Privacy Policy for Flower Delivery Customers in Upper Clapton
Introduction
This Privacy Policy explains how Flower Delivery Upper Clapton ('we', 'our', 'us') collects, uses, discloses, and protects your personal information when you place flower delivery orders with us in Upper Clapton and the surrounding districts. We are committed to complying with the General Data Protection Regulation (GDPR) and safeguarding your data privacy rights.
Scope of This Policy
This Privacy Policy applies to all customers who order flower delivery services from us, whether online, by phone, or through other methods, in Upper Clapton and neighbouring areas. By placing an order, you acknowledge and consent to the collection and use of your personal data as described below.
What Personal Data We Collect
To fulfil your flower delivery orders and provide a seamless customer experience, we collect and process the following categories of personal data:
- Contact Information: Name, delivery address, phone number, and (if provided) alternative contact details for both the purchaser and intended recipient.
- Order Details: Information about the flowers and products ordered, delivery instructions, gift messages, and order history.
- Payment Information: Payment confirmation details (excluding your full card information, which is handled securely by our payment processors).
- Communications: Any communications you send to us, such as queries, feedback, or customer support requests.
- Website Usage Data: IP address, browser type, and usage data collected via cookies and analytics tools for website improvement and security purposes.
Lawful Basis for Processing Your Data
Under the GDPR, we require a legal justification ('lawful basis') for collecting and processing your personal data. Depending on the context, we process your data on the following bases:
- Contractual necessity: Most of the data we collect is needed to fulfil your order and deliver flowers as requested. Without this information, we could not provide our services.
- Legal obligations: Certain records are retained to comply with accounting, tax, or fraud prevention regulations.
- Legitimate interests: We may process information to improve our services, ensure security, send service updates, or conduct analytics, provided these interests are not overridden by your rights and interests.
- Consent: Where required by law, we may ask for your consent (e.g., for certain types of marketing communications). You are free to withdraw your consent at any time.
How We Use Your Information
The personal data we collect is used for the following purposes:
- Processing and delivering your flower orders, including communicating order updates.
- Providing customer support and handling any queries or complaints.
- Improving our products, services, and website functionality.
- Complying with applicable legal requirements and regulations.
- Preventing fraud and maintaining the security of our services.
- With your explicit consent, sending you promotional offers and updates (you may opt out at any time).
Data Retention
We retain your personal data only as long as necessary for the purposes outlined in this policy, and in compliance with applicable legal obligations.
- Order and Contact Data: Retained for a period necessary to fulfil your order and resolve any post-delivery issues, typically no more than six years for accounting and legal reasons.
- Payment Records: Retained in accordance with legal and tax requirements.
- Marketing Data: Retained until you withdraw your consent or opt out from receiving further communications.
- Website Analytics Data: Retained for up to two years for security and improvement purposes.
After these periods, data is securely deleted or anonymised so that it is no longer identifiable.
Data Sharing and Processors
Your personal information may be shared with selected third-party service providers ("processors") who assist us in the operation of our business and fulfilment of your orders. These include:
- Payment processors: To handle payments securely and in compliance with data protection laws.
- Delivery partners: Couriers or local florists who deliver your orders to recipients.
- IT providers: Providers of website hosting, IT maintenance, and analytics services.
All third-party processors are contractually obligated to protect your data, only use it for specified purposes, and abide by GDPR requirements. We do not sell or rent your personal data to any third parties.
International Data Transfers
In some cases, your data may be processed or stored outside the UK or European Economic Area (EEA), for example by IT providers. Where this occurs, we ensure that appropriate safeguards are in place, such as the use of Standard Contractual Clauses approved by the European Commission or other legally recognised mechanisms.
Your Data Protection Rights
Under the GDPR, you have several important data rights, including:
- Right of access: You can request access to the personal data we hold about you.
- Right to rectification: You can ask to correct any inaccurate or incomplete information.
- Right to erasure: You may request your data to be deleted when it is no longer needed or where processing is unlawful.
- Right to restriction: You can ask us to stop processing your data in certain circumstances.
- Right to data portability: Where applicable, you can request a copy of your data in a commonly used, machine-readable format.
- Right to object: You have the right to object to our processing where based on legitimate interests or direct marketing.
- Right to withdraw consent: Where processing is based on consent, you may withdraw your consent at any time.
To exercise any of these rights, please contact us using the details provided on our website. We will respond in accordance with legal requirements, usually within one month.
Data Security
We implement appropriate technical and organisational measures to keep your data secure, prevent unauthorised access, unlawful processing, and accidental loss, destruction, or damage. These measures are regularly reviewed and updated in line with business and technological developments.
Changes to This Privacy Policy
We may update this Privacy Policy occasionally to reflect changes in our services or data protection laws. Any significant updates will be communicated on our website, and the revised policy will take effect from its publication date.
Contact and Complaints
If you have questions, concerns, or wish to exercise your data rights regarding this policy, please use the contact form on our website to reach us. You also have the right to lodge a complaint with the Information Commissioner's Office if you believe your data protection rights have been infringed.
Last updated: [Date]