Florist Honor Oak Privacy Policy
Introduction
This Privacy Policy outlines how Florist Honor Oak ("we", "our", or "us") collects, processes, stores, and protects your personal data when you place an order for our floral products and services from Honor Oak and the surrounding districts. We are committed to complying with the UK General Data Protection Regulation (GDPR) and to safeguarding your personal information.
This policy applies to all customers placing orders with Florist Honor Oak, whether through our website, by phone, or in person.
What Personal Data We Collect
When you interact with Florist Honor Oak, we may collect the following categories of personal data:
- Contact Information: Name, address, phone number, and other details needed for order fulfillment and delivery.
- Order Details: Delivery recipient details (e.g., recipient's name, address, and telephone number), order notes, and preferences.
- Payment Information: Payment method details (such as the last four digits of card numbers, payment references), but we do not store full payment card numbers or CVVs on our systems. Our payment processors may process these details securely on our behalf.
- Communications: Any correspondence you have with us (such as emails, notes from phone calls, or feedback provided).
- Account Data (where applicable): Account login details and any saved preferences if you create an account with us.
- Website Usage Data: Technical data including IP addresses, browser information, and usage logs to ensure service quality and website security.
Our Lawful Basis for Processing Your Data
We process your personal data following the GDPR on one or more of the following lawful bases:
- Contractual Necessity: To enable us to fulfil your order and deliver products and services you have requested.
- Legal Obligation: To comply with legal and regulatory obligations, for example relating to tax and accounting regulations.
- Legitimate Interests: For the purposes of business administration, fraud prevention, customer support, and improving our services, provided your rights and freedoms do not override these interests.
- Consent: In cases where you opt-in (for example, to receive marketing communications), we rely on your consent. You may withdraw consent at any time.
How We Use Your Data
We use the personal data collected for the following purposes:
- Processing and fulfilling your order, including communicating order status.
- Delivering floral gifts to specified addresses and communicating with recipients as necessary.
- Maintaining our accounts and records for compliance and business operations.
- Responding to your inquiries, feedback, or complaints.
- Improving our products, services, and website functionality.
- Where permitted, sending you service-related notices or marketing communications (subject to your preferences).
Data Retention: How Long We Keep Your Data
Your personal data is retained only for as long as necessary to fulfill the purposes outlined in this policy, including legal, accounting, and reporting requirements. Typically, we will retain order and transaction data for up to seven years to comply with statutory and regulatory requirements. Customer accounts and related data are retained while the account is active and for a reasonable time thereafter, unless deletion is requested or required by law. Data provided for marketing purposes will be retained only until you opt out or withdraw consent.
Data Processors and Sharing Your Information
We may engage trusted third-party service providers ("processors") who act on our behalf to support our business operations. These include:
- Payment processors: To securely process your payments for orders.
- IT and hosting service providers: To host our website and manage our business data securely.
- Delivery partners: For the logistical delivery of your order.
- Professional advisors: Including accountants, legal advisers, or insurers as required for compliance and business management.
When we do share personal data with these processors, it is strictly on the basis necessary for the provision of their services to us and always under contractual terms requiring confidentiality and compliance with GDPR. We do not sell or lease your personal data to third parties. Your data is not transferred outside the UK or European Economic Area unless a comparable level of protection is ensured and the transfer meets GDPR requirements.
Your Rights Under GDPR
As an individual in the UK or EU, you have the following data protection rights regarding your personal data:
- Right to Access: You may request access to the personal data we hold about you.
- Right to Rectification: You may ask us to correct outdated or inaccurate data.
- Right to Erasure: You may ask us to delete your personal data when there is no compelling reason for its continued processing.
- Right to Restrict Processing: You can request that we restrict how we use your data in certain situations.
- Right to Data Portability: Where technically feasible, you can ask us to transfer your data to another organisation or directly to you.
- Right to Object: You may object to processing, especially where the lawful basis is our legitimate interests or for marketing purposes.
- Right to Withdraw Consent: If we are processing your data based on consent, you may withdraw this at any time period without affecting the lawfulness of processing based on consent before its withdrawal.
To exercise any of these rights, you may contact us using the details provided on our website or by visiting us in person. Please note that we may need to verify your identity before we can accommodate your request. Some rights may be subject to certain legal exceptions or requirements.
Security of Your Data
Florist Honor Oak employs appropriate technical and organisational measures designed to protect the security and confidentiality of your personal data, including restricted access, secure networks, password protocols, data encryption where applicable, and regular reviews of our data handling practices. Staff are trained in GDPR compliance and data protection principles.
Changes to This Privacy Policy
We may occasionally update this Privacy Policy to reflect changes in our practices, technologies, legal obligations, or for other operational reasons. Revisions will be posted on our website with the updated effective date. We encourage you to review this policy regularly.
Contacting Us
If you have questions about this Privacy Policy or wish to exercise your data protection rights, please use the contact details provided on our website or enquire at our Honor Oak premises. We are committed to handling your concerns promptly and transparently.