Object: Object to processing of your data for direct marketing or, in some cases, other legitimate interests.
- Right to Withdraw Consent: Where we rely on consent to process your data, you may withdraw your consent at any time, without affecting the lawfulness of processing before withdrawal.
To exercise any of these rights, please contact us using the details provided on our website. We may require proof of your identity before fulfilling your request. We strive to respond within one month of receiving your request.
Data Security Measures
Florist Harold Hill is committed to ensuring your data is kept secure. We implement a range of technical and organisational measures, including encryption, access controls, and secure payment platforms, to protect your information from loss, misuse, unauthorised access, disclosure, alteration, or destruction.
Changes to this Policy
We may update this privacy policy from time to time to reflect changes in regulation, technology, or our business practices. Any changes will be posted on our website and are effective immediately upon posting. We encourage customers to review this policy periodically.
Contact Us
If you have questions about this policy or require further information about how your data is handled, please refer to the contact section of our website. Alternatively, you have the right to lodge a complaint with the relevant supervisory authority if you believe your data protection rights have not been upheld.
