Honor Oak Florist Privacy Policy
Introduction
Your privacy is important to Honor Oak Florist. This Privacy Policy details how we collect, use, store, and protect your personal information when you place orders with Honor Oak Florist from Honor Oak or surrounding districts. This policy is designed in compliance with the General Data Protection Regulation (GDPR) and applies to all customers using our services within these areas.
What Data We Collect
When you order from Honor Oak Florist, we may collect and process the following types of personal data:
- Contact Information: such as your full name, delivery address, and phone number (if provided).
- Order Details: including floral selection, delivery notes, recipient information, card message content, and relevant preferences.
- Payment Information: we process payment details through secure payment service providers; Honor Oak Florist does not directly store or retain full payment card numbers or CVC codes.
- Communications: records of any correspondence or support requests related to your order, including feedback or complaints.
- Technical Data: such as browser information, IP address, and usage data collected through website analytics for security and site improvement purposes.
Lawful Basis for Processing Personal Data
Honor Oak Florist processes your data under the following lawful bases as defined by the GDPR:
- Contractual Necessity: Processing your data is necessary to fulfil your order and deliver purchased products and services.
- Legal Obligation: We may process data to comply with applicable legal and tax obligations (for example, recordkeeping, or responding to lawful requests from authorities).
- Legitimate Interests: We may process data to enhance our services, prevent fraud, or handle customer queries, provided that such interests do not override your fundamental rights and freedoms.
- Consent: In certain cases, such as marketing communications, we may request your explicit consent before processing your personal data. You have the right to withdraw this consent at any time.
How We Use Your Data
We use collected personal data for the following purposes:
- Processing and fulfilling your orders, including delivery scheduling, addressing, and completing payments.
- Contacting you regarding your order status, resolving any issues, or customer support.
- Internal recordkeeping for business management, financial reporting, and compliance obligations.
- Improving our website, products, and customer experience based on aggregated analytics.
- If you opt in, sending marketing communications about offers and updates relevant to Honor Oak Florist.
How Long We Retain Your Data
Your personal data is stored for as long as is reasonably necessary to fulfil the purposes described above, unless a longer retention period is required by law or for legitimate business requirements. For most transaction-related data, we retain records for a period of six years in line with accounting and legal requirements. Data used solely for marketing is retained until you withdraw your consent or opt out of such communications.
Data Processors and Third Parties
To provide our services, Honor Oak Florist engages with third-party processors who act on our behalf. These may include:
- Payment service providers: who process payment transactions securely.
- IT and web hosting companies: for maintaining our online platforms and data storage.
- Delivery and logistics partners: engaged in delivering flowers and orders to specified addresses.
All third-party processors are contractually required to adhere to data protection obligations in accordance with GDPR. These providers are only permitted to process your data based on our instructions and not for their own purposes.
Data Security
Honor Oak Florist implements appropriate technical and organisational measures to safeguard your personal data against loss, misuse, unauthorised access, disclosure, or alteration. Measures include secure storage, restriction of access, regular staff training, and use of encryption for sensitive information when necessary.
Your Rights
Under GDPR, you have several key rights in respect to your personal data:
- Right of Access: You may request a copy of the personal data we hold about you.
- Right to Rectification: You can ask us to correct inaccurate or incomplete data.
- Right to Erasure: You can request deletion of your data where there is no good reason for us to continue processing it.
- Right to Restrict Processing: You may ask us to pause the processing of your data in certain circumstances.
- Right to Data Portability: You can request your data be provided to you or another organisation in a machine-readable format in certain circumstances.
- Right to Object: You have the right to object to our processing of your data based on legitimate interests or for marketing purposes.
To exercise these rights, please contact us using the details provided on our website. We may need to verify your identity before complying with your request.
International Data Transfers
Your personal data is primarily processed within the United Kingdom or the European Economic Area (EEA). If we transfer data outside these areas, we ensure that protections are in place as required by GDPR.
Changes to This Policy
We reserve the right to update this Privacy Policy when necessary to reflect changes to our practices or legal requirements. We encourage customers to review this policy periodically for updates.
Contact and Complaints
If you have any questions, concerns, or complaints regarding your personal data or this Privacy Policy, please reach out to us through the customer service contact details available on our website. You also have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) if you believe your data protection rights have been infringed.