Our Commitment to Your Data Privacy at Florist Petts Wood
Privacy Policy for Florist Petts Wood Customers
This Privacy Policy sets out how Florist Petts Wood collects, uses, stores, and protects your personal information. It also explains your rights under the General Data Protection Regulation (GDPR). The policy applies to all customers placing orders with Florist Petts Wood in Petts Wood and surrounding districts.
Who We Are
Florist Petts Wood is committed to ensuring the highest standards of data protection for its customers. As the data controller, we determine how and why your personal data is processed whenever you interact with us to place orders or use our services.
Categories of Personal Data We Collect
When you place an order with Florist Petts Wood, we may collect the following information:
- Full name
- Contact details (such as address, phone number, and other delivery details)
- Email address
- Order details, including products and special instructions
- Payment details (processed securely via third-party payment providers; we do not store full payment card information)
- Recipient’s name and delivery address
- Communication preferences and correspondence
- Any feedback or reviews you share about our services
Lawful Basis for Processing Your Data
We only process your personal data when there is a legitimate reason to do so, as set out under the GDPR. The main lawful bases under which we process your information are:
- Contract: To fulfil your order and provide the services you have requested.
- Legal obligation: To comply with laws and regulations, such as maintaining financial records for tax purposes.
- Legitimate interests: To improve our products and services, communicate with customers, and ensure the security of our business operations.
- Consent: Where you have provided explicit consent, for example, for receiving marketing communications. You are free to withdraw consent at any time.
How We Use Your Information
Your personal data is used for the following purposes:
- Processing and delivering your flower orders
- Providing customer support and responding to enquiries
- Managing payments and processing refunds
- Fulfilling legal and regulatory responsibilities
- Inviting you to provide feedback or reviews of our services
- Sending you service communications in relation to your orders
- Sending marketing communications, subject to obtaining your consent
Data Retention: How Long We Keep Your Information
Your personal information will be retained for no longer than is necessary for the purposes for which it was collected. Typically, we retain customer records and order details for up to seven years, in line with legal and accounting obligations. Where you have given consent for marketing, we will retain your contact details until you withdraw your consent or opt out. After the retention period, data is securely deleted or anonymised.
Sharing Your Data with Third Parties (Processors)
In the course of providing our services, we may share your data with trusted third-party processors, such as:
- Payment processing companies to manage transactions securely
- Couriers and delivery personnel to fulfil your order
- IT service providers that support our systems and website
- Accountants and auditors, to comply with our financial obligations
All such processors are under contractual obligations to handle your data in compliance with the GDPR and to process it only on our instructions.
Your Rights Under GDPR
Under GDPR, you are entitled to certain rights regarding your personal data:
- Right to access: Request a copy of the personal data we hold about you.
- Right to rectification: Ask us to correct any inaccurate or incomplete data.
- Right to erasure: Request deletion of your personal information (subject to certain legal exceptions).
- Right to restrict processing: Ask us to limit the processing of your data in specified circumstances.
- Right to data portability: Request your data in a structured, commonly used, machine-readable format.
- Right to object: Object to processing based on legitimate interests or direct marketing.
- Rights in relation to automated decision making: Object if significant decisions are being made solely by automated means.
To exercise your rights, please contact us using the details provided on our website or by post. Please note that we may request proof of identity before fulfilling data subject requests.
Security Measures
We implement appropriate technical and organisational measures designed to protect your personal data against unauthorised access, alteration, disclosure, or destruction. These include regular staff training, secure data storage, encryption technologies where appropriate, and maintaining strict access controls.
International Data Transfers
We endeavour to store and process your data within the United Kingdom or the European Economic Area (EEA). If it becomes necessary to transfer your personal data to a country outside of the EEA, we will ensure that appropriate safeguards are in place to protect your privacy rights.
Children’s Privacy
Our services are not intended for use by children under the age of 16. We do not knowingly collect personal data from individuals under this age without verifiable parental consent.
Changes to This Privacy Policy
Florist Petts Wood may revise this Privacy Policy from time to time to reflect changes in the law or business operations. Updates will be posted on our website and, where appropriate, notified directly to customers.
Contact Us
If you have any questions about this Privacy Policy, our data practices, or wish to exercise your data rights, please contact us using the details provided on our website.
