Fairground Diamonds GDPR Policy
2023 – V1.0
1. Introduction
Fairground Diamonds (“we,” “us,” or “our”) is committed to safeguarding the privacy and data protection rights of our customers and visitors in compliance with the General Data Protection Regulation (GDPR) as applicable in the United Kingdom. This GDPR Policy outlines our practices for collecting, using, processing, and protecting personal data.
2. Data Controller and Contact Information
Fairground Diamonds is the data controller responsible for the processing of your personal data. If you have any questions, requests, or concerns regarding this GDPR Policy or your personal data, please contact our Data Protection Officer at [info@fairgrounddiamonds.com].
3. Data Collection and Processing
We collect and process personal data for the following purposes:
- Order Processing: We collect personal data such as name, contact details, payment information, and shipping address to process and fulfill orders.
- Customer Support: We collect personal data to provide customer support, respond to enquiries, and address concerns.
- Marketing Communications: With your explicit consent, we may use your email address and other contact details to send you marketing communications about our products, promotions, and updates.
4. Legal Basis for Data Processing
We process personal data based on the following legal bases:
- Contractual Necessity: Processing is necessary to fulfil a contract, such as processing orders and delivering products.
- Consent: Processing is based on your explicit consent for activities like marketing communications.
- Legitimate Interests: Processing is necessary for our legitimate interests, such as improving our services, customer experience, and business operations.
5. Data Retention
We retain personal data for as long as necessary to fulfil the purposes for which it was collected, comply with legal obligations, resolve disputes, and enforce our agreements.
6. Data Security Measures
We implement appropriate technical and organisational measures to ensure the security and confidentiality of personal data. These measures include encryption, access controls, regular security assessments, and staff training.
7. Data Sharing and Third Parties
We may share personal data with trusted third parties, including payment processors, shipping partners, and marketing platforms, to fulfil orders and provide services. We ensure that these third parties are compliant with data protection laws and implement appropriate safeguards.
8. International Data Transfers
In some cases, personal data may be transferred to countries outside the United Kingdom or the European Economic Area (EEA). We ensure that any such transfers comply with GDPR requirements, such as using standard contractual clauses or relying on an adequacy decision.
9. Data Subject Rights
Under GDPR, you have the following rights:
- Right to Access: You can request access to the personal data we hold about you.
- Right to Rectification: You can request corrections to inaccurate or incomplete personal data.
- Right to Erasure: You can request the deletion of personal data under certain circumstances.
- Right to Restriction: You can request the restriction of processing in specific situations.
- Right to Data Portability: You can request a copy of your personal data in a structured, machine-readable format.
- Right to Object: You can object to processing based on legitimate interests or for direct marketing purposes.
10. Automated Decision-Making and Profiling
We do not use automated decision-making or profiling that significantly affects individuals.
11. Third-Party Platforms for Customer Information
We use third-party platforms, such as marketing tools and social networks, to process customer information for marketing and promotional purposes. These platforms may collect, store, and process personal data in accordance with their respective privacy policies and terms of use.
12. Complaints and Supervisory Authority
If you believe that we have not processed your personal data in accordance with applicable data protection laws, you have the right to lodge a complaint with the Information Commissioner’s Office (ICO).
13. Updates to the GDPR Policy
This GDPR Policy may be updated from time to time. The latest version will be posted on our website.
By using our services, you consent to the terms outlined in this GDPR Policy.