My website address is: http://www.gwinkerry.co.uk.
This policy tells you how I use and store your data whilst running my business applicable from 25th May 2018.
I am a sole trader. As such when you interact with my business, either by purchasing my products or by contacting me, I collect, use and sometimes store your personal data. I am committed to looking after your data and respecting your privacy in line with the GDPR.
What is your Personal Data?
Your personal data is any information that identifies you and might include your name, address, email address, phone number and anything else which a person can be identified from. It also includes photos of people.
Why do I need it?
Very simply, if you order from me, I need your data to provide your order.
I will only collect the data I need to provide your order, and will only keep it as long as I need to. This will only be for the time It takes to process and complete your order, or if needed for my record keeping and tax records it will be 6 years.
I will keep your data secure and will never sell your data to third parties.
You also give me your data should you decide to subscribe to my newsletter.
You can ask at any time to see, change or withdraw your consent of my using your data.
You have the right to ask me to delete your data, except when I need to keep your data for legal or record keeping purposes.
You have the right to complain if you think I am doing something wrong with your data.
For further details about your rights please see www.eugdpr.org
Using my website
My website is www.gwinkerry.co.uk. The content management system I use is WordPress. By default WordPress does not collect any personal data about visitors.
Cookies are small pieces of text sent to your web browser by a website you visit. A cookie file is stored in your web browser and allows a website or a third party to recognise you and make your next visit easier and the website more useful to you.
On my website you can choose to subscribe to my digital newsletter. I use this newsletter to send out marketing information I think my customers and stockists may like and find useful.
For this service I only collect the name you give me and your email address.
I use the MailChimp service to save the contact data you submit and to send out my newsletters. This means that MailChimp hold your data if you sign up to my newsletter list. MailChimp are based in the USA and your data therefore moves out of the EEA. However MailChimp are GDPR compliant and registered with the EU-U.S. Privacy Shield Framework. Please see here for more information about MailChimp’s privacy policies.
If you meet me face to face at a live event, you have the option to sign up to my email newsletter on paper. You will then be sent a confirmation email where you can either confirm your registration or decline. The paper copies are destroyed after I have transferred your details into my MailChimp digital mailing list.
If you contact me through any of my social media channels please be mindful that these are not secure and you should never send any personal or sensitive information using these methods.
Should you choose to contact me via email please be aware that your email address and email contents and any attachments may be stored in my account or that of my email provider. I will only ever use this information for the purpose it is intended.
Buying from me:
Online at Folksy.com
I Gwin Kerry am the data-controller of your personal information as it relates to my shop at www.folksy.com/shops/GwinKerry.
When you place an order from me, I will receive your name, delivery address and email address from Folksy. I will only use these details to process and deliver your order, or deal with any queries you have related to that order. If you send me a message using the contact button on Folksy, I will receive your username and email address.
The only circumstances in which I will share your data are in processing your order or complying with the law. I will never use or pass on your information to third parties for marketing purposes or any other purpose, other than the circumstances listed below, or add you to any mailing list without your explicit consent. The circumstances in which I may share your data are:
- With Folksy to comply with my obligations.
- With delivery companies to fulfil your order.
- To comply with legal or tax obligations.
I will only retain your details for as long as necessary in order to process the transaction and I will securely store any data collected during that period. I retain personal data related to orders or customer queries for six years. After this time I will delete your data from my records.
You have the right to know what personal data I hold about you, and to ask for that data to be changed or deleted. You also have the right to complain to the ICO if you believe there is a problem with the way I handle your data.
If you have any concerns about your personal data, please contact firstname.lastname@example.org.
Face to face at events
If you buy my products at a live event (eg. trade or craft fair) you have the option to either pay by cash or card. Whether you pay by cash or card I will offer to write a paper receipt for your purchase or you can have one sent either via text or email. If you choose to receive a text or email you will input your telephone number or email address into an app on my phone. I do not retain this information, and use it only for this express purpose. I take card payments and send receipts using Izettle (please see below). My phone is password protected.
I zettle is my chosen provider for processing card payments from customers, for recording my event sales and sending email and text receipts. Izettle will receive your personal data that is required to process a transaction or send a receipt. Izettle’s own privacy policies are GDPR compliant. See here for more information about Izettle’s policies and how they affect you and your data.
If your order requires posting, I will share your name and address with whichever carrier I use. This is ordinarily the Post Office.
I may use your data to contact you for relevant customer service issues that arise in relation to an order or query.
I keep this information only long enough to fulfil your order and any record keeping and legal obligations I have in regards to running my business.
I do not otherwise store this data or use it for marketing reasons unless I have your express permission to do so (eg. you have signed up to my email newsletter).
How I store your data
Only paper copies of data necessary for record keeping and legal obligations are retained. I securely store any paperwork in my workshop.
Only digital copies of data necessary for record keeping and legal obligations are retained. I securely store digital copies of personal data on my computer. I periodically backup digital data onto an external hard drive which is not connected to the internet and is stored securely.
If you actually read to the bottom of this document then Well Done! You deserve a cuppa and a biscuit. Please be further assured that I am committed to looking after your data and respecting your privacy at all times in line with the GDPR.