At Flowers Gipsy Hill, we are deeply committed to protecting your privacy. This Privacy Policy outlines how we collect, use, store, and process your data whenever you place an order with us from Gipsy Hill or the surrounding districts. We abide by the UK General Data Protection Regulation (GDPR) and related data protection laws to ensure the safety and lawful use of your information.
This policy applies to all customers who place flowers orders through Flowers Gipsy Hill, whether online, by telephone, or in person, when the order is to be delivered within Gipsy Hill or any neighbouring district. If you have any questions about how we use your information, please refer to this policy for an explanation of your rights and our responsibilities.
We collect a range of personal data in the course of providing our services. The type of data collected depends on how you interact with us and may include:
Under the GDPR, we must have a valid reason to use your personal data. Flowers Gipsy Hill relies on the following legal bases:
Your personal data is used for the following purposes:
We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including satisfying any legal, accounting, or reporting requirements. Typically, we will keep your order and contact details for up to six years after your last transaction, as required for accounting purposes. After this period, your personal information is securely deleted or anonymised.
Flowers Gipsy Hill may share your data with selected third-party service providers who act as data processors on our behalf. This may include:
All third parties are required to respect the privacy and security of your data and act only on our instructions. They are contractually bound not to use your personal data for their own direct marketing or other unrelated purposes. We do not sell or rent your personal data to any other organisations.
As a data subject covered by the GDPR, you have the following rights relating to your personal information:
To exercise any of these rights, please contact us using the details provided on our website or at our physical shop. Your request will be handled according to GDPR requirements, and we will respond as soon as possible, typically within one month.
We have implemented appropriate technical and organisational measures to safeguard your personal data against loss, abuse, unauthorised access, or disclosure. This includes secure storage, access controls, staff training, and regular review of our data protection practices.
We may update this privacy policy occasionally to reflect changes in our practices, legal requirements, or customer feedback. Any significant updates will be communicated to you when relevant, and the latest version will always be available on our website and in-store.
If you have concerns about how your personal data has been handled or wish to make a complaint, please get in touch with us directly. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you are not satisfied with our response.
Please fill out the form below to send us an email and we will get back to you as soon as possible.
