By registering or placing an order on this website, you are confirming that you have read this policy and that you understand how we use the information that we hold about you.
INFORMATION THAT WE COLLECT FROM YOU
When you visit, register or order products or services on within our website shop, you will be asked your contact details including your name and credit or debit card information. The data that Pretty Gritty obtains and process is:
Address (when an order is placed)
Phone number (when an order is placed)
Email (if you order or subscribe)
We do not have access to or retain credit or debit card details as these are entered into a system provided by a third party.
We are privy to the messages you post to the website as well as letter, e-mails or letters you send to us so these are recorded.
Your information will enable us to provide you with access to all parts of our website and to supply the goods or services you have requested. It will also enable us to bill you and to contact you where necessary concerning your orders. We will also use and analyse the information we collect so that we can administer, support, improve and develop our business.
In particular, we may use your information to contact you for your views on our services and to notify you occasionally about important changes or developments to the website or our services. When you make purchases from us or create an account with us, you have the opportunity to consent to receive our marketing materials. This is a two-stage process whereby ticking the consent box will lead to you receiving an email with a link that you need to click. This two-stage process is our way of insuring that you really are happy for us to contact you as we don’t want to contact anyone in error. Where you have consented, we might also use your information to let you know by email about other products and services which we offer which may be of interest to you. If you change your mind about being contacted in the future, please let us know either by dropping us a message.
DISCLOSURE OF YOUR INFORMATION
We will never sell your data or share it with other companies.
The information you provide to us may be accessed by or given to third parties where those parties process information, fulfil and deliver orders, process credit card payments and provide support services on our behalf. Some of these third parties are located outside of the European Economic Area. These parties handle data in a way which is aligned to the GDPR requirements.
Unless required to do so by law, we will not otherwise share, sell or distribute any of the information you provide to us without your consent.
Cookies are small amounts of information which we may store on your computer and are only used on this shopping site to keep track of the contents of your shopping basket once you have selected a product.
SECURITY AND DATA RETENTION
We employ security measures to protect your information from access by unauthorised persons and against unlawful processing, accidental loss, destruction and damage.
Under GDPR you have the right to request that we delete all traces of you from our system. This is referred to as the right to erasure. If you would like to exercise this right then please email firstname.lastname@example.org and we will action your request within 28 days. Please note however that we are legally required to keep sales records for a period of 6 years so, when you make a purchase from us, the information that relates to that purchase will be retained for this 6 year period.
Other than in the above circumstances, the information that you provide us with will remain on our systems indefinitely to enable you to continue to use your account and receive information from us.
ACCESSING AND UPDATING
You are entitled to see the information held about you and you may ask us to make any necessary changes to ensure that it is accurate and kept up to date. If you wish to do this, please contact us at email@example.com or send a message through our contact us page. We will respond to any requests within 28 days.
We take data protection very seriously and do all that we can to behave both ethically and in a manner which is aligned to the requirements set out by the General Data Protection Regulations. However, if you have any questions at all in relation to the data we hold on you, how it is used or how we are complying with the regulations then you should contact us at firstname.lastname@example.org or send a message through our contact us page and we will look into your questions and respond within 28 days.