Florist North Kensington Privacy Policy
Introduction
This privacy policy outlines how Florist North Kensington collects, uses, protects, and manages your personal data when you place orders with us—whether you are in North Kensington or its surrounding districts. Our commitment is to safeguard your privacy in accordance with the General Data Protection Regulation (GDPR) and all relevant UK data protection legislation.
Scope of This Policy
This policy applies to all customers who place orders with Florist North Kensington, including those residing or sending gifts to addresses in North Kensington and adjacent areas. By using our services, you agree to the practices described in this policy.
Data We Collect
We collect and process the following categories of personal data for customers ordering from Florist North Kensington:
- Contact Information: Name, delivery address, billing address.
- Order Details: Details of the flowers, gifts, messages on cards, and other preferences.
- Payment Information: Data required to process payments (such as transaction references). We do not store credit or debit card details; these are managed by secure payment processors.
- Communication Data: Any correspondence with us relating to orders, inquiries, or complaints.
- Technical Data: IP address, browser type, operating system, and information collected via cookies for website analytics and security purposes.
Lawful Basis for Processing Personal Data
Florist North Kensington processes your personal data only when we have a lawful basis to do so under the GDPR. These lawful bases include:
- Contractual Necessity: Your data is needed for us to fulfill your order and provide our services.
- Legal Obligation: Certain processing is necessary to comply with legal and regulatory requirements, such as accounting and tax record-keeping.
- Legitimate Interests: We may process your data for our legitimate business interests, such as improving services, handling customer queries, or fraud prevention, provided your interests and fundamental rights do not override these interests.
- Consent: In some circumstances, we may ask for your explicit consent, such as for marketing communications. You can withdraw consent at any time.
How Your Data Is Used
We use the personal data we collect for the following purposes:
- Processing and fulfilling your orders, including delivery and personalized messages.
- Managing payments and preventing fraud.
- Responding to your queries, feedback, or complaints.
- Complying with legal obligations.
- Improving our services and website.
- Sending you service-related communications (e.g., order confirmations and delivery updates).
- With your permission, sending occasional marketing materials. You may opt out at any time.
Data Retention
We keep your personal data only as long as necessary for the purposes it was collected, or as required by law. Typically, we retain order and customer records for up to seven years to comply with tax and accounting obligations. Where data is processed based solely on consent, data will be deleted within 30 days of a withdrawal request, unless another lawful basis applies.
Processors and Third Parties
Florist North Kensington may engage trusted third-party service providers (data processors) to assist with specific functions, including payment processing, website hosting, delivery logistics, and email communications. These processors are contractually obligated to handle your data securely, confidentially, and only in accordance with our instructions and the law. We do not sell or rent your data to any third party.
Your data may also be shared when required by law, such as with regulatory authorities or for the investigation of suspected criminal activities.
Your Rights Under GDPR
Under the GDPR, you have several rights regarding your personal data:
- Right to Access: Request access to your personal data and obtain a copy of the information we hold about you.
- Right to Rectify: Correct or update personal data that is inaccurate or incomplete.
- Right to Erasure: Ask for your personal data to be deleted when it’s no longer needed or where we have no lawful basis to keep it.
- Right to Restrict Processing: Request that we limit the way we use your data.
- Right to Object: Object to processing carried out based on legitimate interests or direct marketing.
- Right to Data Portability: Receive your personal data in a structured, commonly used, and machine-readable format and have it transferred to another provider where technically feasible.
- Right to Withdraw Consent: Withdraw your consent for processing at any time when consent is the basis for processing.
To exercise any of these rights, please contact us using the methods provided on our website or in-store. We aim to respond to all requests within one month.
Data Security
Your privacy and security are important to us. We implement technical and organizational measures intended to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage. While we strive for absolute security, no online transmission can be guaranteed as completely secure.
Cookies
Our website uses cookies to enhance your browsing experience and analyze website traffic. Cookies are small files that allow us to recognize repeat visitors and gather statistics about website usage. You can manage cookie preferences through your browser settings. For more information, please refer to our separate cookie policy.
Changes to This Privacy Policy
We may update this privacy policy from time to time to reflect changes in laws or our business practices. The updated version will be posted on our website with the effective date. We encourage you to review this policy periodically.
Contact and Complaints
If you have any questions or concerns about how we use your data, please contact us via the methods provided on our website or in-store. You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO), the UK’s supervisory authority for data protection.
