Temple Florist GDPR Privacy Policy
Introduction
At Temple Florist, we respect your privacy and are committed to protecting your personal data. This Privacy Policy outlines how we handle the personal data of customers placing orders in Temple and the surrounding districts, in compliance with the UK General Data Protection Regulation (UK GDPR).
Who This Policy Applies To
This Privacy Policy applies to all individuals who place orders with Temple Florist, whether via our website, telephone, or in person, within Temple and nearby districts. By placing an order, you agree to the terms laid out within this policy.
What Data We Collect
We collect and process the following categories of personal data:
- Contact Information: Name, postal address, delivery address, and postcode.
- Communication Details: Any telephone numbers you provide, and order-related correspondence.
- Order Details: Order contents, delivery preferences, and special instructions.
- Payment Information: Information necessary to process payments, such as payment card details (note: card data is not stored by us but processed by third-party payment processors).
- Technical Data: When you use our website, we may collect your IP address, browser type, device information, and usage data through cookies and analytics tools.
Lawful Basis for Processing
We are required to have a lawful basis under the GDPR for the processing of your personal data. Our lawful bases include:
- Contractual Necessity: Most of the data we collect is essential for fulfilling your order, processing payment, and delivering our services.
- Legal Obligation: Certain data may be processed to comply with applicable laws (such as tax or accounting regulations).
- Legitimate Interests: We may process data for our legitimate interests, such as improving our services, preventing fraud, or responding to your enquiries. In such cases, we ensure that your interests and fundamental rights do not override our legitimate interests.
- Consent: Where we use your data for marketing purposes or where local laws require consent for certain types of processing, we will only do so where you have explicitly provided consent. You may withdraw your consent at any time.
How We Use Your Data
We use your personal data for the following purposes:
- To process and deliver your flower orders, including confirming the order, payment processing, and delivery arrangements.
- To provide customer service and support, including handling queries and complaints.
- To keep you informed about the status of your orders.
- For internal record-keeping and administrative purposes.
- To enhance and improve our products and services.
- To comply with our legal and regulatory obligations.
- Where you have opted in, to send you information about our products, services, or promotions (you can opt out at any time).
Data Retention
We retain personal data only for as long as necessary to fulfill the purposes outlined in this policy, including for the purposes of satisfying any legal, accounting, or reporting requirements. Typically, we retain order and customer records for up to 6 years to comply with legal and tax obligations, unless a different retention period is required or permitted by law. At the end of the relevant retention period, your personal data will be securely deleted or anonymised, unless we are required to retain it for longer by law.
Data Processors and Third Parties
To provide our services, we may share your personal data with selected third-party service providers (data processors) who assist us in fulfilling orders and operating our business. These may include:
- Payment processors for secure payment authorisation and processing.
- Delivery partners to ensure flowers are delivered as requested.
- IT and cloud service providers hosting our website or storing data securely.
- Professional advisers (such as accountants or legal consultants) where necessary for business operations or compliance.
All processors are contractually obliged to adhere to GDPR requirements and to ensure that your data is processed securely and only as instructed by Temple Florist. We do not sell your personal information to any third party.
International Data Transfers
Your personal data is generally stored and processed within the United Kingdom or the European Economic Area (EEA). If it becomes necessary to transfer your data outside the UK or EEA, we will ensure appropriate safeguards are in place, such as standard contractual clauses or data processing agreements, to safeguard your privacy rights.
Your Rights
Under the GDPR, you have the following rights concerning your personal data:
- Right of Access: You can request a copy of the personal data we hold about you.
- Right to Rectification: If your data is inaccurate or incomplete, you can ask for it to be corrected.
- Right to Erasure: You can request that your personal data be deleted where there is no compelling reason for us to continue processing it.
- Right to Restrict Processing: You have the right to ask us to restrict processing of your data under certain circumstances.
- Right to Data Portability: Where applicable, you may request the transfer of your personal data to you or another provider.
- Right to Object: You may object to our processing of your data in certain contexts, such as direct marketing.
- Right to Withdraw Consent: If you have provided consent, you may withdraw this at any time without affecting the lawfulness of processing prior to withdrawal.
- Right to Lodge a Complaint: You also have the right to lodge a complaint with a supervisory authority, such as the Information Commissioner’s Office (ICO), if you believe we have not handled your data in accordance with the law.
Data Security
Temple Florist is committed to safeguarding your personal data. We use appropriate technical and organisational measures to protect it against unauthorised or unlawful processing, accidental loss, destruction, or damage. Access to your personal data is strictly limited to those employees and processors who require it to carry out our services.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The latest version will always be available on our website. Where significant changes are made, we will take appropriate steps to bring them to your attention.
Contact and Further Information
If you have any questions about this Privacy Policy, wish to exercise your rights, or have concerns about how we handle your personal data, please contact us using the details provided on our website or in-store.
Last updated: June 2024.
