Florist Palmers Green Privacy Policy
Introduction
At Florist Palmers Green, we are dedicated to protecting your privacy and handling your personal data with complete transparency and care. This Privacy Policy details how we collect, use, store, and protect your information. It applies to all customers who place orders with Florist Palmers Green from Palmers Green and the surrounding districts. We are committed to complying with the General Data Protection Regulation (GDPR) and relevant UK data protection laws.
What Data We Collect
We collect and process a variety of personal data to fulfil our obligations to you as a customer. The data we collect may include:
- Contact Information: Your name, delivery address, billing address, and contact phone number.
- Order Information: Details of your order, delivery instructions, and recipient details if you are sending flowers to someone else.
- Payment Information: Limited payment details (we use secure third-party payment processors, so card numbers are not stored by us).
- Account Information: If you create an account, your login credentials (usernames, hashed passwords) and order history.
- Communications: Records of email or written correspondence, or forms filled on our website such as inquiries, feedback, or complaints.
- Technical Data: IP address, browser type, access times, and cookies (non-essential cookies used only with consent).
Lawful Basis for Data Processing
Under the GDPR, we must have a valid lawful basis to process your personal data. Our primary lawful bases are:
- Contractual Necessity: The data is required to fulfil your order with Florist Palmers Green, including arranging payments, processing deliveries, and handling any aftercare (e.g., complaints or queries).
- Legal Obligation: To meet legal and regulatory requirements, such as accounting and record-keeping obligations.
- Legitimate Interests: For purposes such as improving our services, maintaining our business records, or protecting our legal rights, provided these interests do not override your rights and freedoms.
- Consent: Where required by law (for example, for non-essential cookies or sending marketing communications), your explicit consent will be obtained and you have the right to withdraw this at any time.
How We Use Your Data
We process your personal data only for specific purposes, including:
- Processing and fulfilling your orders
- Communicating with you about your order or account
- Responding to your inquiries or feedback
- Improving our products and customer service
- Managing promotions or competitions (if you participate)
- Meeting legal and financial record-keeping requirements
How Long We Retain Your Data
Florist Palmers Green retains your personal data for only as long as necessary to fulfill the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. Typically, order and account details are retained for up to six years from the date of your last order, unless a longer retention period is required by law. After this period, your personal information will be securely deleted or anonymised.
Our Data Processors and Third Parties
We may share your personal data with trusted third-party processors who perform services on our behalf and under our instructions. These include:
- Payment Service Providers: Securely process customer payments and refunds.
- Delivery Services: Facilitate the delivery of your order to your specified address.
- IT Service Providers: Support and maintain our website and customer management systems.
- Professional Advisors: Such as accountants and legal advisors, if required for compliance or legal claims.
All processors are contractually obliged to keep your information secure, to process it only according to our instructions, and not to use it for their own purposes.
We do not sell or rent your personal data to any third parties.
How Your Data is Secured
We take the security of your personal data seriously. Measures include:
- Use of secure, encrypted payment gateways for payment processing
- Limited access to your data within our business (staff and contractors as necessary)
- Maintaining firewalls and data access controls
- Regular reviews and updates of our security policies
If a data breach which may affect your rights occurs, we will notify you and relevant authorities as required by law.
Your Rights Under GDPR
You have a number of important rights under data protection law. These include:
- The right to access: You can request to see the personal data we hold about you.
- The right to rectification: You can ask us to correct or complete inaccurate or incomplete data.
- The right to erasure: You can request we delete your personal data in certain circumstances.
- The right to restrict processing: You can ask us to suspend processing of your data in certain scenarios.
- The right to data portability: You can request a copy of your data in a standardized, machine-readable format.
- The right to object: You may object to processing based on legitimate interests or direct marketing.
- Rights in relation to automated decision-making: We do not conduct significant automated profiling or decision-making.
To exercise any of these rights, please contact us through the customer service channels indicated on our website or in your order confirmation. You may also have the right to lodge a complaint with the UK Information Commissioner's Office if you believe your data has been handled unlawfully.
Policy Application and Updates
This Privacy Policy applies to all customer orders placed with Florist Palmers Green from within Palmers Green and the surrounding districts. We may update this Policy occasionally to reflect changes in our operations or legal requirements. The latest version will always be displayed on our website, and significant changes will be communicated to you where appropriate.
Contact and Further Information
If you have any questions about this Privacy Policy or how your data is handled, please refer to our website for contact details or speak to a member of staff when placing your order. We are committed to resolving any privacy concerns promptly and transparently.
