This Privacy Policy explains how Florist Bickley collects, uses, stores, and protects the personal data of customers placing orders from Bickley and surrounding districts. We are committed to safeguarding your privacy and complying fully with the UK General Data Protection Regulation (GDPR). Please review this Policy carefully to understand your rights and our data protection practices.
This Policy applies to all personal data collected from customers who place orders with Florist Bickley for delivery within Bickley and neighbouring areas. It covers data collection through our website, by telephone, and in-person at our premises, as well as any third-party ordering services we utilise.
Depending on how you interact with Florist Bickley, we may collect the following information:
Under GDPR, we are required to identify a lawful basis for each activity involving your personal data. The primary bases upon which Florist Bickley relies are:
Your data is used for the following purposes:
We only retain your personal information for as long as necessary to fulfil the purposes for which it was collected, including for the purpose of satisfying any legal, accounting, or reporting requirements. Generally, customer data related to transactions will be kept for a minimum of six years to comply with legal obligations and for our legitimate business needs. After this period, data will be securely deleted or anonymised unless further retention is required by law.
Florist Bickley may share your personal data with third-party service providers ("processors") in order to operate our business efficiently and fulfil your orders. These may include:
We ensure that our processors are GDPR-compliant, are contractually obligated to protect your data, and only use it for purposes specified by Florist Bickley. Unless required by law, we do not sell or rent your personal data to third parties.
Our services and data processors are based in the UK and the European Economic Area (EEA). Should it become necessary to transfer your data outside the EEA, we will ensure an adequate level of protection is in place, consistent with GDPR requirements.
As a data subject, you have the following rights, subject to conditions and applicable law:
We have implemented suitable technical and organisational measures to protect your personal data from loss, misuse, unauthorised access, disclosure, alteration, or destruction. These measures include restricted access controls, secure data storage, and staff training. Payment details are encrypted and handled securely by our payment processors.
This Privacy Policy may be updated from time to time to reflect changes in our practices, regulatory requirements, or for other operational reasons. The latest version will always be made available at our premises and on our website. We encourage you to review this policy periodically.
If you have any questions about this Privacy Policy, your data, or wish to exercise your rights, please contact us using the details provided at our store or on our website. We take all privacy concerns seriously and aim to respond to requests promptly in accordance with applicable data protection law.
Please fill out the form below to send us an email and we will get back to you as soon as possible.
