Hounslow Florist Privacy Policy
  Introduction
At Hounslow Florist, we are committed to respecting and protecting the privacy of all customers placing orders for floral products and related services within Hounslow and the surrounding districts. This Privacy Policy explains how we collect, use, store, and safeguard your personal data, and outlines your privacy rights in compliance with the UK General Data Protection Regulation (GDPR).
Scope of This Policy
This Privacy Policy applies to all personal data collected and processed from customers when placing online, telephone, or in-person orders with Hounslow Florist, whether you are the sender or the recipient, and includes data collected via our website, over the phone, or during visits to our physical store. It is relevant to all customers located in Hounslow and surrounding areas.
What Personal Data We Collect
When you place an order with Hounslow Florist, we may collect the following types of personal data:
  - Contact details: Your name, recipient name, billing address, delivery address, email address, and telephone number.
- Order details: Details of the products and services you have purchased, including messages for delivery cards, delivery instructions, and any special requests.
- Payment information: Payment method and transaction details (note that we do not store your full credit or debit card details, as payments are securely processed through accredited third-party payment providers).
- Communication records: Copies of correspondence when you contact us by email, phone, or through our website (such as queries, feedback, or complaints).
- Website usage data: Information collected automatically when you visit or interact with our website, such as your IP address, browser type, device type, and website analytics data (cookies, only with your consent where required).
Lawful Basis for Processing
Under the GDPR, we must have a lawful basis for processing your personal data. At Hounslow Florist, we process your data on the following lawful bases:
  - Contractual necessity: Most of the data we collect is required to process and fulfil your orders, provide customer support, and deliver products and services as agreed.
- Legitimate interests: We may use your data to improve our services, ensure the security of our operations, keep records for fraud prevention, and send limited communications regarding similar products or services. We always balance our legitimate interests with your rights and freedoms.
- Consent: Where we send you marketing messages or use non-essential cookies, we only do so with your explicit consent. You can withdraw your consent at any time.
- Legal obligations: We may retain personal data to comply with accounting and tax regulations or to respond to lawful requests by public authorities.
How We Use Your Data
We use your personal data to:
  - Process, manage, and deliver your orders.
- Communicate with you about your order and provide customer support.
- Send receipts, confirmations, and service notifications.
- Personalise and improve your shopping experience.
- Meet legal, accounting, and regulatory requirements.
- Handle and resolve customer issues or disputes.
- Send occasional offers and updates (with your consent).
Data Retention
We retain your personal data only for as long as is necessary to fulfil the purposes for which it was collected and to comply with legal, tax, or accounting requirements. Typically, order and contact information is retained for up to seven years after your last order to satisfy financial and legal obligations. If you have provided consent for marketing, we will retain this consent until you withdraw it. After the relevant retention periods, your data will be securely deleted or anonymised.
Processors and Sharing of Data
Hounslow Florist may use selected third-party service providers ("processors") to provide certain business functions and services. These include:
  - Payment processing providers (to securely handle your payment transactions).
- Delivery couriers and logistics providers (to deliver orders to you or your recipients).
- IT and website hosting providers (to support our technology and website operations).
- Email and communications service providers (to send you order confirmations and updates).
- Professional advisers (such as accountants or legal counsel, if necessary).
All third-party processors are contractually bound to process your personal data in accordance with GDPR requirements and are only permitted to use it for specified purposes. We do not sell or rent your personal data to third parties for marketing purposes, and we never transfer your data outside the UK or EEA unless appropriate safeguards are in place.
Your Rights Under GDPR
As a customer of Hounslow Florist, you have the following rights regarding your personal data:
  - Right to access: Request a copy of the personal data we hold about you.
- Right to rectification: Ask us to correct incomplete or inaccurate data we hold about you.
- Right to erasure (“right to be forgotten”): Request the deletion of your personal data under certain circumstances.
- Right to restrict processing: Ask us to restrict the processing of your personal data in certain situations.
- Right to data portability: Receive your personal data in a commonly used format and transfer it to another controller, where applicable.
- Right to object: Object to processing where we rely on legitimate interests, including direct marketing.
- Right to withdraw consent: At any time, if our processing is based on your consent.
- Right to lodge a complaint: Raise a concern with the Information Commissioner’s Office (ICO) or other supervisory authority if you believe your data protection rights have been infringed.
To exercise any of these rights, please contact us using the details provided in the store or on our website. We may need to verify your identity before responding to your request.
How We Keep Your Data Secure
We implement appropriate technical and organisational measures to protect your personal data from unauthorised access, alteration, disclosure, or loss. These include secure payment processing, encrypted connections (SSL/TLS), restricted access controls, and regular staff training.
Changes to This Privacy Policy
We may update this Privacy Policy to reflect changes to our practices or for legal and regulatory reasons. The most current version will always be available in-store and on our website, and we will notify customers of any significant changes where required.
Contact Us
If you have any questions about this Privacy Policy or how your personal data is handled, please contact us using the details available in-store or through our official website. We are committed to protecting your privacy and upholding your rights under the GDPR.