Highbury Florist Privacy Policy
Scope of This Privacy Policy
This Privacy Policy explains how Highbury Florist collects, uses, shares, and safeguards the personal data of customers who place orders with us in Highbury and the surrounding districts. This policy complies with the General Data Protection Regulation (GDPR) and is intended to ensure that you understand your rights and our responsibilities regarding your personal information.
What Personal Data We Collect
When you interact with Highbury Florist, we may collect the following types of personal data:
- Identification Data: Your full name, contact address, and delivery address.
- Contact Details: Telephone number and, if you provide it, your email address.
- Order Information: Details about the products you order, special delivery instructions, and messages for recepients.
- Payment Information: Limited payment details necessary to process your purchase (e.g. payment confirmation, but not full payment card details, as these are handled securely by our payment processor).
- Communications: Records of your correspondence with us if you contact us by phone, in writing, or through other channels.
- Technical Data: IP address and browser information, collected automatically for security and optimisation of our website (if you use our website).
Lawful Basis for Processing Your Data
Under GDPR, we must have a valid reason (a 'lawful basis') to use your personal data. Depending on the circumstances, we process your data for the following reasons:
- Performance of a Contract: Most of the information we process is necessary to fulfil your order and deliver floral products to you or your chosen recipient.
- Legal Obligation: In some cases, we are required to retain certain records for tax, accounting, and legal compliance.
- Legitimate Interests: We may use your data to improve our services, handle customer queries, or prevent fraud, where such use does not override your fundamental rights and freedoms.
- Consent: In instances where we wish to send you marketing materials or newsletters, we will only do so with your explicit consent, which you may withdraw at any time.
How We Use Your Personal Data
Highbury Florist uses your personal data for the following purposes:
- To process and deliver your orders accurately and efficiently.
- To manage payments, fees, and charges.
- To communicate with you about your orders or respond to your queries.
- To comply with legal and regulatory requirements.
- To improve our services and our customer experience (for example, analysing order trends to maintain stock levels).
- To protect against fraud or misuse of our services.
Retention Periods: How Long We Store Your Data
Highbury Florist retains your data only for as long as is necessary for the purposes it was collected. This is usually:
- Order and Delivery Data: Up to 7 years, to comply with accounting, legal, and tax obligations.
- Marketing Consents: Until you withdraw consent or unsubscribe, after which we will promptly delete or anonymise your contact details for marketing.
- General Enquiries: Data from queries is generally retained for up to 12 months after resolution of your query, unless a longer period is required by law.
After these periods, we securely delete or anonymise your data so it can no longer be linked to you.
Sharing Personal Data: Our Data Processors
We may share your personal data with third parties who provide essential services, such as:
- Payment service providers who facilitate secure card transactions.
- Delivery partners for the purpose of delivering your order.
- IT providers who host and support our systems or website.
- Professional advisors and insurers, as required for legal compliance or to resolve disputes.
All third-party data processors are required to comply with GDPR and process your data only as instructed by us. We do not sell or rent your data to any other companies or organisations.
Your Rights Under GDPR
You have a number of rights regarding your personal data under GDPR:
- Right to Access: You can request a copy of the personal data we hold about you.
- Right to Rectification: You can request that we correct any inaccurate or incomplete data we hold about you.
- Right to Erasure: You may ask us to delete or remove your personal data in certain circumstances.
- Right to Restrict Processing: You have the right to ask us to suspend processing of your personal data in certain cases.
- Right to Data Portability: You can request that we provide your data to you or another service provider in a structured, commonly used format.
- Right to Object: You can object to processing where we rely on our legitimate interests or use your data for direct marketing.
- Right to Withdraw Consent: Where you have given us consent, you may withdraw it at any time and we will stop the relevant processing.
If you wish to exercise any of these rights, please contact us through the contact details found on our website or via your usual method of communication with Highbury Florist. We will respond to your request within one month.
How We Protect Your Data
Highbury Florist takes the security of your data seriously. We use appropriate technical and organisational measures to keep your data safe, including secure servers, restricted access to personal data, and staff training. Where third-party processors are involved, we require contractual assurances of data protection and compliance with GDPR.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our procedures or legal obligations. We encourage you to review it periodically. Significant changes will be communicated clearly on our website or during your customer journey.
Contacting Highbury Florist About Privacy
If you have any questions, concerns, or wish to exercise your rights regarding your personal data, please contact us via the contact form or alternative details provided on our website. We are committed to working with you to resolve any issues as quickly as possible.
This Privacy Policy is effective for all customers placing orders with Highbury Florist in Highbury and the surrounding districts.