Privacy Policy for Florist Stroud Green

Introduction

Your privacy is of utmost importance to Florist Stroud Green. This Privacy Policy explains how we collect, use, store, and protect your personal data when you place an order with us, either directly or through our website. This policy applies to all customers ordering from Florist Stroud Green in Stroud Green and the surrounding districts. We are committed to complying with all obligations set out under the UK General Data Protection Regulation (GDPR) and other relevant privacy legislation.

What Data We Collect

When you place an order with Florist Stroud Green, we collect and process the personal data necessary to fulfill your floral orders and provide customer service. The categories of data we may collect include:

  • Contact Information: Name, delivery address, billing address, and contact details such as telephone number.
  • Order Details: The products or services you order, delivery instructions, special requests, and the contents of any messages you ask to be included.
  • Payment Information: Payment method details (note: sensitive payment data such as credit card numbers are processed securely by third-party processors and not retained by us).
  • Account Details: If you create an account, we collect your login credentials.
  • Correspondence: Any communications or queries you send to us regarding your order or our services.

Lawful Basis for Processing Your Data

Our processing of your personal data is governed by lawful bases as required by the GDPR. These bases include:

  • Contractual Necessity: Most of the data we collect from you is necessary to enter into or perform our contract with you (for example, accepting and fulfilling your order).
  • Legal Obligation: We may collect and retain certain information as required by law (for example, for tax and accounting purposes).
  • Legitimate Interests: We may use your personal data to enhance our services, improve our website, or provide customer support, where it does not override your rights and freedoms.
  • Consent: For marketing communications or where required, we will seek your explicit consent before processing data for purposes beyond fulfilling your order.

How We Use Your Information

Your personal data is used for the following purposes:

  • Processing and delivering your floral orders.
  • Communicating with you about your order or about customer service matters.
  • Maintaining internal records in compliance with our legal obligations.
  • Improving our products, services, and website experience.
  • Providing updates or information you have requested.
  • Where consented, sending occasional marketing communications.

Data Retention

Florist Stroud Green will only retain your personal data for as long as is necessary to fulfill the purposes for which it was collected, including fulfilling any legal, accounting, or reporting requirements. Generally, we retain records of transactions for up to six years after the completion of your order, in line with accounting and tax obligations. If you have created an account with us, your data will be retained while the account remains active or until you request deletion. Personal data obtained under consent for email marketing is retained until you withdraw your consent or unsubscribe.

Data Processors and Third Parties

To provide our services efficiently, we may engage third-party processors who act on our behalf, including:

  • Payment Service Providers: To securely process payments (we do not retain your card details).
  • Delivery Services: To arrange and complete floral deliveries.
  • IT and Hosting Providers: To manage our website and IT infrastructure.
  • Accounting and Professional Advisors: To comply with legal and accounting obligations.

All third-party processors are required to process your data in compliance with GDPR and are not permitted to use your data for their own purposes. We do not sell, rent, or share your personal data with third parties for marketing purposes.

Your Rights Under GDPR

As a data subject in the UK or EU, you have specific rights in relation to your personal data. These include:

  • The Right to Access: You may request a copy of the personal data we hold about you.
  • The Right to Rectification: You may ask us to correct inaccurate or incomplete data.
  • The Right to Erasure: Also known as the 'right to be forgotten,' you may ask us to delete your data under certain circumstances.
  • The Right to Restrict Processing: You may request restriction or suppression of your data in certain situations.
  • The Right to Data Portability: You may request your data in a structured, commonly used, and machine-readable format or for it to be transferred to another data controller.
  • The Right to Object: You may object to our processing of your data for direct marketing or legitimate interests.
  • Rights relating to Automated Decision Making: You have rights regarding automated processing and profiling, where applicable (note: we do not perform automated decision-making with your data).

To exercise any of your rights, you may contact us using the contact details provided on our website. Please note that we may require you to verify your identity before responding to your request.

Data Security

We take the security of your personal data seriously and use appropriate technical and organisational measures to ensure your data is protected from unauthorised access, loss, misuse, or disclosure. Any third-party processors we use are carefully selected and required to meet GDPR data security standards.

Policy Updates

This Privacy Policy may be reviewed and updated from time to time to reflect changes in legislation, technology, or our business processes. Any changes will be published promptly on our website with an updated revision date. We encourage you to review this policy periodically to remain informed about how we protect your personal data.

Contact and Concerns

If you have any questions or concerns regarding your personal data or this Privacy Policy, please refer to the contact details on our website. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) or your relevant supervisory authority if you feel your data is not being handled in accordance with the law.

Conclusion

At Florist Stroud Green, we take your privacy seriously and strive to handle all personal data respectfully, securely, and in compliance with GDPR. Your trust is important to us, and we are committed to keeping your information safe whenever you order flowers in Stroud Green and the surrounding districts.