Effective Date: November 3, 2024
Welcome to Glow for Christmas. Your privacy is important to us, and we are committed to protecting the personal data you share with us. This Privacy Policy explains how Glow for Christmas (referred to as “we,” “us,” or “our”) collects, uses, shares, and protects your personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
1. Data Controller Information
Business Name: Glow for Christmas
Business Address: 128, City Road, London, EC1V 2NX, UNITED KINGDOM
Contact Email: [email protected]
2. Types of Data We Collect
We collect and process the following types of personal data to provide and improve our services:
- Personal Identification Information: Full name, email address, postal address, phone number.
- Payment Information: Payment card details (handled securely by third-party payment processors).
- Technical Data: IP address, browser type, device type, and usage data such as page visits, clicks, and browsing history on our website.
- Purchase Information: Product purchase history, transaction details, and preferences.
3. How We Collect Data
We collect personal data from you through:
- Direct Interactions: Information you provide by filling out forms on our website, creating an account, or placing an order.
- Automated Technologies: Information collected automatically through cookies, tracking pixels, and other similar technologies when you browse our website.
- Third Parties: Information from third-party partners (such as payment processors) to verify payment information and complete transactions.
4. How We Use Your Data
We use your personal data to:
- Fulfill Orders: Process payments, deliver orders, and provide customer support.
- Communicate with You: Send order confirmations, shipping updates, and respond to your inquiries.
- Improve Our Website: Analyze site performance, troubleshoot technical issues, and enhance user experience.
- Marketing and Promotions: With your consent, send you newsletters, promotions, and special offers that may be of interest to you. You can unsubscribe at any time.
5. Legal Basis for Data Processing
Our legal grounds for processing your personal data include:
- Contractual Necessity: Processing is necessary to fulfill a contract with you (e.g., to process your order).
- Consent: For marketing communications, where you have given explicit consent.
- Legitimate Interests: To improve our website and services, ensure security, and prevent fraud.
- Legal Obligations: To comply with legal or regulatory requirements.
6. Data Sharing and Disclosure
We respect your privacy and only share your personal data with trusted third parties when necessary:
- Service Providers: Third-party vendors who help us with payment processing, order fulfillment, website analytics, and marketing (e.g., payment processors, delivery companies, analytics providers).
- Legal Compliance: Where required by law, regulation, or legal process, or to protect the rights, property, or safety of our business, customers, or others.
We do not sell or rent your personal data to third parties.
7. International Data Transfers
As we are based in the United Kingdom, your personal data may be transferred to and processed by third-party service providers located outside the European Economic Area (EEA). We ensure that any such transfers are subject to appropriate safeguards, such as standard contractual clauses, to protect your data privacy.
8. Data Retention
We retain your personal data only for as long as necessary for the purposes outlined in this Privacy Policy, or as required by law. We will securely delete or anonymize personal data when it is no longer needed.
9. Your Rights Under GDPR
As an EU resident, you have the following rights regarding your personal data:
- Right to Access: Request access to your personal data and obtain a copy.
- Right to Rectification: Request correction of inaccurate or incomplete data.
- Right to Erasure: Request deletion of your personal data where there is no valid reason for continued processing.
- Right to Restriction: Request restriction of processing under certain circumstances.
- Right to Data Portability: Receive your personal data in a structured, commonly used, and machine-readable format.
- Right to Object: Object to processing based on legitimate interests or for direct marketing purposes.
- Right to Withdraw Consent: Withdraw your consent to data processing at any time if consent is the basis for processing.
To exercise these rights, please contact us at [email protected]. We will respond to your request within 30 days, subject to any legal or regulatory requirements.
10. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your browsing experience, personalize content, and analyze site traffic. For more details about the types of cookies we use and your options to manage them, please refer to our Cookie Policy.
11. Data Security
We implement appropriate technical and organizational measures to safeguard your personal data from unauthorized access, loss, misuse, or alteration. These measures include encryption, secure servers, access control, and regular security assessments. Despite these efforts, no method of transmission over the internet or electronic storage is 100% secure, so we cannot guarantee absolute security.
12. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. The revised policy will be posted on this page with the updated effective date. We encourage you to review this policy periodically.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:
Address: 128, City Road, London, EC1V 2NX, UNITED KINGDOM
Email: [email protected]