Flowers Egham Privacy Policy for Customers

Introduction

This Privacy Policy explains how Flowers Egham collects, uses, and safeguards the personal data of our customers from Egham and the surrounding districts when placing orders with us. Flowers Egham is committed to ensuring that your privacy is protected and your personal information is processed in compliance with the General Data Protection Regulation (GDPR). Please read this policy carefully to understand how we handle your personal data, our lawful basis for doing so, how long we retain your information, the processors we use, and the rights you have regarding your data.

Scope of This Policy

This Privacy Policy applies to all individuals who place orders with Flowers Egham, whether through our website, over the phone, or in person, including customers in Egham and the neighbouring districts. By placing an order, you acknowledge that you have read and understood the terms of this policy.

What Data We Collect

In order to fulfil your order and provide the best possible service, Flowers Egham may collect and process the following categories of personal data:

  • Identification Information: Such as your full name and title.
  • Contact Information: Including your address, email address, and phone number.
  • Recipient Information: Name and address of the person receiving your order (if different from your own).
  • Order Details: Details of your order, messages for gift cards, and delivery instructions.
  • Payment Information: Limited payment details necessary for processing your transaction (please note payment card details are processed securely and not retained by Flowers Egham).
  • Communication Records: Correspondence you have with us including any feedback, queries, or complaints.
  • Technical Data: Your IP address, browser type, and access times when you use our website.

Lawful Basis for Processing Your Data

Flowers Egham processes your personal data in accordance with Article 6 of the GDPR. The primary lawful bases on which we rely are as follows:

  • Performance of a Contract: We process your personal data in order to fulfil the contract of sale when you place an order with us.
  • Legal Obligation: Some data is processed to comply with legal and regulatory requirements, for example, record keeping for tax purposes.
  • Legitimate Interests: We may process data for our legitimate business interests such as improving our services, maintaining security, or addressing customer concerns. In such cases, your interests and fundamental rights are always considered.
  • Consent: Should we require your consent for certain types of data processing (such as sending marketing communications), we will obtain your explicit consent, which you can withdraw at any time.

How We Use Your Data

Your personal data is used for the following purposes:

  • Processing and delivering your orders, including managing payments and arranging delivery.
  • Communicating with you in relation to your order or responding to your enquiries.
  • Maintaining accurate internal records for administrative and legal purposes.
  • Improving our products, services, and website based on customer feedback and usage patterns.
  • Ensuring the security of our services and detecting or preventing fraud and abuse.
  • Informing you of important updates or changes to our services, and, if you have opted in, sending promotional communications.

Data Processors and Sharing of Data

Flowers Egham may use trusted third-party service providers (data processors) to assist in delivering our services, including:

  • Payment processing partners who securely handle your transaction information.
  • Delivery and courier companies for fulfilling orders.
  • IT support and website hosting companies to maintain technological infrastructure and ensure security.
  • Professional advisers, such as accountants or auditors, where legally required.

All data processors act under our instructions and are required to comply with GDPR obligations. We do not sell or rent your personal data to any third parties for their marketing purposes.

Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including the fulfilment of your order and compliance with legal, accounting, or reporting requirements. Typically, customer and order information is retained for up to seven years to meet tax and regulatory obligations. After this period, your data is securely deleted or anonymised. Marketing preferences (where consent has been given) will be maintained until you withdraw your consent.

Your Rights Under GDPR

As a data subject within the scope of GDPR, you have the following rights regarding your personal data:

  • Right of Access: You can request confirmation as to whether your personal data is being processed and request a copy of that data.
  • Right to Rectification: You can request that any inaccurate or incomplete information be corrected.
  • Right to Erasure: You have the right to request the deletion of your personal data in certain circumstances.
  • Right to Restriction: You can request the restriction of processing under specific conditions.
  • Right to Data Portability: You may request to receive your personal data in a structured, commonly used format and have it transmitted to another data controller.
  • Right to Object: You can object to the processing of your personal data in certain circumstances, such as direct marketing.
  • Right to Withdraw Consent: Where we process your data based on consent, you may withdraw your consent at any time.
  • Right to Lodge a Complaint: You have the right to lodge a complaint with the relevant supervisory authority if you believe your data protection rights have been infringed.

Data Security

We are committed to ensuring that your information is secure. Suitable technical and organisational measures are maintained to safeguard and secure the information we collect and process. This includes the use of encryption, secure servers, restricted access controls, and regular reviews of our data handling procedures.

Changes to This Privacy Policy

Flowers Egham reserves the right to update or amend this Privacy Policy from time to time. Any changes will be reflected in this document with the effective date of the latest version. We encourage you to review this policy periodically so you remain informed about how we protect your privacy.

Contact Us

If you have any questions or concerns regarding this Privacy Policy or how we handle your personal data, please get in touch with us via the contact details available on our website or in-store. Flowers Egham is committed to responding to all queries and upholding your data protection rights effectively.