In this Privacy Notice we will cover:
The data controller for any personal data we hold about you is XXXXXXXXXXXXX.
We are responsible for ensuring that your data is held securely, that you are given accurate information about how your data is used, and that your rights regarding your data are respected. The products we sell are not aimed specifically at individuals under the age of 18, we do not promote our products to this market and we cannot identify individuals of this age and under, on our database. Please refer to our Terms & Conditions for more information.
We collect data from you when you visit our website, natachajewellery.com. The data we collect includes your name, email address, telephone number and shipping/billing address, your day and month of birth, and information regarding your browsing and shopping behaviour. Data is collected when you place an order, call our Customer Care team, register with us, browse our site and use other services offered by our site. The data we collect is used to take your order, process payment and deliver your purchase to you. We also use it to deliver marketing communications, give access to services for registered users, personalise your visit to our site and provide assistance via our Customer Care team.
We must have a valid reason for processing your personal data and we may not collect, store or use data about you that is not compatible with that reason. There are four valid reasons for our use of your personal data: (a) Performance of a Contract, (b) Your Consent (c) our Legitimate Interests as a business and (d) a Legal Obligation we are required to follow.
If you have given your consent to our use of your personal data, you are entitled to withdraw this consent at any time.
The data we process, and the legal basis we use to process it is detailed below:
When you purchase a product from our website we ask you for the personal data necessary to allow us to fulfil our contract with you including despatching your item and taking payment from you. Your personal data will also be used to manage your requests for customer service.
Contact details (name, address, postcode, phone number), financial details (credit and debit card details etc), delivery address.
When you register on the website, convert your guest account to a registered account, we ask you for the personal data necessary to allow you to benefit from services reserved to registered users.
Personal Data Processed:
Name, email address, day and month of birth
For direct marketing by email.
Name, email address, browsing and purchase history, date of consent.
Push notifications via our website to offer goods and services that may be relevant to you. These can be configured in the settings of your device or browser.
Products purchased, viewed, or placed in cart, name, device ID or IP address; language used to navigate and version of your use (country); information on the device and browser you use; date and time when you provided consent to receiving web push notifications; date of creation of the account; date of last visit to our site.
When you receive email marketing communications from us after entering a competition run by one of our affiliate partners.
Name and email address.
When you have signed up to take part in our market research programmes.
Name, email address and dependent upon the type of research, other relevant information, for example age or place of domicile may also be collected.
To monitor how our website is used so that we are able to provide a personalized browsing experience, to help us improve the website, make it more user-friendly and help you find products that could be of interest.
To analyse the performance of product ranges, anticipate market trends and monitor website visitor behaviour patterns using third party services such as Google Analytics
Internet log information that is anonymized, so that individuals cannot be directly identified.
To understand customers’ patterns, their needs, the products and services that they are interested in, we analyse shopping histories, browsing histories, customer demographics and market research information. In this way, we identify customers’ groups or segments who display similar behavioural patterns.
This helps us to offer an enhanced customer experience and to provide relevant products, personalised services and offers, and to better manage customers’ relationships. It also helps us tailor the marketing that individuals receive in our marketing messages or are shown on our own and other website, including social media.
Customer ID, e-mail address, browsing data, IP address, order history, products added to wish list or basket, age, gender, physical address, market research information such as attitudes to fashion, service needs and spend on designer clothing.
When we have a service message we need to send you via email confirming your order or returns or informing you of any changes that might affect your order, our service to you or changes to terms and conditions
When providing your personal data for email communication purposes you also consent to us using tracking technologies in the email to make sure the email has been delivered, that you have opened it and to monitor if you have clicked on any of the links. This information helps us to measure the value of our communications and to provide you with relevant content at the right frequency, in compliance with our Retention Policy.
Email address and engagement with email and its content.
We may use your data to establish or exercise our legal rights or to defend against any legal claims.
Identification data and other personal data that may be relevant to the specific legal claim.
When you make a purchase on our website, we are required to process your personal data to meet our legal obligations in accordance with the tax provisions and other statutory rules which apply.
Contact details and details of your financial transaction with us.
When we process your information in response to you exercising your data subject rights.
Name, contact information, purchase history, other information you have specifically requested.
Your personal data will be processed by the internal staff of the Natacha Jewellery team who have been specifically trained and authorised for this processing. In carrying out the processing for distribution of our products, your personal data will also be transmitted to third parties that we use to provide our services; these parties have been rigorously assessed for the way in which they manage personal data and may only use your data for the exact purposes that we specify in the contract with them.
The third parties in question belong to the following categories: (i) Companies such as payment service providers that help us to process your order, (ii) Companies that help us to deliver your purchases such as couriers and parcel delivery companies who deliver your goods and act as Data Controllers for the duration of the delivery process, (iii) Professional service providers, such as email delivery suppliers, IT software providers, marketing and research agencies, analytics companies and website hosts who help us to run our business, (iv) Governmental bodies and regulators to comply with our legal obligations.
We keep your personal data for a limited period of time according to the reason for processing your personal data. After this period, your data will be permanently erased or otherwise irreversibly rendered anonymous.
You have the following rights under data protection law:
To exercise any of these rights, you can sign in to your account, contact our Customer Care team at email@example.com
We are committed to taking appropriate technical, physical and organisational measures to protect personal information against unauthorised access, unlawful processing, accidental loss or damage, and unauthorised destruction.
In particular, we use security measures that employ pseudonymisation or encryption of your data to ensure the confidentiality, integrity, and availability of your data as well as the resilience of the systems and services that process them. We have the ability to restore the availability and access to personal data in the event of a physical or technical incident.