Flowers Amersham Privacy Policy
Introduction
This Privacy Policy explains how Flowers Amersham collects, processes, stores, and protects the personal data of its customers when they place orders from Amersham and the surrounding districts. We are fully committed to protecting your privacy and handling your information in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR). Please read this policy carefully to understand how your personal data is used and your rights in relation to it.
Scope of Policy
This Privacy Policy applies to all customers who place orders with Flowers Amersham, whether through our website, in-store, or by phone, from Amersham and the surrounding districts. By using our services, you agree to the collection and use of your personal data as described in this policy.
What Data We Collect
Flowers Amersham may collect and process the following categories of personal data:
- Identity Information: Name, title, and, if applicable, business/company name.
- Contact Information: Postal address, delivery address, billing address, telephone number, and billing/payment details (processed securely by payment processors).
- Order Information: Details about your orders, such as product selections, special requests, order value, and delivery preferences.
- Correspondence: Your communications with us, including customer support queries and feedback.
- Technical Information: Such as IP address, browser type, operating system, and information about your visit to our website if you place orders online. This may include data collected through cookies and similar technologies for site functionality and analytics.
Lawful Basis for Processing
Under GDPR, we only process your personal data where lawful bases apply. For Flowers Amersham, the primary bases are:
- Contractual Necessity: To process and fulfil your order(s), including payment, delivery, and customer service communication.
- Legal Obligation: To comply with laws or regulatory requirements (for example, keeping transaction records for tax and legal purposes).
- Legitimate Interests: To manage our business operations efficiently, prevent fraud, improve services, and communicate with you about similar services or special offers where permitted (you can always opt out of marketing communications).
- Consent: Where required, we rely on your explicit consent; for example, when using non-essential website cookies for analytics or marketing. You can withdraw your consent at any time.
How We Use Your Data
Your personal data is used only for specific purposes, including:
- Processing, managing, and delivering your orders.
- Processing payments and refunds securely via our payment processors.
- Providing customer service, responding to enquiries, and handling complaints.
- Complying with applicable legal and regulatory requirements.
- Improving our website, products, and services.
- Sending communications about orders or, where permitted, about similar products and services (you may opt out at any time).
Data Retention
We retain your personal data for only as long as necessary to fulfill the purposes for which it was collected. This includes:
- Order and transaction information, retained for up to 7 years to comply with legal, accounting, and tax requirements.
- Customer communication records, retained for up to 3 years after your last order.
- Marketing preferences and consents, retained until you withdraw consent or request deletion.
- Website analytics data, typically anonymized or aggregated after 24 months.
Once retention periods expire, personal data is securely deleted or anonymized.
Sharing Data with Processors and Third Parties
Flowers Amersham may share your personal data with trusted data processors and service providers, including:
- Payment service providers for secure transaction processing.
- Order fulfilment and delivery partners to ensure timely delivery of your flowers.
- IT and website hosting providers to enable our digital services and maintain security.
- Professional advisers and legal authorities, where required by law or to protect our rights.
All processors acting on our behalf are contractually obligated to process your data only as instructed and to maintain its confidentiality and security. We do not sell your personal data to third parties.
International Data Transfers
Your personal data is generally stored and processed within the United Kingdom or European Economic Area (EEA). If, in rare cases, data is transferred outside the EEA, we ensure appropriate safeguards are in place, such as the use of standard contractual clauses, to protect your information.
Your Data Protection Rights
Under the GDPR, you have the following rights regarding your personal data held by Flowers Amersham:
- Right to Access: You may request a copy of your personal data we hold.
- Right to Rectification: You may ask us to correct inaccurate or incomplete information.
- Right to Erasure: In certain circumstances, you may request the deletion of your data.
- Right to Restrict Processing: You may ask us to restrict or suspend processing of your personal data under specific conditions.
- Right to Data Portability: You may request a copy of your data in a structured, commonly used format for transfer to another provider.
- Right to Object: You may object to the processing of your data for direct marketing or in situations based on legitimate interests.
- Right to Withdraw Consent: Where we rely on your consent, you may withdraw it at any time.
To exercise any of these rights, please contact us using the details provided on our website or at our premises. We will respond to all requests within one month, in accordance with GDPR requirements, and may request additional information to verify your identity.
Security of Your Personal Data
We are committed to protecting your information by implementing appropriate technical and organizational measures to secure your personal data against unauthorized access, loss, or misuse. Our team is regularly trained on privacy and security protocols and access to your data is limited to authorized personnel only.
Policy Updates
This Privacy Policy may be periodically updated to reflect changes in our practices, regulatory requirements, or technology improvements. We encourage you to review this policy each time you use our services to remain informed about how your personal data is used and protected.
Contact and Further Information
If you have any questions or concerns regarding this Privacy Policy or your data protection rights, please contact us via the contact details on our website or in person at our Amersham location. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you believe your data is not being handled in accordance with applicable laws.