Privacy Policy for Customers of Flower Delivery Dartford
Introduction
This Privacy Policy applies to all customers who place Flower Delivery Dartford orders within Dartford and the surrounding districts. Flower Delivery Dartford respects your privacy and is committed to ensuring that your personal data is handled securely and in compliance with the General Data Protection Regulation (GDPR). This document explains what personal data we collect, why we collect it, how we process and protect it, and your rights regarding your data.
What Data We Collect
When you use Flower Delivery Dartford to place an order or interact with our service, we may collect and process the following types of personal data:
- Identity Data: Full name, delivery recipient name (if different), title.
- Contact Data: Delivery address, billing address, postcode, phone numbers, and any other relevant contact details.
- Order Details: Information about your order, including the occasion, special instructions, messages with bouquets, and the recipients’ details.
- Payment Information: Details necessary to process payments such as card type, part of card numbers, and transaction information (note that we do not store full card data ourselves, but our payment processors may hold encrypted transaction details).
- Technical Data: IP address, browser type, operating system, date and time of access, and other data generated via cookies and analytics tools.
- Correspondence: Records of communication with you, including email messages, customer service interactions, or feedback received.
Lawful Basis for Processing Your Data
We process your personal data under the following lawful bases, as set out by Article 6 of the GDPR:
- Performance of Contract: The primary basis for data collection is to fulfill your order, deliver flowers, handle payments, and provide related customer service.
- Legal Obligation: We may process your data to comply with laws applicable to our business, such as accounting, tax, or fraud prevention requirements.
- Legitimate Interests: We may use your information to improve our services, operate our business efficiently, or protect our systems, in ways that do not override your fundamental rights and freedoms.
- Consent: For specific purposes such as electronic marketing communications, we may request your explicit consent prior to processing. You may withdraw this consent at any time.
How We Use Your Data
Your personal information is used for the following purposes:
- Processing and fulfilling your orders promptly and accurately.
- Delivering flowers to the specified addresses.
- Managing payments, refunds, and invoices.
- Responding to your queries or feedback.
- Improving our website, products, and customer experience through analytics.
- Complying with regulatory and legal obligations.
- Preventing, detecting, and addressing any technical issues or fraudulent activities.
- Sending relevant updates, offers, or service notifications (only if you opt-in).
Retention of Your Data
We will only retain your personal information for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, regulatory, tax, accounting, or reporting requirements. Typical retention periods are:
- Order Information: Retained for up to six years post-transaction to comply with tax and accounting laws.
- Marketing Consent: Data used for marketing will be retained until you withdraw consent or unsubscribe.
- Technical/Analytical Data: Retained for a period necessary for service improvement, generally not exceeding two years, and anonymized where possible.
When your data is no longer needed, it will be securely erased or anonymized.
Data Processors and Third Parties
Flower Delivery Dartford uses trusted third-party providers (data processors) to help process payments, deliver orders, host our website, and provide analytics. Examples of third-party categories include:
- Payment processing providers (e.g., debit/credit card and online payment service providers).
- Courier and delivery services.
- Website hosting and data storage providers.
- Analytics and service improvement tools (aggregated and non-identifiable data).
These providers are required to process your data in accordance with GDPR requirements and only for the agreed purposes. Your data is not sold or shared with third parties for unrelated marketing purposes.
Security of Your Data
We implement appropriate technical and organizational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorized disclosure, or access. This includes regular staff training, secure server environments, and ensuring that only authorized personnel handle your data.
Your Rights Under GDPR
You have the following rights with respect to your personal data:
- Right to Access: Request a copy of the personal information we hold about you.
- Right to Rectification: Request corrections to any incorrect or incomplete data.
- Right to Erasure: Ask us to delete your data where there is no good reason for us to continue processing it.
- Right to Restrict Processing: Request restriction of processing in certain circumstances.
- Right to Data Portability: Request that your personal data be transferred to you or another provider in a commonly used format.
- Right to Object: Object to the processing of your personal data where we are relying on legitimate interests.
- Right to Withdraw Consent: Withdraw consent for specific processing at any time.
- Right to Complain: Lodge a complaint with a supervisory authority if you believe your data is not being handled appropriately.
Policy Updates
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or technology. The latest version will always be available via our website. Significant changes will be highlighted as required.
Contact and Further Information
If you have any queries regarding this Privacy Policy or wish to exercise any of your rights, please use the contact form provided on our website. We will endeavor to respond promptly to all inquiries regarding your personal data.
This policy was last updated in June 2024.