Privacy Policy for Flower Delivery Aldershot
Introduction
This Privacy Policy explains how Flower Delivery Aldershot ("we", "us", or "our") collects, uses, protects, and manages your personal information when you place flower delivery orders in Aldershot and the surrounding districts. We are committed to handling your data securely and in accordance with the General Data Protection Regulation (GDPR) and relevant UK data protection laws. This policy applies to all individual customers using our services for deliveries in Aldershot and nearby areas.
What Data We Collect
To process orders efficiently and provide you with the best service, we collect the following categories of personal data:
- Contact Information: Name, delivery address, billing address, postcode, and telephone number.
- Order Details: Product selections, gift messages, order value, and delivery date.
- Payment Information: Cardholder name, payment card details (processed securely via third-party payment processors; we do not store full payment card numbers).
- Recipient Information: Name and delivery address of the individual receiving flowers, along with any provided contact number.
- Communication Data: Correspondence with customer service, instructions, or feedback.
- Technical Information: IP address, browser type, device data, and interaction logs (collected via cookies and similar technologies for website functionality and analytics).
Lawful Basis for Data Processing
We process your personal data on one or more of the following lawful bases as provided by GDPR:
- Contractual Necessity: Most data we collect are necessary to fulfill the contract of flower delivery (i.e., processing and delivering your order).
- Legitimate Interests: We may process your data to improve our services, communicate with you regarding your order, or keep records for business purposes, provided these interests do not override your fundamental rights.
- Legal Obligation: Certain data may be processed to comply with financial, tax, and other regulatory requirements.
- Consent: For purposes not covered above (such as email marketing), we will seek your express consent, which you can withdraw at any time.
How We Use Your Data
Your personal information is used for the following purposes:
- Processing and delivering your flower order accurately and efficiently.
- Communicating with you about your order status or any delivery-related queries.
- Handling payments and refunds securely.
- Responding to customer service enquiries and resolving complaints.
- Fulfilling legal obligations, such as record keeping for tax purposes.
- Analysing interactions (anonymously) to improve website performance and user experience.
Data Retention
We retain your personal information only as long as is necessary to achieve the purposes described in this policy or to comply with legal, regulatory, tax, or accounting requirements. In general:
- Order and customer information is retained for a minimum of six years to satisfy legal requirements and for business recordkeeping.
- Payment data is stored only as necessary for the transaction, with card details being handled and stored securely by our accredited payment processors.
- If you contact customer service, related correspondence may be kept for up to two years, depending on the nature of the enquiry.
- Upon expiry of the relevant retention period, your data will be securely deleted or anonymised.
Use of Data Processors
To provide our services effectively, we may share your data with trusted third-party data processors. These include:
- Payment processors: Secure processing of card payments and refunds.
- Delivery partners: Fulfilment staff or courier services responsible for delivering your order, provided with essential delivery and contact information only.
- IT and website support providers: For website operations, hosting, and security management.
- Professional advisers: Accountants or legal professionals, where necessary for compliance or dispute resolution.
All third-party processors are vetted to ensure they comply with GDPR and handle your information only as instructed by us.
International Data Transfers
Your information is primarily processed within the UK and European Economic Area (EEA). If any data is transferred outside the EEA (for example, for IT hosting), we ensure appropriate safeguards (such as standard contractual clauses or adequacy decisions) are in place to protect your data as required by law.
Security of Your Data
We take security seriously and implement technical and organisational measures to protect your personal data against loss, theft, unauthorised access, or misuse. This includes secure servers, encrypted connections, and limited access controls for personal information. We also require all third-party processors to uphold robust data security standards.
Your Data Protection Rights
Under GDPR, you have the following rights in relation to your personal data:
- Right to Access: Request a copy of the personal information we hold about you.
- Right to Rectification: Request corrections to your personal data if it is inaccurate or incomplete.
- Right to Erasure: Ask for your data to be deleted, where legally permissible.
- Right to Restrict Processing: Request limited handling of your data in certain situations.
- Right to Data Portability: Receive your data in a commonly used and machine-readable format.
- Right to Object: Object to processing where it is based on our legitimate interests or direct marketing.
- Right to Withdraw Consent: Where processing is based on consent, you can withdraw it at any time.
To exercise these rights, please contact our data protection representative using our website’s contact facility. We will respond to your requests in accordance with statutory requirements. Please note that certain restrictions may apply, for example, where data must be retained to comply with legal obligations.
Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. The date of the latest update will be indicated at the top of the policy. Please review this policy periodically for up-to-date information on how we protect your privacy.
Contact Us
If you have any questions or concerns about this Privacy Policy or the way we handle your data, please get in touch using the contact details provided on our website. We are here to support your privacy rights as a valued Flower Delivery Aldershot customer.