Privacy Policy for Flower Delivery Hatch End
Introduction
This Privacy Policy sets out how Flower Delivery Hatch End (“we”, “us”, or “our”) manages your personal data in compliance with the UK General Data Protection Regulation (GDPR). The policy applies to all customers who place orders for flower deliveries from Hatch End and surrounding districts. Our commitment is to ensure your data is handled safely, lawfully, and transparently.
What Data We Collect
We collect only the personal data that is necessary to fulfil and improve our flower delivery services. Depending on how you use our services (for example, placing an order, making inquiries, or providing feedback), we may collect the following categories of personal data:
- Contact Details: Name, delivery address, phone number (if provided), and payment address.
- Order Information: Details of your order such as product selection, delivery date, recipient name, recipient delivery address, personal messages, and order notes.
- Payment Information: We process card payments via secure third-party payment processors and do not retain your full card details on our systems. We may store transaction records (but not your full card details) for audit and lawful basis documentation.
- Communication Data: Records of your communications with us, including queries, instructions, and feedback related to our services.
- Website Usage Data: IP address, browser details, device type, usage logs, and cookies for site security and analytics (where consented or necessary for providing the service).
Lawful Basis for Processing Personal Data
We rely on the following lawful bases under GDPR for processing your personal data:
- Contract Necessity: To process and deliver your order, handle transactions, communicate order status, and perform customer service obligations.
- Legal Obligations: To maintain transaction records for accounting, tax, and legal compliance purposes.
- Legitimate Interests: To improve our services, ensure service security, handle inquiries, and manage customer feedback, provided these interests do not override your fundamental rights and freedoms.
- Consent: For marketing communications and the use of non-essential cookies or similar technologies, we will request and rely on your explicit consent (which you may withdraw at any time).
How We Use Your Data
Your data is used strictly for the following purposes:
- Processing and fulfilling your flower delivery orders.
- Communicating order confirmations, delivery updates, or customer support responses.
- Improving service quality and website functionality.
- Complying with applicable laws and regulations.
- Sending you marketing offers or updates, when you have opted in.
How We Store and Protect Your Data
We store your data securely on systems located within the United Kingdom or the European Economic Area (EEA). Access to personal data is restricted to authorised personnel and service providers who need it to process orders or support operations. We implement industry-standard technical and organisational measures to protect personal data from accidental loss, misuse, unauthorised access, disclosure, or alteration.
Data Retention Policy
We retain your personal data only for as long as necessary to fulfil the purpose it was collected for, including satisfying legal, accounting, or reporting requirements. By default, we retain:
- Order and Transaction Information: Up to 7 years from the end of the financial year of the transaction to comply with tax and accounting laws.
- Marketing Preferences: Until you withdraw your consent or object to processing.
- Inquiry Communications: Up to 2 years after case closure or final response to your query.
- Website Usage Data: For as long as your session lasts or as required for security and analytics, as detailed within our cookie practices or your consent.
After the relevant retention periods, we will securely delete, anonymise, or otherwise remove your personal data from our systems.
Data Processors and Third Parties
To operate our services, we use trusted third-party processors and suppliers who may process your data on our behalf. These include:
- Payment service providers (for secure transaction handling)
- Courier or delivery partners (to fulfil local deliveries)
- Website hosting and IT support services
- Email/SMS service providers (only for order updates or marketing you have consented to)
- Professional advisors (audit, legal, accounting)
All such processors are selected for their commitment to data protection and are bound by contractual obligations to handle your data securely and in compliance with GDPR. We do not sell or share customer data with third parties for their own purposes.
International Data Transfers
We aim to keep your data within the UK or EEA wherever possible. If, in rare cases, it is necessary to transfer your data outside these areas, we will ensure that adequate safeguards are in place, such as the use of Standard Contractual Clauses as approved by the European Commission or UK authorities.
Your Rights Under GDPR
As a customer of Flower Delivery Hatch End, you have certain rights regarding your personal data, including:
- Access: You can request access to, or a copy of, the personal data we hold about you.
- Correction: You can request that we correct or update any inaccurate or incomplete data.
- Erasure: You may request erasure of your personal data in certain circumstances.
- Restriction: You can request restriction or suspension of our processing of your personal data.
- Objection: You have the right to object to our processing for specific purposes (such as direct marketing).
- Data Portability: You can request to receive your data in a structured, commonly used format for transfer to another service.
- Withdraw Consent: Where data processing relies on your consent, you may withdraw this consent at any time.
- Complain to a Regulator: You have the right to lodge a complaint with the UK Information Commissioner's Office if you believe your data rights have been infringed.
Changes to This Policy
We review our privacy practices regularly and may update this policy from time to time. When changes are made, we will publish the latest version on our website. We encourage customers to check this page periodically for updated information on our privacy practices.
Contact and Queries
If you have any questions regarding this Privacy Policy or how we handle your personal data, please contact us using the contact form or other contact methods described on our website. We will respond to your requests and concerns promptly and in accordance with applicable data protection laws.
