PRIVACY POLICY

This Privacy Policy governs the manner in which we collect, use, disclose, and protect personal data through the website located at hellogoodbyeuk.com (the “Website”). The operators of this Website are committed to protecting your privacy and ensuring the security of your personal data in accordance with applicable data protection laws, including the UK General Data Protection Regulation (“UK GDPR”), the EU General Data Protection Regulation (“EU GDPR”), and the California Consumer Privacy Act (“CCPA”).

1. COMMITMENT TO PRIVACY AND DATA PROTECTION

At hellogoodbyeuk.com, we respect your privacy and value the trust you place in us. We are firmly committed to protecting your personal data and ensuring its confidentiality, integrity, and availability. This Privacy Policy outlines our practices concerning the collection, use, and safeguarding of your personal data when you interact with our Website, whether as a visitor, customer, or registered user.

2. SCOPE OF POLICY AND DATA CONTROLLER ROLE

This policy applies to all data collected through your interaction with hellogoodbyeuk.com, including any email, contact form, or other communication mechanism. For the purpose of applicable data protection legislation, the data controller responsible for your personal data is Hello Goodbye UK, operating via the Website.

As the data controller, we determine the purposes and methods of the processing of your personal data and are responsible for safeguarding your rights under data protection laws.

3. CATEGORIES OF DATA PROCESSED

We may collect and process the following categories of personal data depending on your interaction with the Website:

3.1 Usage Data
Includes information about how you use the Website, such as your browser type, IP address, pages visited, time and date of visit, and session duration.

3.2 Account Data
Includes name, billing and delivery address, email address, and telephone number provided at the time of account registration, purchase, or inquiry.

3.3 Profile Data
Includes your preferences, purchase history, behavior on the Website, and stored settings related to your user experience.

3.4 Communication Data
Includes information you provide when you contact us via email at [email protected] or through other communication channels, such as support interactions and contact history.

3.5 Technical Data
Includes device identifiers, operating systems, browser settings, plug-ins, Internet service provider (ISP), and other system configurations.

3.6 Transaction Data
Includes order details, payment information (processed securely via third-party providers), delivery status, and related information.

3.7 Preference Data
Includes marketing communication preferences, subscription options, and recorded interest in particular content, events, or products.

4. LEGAL BASES FOR PROCESSING

Your personal data is processed lawfully and fairly. We rely on the following legal bases for our data processing activities:

– Consent: Provided voluntarily, such as opting-in to marketing emails or accepting cookies.
– Contractual Necessity: For fulfilling a contract with you, such as processing transactions or delivering products.
– Legal Obligation: To comply with applicable laws or court orders.
– Legitimate Interests: Where processing is necessary for our legitimate business interests and not overridden by your rights (e.g., website security, service improvement, fraud prevention).

5. YOUR RIGHTS

You have the following rights under data protection law:

– Right of Access – to request a copy of your personal data.
– Right to Rectification – to request corrections to inaccurate or incomplete data.
– Right to Erasure – to request deletion of your personal data, subject to lawful exceptions.
– Right to Restrict Processing – to request a limitation of data processing activities.
– Right to Data Portability – to request movement of your data to another controller.
– Right to Object – to object to processing based on legitimate interests or direct marketing.

To exercise any of your rights, please contact us using the details provided in section 13.

6. SECURITY MEASURES

We implement appropriate technical and organizational measures to safeguard your personal data. These include:

– Encryption of data in transit and at rest using industry-standard protocols.
– Access controls ensuring only authorized personnel access personal information.
– Regular data backups and recovery testing to ensure data availability.
– Mandatory privacy and data protection training for all staff.

7. INTERNATIONAL TRANSFERS

Where necessary for operational reasons, certain personal data may be transferred outside the UK or the European Economic Area (EEA). In such cases, we ensure adequate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission or UK-specific mechanisms, to protect your rights and personal data.

8. DATA RETENTION

We retain personal data only for as long as necessary for the purposes for which it is collected, including satisfying legal, accounting, or reporting requirements. Retention periods include:

– Account and Profile Data: While your account remains active plus up to 6 years thereafter.
– Transaction Data: Retained for 7 years for tax and audit reasons.
– Communication Data: Retained for 3 years after the last contact.
– Technical and Usage Data: Retained up to 2 years for analytics and website improvement.

Upon expiration of these periods, personal data is either securely deleted or anonymized.

9. COOKIE POLICY

Our Website uses cookies and similar technologies to improve your user experience. We categorize cookies as follows:

– Essential Cookies: Required for the website to function (e.g., shopping cart features).
– Functional Cookies: Enhance usability and provide personalization (e.g., language selection).
– Performance/Analytics Cookies: Collect information on how users interact with the Website (e.g., page load times).
– Targeting/Advertising Cookies: Record browsing habits to enhance relevance of advertising (subject to consent).

10. COOKIE MANAGEMENT AND COMPLIANCE

Upon visiting hellogoodbyeuk.com, you are presented with a cookie consent banner compliant with GDPR and CCPA requirements. You may update or withdraw your consent at any time using the cookies settings link available in the Website footer. Additionally, you may manage cookies through your browser settings.

Under CCPA, California residents may opt out of the sale of personal data by exercising your “Do Not Sell My Personal Information” rights via a dedicated link provided on our Website.

11. SPECIAL PROTECTIONS FOR CHILDREN UNDER 13

We do not knowingly collect or solicit personal data from children under the age of 13. If you are a parent or guardian and believe that a child has provided us with personal data without your consent, please contact us immediately at [email protected], and we will promptly delete such data.

12. POLICY UPDATES & USER NOTIFICATIONS

We reserve the right to update this Privacy Policy from time to time to reflect changes to our practices, technology, legal requirements, or for other operational reasons. When material changes occur, we will notify users via appropriate channels, including a notice on the Website.

We encourage you to review this policy periodically to remain informed about how we are protecting your data.

13. CONTACT US

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:

Email: [email protected]
Website: https://www.hellogoodbyeuk.com

We are committed to full compliance with applicable data protection laws and strive to provide transparent and responsible data handling practices. Please reach out to us with any privacy-related inquiries, and we will respond promptly.