Florist Ruislip Privacy Policy: Customer Data Handling
About This Privacy Policy
This Privacy Policy defines how Florist Ruislip collects, processes, and secures your personal information in compliance with the UK General Data Protection Regulation (UK GDPR). It applies to all customers placing orders with Florist Ruislip from Ruislip and its surrounding districts. We are committed to handling your data transparently, lawfully, and respectfully.
What Personal Data We Collect
When you place an order with Florist Ruislip, we may collect and process the following categories of personal data:
- Identity Data: Name, title
- Contact Data: Delivery address, billing address, telephone number, and, where applicable, email address
- Order Details: Product purchased, delivery instructions, order history
- Payment Data: Transaction information needed to process your payment (note: all card details are handled securely by our payment processor and are not stored by Florist Ruislip)
- Correspondence: Any feedback, complaints, or queries you provide to us (in store, in writing, or by phone) related to your order
Lawful Basis for Processing Your Data
We process your personal data on the following lawful bases:
- Contractual necessity: To fulfil your order, perform our services, or take pre-contractual steps at your request.
- Legitimate interests: To improve our products, develop our services, and effectively respond to your queries, so long as those interests are not overridden by your fundamental rights and freedoms.
- Legal obligation: In some cases, we may be required by law to collect and retain certain personal information, for example, for accounting or tax purposes.
How We Use Your Data
Your personal data is used strictly for the following purposes:
- Processing and fulfilling your floral order
- Communicating order updates, confirmations, and any necessary follow-up
- Providing customer support and resolving complaints or feedback
- Maintaining accurate financial records
- Improving the efficiency of our services
Data Retention Periods
Florist Ruislip retains your personal data only for as long as is necessary to fulfil the purposes it was collected for, including for the purposes of satisfying any legal, accounting, or reporting requirements:
- Order and delivery data is held for up to six years to fulfil our tax and legal obligations and for any after-sales service queries.
- Where consent is provided separately for marketing or communication preferences, those consent records are retained until you withdraw your consent.
- When the retention period expires or your data is no longer necessary, we will securely delete, destroy or anonymise it.
Who Processes Your Data
Florist Ruislip may share your information with trusted partners (data processors) strictly for the purposes outlined in this policy:
- Payment Processors: To securely process your payments. Card details are transmitted directly to the payment provider and not handled or stored by Florist Ruislip.
- Delivery Partners: To ensure your order reaches the correct address in a timely manner. We provide only the information necessary for successful delivery.
- IT and Hosting Suppliers: Providers who support our ordering, electronic communications, and database management systems, under strict security and confidentiality agreements.
Florist Ruislip does not sell, rent, or trade your personal data to third parties. All data processors are contractually obligated to act only on our instructions and meet the requirements of the UK GDPR.
Your Rights Under the GDPR
You have several key rights regarding your personal data, including:
- Right of access: To request a copy of the personal data we hold about you.
- Right to rectification: To request a correction of inaccurate or incomplete data.
- Right to erasure: To request that we delete your data where there is no compelling reason for its continued processing.
- Right to object: To object to the processing of your data where we rely on legitimate interests.
- Right to restriction: To ask that we temporarily suspend the processing of your data, for example, while a correction or objection request is being processed.
- Right to data portability: To request that we transfer your data to you or another service provider in a commonly used, machine-readable format.
- Right to withdraw consent: Where processing is based on your consent (such as marketing communications), you have the right to withdraw consent at any time.
To exercise any of these rights, you may contact us using the details provided when you placed your order or visit our store directly. Requests are handled free of charge and will be responded to within one month. In some cases, we may request verification of your identity to safeguard your data privacy.
How We Protect Your Data
We take data security seriously. Florist Ruislip implements suitable technical and organisational measures to protect your personal data from accidental loss, unauthorised access, or disclosure. These measures include secure IT and physical storage, staff training on data handling, and strict access controls.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in legal requirements or our business processes. If significant changes are made, we will endeavour to bring them to your attention when you next order, or by a clearly visible notice in our shop.
Queries and Further Information
If you have questions or concerns about how your personal information is handled by Florist Ruislip, please contact us at your convenience or speak to a member of staff in store. If you believe your rights have been infringed, you may also raise your concerns with the UK Information Commissioner's Office (ICO).