Privacy Policy
Affetto Gifts Ltd is committed to protecting and respecting your privacy. This policy explains how we collect, use, and protect your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
1. Who We Are
For the purposes of data protection law, Affetto Gifts Ltd is the “data controller” of your personal data.
If you have any questions regarding this policy or your data, please contact us at [Insert Email Address].
2. Information We Collect
We may collect and process the following information:
Information You Provide Directly
-
Name
-
Billing address
-
Delivery address
-
Email address
-
Telephone number
-
Company name (for B2B orders)
-
Payment details (processed securely via third-party payment providers)
Information Collected Automatically
-
IP address
-
Browser type and version
-
Time zone setting
-
Pages viewed and website interaction data
-
Cookies and tracking data
3. How We Use Your Information
We use your personal data to:
-
Process and fulfil orders
-
Manage payments and refunds
-
Communicate about orders
-
Provide customer support
-
Improve our website and services
-
Comply with legal and accounting obligations
-
Send marketing communications (where you have opted in)
4. Lawful Basis for Processing
We process personal data under the following lawful bases:
-
Contract: To fulfil orders placed through our website
-
Legal obligation: To comply with tax and accounting laws
-
Legitimate interests: To improve services and prevent fraud
-
Consent: For marketing communications (where applicable)
5. Sharing Your Information
We may share your information with:
-
Payment processors
-
Courier and delivery providers
-
IT and website service providers
-
Professional advisers (accountants, legal advisers)
-
Regulatory authorities where required by law
We do not sell your personal data.
6. Data Security
We implement appropriate technical and organisational measures to protect your data from unauthorised access, alteration, disclosure, or destruction.
Payment information is handled securely by third-party payment providers and is not stored by us.
7. Data Retention
We retain personal data only for as long as necessary to:
-
Fulfil contractual obligations
-
Comply with legal requirements
-
Resolve disputes
Financial records are retained for at least six years in accordance with UK tax law.
8. Your Rights
Under UK GDPR, you have the right to:
-
Access your personal data
-
Request correction of inaccurate data
-
Request erasure of your data
-
Restrict processing
-
Object to processing
-
Request data portability
-
Withdraw consent (where processing is based on consent)
To exercise your rights, contact us at [Insert Email Address].
You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO).
9. Cookies
Our website uses cookies to improve user experience and analyse website traffic.
You can control cookie preferences via your browser settings.
Further details are available in our Cookie Policy.
10. Marketing Communications
If you opt in to receive marketing communications, we may contact you by email regarding new products, offers, or updates.
You can unsubscribe at any time using the link provided in our emails.
11. Third-Party Links
Our website may contain links to other websites. We are not responsible for the privacy practices of third-party sites.
12. Changes to This Policy
We may update this Privacy Policy from time to time. The latest version will always be posted on our website with the effective date clearly displayed.