Bounds Green Flowers Privacy Policy
Introduction
Bounds Green Flowers is committed to protecting the privacy and security of our customers’ personal information. This Privacy Policy describes how we collect, use, store, share, and safeguard your data when you place an order with Bounds Green Flowers from Bounds Green or the surrounding districts. It also explains your legal rights in relation to your personal data under the General Data Protection Regulation (GDPR).
Scope of this Privacy Policy
This policy applies to all individuals who order products or services from Bounds Green Flowers in the Bounds Green area and nearby districts. It covers all data collected during the ordering process through any means, whether online, by telephone, or in person.
What Personal Data We Collect
When you place an order with Bounds Green Flowers, we collect the minimum personal data required to process your request and provide our services. The data we collect may include:
- Name: So we can address you and fulfill your order.
- Contact Details: This includes your telephone number and delivery address, needed for order delivery and communications.
- Email Address: To send order confirmations, receipts, or updates regarding your order.
- Payment Information: Only necessary data required for payment processing—this may include partial card details. Full card information is processed securely by third-party payment providers and not stored by us.
- Recipient Information: If sending flowers to someone else, we collect the recipient’s name and address for successful delivery.
- Order History: Details of previous orders for customer service and business analytics.
We do not knowingly collect or process any special categories of personal data (such as health information, race, religion, or biometric data).
Lawful Basis for Processing Your Data
Under the GDPR, we rely on several lawful bases for processing your personal data, depending on the nature of our relationship and the services provided:
- Contractual Necessity: Most of the data we collect is necessary for us to fulfill our contract with you to provide products and services.
- Legal Compliance: We may process your data where it is necessary for compliance with legal obligations, such as tax or accounting regulations.
- Legitimate Interests: We may use your data for legitimate business purposes, such as improving our service or contacting you about your current order, provided this does not override your fundamental rights and freedoms.
- Consent: Where required, such as for direct marketing beyond our existing customer relationship, we will seek your explicit consent.
Data Retention Periods
We retain your personal data only as long as necessary for the purposes outlined in this policy. Generally:
- Contact and order details are held for up to six years after your last order for accounting, legal, and business purposes.
- Payment information is only retained as long as required to complete the transaction and resolve any potential disputes, unless for legal reasons.
- Data used solely for marketing (with your consent) will be retained until you opt out or withdraw consent.
Upon expiration of the relevant retention period, we will securely delete or anonymise your personal data.
Data Processors and Third Parties
Bounds Green Flowers may share your personal data with trusted third-party providers insofar as necessary to provide our services. Examples of these data processors include:
- Flower Delivery Partners: To deliver your orders as requested.
- Payment Processors: Securely process your payment on our behalf.
- IT and Support Providers: For website hosting, email, and data storage.
- Professional Advisors: Such as legal or accountancy service providers, where required by law.
We require all third parties to respect the security of your data and handle it in line with the law. We do not share your personal data with external organisations for their own marketing purposes.
International Data Transfers
Where data processors operate outside of the UK or EEA, we ensure appropriate safeguards are in place to protect your data, such as the use of Standard Contractual Clauses approved by the European Commission or other lawful mechanisms.
Your Rights Under GDPR
You have several rights under GDPR with regard to your personal data, including:
- Right of Access: You can request a copy of the data we hold about you.
- Right to Rectification: You may ask us to correct any inaccurate or incomplete data.
- Right to Erasure: You can request that we delete your data under certain circumstances.
- Right to Restriction: You can restrict our processing of your data in some cases.
- Right to Data Portability: You have the right to request your data in a machine-readable format.
- Right to Object: You may object to our processing of your data, particularly for direct marketing.
- Right to Withdraw Consent: Where we process data based on your consent, you can withdraw this at any time.
You may exercise these rights by getting in touch with Bounds Green Flowers using the contact details provided on our website or shop materials. Please note that not all rights may apply in every situation, and we may request proof of your identity before processing your request.
Security of Your Data
We take data security seriously. Bounds Green Flowers implements appropriate technical and organisational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, and unauthorised access or disclosure.
Policy Updates
We may update this Privacy Policy from time to time to reflect changes in the law or our practices. The most current version will always be available in our shop and on our website. We encourage you to review it regularly.
Contact and Complaints
If you have questions about this Privacy Policy or how we handle your personal data, please get in touch using the contact details on our website or shop information. Should you wish to make a complaint about our handling of your data, you also have the right to contact the UK Information Commissioner’s Office (ICO).
