Privacy Policy for Flowers Hither Green Orders

Introduction

This Privacy Policy explains how Flowers Hither Green manages, collects, uses, and protects the personal information of all customers placing orders from Hither Green and surrounding districts. Our policy ensures alignment with the United Kingdom General Data Protection Regulation (UK GDPR) and the wider GDPR requirements. This document outlines in detail the types of information we collect, the lawful basis for processing your data, data retention periods, use of data processors, and your rights in relation to your personal information.

Scope of This Privacy Policy

This policy applies to all individuals who place orders with Flowers Hither Green, whether for delivery or collection, from Hither Green and neighbouring districts. By placing an order or using our services, you acknowledge that your personal data will be handled as described in this Privacy Policy.

Personal Data We Collect

To process your order and provide you with our services, we collect and process the following types of information:

  • Identity Data: Your name, title, and, where applicable, company name.
  • Contact Data: Your delivery address, billing address, and contact number.
  • Order and Transaction Data: Details of products purchased, order history, payment reference, and, in some circumstances, special instructions or notes you provide (such as card messages).
  • Communication Data: Any correspondence you send to us, feedback, and customer support requests.
  • Device and Technical Data: Where relevant, your IP address, device type, browser type, visit timestamps, and other technical data collected via cookies or analytics tools when you interact with our website or online platform.

Lawful Basis for Processing Your Data

Flowers Hither Green only processes your personal information where we have a lawful basis for doing so. These lawful bases include:

  • Contractual Necessity: To fulfil our contract with you and provide your requested floral products and services (e.g. processing orders, arranging delivery).
  • Legal Obligation: To comply with legal requirements, for instance related to tax or accounting obligations.
  • Legitimate Interests: To improve our products and services, maintain security, and manage our business operations, provided these interests do not override your rights and freedoms.
  • Consent: Where you have given explicit consent (e.g. for marketing communications). You may withdraw consent at any time.

How We Use Your Personal Data

Your information is used for purposes that include:

  • Processing and fulfilling your orders, and issuing invoices or receipts.
  • Providing delivery and customer support services.
  • Notifying you of any changes to our services or your order status.
  • Improving our website, services, and customer experience.
  • Complying with legal and regulatory requirements.
  • Sending occasional information about similar products or services, where allowed by law (you may opt out at any time).

Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes described in this policy, including satisfying legal, accounting, or reporting requirements. The typical retention periods are:

  • Order Records: Kept for up to 7 years following the completion of our contract with you to comply with tax and accounting regulations.
  • Marketing Preferences: Retained until you unsubscribe or opt out from receiving marketing communications.
  • Customer Support Data: Retained for up to 3 years after your query has been resolved to ensure a quality service and manage potential complaints.

All records are securely deleted or anonymized after these periods, unless a longer retention period is required by law.

Data Processors and Data Sharing

We use trusted third-party service providers (data processors) to support our business operations, including payment processing, courier and delivery services, website hosting, email communication, and analytics. All our processors are contractually required to adhere to the standards and obligations of GDPR, ensuring your data is stored and processed securely. We do not sell or rent your personal data to any third-party individuals or organisations for marketing purposes.

Where required by law, your data may be shared with regulatory authorities or legal bodies. If we transfer your data outside of the United Kingdom or European Economic Area, we ensure appropriate safeguards are in place as required by GDPR.

Your Rights Under GDPR

You have several important rights in relation to your personal data:

  • Right of Access: You can request a copy of the personal data we hold about you.
  • Right to Rectification: You can ask for corrections to inaccurate or incomplete data.
  • Right to Erasure: You can request deletion of your data where there is no good reason for us continuing to process it.
  • Right to Restrict Processing: You can ask us to suspend the processing of your personal data in certain situations.
  • Right to Data Portability: You can request that your data be transferred to a different service provider in a structured, commonly used, machine-readable format.
  • Right to Object: You may object to processing where we rely on legitimate interests, including direct marketing purposes.
  • Right to Withdraw Consent: Where we process your data based on consent, you can withdraw this at any time.
  • Right to Lodge a Complaint: You have the right to complain to the Information Commissioner's Office (ICO) if you believe your rights have been infringed.

To exercise any of these rights, please contact us using the details provided in your order confirmation or via our website's contact form.

Security of Your Data

Flowers Hither Green takes the security of your data seriously. We have implemented appropriate technical and organisational measures to safeguard your personal information against loss, theft, unauthorised access, or disclosure. Access to your data is strictly controlled and limited to personnel and trusted service providers who need it to deliver our services.

Changes to This Policy

We may occasionally update this Privacy Policy to reflect changes in the law or our business practices. We encourage you to review this page regularly to stay informed about how we are protecting your data.

Contacting Us

If you have any questions, wish to exercise your rights, or require further clarification regarding this Privacy Policy or your data, please contact us through the available options listed on our website or refer to your order correspondence for our contact details.