Florist North Finchley Privacy Policy
Privacy Policy Overview
This Privacy Policy explains how Florist North Finchley collects, uses, stores, and processes your personal data when you place orders with us. The policy applies to all customers ordering from North Finchley and its surrounding districts. We are committed to being transparent about the information we handle and ensuring your rights are protected under the General Data Protection Regulation (GDPR).
Personal Data We Collect
When you place an order with Florist North Finchley, interact with our services, or communicate with us, we collect and process a range of personal data that may include:
- Identity and Contact Data: Name, delivery address, billing address, telephone number, and any other contact details you provide.
- Order Information: Details regarding orders you place, including recipient’s name and delivery address.
- Payment Information: Payment card details or other payment information, processed securely and not stored by us beyond the transaction (see 'Processors') .
- Communication Data: Any information you provide when contacting us with queries, feedback, or other correspondence.
- Technical Information: Limited information about your device, IP address, and how you interact with our website, collected through cookies or similar technologies where applicable.
Lawful Bases for Processing
We only process your personal data when we have a legal justification under GDPR. The main lawful bases on which we rely include:
- Contractual Necessity: To process and deliver your order, including communicating with you and the recipient, and managing payment.
- Legal Obligations: To comply with legal requirements such as record-keeping and tax obligations.
- Legitimate Interests: To improve our services, respond to your enquiries, and ensure the security of our website and transactions. Our legitimate interests do not override your fundamental data rights.
- Consent: Where applicable, if you have provided explicit consent (for example, if you choose to receive marketing communications).
How We Use Your Data
Your information is used for the following purposes:
- Processing and fulfilling your orders, including delivery to recipients.
- Taking payment and managing billing-related queries.
- Providing customer support and responding to your communications.
- Complying with legal and regulatory requirements.
- Improving and personalising your customer experience (where applicable and with your consent).
How Long We Retain Your Data
We retain your personal data only as long as it is necessary for the purpose it was collected, to meet legal or operational requirements, or to resolve disputes. Typically, we hold order-related personal data for up to seven years for accounting and regulatory purposes. Where data is no longer required, it is securely deleted or anonymised.
Our Data Processors
We may share your data with selected third-party service providers (“processors”) strictly for the purposes outlined in this policy. These may include:
- Payment Processors: To process payments securely when you place an order. Payment details are handled in compliance with GDPR and Payment Card Industry Data Security Standards (PCI DSS) and are not stored by Florist North Finchley except as necessary for transaction confirmation.
- Certain IT and Technical Suppliers: For website hosting, maintenance, and security.
- Delivery Partners: If we use external couriers, your delivery name and address will be shared strictly for delivery purposes.
All processors are vetted to ensure they adhere to applicable privacy and security standards. We do not allow our third-party service providers to use your data for their own purposes. We require all processors to respect the security of your data and process it lawfully and confidentially.
International Data Transfers
Your personal data is generally stored and processed within the United Kingdom or the European Economic Area (EEA). In rare circumstances, if data is transferred outside the EEA, we ensure appropriate safeguards are in place in line with GDPR requirements to protect your information.
Your Data Protection Rights
Under GDPR, you have various rights regarding your personal information. These include:
- Right of Access: You may request details of the personal data we hold about you.
- Right to Rectification: You can ask us to correct inaccurate or incomplete data.
- Right to Erasure: You may request deletion of your data under certain circumstances.
- Right to Restrict Processing: You have the right to ask us to pause the processing of your data in certain situations.
- Right to Data Portability: You have the right to request that your data be provided in a commonly used electronic format.
- Right to Object: You can object to certain processing activities, especially direct marketing, at any time.
- Right to Withdraw Consent: Where we process data based on your consent, you may withdraw this at any time.
If you wish to exercise any of these rights, we will respond to your request in accordance with GDPR requirements and applicable local laws.
Security of Your Data
We take data security seriously and implement measures to help protect your data against unauthorised access, loss, destruction, or alteration. These measures include access controls, encryption where suitable, secure disposal methods, and regular review of our procedures.
Updates to This Privacy Policy
This Privacy Policy may be updated periodically to reflect changes in our data practices or legal requirements. Any significant changes will be notified where appropriate. We encourage you to review this policy regularly to stay informed.
Contact and Queries
If you have questions regarding this Privacy Policy, or about how your information is handled by Florist North Finchley, you can contact us for further information. We are committed to responding promptly and helping you understand and exercise your privacy rights.