Florist East Finchley Privacy Policy Overview
Introduction
This Privacy Policy describes how Florist East Finchley ('we', 'our', or 'us') collects, uses, and protects your personal data in accordance with the General Data Protection Regulation (GDPR) and relevant UK legislation. This policy applies to all customers placing orders with Florist East Finchley from East Finchley and the surrounding districts. Please review this document to understand our practices regarding your personal data and your associated rights.
What Data We Collect
To fulfil your orders and provide our services, we collect and process the following types of personal data:
- Contact Information: Your full name, delivery address, billing address, mobile or landline telephone number, and email address.
- Order Details: Notes added by you (such as personalised messages), recipient details (if different), item selections, and delivery preferences.
- Payment Information: Information related to your payment. Please note, however, that we do not store card numbers; payments are processed securely by third-party payment processors.
- Correspondence: Any communications you have with us, such as inquiries, feedback, or complaints.
- Website Usage: Aggregate technical data such as IP address, browser type, and anonymised analytical data to improve our website and services.
Lawful Basis for Processing Your Data
Under GDPR, we must identify valid legal grounds for processing your personal data. Florist East Finchley uses the following lawful bases:
- Contractual necessity: To fulfil your flower orders and manage delivery, we need certain information from you. Processing your data is necessary for the performance of a contract with you.
- Legal obligations: We are required to retain specific records for tax and accounting purposes, and may need to share information with authorities if required by law.
- Legitimate interests: We may use your personal data to improve our services, address technical issues, prevent fraud, and ensure security, as long as these activities do not override your rights and interests.
- Consent: Where you have given explicit permission, for example to receive marketing communications (which you can withdraw at any time).
How We Use Your Personal Data
Florist East Finchley uses your personal data for the following purposes:
- Processing and managing your orders, including delivery and customer service.
- Communicating order status or addressing queries and feedback.
- Accounting and maintaining business records.
- Personalising our service and website content for a better customer experience.
- With your consent, sending promotional offers, seasonal updates, or event announcements relevant to our products and services.
- Ensuring the security and integrity of our website and services.
How Long We Retain Your Data
Personal data is retained only for as long as is necessary to fulfil the original purposes it was collected for, including meeting any legal, accounting, or regulatory requirements. Typically, we retain:
- Order records: Kept for seven years from the date of transaction, as required by tax regulations.
- Marketing consent records: Retained until you withdraw your consent or unsubscribe from communications.
- Customer service correspondence: Retained for up to two years from the date of resolution.
When personal data is no longer required, it is securely deleted or anonymised.
Sharing and Processing Your Data
We share your personal data only when necessary, and always in a secure manner:
- Payment processors: When you place an order, your payment data is handled by trusted third-party payment providers on our behalf. These providers comply with PCI DSS and GDPR requirements.
- Delivery partners: We may share recipient and shipping details with local couriers to deliver your order efficiently.
- Service providers: We use third-party services to support our website infrastructure, analytics, and customer support. All processors are subject to GDPR-compliant agreements and are under strict confidentiality obligations.
- Legal compliance: Where required by law or regulation, we may share data with official authorities.
Personal data is not transferred outside the UK or European Economic Area (EEA) unless equivalent data protections are in place.
Your Rights Under GDPR
As a customer, you have several rights under GDPR regarding your personal data:
- Right of access: You may request a copy of the personal data we hold about you.
- Right to rectification: If any information is incorrect or incomplete, you may ask us to correct it.
- Right to erasure: Also known as the 'right to be forgotten', you may ask us to delete your personal data under certain circumstances.
- Right to restrict processing: You may ask us to limit how your data is used in certain situations.
- Right to data portability: Where technically feasible, you can ask us to transfer your data to another provider.
- Right to object: You can object to processing based on legitimate interests or direct marketing. Your preferences will always be respected.
- Right to withdraw consent: Where we rely on your consent, you can withdraw it at any time without affecting the lawfulness of processing before withdrawal.
- Right to lodge a complaint: If you are unsatisfied with our handling of your data, you have the right to contact the UK Information Commissioner’s Office (ICO).
Policy Scope and Updates
This Privacy Policy is applicable to all customers placing orders with Florist East Finchley from East Finchley and adjacent districts. We may occasionally update this policy to reflect changes in our practices or in response to legal, regulatory, or operational requirements. Any updates will be posted on our website and are effective upon posting.
Contact and Further Information
If you have questions about this Privacy Policy or how your data is processed by Florist East Finchley, please contact us using the details provided on our website or where you placed your order. We are committed to addressing your privacy concerns promptly and transparently.