Rotherhithe Florist Privacy Policy
Introduction
This Privacy Policy sets out how Rotherhithe Florist collects, uses, stores, and protects your personal data when you place orders with us. We are committed to upholding your rights, securing your information, and complying with the General Data Protection Regulation (GDPR). This policy applies to all customers making purchases or enquiries for Rotherhithe Florist products and services in Rotherhithe and adjoining districts.
The Data We Collect
To provide you with our products and services, we need to collect and process certain personal data. The types of data we may collect include:
- Contact Details: Such as your name, address, phone number, and delivery instructions.
- Order Information: Details about your order, including recipient’s name, delivery address, order content, and any personalized messages.
- Payment Information: Payment card details and transaction identifiers. Please note, we do not store your full payment card information, as all transactions are processed securely by our payment service providers.
- Communications: Records of correspondence between you and Rotherhithe Florist in connection with your orders or enquiries.
- Technical Information: IP address, browser type, and other standard log data collected when accessing our website. This helps to maintain the security and performance of our services.
Lawful Basis for Processing
Rotherhithe Florist processes your personal data only where there is a lawful basis under GDPR:
- Contractual Necessity: Data is processed to fulfill your order, communicate with you about its status, and deliver floral products and services.
- Legal Obligation: Certain information may be processed to comply with legal and regulatory requirements, such as tax and accounting obligations.
- Legitimate Interests: Data may be used to improve our services, address queries, and for general business administration, while ensuring such use does not override your rights and interests.
- Consent: Where we seek your consent, such as for marketing emails, you may withdraw this at any time.
How We Use Your Information
Your personal data is used to:
- Process and deliver your orders, including communication about status and delivery arrangements
- Respond to your enquiries, complaints, or requests
- Carry out internal record keeping and maintain accurate accounts
- Ensure compliance with applicable legal requirements
- Maintain and secure our website and IT systems
- Where appropriate, send you updates or offers (if you have opted in to receive such communications)
Data Retention
We keep your personal data only as long as necessary for the purposes it was collected and in accordance with applicable laws. The specific retention periods are:
- Order Information: Typically retained for up to six years after purchase to satisfy legal, accounting, or business reporting requirements.
- Marketing Data: Retained until you withdraw consent or opt out from communications.
- Website and Technical Data: Retained for up to two years to improve website functionality and security.
Once the relevant retention period has expired, your personal data is securely deleted or anonymized.
Processors and Data Sharing
To deliver our services, Rotherhithe Florist uses carefully selected third-party processors. These may include:
- Payment Service Providers: These handle your payment securely and do not share your full card details with Rotherhithe Florist.
- IT and Website Hosting Providers: Who help maintain our electronic systems and website security.
- Delivery Partners: Where necessary, only the minimum required personal information is shared to ensure successful order delivery.
All third-party processors are obligated by contract to process your data only on our instructions and in compliance with relevant data protection legislation. Your data will not be sold or shared with other organizations for marketing purposes unless we have your explicit consent.
We may also disclose your information where required by law, for example to authorities investigating fraud or other illegal activity.
Your Rights
As a data subject under GDPR, you have the following rights with respect to your personal data:
- Right to Access: You can request a copy of the personal data we hold about you.
- Right to Rectification: You may ask for correction of any inaccurate or incomplete data.
- Right to Erasure: Also known as the 'right to be forgotten', you can request deletion of your data in certain circumstances.
- Right to Restrict Processing: In specific cases, you can request restriction of how your data is used.
- Right to Data Portability: Where technically feasible, you may request that we transfer your personal data to another service provider.
- Right to Object: You can object to processing based on legitimate interests or direct marketing.
- Right to Withdraw Consent: If you have given consent for certain processing activities, you may withdraw this at any time.
To exercise your rights or if you have any questions about how we handle your data, you can contact us through our standard customer enquiry channels.
Data Security
We implement appropriate technical and organizational controls to protect your personal data from unauthorized access, loss, alteration, or disclosure. These measures include encrypted transactions, secure storage, and limiting data access to those staff and processors strictly required for providing our services.
Policy Updates
We may review and update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or for other reasons. Updates will be made available to you via our website or at point of sale. Continued use of Rotherhithe Florist services after changes indicates your acceptance of the updated policy.
Scope and Applicability
This Privacy Policy applies to all customers of Rotherhithe Florist who place orders from within Rotherhithe and the surrounding districts. By ordering from us, you acknowledge and consent to the processing of your personal data as set out above and in accordance with applicable laws and regulations.