Privacy Policy: How Florist Maida Vale Protects Customer Data
Introduction
This Privacy Policy describes how Florist Maida Vale processes, stores, and protects your personal information in accordance with the General Data Protection Regulation (GDPR). The policy applies to all individuals placing orders or engaging our services in Maida Vale and the surrounding districts. We are committed to safeguarding your privacy and being transparent about how your information is used.
What Data We Collect
When you order from Florist Maida Vale, we collect personal data necessary for processing your request. The types of information collected include:
- Personal Identification Information: Name, address, delivery address, and contact details such as telephone number (if provided).
- Order Information: Details of your purchase, special delivery instructions, and any messages to accompany your order.
- Payment Information: Payment confirmation and transaction details. Note: We do not store complete payment card details; these are processed securely via a third-party payment processor.
- Correspondence: Communications with us regarding inquiries, complaints, or feedback.
- Website Usage Data: When visiting our website, we may collect anonymised analytics data, such as IP address, type of device, browser type, referring pages, and browsing patterns, to help improve our services.
Lawful Bases for Processing
We rely on the following GDPR-defined lawful bases for collecting and processing your personal data:
- Contractual Necessity: The majority of data is processed to fulfil your order and deliver our goods or services. Without this data, we are unable to enter into or fulfil contractual obligations.
- Legal Obligation: Certain retention or processing of data may be required to comply with applicable laws, such as tax or accounting regulations.
- Legitimate Interests: We may use your data for legitimate business purposes, such as improving our services, responding to your queries, and fraud prevention, provided these interests are not outweighed by your rights.
- Consent: If we seek to use your information for marketing or other non-essential purposes, we will request and rely on your explicit consent, which can be withdrawn at any time.
How We Use Your Data
Your information is used for the following purposes:
- Processing and delivering your flower orders
- Managing customer service and responding to inquiries
- Maintaining accurate business records for tax and legal compliance
- Improving our products, website, and customer experience
- Sending service-related communications (e.g., order confirmation, delivery updates)
- Complying with legal obligations and protecting our business against fraud
- Providing marketing communications where consent has been provided
Data Retention
We retain your personal data only as long as necessary to fulfil the purposes for which it was collected, including satisfying legal, accounting, or reporting requirements. Typically, order and transaction data are held for six years from the end of the tax year they relate to, in accordance with legal obligations. After this period, your data will be securely deleted or anonymised.
If you have consented to marketing communications, your details will be retained for marketing purposes until you withdraw consent.
Processors and Sharing of Data
We may share your information with trusted third parties who perform functions on our behalf, including:
- Payment Processors: To handle payment transactions securely and process refunds as necessary.
- IT and Cloud Service Providers: For secure data storage, website hosting, and business software functions.
- Delivery Partners: To enable completion and tracking of your orders.
- Professional Advisors: For accounting, legal, or insurance services, where required.
All our data processors are contracted to meet GDPR data security requirements and are only permitted to use your data for purposes specified by us. We do not sell or rent your personal data to third parties under any circumstances.
Your Data Protection Rights
Under GDPR, you have the following rights regarding your personal data:
- Right of Access: You may request a copy of the personal data we hold about you at any time.
- Right to Rectification: You may ask us to correct inaccurate or incomplete information.
- Right to Erasure: You can request that we delete your personal data, subject to our legal obligations to retain certain records.
- Right to Restrict Processing: You can ask us to restrict processing under certain circumstances.
- Right to Object: You may object to our processing of your data where processing is based on legitimate interests or direct marketing.
- Right to Data Portability: You can request that we transfer your data to another service provider, where technically feasible.
- Right to Withdraw Consent: Where processing is based on consent, you may withdraw this at any time.
If you wish to exercise any of these rights, please contact us using the details provided on our website. In order to verify your identity, we may require additional information from you. We will respond to your request within one month, as set out by GDPR.
Policy Updates and Contact
This Privacy Policy may be updated periodically to reflect changes in our business practices or legal requirements. We encourage you to review this page regularly for the latest information. The date of the most recent update will be indicated at the top of the policy.
If you have questions or concerns about how your personal data is used, please review the contact information provided on our website to get in touch with our team.
Applicability
This Privacy Policy applies to all individuals placing orders or receiving services from Florist Maida Vale within Maida Vale and the surrounding districts. By placing an order or using our services, you acknowledge and agree to the terms outlined in this policy.