Streatham Flowers Customer Privacy Policy
Introduction
Your privacy is of utmost importance at Streatham Flowers. This Privacy Policy details how we collect, use, store, and protect your personal data in accordance with the UK General Data Protection Regulation (GDPR), specifically for all customers placing orders with Streatham Flowers from Streatham and the surrounding districts. Please read this document carefully to understand how and why we process your personal information and the rights you have over your data.
Scope of This Policy
This Privacy Policy applies to all customers who use Streatham Flowers’ services to place orders from Streatham or any adjacent areas. By placing an order, you agree to the data practices outlined below.
Personal Data We Collect
When you place an order or interact with us, we may collect the following categories of personal data:
- Contact details – such as your name, address, delivery address, and telephone number
- Order details – including purchase history, product preferences, messages for gifts/cards, and delivery instructions
- Payment information – limited details necessary to process payments (note: full card details are handled securely by third-party payment processors and are not stored in our systems)
- Correspondence – communications with customer service, including queries and feedback
- Technical data – such as IP address, browser type, device usage, and cookies to enhance your experience on our website
Lawful Basis for Processing Your Data
We always process your personal data on a legitimate basis according to GDPR requirements. The main lawful bases we rely upon include:
- Performance of Contract – where it is necessary to process your data to fulfil an order you have placed with us
- Legal Obligations – to comply with statutory requirements, including tax and accounting regulations
- Legitimate Interests – for activities required to operate and improve our business, such as customer service, security, and service improvements, provided these do not override your fundamental rights
- Consent – in cases where you voluntarily opt in to receive marketing communications
How We Use Your Personal Data
Your personal data is used for the following purposes:
- Fulfilling your flower order and delivering products to your chosen address
- Processing your payments securely
- Providing customer support and handling any complaints or queries
- Improving our services, website, and offerings based on customer interactions and feedback
- Complying with legal and regulatory obligations
- With your consent, sending you information about our products, offers, or updates
Retention of Your Data
Streatham Flowers will only retain your personal data for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, or reporting requirements. Typically, we keep:
- Order and transaction data for up to six years from the date of your purchase, as required by UK tax law
- Customer enquiry and support records for up to two years to ensure continuity and resolve any related issues
- Technical and usage data for up to two years for analytics and service improvement purposes
After these periods, your data will be securely deleted or anonymised.
Data Processors and Third Parties
To provide our services, we may share your personal data with trusted third-party service providers (data processors) who act on our instructions and provide specific services for Streatham Flowers, including:
- Payment processing partners for secure transaction handling
- Certain delivery partners to ensure flowers reach your chosen recipients
- IT providers that support our business infrastructure and help maintain our website
- Professional advisers and regulatory authorities as required by law
All processors are required to safeguard your data and are not permitted to use it for any other purpose. We do not sell, rent, or otherwise trade your personal data with any third parties for marketing purposes.
Data Security
We implement appropriate technical and organisational security measures to protect your personal information from accidental or unlawful loss, alteration, disclosure, or unauthorized access. This includes encryption protocols, access restrictions, and secure storage solutions. Our employee training and policies are regularly reviewed to ensure continued compliance and security.
Your Rights Under GDPR
As a customer of Streatham Flowers, you have the following rights regarding your personal data under the GDPR:
- Right to access – You may request access to a copy of your personal data held by us.
- Right to rectification – You may ask us to correct inaccurate or incomplete information.
- Right to erasure (“right to be forgotten”) – You may request the deletion of your personal data, subject to legal retention requirements.
- Right to restriction – You may ask us to restrict the processing of your data under certain circumstances.
- Right to data portability – You may receive your data in a machine-readable format and have it transferred to another controller.
- Right to object – You may object to our processing of your personal data if you believe we do not have grounds for it.
- Right to withdraw consent – Where processing is based on consent (e.g., for marketing), you can withdraw it at any time.
- Right to complain – You have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) if you are concerned about our data handling practices.
Policy Updates
We may update this Privacy Policy from time to time to reflect changes in how we process your data or in response to legal or regulatory updates. The latest version will always be available on our website and significant changes will be notified to customers where appropriate.
Contacting Us
For any questions regarding this Privacy Policy, your rights, or to make a data request, please use the contact details provided on our website or in your order confirmation documents. We are committed to responding to your queries in a timely and transparent manner.
Thank you for trusting Streatham Flowers with your order. We are committed to protecting your privacy and handling your personal data responsibly and in accordance with the law.