Privacy Policy for Flower Delivery West Drayton Customers
Introduction
At Flower Delivery West Drayton, we value your privacy and are committed to ensuring that your personal data is handled with the utmost care and transparency. This Privacy Policy applies to all customers who place flower delivery orders with us from West Drayton and the surrounding districts. It explains what personal data we collect, the legal basis for processing, retention periods, our use of data processors, and your rights under the General Data Protection Regulation (GDPR).
What Personal Data We Collect
When you place an order, contact our customer service, or interact with our services in West Drayton and nearby areas, we may collect the following personal details:
- Contact Information: Your name, delivery address, recipient’s name and address (if different), and your phone number.
- Order Details: Details about your flower selections, delivery preferences, cards, messages, and special instructions.
- Payment Information: Subject to the payment method chosen, some data may be collected, such as part of your card number or transaction details; all sensitive card information is processed by authorized payment processors and is not retained by us.
- Account Data: If you register an account, we may record your login credentials and order history.
- Communication Data: Copies of correspondence, feedback, or queries raised with our team via contact forms or customer support.
- Technical Data: IP address, browser type, and device information collected through interactions with our website for security, analytics, and functionality purposes.
Lawful Basis for Processing Your Data
Under the GDPR, every use of personal data must have a lawful basis. Flower Delivery West Drayton processes your personal data under one or more of the following legal grounds:
- Performance of Contract: Processing is necessary to fulfil your order and manage the delivery of flowers, including order confirmations and communications regarding your purchase.
- Legitimate Interests: We may process data to improve our services, handle queries, prevent fraud, and ensure security, provided these interests are not overridden by your rights and interests.
- Legal Obligations: Data may be processed and retained where required by UK law, including tax and accounting obligations.
- Consent: If you opt in to receive marketing communications, we will obtain your explicit consent and provide a simple way to withdraw at any time.
How We Use Your Data
We use the data collected for several purposes, all of which are explained here:
- To process and deliver your orders efficiently and accurately.
- To communicate essential information regarding your order, such as confirmations and updates.
- To respond to your requests, inquiries, or customer service issues.
- To improve and personalise our services based on analytical insights.
- To fulfil our financial, regulatory, or legal responsibilities.
- To send occasional marketing communications, subject to your prior consent.
Retention of Personal Data
We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including satisfying any legal, accounting, or reporting obligations. Specifically:
- Order and Transaction Records: Retained for up to seven years to comply with legal obligations including taxation and fraud prevention.
- Account Information: Held while you maintain an active relationship with us. If you delete your account, we will remove or anonymise your data unless otherwise required by legal obligations.
- Marketing Data: If you have provided consent for marketing, we will retain such data until you withdraw your consent or request erasure.
Processors and Third-Party Services
To deliver the highest quality of service, we use reputable third-party processors who may process your data strictly on our behalf and under documented instructions. Such processors include:
- Payment Service Providers: For secure transaction processing. Sensitive card details are handled directly by these providers and not stored by us.
- Delivery Partners: For order fulfilment within West Drayton and nearby districts. Only essential order and address details are shared.
- IT and Hosting Providers: For website functionality, data storage, security, and analytics.
All processors are carefully selected to meet our security and privacy standards and are contractually obliged to process personal data in compliance with GDPR requirements, maintaining confidentiality and utmost security.
Your Rights Under GDPR
As a data subject, you have certain rights under the GDPR regarding your personal information:
- Right to Access: You may request confirmation of whether we process your data and, if so, access to that data.
- Right to Rectification: You are entitled to have any inaccurate or incomplete data corrected or updated.
- Right to Erasure: You may request the deletion of your data where there is no lawful basis for continued processing.
- Right to Restrict Processing: You can ask us to restrict or suspend the processing of your information under certain conditions.
- Right to Data Portability: Where applicable, you can request a copy of your data in a structured, commonly used, and machine-readable format.
- Right to Object: You have the right to object to the processing of your data, especially where processing is based on legitimate interests or undertaken for direct marketing purposes.
- Right to Withdraw Consent: Where we rely on your consent, you may withdraw it at any time. This will not affect any processing completed before your withdrawal.
Data Security
We maintain administrative, technical, and physical safeguards to protect your personal data from unauthorised access, loss, misuse, alteration, or disclosure. Only authorized employees and trusted processors with a genuine business need can access your data, and only to the extent required to provide our services.
International Transfers
Your personal data is generally processed within the United Kingdom. In cases where data is transferred outside the UK or European Economic Area, we ensure equivalent levels of data protection through contractual or legal safeguards.
Policy Updates
This Privacy Policy may be reviewed and updated periodically. Any significant changes will be posted clearly on our website. We recommend checking this page regularly to remain informed about how we manage your information.
Contact and Further Information
For any questions, concerns, or to exercise your rights regarding your personal information, please contact us using the information available on our website. You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO) or your local supervisory authority if you believe your data protection rights have not been upheld.