Your Privacy at Florist Hornchurch: A GDPR Commitment
Introduction and Scope of Policy
This Privacy Policy outlines how Florist Hornchurch collects, uses, stores, and protects your personal data, ensuring full compliance with the UK General Data Protection Regulation (GDPR). This policy applies to all individuals placing orders with Florist Hornchurch within Hornchurch and its surrounding districts. We are committed to safeguarding the privacy and rights of our customers and ensuring transparency regarding your personal information.
What Personal Data We Collect
Florist Hornchurch collects personal data only as necessary to process your flower orders and provide a seamless customer experience. The types of data we may collect include:
- Contact Information: Name, address, delivery address (if different), and contact details (such as phone number and, if provided, email address).
- Order Details: Information about your requested products, delivery preferences, order notes, and any messages you wish to accompany an order.
- Payment Information: Transaction data required to process payments. Sensitive payment details (such as card numbers) are captured securely by our payment processor and are not stored or accessible by Florist Hornchurch.
- Technical Data: IP address, browser type, and operating system, collected automatically when using our website for security, analytics, and order verification purposes.
- Correspondence: Any communications you send to us, including queries or complaints, may be recorded for quality improvement and record-keeping.
Lawful Basis for Processing Your Data
Under the GDPR, we are required to have a lawful basis for collecting and processing your personal data. Florist Hornchurch relies on the following bases:
- Contractual Necessity: Most data processing occurs because it is necessary to fulfill your order and provide requested products and services. Without this data, we cannot process or deliver your order.
- Legal Obligation: We retain certain data to comply with accounting, tax, and regulatory requirements.
- Legitimate Interests: We may process personal data for our legitimate business interests, such as improving our services, ensuring website security, and preventing fraud, provided these interests do not override your fundamental rights.
- Consent: Where additional information is required (such as for marketing), we seek your explicit consent, which you can withdraw at any time.
How We Use Your Information
Your personal data will be used solely for the following purposes:
- Processing and fulfilling your orders, including delivery coordination.
- Communicating with you about your order status, customer queries, or issues.
- Managing payments and transactions securely.
- Improving our services and customer experience through feedback and analytics.
- Meeting legal and regulatory requirements applicable to our business.
Data Retention and Storage
Florist Hornchurch retains your personal data only as long as necessary to fulfill the purposes set out in this policy. This means:
- Order details and related communications are kept for up to six years, to comply with accounting and legal obligations.
- Personal data used for marketing (with your consent) is retained until you withdraw consent or request erasure, whichever occurs sooner.
- Upon expiry of retention periods, personal data is securely deleted or anonymized.
We implement appropriate security measures to protect your data against unauthorized access, loss, or misuse.
Third-Party Processors and Data Sharing
Florist Hornchurch works with certain third-party processors to deliver its services. These processors may only access your data where necessary and are bound by strict data protection terms:
- Payment Processors: Secure and PCI-compliant companies handle your card transactions; Florist Hornchurch does not store payment card numbers.
- Delivery Partners: When necessary, floristry partners or couriers are provided with the minimal details required to complete deliveries.
- IT Service Providers: Trusted companies support our website and systems, including data hosting and security maintenance.
No personal data is sold or shared with external parties for their own purposes. Data processors may be located in the UK or EEA and are always contractually obliged to handle data lawfully and securely.
Your Rights Under the GDPR
As a customer of Florist Hornchurch, you have a number of rights concerning your personal data, including:
- Right of Access: You can request details of the personal data we hold about you.
- Right to Rectification: You may request that we correct any inaccurate or incomplete information.
- Right to Erasure: Also known as the "right to be forgotten", you may request the deletion of your data when it is no longer necessary for the purpose for which it was collected.
- Right to Restrict Processing: You can ask us to limit the use of your data in specific circumstances.
- Right to Data Portability: You may request a copy of your information in a structured, commonly used format.
- Right to Object: You have the right to object to certain types of data processing, such as direct marketing, at any time.
- Right to Withdraw Consent: Where processing is based on consent, you can withdraw this consent at any point.
To exercise any of these rights, please contact us using the details provided on our website. We may need to verify your identity before processing your request, and we will respond within one month as required by GDPR.
Data Security
We take the privacy and security of your data seriously. Appropriate technical and organizational safeguards are put in place to prevent unauthorized access, accidental loss, or misuse of your personal information. This includes encryption, secure storage, and restricted internal access. Regular reviews are conducted to maintain high standards of security.
Policy Modifications
Florist Hornchurch may update this Privacy Policy to reflect changes in our data practices or legal requirements. Any substantial changes will be made clear on our website. We encourage customers to review this policy periodically to stay informed about how your information is protected.
Contact and Complaints
If you have any concerns or questions regarding this Privacy Policy or how Florist Hornchurch handles your data, please use the contact form on our website. If you are dissatisfied with our response, you have the right to contact the Information Commissioner’s Office (ICO), the UK’s supervisory authority for data protection issues.
This Privacy Policy was last reviewed and updated in June 2024. Your trust and privacy are of the utmost importance to us at Florist Hornchurch.