Our Data Protection Register Number is Z1197981. We are registered as a Data Controller and Data Processor under Silks & Crystals Ltd. You can contact us by phone 01445 712 562 or in writing via email
WHAT PERSONAL DATA WE COLLECT AND HOW WE USE IT
Visitors to our Website
We record information about how visitors interact with our website and use this data with a 3rd party service, Google Analytics. We use Google Analytics to help us to better understand what content and products visitors want. We do not use analytics data to attempt to track or identify individuals.
When you place an order with us we ask you for your name, address and telephone number so that we can delivery your order and contact you, in relation to your order, if the need arises, to enable us to fulfil our contract with you.
We pass your name, postal and email addresses to our Payment Provider who handles payment on our behalf. We do not receive or store any card details. The legal basis for this transfer of data is in order to fulfil our contract with you. Our Payment Provider may need to transfer some information outside the EU for credit card validation and authentication.
We will only send you marketing material with your consent and you can opt out at any time by:
We do not share our mailing list with anyone else.
When a customer signs up for an account, no matter whether they're purchasing or not, the system will store the details they have provided within the User Manager. Please ensure you use a secure password; for information on how to do this please follow our Password Policy. If the account is created by us on your consented behalf, the minimum amount of data this can contain is the your email address, password (which is encrypted), the date you registered and the date you last visited.
If you created the account yourself, then it will also contain the IP address and Host Name you used the last time you logged in. If you type in further information, such as address and telephone number, this will also be stored on your account.
All customer accounts can be deleted at any point. We have added a ‘Right to be Forgotten’ page which contains a form to allow you to request this. Please note, if you have placed an order prior to the deletion, your details will still remain on that order within the Order Manager. This is due to VAT regulations, which require that we keep all records of VAT transactions for a minimum of six years.
When a customer places an order, the information you enter, such as your name, email address, billing address, delivery address, telephone number, company name, and VAT number will be stored within the order. The other information that is stored is as follows:
SOCIAL MEDIA PLUGINS
The social media share buttons, on product pages and blog pages, and the Facebook share for discount button, only transmit data once they have been clicked. Therefore, the button only becomes active once you have clicked on it and at this point you will be using the social media's website. The only data the social media's servers receive from our site is referral information from the page, such a product title and image. No personal data is transmitted.
The Facebook login feature works in a similar way, and no personal information is transmitted to Facebook. However, once you have clicked on the button, any data that is gathered from your Facebook account, such as name and Facebook ID, will be stored within your User Account. This can be deleted as usual, if requested.
The Right to Access
All customers who have created an account on the website can access the data we hold about them by logging into their account.
Customers who checkout using Guest Checkout will not be able to access their data via an account on your website. We can provide details of the data we store for them within their order, on request.
You have statutory rights relating to any of your personal data that we hold. Find out more at the ICO Website.
The Right to Rectification
Customers with an account can change any information stored about them within the Personal Information section of their account.
Data stored within a customer's order remains unchanged if they change their personal information within their account. This can be changed, upon request, for all customers even if they checked out as a Guest.
The Right to be Forgotten
Under the new rules everyone has the right to be forgotten on websites. Subscribers to our email newsletters can click on the Unsubscribe link that is automatically added to all email newsletters. We have also created a form called the ‘Right to be Forgotten’ to allow customers who have a user account to request to be forgotten. You will need to make sure your email address is provided in this form as this is your unique identifier.
Please be aware, your details will still remain on any orders you have placed due to VAT regulations. This is because VAT records must be kept for at least six years from the date of creation and, if they're not, we will be in breach of the VAT Act 1994 and HMRC Notice 700/21 October 2013.
PERSONAL DATA CAN BE VIEWED/UDPATED ONLINE
Customers who have set up an account can check or update your personal details at any time by logging into your account on our website.
HOW TO CONTACT US
THIRD PARTY LINKS
Updates to our data policy will be published here. This policy was reviewed and/or updated 14-11-2018.