The information we collect and how we use it
When you register with us, and in order to purchase on our website, in our showroom and by telephone, we need to know your name, postal address, telephone number, email address, billing address, delivery address, product selections and a password. If you are paying by credit or debit card, we will request your credit card number and expiry date. We will treat all your Personal Information as confidential. We do not and will not keep your credit card details stored anywhere. All card transactions will go through Protx, who maintain a Secure Socket Layered (SSL) connection between your browser and their transaction server at the time of payment – they will not store any of your card details, but merely facilitate the payment process and return you to our site with a confirmation of your transaction.
We gather this information to allow us to communicate with you about our products and promotions.
We gather this information for the following purposes:
- To process your order and provide you with the best possible service
- For statistical purposes to improve this website and its services to you
- To serve website content and advertisements to you
- To administer this website
- If you consent, to notify you of new products, product updates, special offers, promotions and competitions that may be of interest to you
The relevant information is then used by us, our agents and sub-contractors to authenticate your identity, to validate your debit or credit card, to authorise the transaction and to communicate with you on any matter relating to the provision of the service in general. You specifically authorise us to transmit information to or to obtain information about you from third parties for these purposes.
When you create a shopping account while ordering online you will be given the option to receive information from us by post, email or telephone, about new products, product updates, special offers, promotions and competitions which we feel may be of interest to you. In the event that you do not wish to be contacted for such purposes, ensure that you tick/untick the appropriate box(es) as you go through the registration process.
You may unsubscribe from our contact list at any time by replying to a promotional email using the unsubscribe feature that will always be present, firstname.lastname@example.org or by contacting us directly: tel +44 (0)1494 431200 between 9am and 5.30pm (Mon-Fri).
Your Personal Information may be disclosed to other businesses linked with "Quinton Cavendish Ltd (t/a The Natural Bedding Company and t/a Hästens Amersham)) and to reputable third parties who will help process your order. "Quinton Cavendish Ltd (t/a The Natural Bedding Company and t/a Hästens Amersham)) " requires all such third parties to treat your personal information as fully confidential and to fully comply with all applicable UK Data Protection and consumer legislation from time to time in place. We will not release your Personal Information to any company outside of "Quinton Cavendish Ltd (t/a The Natural Bedding Company and t/a Hästens Amersham)) for mailing or marketing purposes. You should be aware that if we are requested by the police or any other regulatory or government authority investigating suspected illegal activities to provide your Personal Information and /or User Information we are obliged do so.
We do not send random marketing emails to personal email addresses (spam). You will only be contacted for what you have consented for and you will not receive any information on unrelated products or services.
Retaining Your Data
We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements. Our data retention policy considers the amount of data, its nature and sensitivity, the potential risk of harm from unauthorised use or disclosure, the processing purposes and if these can be achieved by other means and legal requirements.
For tax purposes the law requires us to keep basic information about our customers (including Contact, Identity, Financial and Transaction Data) for seven years.
In some circumstances we may anonymise your personal data for research or statistical purposes in which case we may use this information indefinitely without further notice to you. If you have had no communication with us for ten years, we will delete all your personal information.
We have procedures in place to deal with any suspected personal data breach and will notify you and any supervisory body of a breach if we are legally required to.
You have a right to see what information that we hold about you and you can get in contact with our Data Protection Officer at the following address: email@example.com
Under the GDPR you have the right to request a copy of the personal information from firstname.lastname@example.org who hold information about you and to have any inaccuracies corrected or information deleted. You will need to prove your identity with 2 pieces of approved identification which can be a: passport, driving licence, birth certificate, utility bill (from last 3 months), current vehicle registration document, bank statement (from last 3 months) or a rent book (from last 3 months). We will verify your identity, noting how and when we verified it, then we will immediately delete that data.
If you can advise of the specific information that you require, we can process your request more quickly. We will respond to your request within one month of you providing information that confirms your identity.
We will respond within one month, giving you a copy of your data, why we have it, who it could be disclosed to and it will be in a format that you can access easily. You have the right to clarify and correct the information as necessary. It can be deleted providing that it is not required for legal or public interest reasons.
If you are not satisfied with our response, please get in touch and we will do our best to help you: email@example.com
If you wish to make a comment on our website, you may be asked for your email address so that we can respond to you. Please ensure that you tick the opt in box if you would like us to respond to you.
Contacting the ICO
If you have any concerns about how your data is being used or processed and we have not been able to help you, then you can contact the ICO. Ways to report concerns are detailed on their website: https://ico.org.uk/concerns/.
If you have any questions, comments or ways we can improve please get in touch. Email firstname.lastname@example.org
We have consulted and worked with a GDPR Practitioner who has guided us on our compliance journey.