The legal bases we rely on include consent (for example, the consent you give to receiving our marketing news and offers), our contractual obligations (for example, the delivery details we pass to our couriers to ensure your parcels get to their destination), and legitimate interest (that data that allows us to operate our business effectively and which does not materially impact your rights, freedom or interests).
When do we collect your personal data?
As laid out in the legal bases above, we (either directly or through our service providers) only collect your personal data either to improve your experience as a customer of ours, if you’ve given us consent to contact you with details of latest offers and exclusives, or to allow the smooth running of our business operation (our legitimate interest). The data we store therefore is transactional in nature: the items you have bought, the dates of your orders, and billing, contact and delivery details. It is important to note we do not store any payment details. In order to allow us to do these things we will collect data on you:
- When you visit our website
- When you sign in to your Account on our website
- When you make a purchase from us, either on the website or via telephone
- When you engage with us on our social media accounts or through SMS/text
- When you contact our Customer Service team
- When you enter one of our competitions
- When you review one of our products or your recent orders
Your purchase information will be retained until the last use or purchase of our services or goods, as required or permitted by applicable local law, or if in any case there is a legitimate and lawful reason for us to do so. For any product sold on our website, we may retain your data for as long as necessary to comply with applicable legislation regarding product warranty and safety and to keep in touch with you regarding the results of the product and to provide you with ongoing advice. Your other data will be stored for as long as required by applicable local law or as long as there is a legitimate and lawful reason for us to do so. If you request that we remove all data we hold on you, our customer service team will help with doing that as quickly and fully as practicably possible, and within one month.
How and why do we use it?
- To allow us to process and fulfil your orders
- To process payments
- To respond to your queries, refund requests and any complaints
- With your consent we’ll use your data to keep you informed of our latest news and products by email, text, mail, SMS/text and telephone. You can opt-out from any of these communications at any time.
- We’ll use customer data to build a picture of who you are and what you like, to inform our business decisions and making your customer experience as relevant to you as we can. For example, emailing or sending an SMS/text to you with products we think you’ll like based on purchasing or browsing history
- If you have visited our website and viewed particular products or pages, we might target you with relevant products or advertising after you’ve left the site either on Facebook, Instagram or Google for example. When visiting our website, a cookie or cookies will be attached to your web browser that facilitates this tracking. To allow you to manage cookies and consents around cookies, we use a third-party solution called Cookiepro, One Trust. This provides a user-friendly preference manager the first time you visit our website, where you can stipulate your preferences, and your preferences are remembered for 12 months.
- Data pooling with Experian and Abacus Epsilon. Data pools are groups of retailers who share information on what their customers buy. This pooled information is analysed to understand consumer’s wider buying patterns. From this information customers are then sent offers that are deemed to be relevant based on their purchase history
- We work with Epsilon Abacus (registered as Epsilon International UK Ltd), a company that manages the Abacus Alliance on behalf of UK retailers. The participating retailers are active in the clothing, collectables, food & wine, gardening, gadgets & entertainment, health & beauty, household goods, and home interiors categories. They share information on what their customers buy. Epsilon Abacus analyses this pooled information to help the retailers understand consumers’ wider buying patterns. From this information, retailers can tailor their communications, sending people suitable offers that should be of interest to them, based on what they like to buy.
- To send you communications required by law or necessary to inform you about changes to the services we provide. This would include legally required information related to your orders. Service messages won’t contain promotional content and therefore would not require prior consent, unlike the marketing emails. Using data for these purposes ensures we comply with our legal obligations to you.
To allow you to manage cookies and consents around cookies, we use a third-party solution called Cookiepro, One Trust. This provides a user-friendly preference manager the first time you visit our website, where you can stipulate your preferences, and your preferences are remembered for 12 months.
How do we share your personal data?
We will sometimes share personal data with trusted third parties for the purposes of performing their specific services, as outlined in our contracts with them. These parties (data processors) have obligations to you to ensure your data is respected and only used for the purposes they’ve been contracted to use it.
Examples of these companies would include IT companies that support our website and other business systems, delivery couriers, marketing companies, and advertisers like Google or Facebook or Klaviyo.
What are your rights?
You have the right to request: - Access to the personal data we hold about you
- The correction of your personal data when incorrect, out of date or incomplete.
- That we stop using your personal data for direct marketing (either through specific channels, or all channels).
- That we stop any consent-based processing of your personal data after you withdraw that consent
- You have the right to request a copy of any information about you that the This Works holds: contact firstname.lastname@example.org or phone us on 0208 543 3544. To ask for your information to be amended, please update your online account if you have one, or contact our Customer Services team who will be able to do so for you.
- Your right to withdraw consent: Whenever you have given us your consent to use your personal data, you have the right to change your mind at any time and withdraw that consent.
- Where we rely on our legitimate interest
- In cases where we are processing your personal data on the basis of our legitimate interest, you can ask us to stop for reasons connected to your individual situation. We must then do so unless we believe we have a legitimate overriding reason to continue processing your personal data.
- Direct marketing: You have the right to stop the use of your personal data for direct marketing activity through all channels, or selected channels. We must always comply with your request.
- To protect the confidentiality of your information, we will ask you to verify your identity before proceeding with any request you make under this Privacy Notice.
-You have the right to lodge a complaint with a competent supervisory authority.
-If you have authorised a third party to submit a request on your behalf, we will ask them to prove they have your permission to act.
In order to be able to offer you Klarna’s payment options, we will pass to Klarna certain aspects of your personal information, such as contact and order details, in order for Klarna to assess whether you qualify for their payment options and to tailor the payment options for you.
If you need further clarity on any of these points, please contact us by emailing email@example.com or calling 0208 543 3544 and we’ll be happy to assist you.