Florist Shooter's Hill Privacy Policy
Introduction
This Privacy Policy applies to all customers placing orders with Florist Shooter's Hill, whether you are located in Shooter's Hill or any surrounding districts. We are committed to protecting your personal data and ensuring transparency in how and why we process your information. This policy outlines what data we collect, our legal basis for doing so, how long we keep your data, whom we may share it with, and your rights in accordance with the General Data Protection Regulation (GDPR).
What Data We Collect
In order to provide floral services and fulfill orders, Florist Shooter's Hill collects and processes a range of personal information. This may include:
- Contact Details: such as your name, billing and delivery address, and contact numbers.
- Order Information: including order contents, recipient details, gift messages, and special delivery instructions.
- Payment Information: (for example, payment method and transaction details) which is usually handled securely via our payment processors; we do not retain full payment card details.
- Communications: records of any correspondence with you, such as queries, complaints, or feedback provided via web, phone, or in person.
- Technical Data: such as your IP address, device information, and browser type, if you interact with our website.
We only collect data that is necessary for processing and delivering your order, for managing our relationship with you, and for improving our services.
Lawful Basis for Processing
Florist Shooter's Hill processes your personal data on several lawful bases as permitted by the GDPR. These include:
- Contractual necessity: Processing your data is necessary for us to enter into or perform our contract with you (for example, fulfilling your order, processing payment, or delivering flowers to the intended recipient).
- Legitimate interests: Certain processing is required to run our business, improve services, prevent fraud, or respond to your correspondence. We always balance our interests against your privacy rights.
- Legal obligations: We may need to retain some information to comply with relevant laws (for example, records for tax or accounting purposes).
- Consent: In some cases, such as for direct marketing unrelated to your current order, we may rely on your explicit consent. You can withdraw this at any time.
Data Retention Periods
We keep your personal data for as long as is necessary to fulfill the purposes for which it was collected, including for satisfying any legal, accounting, or reporting requirements. Typically:
- Order information: Retained for up to 7 years to comply with financial regulations and to manage any queries or complaints related to past orders.
- Enquiries without purchase: Retained for up to 12 months.
- Marketing data: Held until you withdraw consent or opt out of communications.
After these periods, your personal data is securely deleted or anonymised so that it can no longer be linked to you.
Processors and Data Sharing
In order to efficiently provide our services, we use trusted third parties—known as data processors—who may process your personal information on our behalf. These processors include:
- Payment service providers for secure transaction processing
- Delivery partners for fulfilling orders
- IT service providers for website operation and hosting
All third-party processors are contractually bound to keep your data secure, to act only on our instructions, and not to use your data for their own purposes. We do not sell or rent your personal data to third parties. We may share data with law enforcement or regulatory authorities if required by law.
Your Rights Under GDPR
As a data subject, you have several rights regarding your personal data under the GDPR. These include:
- Right to access: You can request a copy of the personal data we hold about you and an explanation of how it is used.
- Right to rectification: If your information is inaccurate or incomplete, you can ask us to correct it.
- Right to erasure: You have the right to request that we delete your personal information under certain circumstances (for example, if it is no longer needed for its original purpose).
- Right to restrict processing: You may ask us to limit the processing of your data in certain situations.
- Right to object: You can object to processing undertaken based on legitimate interests or for marketing purposes.
- Right to data portability: Where processing is based on consent or contract, you may request your information in a structured, commonly used, machine-readable format, and transfer it to another provider.
- Right to withdraw consent: Where we process data based on your consent, you may withdraw consent at any time.
- Right to complain: If you are concerned about how we use your information, you have the right to lodge a complaint with the relevant supervisory authority.
Policy Applicability and Updates
This Privacy Policy is relevant to all customers of Florist Shooter's Hill placing orders in Shooter's Hill and the nearby districts. We regularly review and update our privacy practices, and this policy may change as a result. Significant updates will be brought to your attention, where appropriate, through our website or usual web pages. Please review this policy periodically to remain informed of how we are protecting your data.
Contacting Us About Your Data
If you wish to exercise your data rights, or have any questions about how we process your personal information, please use the contact form provided on our website or get in touch at our physical store in Shooter's Hill. We aim to respond to all requests within one month and will always prioritise your privacy and data security.